Releases: provemark/tracefern-image-check
Release list
0.1.5
Also available in the WordPress.org plugin directory: https://wordpress.org/plugins/tracefern-image-check-for-c2pa/
- Check existing images from Settings → Tracefern: "Check images that were never checked", or "Check all images again" after changing the trust settings. The checks run in the background, after new uploads, with progress that updates itself on the page; no WP-CLI needed.
- The readme says what sets the verification apart: on the server, for every upload, with the bundled C2PA trust lists.
The attached zip holds exactly the files committed to the plugin directory as tags/0.1.5 (SHA-256 4e70db65c04cac5bfd962a74ccc9e5df7c752fae37605b5f0e63b276f3816a87).
Requires WordPress 7.1 and PHP 8.3.
0.1.4
Also available in the WordPress.org plugin directory: https://wordpress.org/plugins/tracefern-image-check-for-c2pa/
- A signed photo with EXIF rotation uploaded in the block editor is checked on the uploaded file, not on the browser's rotated or scaled copy. Such photos uploaded with an earlier version may wrongly show "No Content Credentials"; upload them again.
- New line "Changed after upload" when the file on the server is not the one that was uploaded, for example after an image optimizer rewrote it. The verdict shown next to it stays the verifier's.
The attached zip holds exactly the files committed to the plugin directory as tags/0.1.4 (SHA-256 fb33f82b0e6b7c4911813f7edccacc34d4a39972f72361beff3d32f472036f09).
Requires WordPress 7.1 and PHP 8.3.
0.1.3
Also available in the WordPress.org plugin directory: https://wordpress.org/plugins/tracefern-image-check-for-c2pa/
- The AI label follows an image's history: an AI image that was later watermarked or converted is still "AI-generated (signed)". Each earlier version counts only when the verifier finds its own signature and hash intact.
- New label "AI-edited (signed)", for images that generative AI edited or that contain AI-generated parts.
- The
tracefern_verdictfilter gains the keyai_edited.
Existing images keep their earlier result; wp tracefern check --all checks them again.
The attached zip holds exactly the files committed to the plugin directory as tags/0.1.3 (SHA-256 0351b6d253265376c5bf54e464d238dd7b904bc3263f0d2212d93edaa481b4c5).
Requires WordPress 7.1 and PHP 8.3.
0.1.2
Also available in the WordPress.org plugin directory: https://wordpress.org/plugins/tracefern-image-check-for-c2pa/
- Bundles c2pa-verifier 0.2.6, a security release: an image signed with an RSA key whose public exponent is 1 no longer shows as trusted, since such a signature needs no private key.
Updating is recommended.
The attached zip holds exactly the files committed to the plugin directory as tags/0.1.2 (SHA-256 5ad5a395f9384a86a477b20265683b418c5fe1de080678f7bd418f3000a0402f).
Requires WordPress 7.1 and PHP 8.3.
0.1.1
Also available in the WordPress.org plugin directory: https://wordpress.org/plugins/tracefern-image-check-for-c2pa/
-
Other plugins can read the verdict through the
tracefern_verdictfilter, with no dependency on this plugin:$verdict = apply_filters( 'tracefern_verdict', null, $attachment_id );
It returns
nullwhen the plugin is not active or the ID is not an attachment, and otherwise an array withstatus,state,intact,trusted,ai(true exactly when the Media Library shows "AI-generated (signed)"),signer,signed_at,codesand more.signercomes from the file: escape it where you output it.
The attached zip is the build committed to the plugin directory as 0.1.1 (SHA-256 db7674d85ecfd00246e104320ddd9bbfa5c9801e3e5975b8d80f31f806dbebed).
Requires WordPress 7.1 and PHP 8.3.
0.1.0
First release, also available in the WordPress.org plugin directory: https://wordpress.org/plugins/tracefern-image-check-for-c2pa/
- Verifies the Content Credentials of JPEG, PNG and WebP uploads on the original file, in the background.
- Media Library column and attachment details, with an AI label for verified AI images.
- Bundled C2PA trust lists (2026-08-14), DigiCert timestamps, custom trust settings.
- Sorting and filtering by verdict;
wp tracefern checkfor existing images. - Suggested privacy policy text; data removed on uninstall.
The attached zip is the version approved in the plugin directory review (SHA-256 66335707d04476b30757469b646ad8322f69a35b2e1de3e89f97c01307a804af). Its contents equal the directory's download of 0.1.0.
Requires WordPress 7.1 and PHP 8.3.