Do not decide that a recording is real or fake from one detector score. First preserve the best original, identify the exact claim being made, and find the earliest authoritative source and full context. A detector can add one bounded signal only when it was evaluated on the same kind of media and manipulation you are examining.
If an urgent voice note or video asks for money, a password, a recovery code, or a changed payment destination, stop. Contact the person or organization through a phone number, account, or in-person route you already trust. Do that independent check before uploading the file, replying, or sending anything.
Start with the claim, not the pixels
| Question | What to write down | Why it matters |
|---|---|---|
| What is the exact claim? | Who supposedly spoke or appeared, what supposedly happened, where, and when | An authentic clip can still carry a false date, location, identity, translation, or caption |
| What is the source? | The account, URL, post time, filename, and the earliest version you can locate | Reposts remove context and often recompress or crop the file |
| What decision depends on it? | Share, payment, account access, employment, election, safety, legal, or no immediate action | Higher stakes require stronger evidence and qualified review |
Use the viral-claim verification guide for the broader source-checking method. The deepfake-specific job begins after the claim and source have been made explicit.
Preserve the original before testing
- Save the highest-quality version you can lawfully obtain. Keep its original filename and do not edit it.
- Record the source URL, account, acquisition date and time, file size, and a cryptographic hash when the decision is consequential.
- Work on a copy. Messaging, screen recording, cropping, transcoding, noise removal, and social-platform downloads can change the features a detector reads.
- Do not upload private, abusive, medical, identity, or investigation evidence to an unknown detector. Read its retention and reuse terms or use an approved forensic environment.
For capture and chain-of-custody details, use the separate guide to take screenshots that preserve evidence. A screenshot can document a post, but it is not a substitute for the original audio, image, or video file.
Find the authoritative original and full context
- Search the quoted words and event. Look for a complete recording from the speaker, venue, broadcaster, public body, or another accountable source.
- Run reverse image searches on useful frames. Extract clear frames from different moments, then search more than one frame. A match may reveal an older video, a different location, or the uncropped source.
- Compare the whole scene. Check preceding and following speech, camera angle, weather, signage, audience response, audio track, and published schedule.
- Check whether the claimed person confirms or denies it. Treat a denial as another source to evaluate, not automatic proof by itself.
Dubbing, compression, frame interpolation, unstable connections, and editing can create lip-sync or visual oddities in authentic media. Conversely, clean-looking media can still be synthetic. Visual intuition alone is not a reliable final test.
Read provenance as provenance, not truth
C2PA Content Credentials can bind signed assertions about an asset's source and edit history to that asset. The current C2PA specification says the system should not decide whether provenance is “good” or “bad”; it validates whether assertions are associated with the asset, correctly formed, and tamper-evident.
- Validate the credential rather than trusting a badge or screenshot of one.
- Read who signed it, which asset it covers, which actions are asserted, and whether validation reports errors.
- Compare the signer and asserted history with the claim you are investigating.
A valid credential can support a source-and-history statement; it does not prove that the depicted event, caption, or speaker's words are true. Missing credentials do not prove a file is fake because credentials may never have been added or may be stripped during distribution. C2PA's security and harms guidance also documents threats, privacy risks, and unequal access that implementations must consider.
For a deeper explanation of manifests, signatures, edits, and missing credentials, use the Content Credentials and C2PA guide.
Decide whether a detector fits this file
| Fit check | Question to answer |
|---|---|
| Medium | Was the tool evaluated for image, video, audio, or text—the medium you actually have? |
| Manipulation | Does it target face swaps, lip sync, synthetic speech, fully generated media, edits, or the relevant technique? |
| Conditions | Do evaluation data include unfamiliar generators, recompression, cropping, noise, resolution, language, demographics, and platform processing like this file? |
| Metric | Does the publisher report false positives, false negatives, thresholds, calibration, and results on held-out data? |
| Version | Can you identify the exact model, service version, date, and settings used? |
NIST's synthetic-content guidance describes detection as one family of techniques alongside provenance, labeling, watermarking, and human-assisted methods, each with limitations and tradeoffs. NIST OpenMFC evaluates media-forensics systems on defined tasks and datasets; its published program results are evidence about those tested conditions, not certification of every consumer detector or every new generator.
If the tool does not document a matching medium, manipulation, evaluation set, and metric, do not convert its output into an authenticity claim. “83% fake” may be a model score, a threshold output, or a user-interface label—not an 83% probability that the real-world claim is false.
Record the detector signal so someone else can reproduce it
- Tool and provider
- Model or service version and test date
- Input copy hash, filename, medium, duration or dimensions, and any preprocessing
- Selected task, threshold, settings, and documented evaluation conditions
- Raw output, displayed label, and any warning or unsupported-format message
Running several opaque consumer tools is not independent confirmation when they may share training data, models, or failure modes. Agreement can justify more investigation; it does not turn correlated scores into proof.
Use a bounded conclusion
| Label | Use it when |
|---|---|
| Unverified | The source or claim has not been independently confirmed |
| Source-context mismatch | The media is authentic or unresolved, but the date, location, identity, edit, or caption does not match the original context |
| Detector signal only | A documented, reasonably matched detector produced a result, but source and forensic evidence do not justify an authenticity conclusion |
| Provenance validated | A Content Credential validates and supports a particular source or edit-history statement, without deciding the truth of the scene |
| Escalated for forensic review | Employment, election, fraud, safety, abuse, or legal consequences require a qualified examiner and documented chain of custody |
Do not publish a consumer detector score as a headline or accuse a person of fabrication from a signal alone. If you must communicate before review finishes, say what is known, what remains unverified, which checks were performed, and what evidence would change the conclusion.
The useful sequence is: preserve the original, state the claim, locate source and context, validate available provenance, test only with a fit-for-purpose detector, record the exact run, independently verify urgent requests, and stop at the narrowest label the evidence supports.



