Hidden characters
Zero-width spaces, joiners, and bidi controls can be stripped and counted.
Detectable RemovableWhat actually works (and what doesn’t)
Most tools ranking for “claude watermark remover” cannot prove their claims. BleepingComputer documented a 4,500+ star GitHub project and a cluster of new sites — and the missing detector that would check any of them. This page strips what can be counted, rewrites if you ask, and refuses to fake verification.
Anthropic detector: Not public
Anthropic has said a detection API is coming. Until it is actually public, statistical watermark claims stay UNVERIFIABLE.
Checked 2026-09-03T02:16:51Z
Working…
Paste text or upload a file to analyze for hidden characters and metadata.
Zero-width spaces, joiners, and bidi controls can be stripped and counted.
Detectable RemovableC2PA, EXIF, XMP, and HTML meta can be found. File credentials often vanish after a re-save anyway.
Detectable Often trivialWord-choice pattern based on SynthID-Text. Needs a heavy rewrite — and cannot be verified here.
Unverifiable ~70% rewriteAnthropic’s text watermark is a statistical pattern in word choices, a version of Google DeepMind’s SynthID-Text. It is applied at generation time. It is not a logo, a hidden Unicode payload, or a file tag you can delete. Detection requires Anthropic’s secret key; no public detector exists yet.
The company is doing this to comply with EU AI Act Article 50 — machine-readable marking of AI-generated content. A detected mark means Claude was involved (including grammar passes, translations, and summaries). It is not a certificate of authorship.
Supported files can also carry signed C2PA provenance metadata. That is a different channel from the text watermark, and it is fragile: BleepingComputer notes it often does not survive a re-save, format conversion, or screenshot.
The 4,500+ star watermarks-remover project by Guillaume Meyer is unusually candid: Layer A (Unicode) is real; Layer B (statistical rewrite) is best-effort; Meyer has said the tool removes metadata only for now when talking about the hard mark. Commercial sites are less careful. Several promise clean, undetectable output, then score against ordinary AI detectors rather than Anthropic’s watermark.
StealthGPT caveat: BleepingComputer reported that StealthGPT added a Claude watermark remover on the same page whose comparison table still says no tool guarantees a 100% bypass. That is the honest sentence hiding under the marketing headline.
| Feature | Typical competitors | This tool |
|---|---|---|
| Claims 100% removal | Often claim it | States limitations |
| Admits statistical mark is unverifiable | Rarely | Clearly stated |
| Strips hidden characters | Yes | Yes, with a count |
| Strips metadata | Yes | Yes, and notes C2PA often dies on re-save |
| Verifies removal | Cannot, but sometimes implies it | States we cannot verify |
| Offers rewrite | Sometimes | Yes, with a 5-gram change score |
| Explains ~70% rewrite heuristic | Rarely | Yes |
| EU AI Act context | Some | Article 50 explained |
The mark lives in which words were picked. The only known disruption is a heavy rewrite — a second model, a translation loop, or writing it yourself. Anthropic says light editing probably will not remove it; a complete rewrite where every word is replaced will.
Open-source removers such as claude-watermark-cleaner use a practical heuristic: stop when about 70% of 5-token sequences have changed. This tool reports that percentage after Rewrite. A synonym swap will usually miss the target — and we will say so instead of printing “removed.”
A second-LLM rewrite also has a quality cost Meyer pointed out: you paid for Claude’s wording, then ran it through a cheaper model. That may defeat the reason you used Claude.
Paste above to strip hidden characters (with a count), clean text-layer metadata, and optionally rewrite. Then read the score. If you want the longer explainer, see the full guide.
Hidden characters and file metadata can be stripped and counted. The statistical word-choice watermark only weakens if the text is rewritten heavily — public removers aim to change about 70% of 5-token sequences. That still cannot be proven without Anthropic's detector.
No. Anthropic has not released a public detection API. Tools that show a 'clean' score are usually measuring ordinary AI detectors, not Claude's watermark.
Light edits are not enough. Anthropic says a complete rewrite where every word is replaced will remove the mark, while light editing probably will not. Open-source removers use a practical heuristic of about 70% of 5-token sequences changed. This tool reports that percentage instead of pretending 100% removal.
No. Claude's text watermark is a statistical pattern in word choice (SynthID-Text). Hidden Unicode and C2PA/EXIF metadata are a different, easier problem — and not the Claude text mark.
Usually not. C2PA, EXIF and XMP often disappear after a re-save, format conversion, or screenshot. Stripping that metadata is real work, but it is also trivial compared with the statistical watermark.
Anthropic is marking outputs to comply with EU AI Act Article 50 transparency rules (machine-readable marking of AI-generated content). A detected mark means Claude was involved at some point — including edits, translations, or summaries — not that Claude authored the whole piece.
BleepingComputer reported that StealthGPT added a Claude watermark remover while its own comparison table still says no tool guarantees a 100% bypass. Treat 100% removal claims as unverifiable until Anthropic's detector is public.
2026-08-16
Hidden Unicode and text-layer metadata stripping shipped with quantified counts. Statistical Claude/SynthID-Text marks are labeled UNVERIFIABLE. Optional rewrite reports 5-word sequence change against a ~70% public-remover heuristic.
2026-08-16
Added competitor comparison, EU AI Act / C2PA / Google-penalty context with citations, FAQ + HowTo schema, and a cached check of Anthropic's public watermark pages. Claims stay UNVERIFIABLE until a real detector is public and integrated.