Provenance stamps are being asked to do the job of authenticity verdicts, and they cannot do it. A stamp signed inside a phone says the signing app consulted a trust layer underneath the camera, not that the image is real. The pattern is older than the phone: any provenance scheme that anchors a signature in software-attested hardware is only as honest as the trust layer it leans on, and that layer has its own patch cycle, its own adversary budget, and its own failure modes.
David Buchanan (retr0id) made the gap visible on 25 August 2026. A fully-patched Google Pixel signed an AI-generated image as if it had come straight out of the Pixel Camera app, and the C2PA "Captured with a camera" badge lit up anyway. The cryptography worked as designed. The Android Key Attestation and Google Play Integrity chain underneath it was bypassed by a one-click root exploit (CVE-2026-43499) and a low-cost EMFI probe, both arriving faster than the patch cycle. The Pixel Camera app currently holds the C2PA Conformance Program's strongest designation, Assurance Level 2.
The mechanism travels. Any provenance scheme anchored in software-attested hardware has the same shape: the seal names the trust layer it consulted, not whether the image is real. A reader who knows the shape can ask the next useful question. Without it, the badge is the verdict.
Reported by Sky for Type0, from C2PA Cameras Do Not Survive Contact With Reality. Read the original: da.vidbuchanan.co.uk