PrivateMark weaves an invisible watermark — unique to each recipient — into every photo you share. If a copy ever shows up where it shouldn't, feed it back to the app and it names the person whose copy leaked. All of it happens on your iPhone, iPad or Mac.
Free to try — protect 3 shares on us. Investigating a leak is always free.
How it works
Choose any photo and tell PrivateMark who it's for — "Maria", "Ex", "Landlord". A watermark unique to that copy is woven invisibly into the pixels, entirely on your device.
WhatsApp, iMessage, Mail, AirDrop — share the protected copy like any photo. It looks identical. Only your private registry knows which copy went to whom.
If the photo surfaces where it shouldn't, import the copy you found. PrivateMark reads the invisible mark and tells you — with statistical confidence — whose copy leaked.
Built to survive the real world
The watermark isn't metadata — it lives in the pixels themselves. Measured in our lab across real messaging pipelines:
Lab-measured attribution rates on our test corpus; real-world results depend on how badly a copy is degraded. When the mark can't be read, PrivateMark still recognises it's your photo via perceptual fingerprint.
Zero-trust by design
Pricing
Every plan includes the full engine — same watermark, same attribution. Investigating leaks is free forever, even if you never pay.
Billed through the App Store. Prices in USD; local pricing may vary. Subscriptions renew unless cancelled at least 24 h before the period ends.
FAQ
No. The mark is spread across the pixels at an imperceptible level (~41 dB PSNR — well past the threshold of visibility). The shared file has a generic filename and clean metadata, so nothing reveals a photo is protected.
Never. There is no server — embedding and reading watermarks are done by a neural engine that runs on your device. The only outbound traffic in the entire app is anonymous, content-free analytics (which feature was used, never what it was used on).
Screenshots are one of the channels we engineered for: 97% of screenshots still attribute correctly in our lab tests. Recompression by WhatsApp or iMessage and cropping survive at ~99%.
PrivateMark is honest about confidence. If a copy is too degraded, it falls back to a perceptual fingerprint — telling you "this is your photo" even when it can't name the recipient, and it will never guess: attributions come with statistical confidence, or not at all.
Watermarking your own photos before you share them is generally lawful — you're marking your own property. What you do with an attribution is up to you; PrivateMark just gives you the fact of whose copy it was.
iPhone and iPad (iOS 17+), plus a native Mac app. One purchase covers all of them, and your registry syncs privately through your own iCloud.