Skip to main content

Guide

What is metadata?

A file can look ready to share while its location, author or revision history remains inside it. Check what it carries before disclosure.

Why it matters

Representative scenario: a photo is attached to a rights-request response. The viewer shows the picture, but the file also carries GPS coordinates. Inspecting the file gives the authorised reviewer a fact to act on before deciding what to disclose.

What is metadata?

Metadata describes a file beyond the content shown on the page or screen: how it was made, when it changed, and which device or person was involved. The exact fields depend on the file and its history. A normal viewer does not show every field or embedded item.

Fields to inspect

Check a photo or document for fields such as:

GPS coordinates — Exact location where photo was taken
Timestamp — Precise date and time
Device info — Phone model, camera settings, software version
Camera settings — ISO, aperture, focal length, flash settings
Editing software — Apps used to edit the photo

Supported Professional file families

Images

JPEG/JPG — EXIF, GPS and camera details
PNG — Text and time chunks
HEIC/HEIF — Device and location fields
TIFF, WebP, GIF and SVG — Format-specific fields

Documents

PDF — Metadata, embedded images and form fields
DOCX — Authors, comments and tracked changes
XLSX — Metadata and hidden sheets
PPTX — Metadata and speaker notes

Archives

ZIP — Entry names, timestamps and archive metadata

These families use format-specific checks; an accepted extension does not mean every possible field in every file is removable. Check the exact extension and limits before processing.

Questions before disclosure

Location — Does this file include GPS coordinates that the recipient does not need?
Time — Are creation or modification dates relevant to the disclosure?
Device — Does the file identify a camera or software environment?
People — Do author names, comments or revision history expose another person?

How to read a finding

1. Check location in context

If the inspection finds GPS coordinates, check whether the recipient needs that location.

Identify the location field
Check whether it is needed
Record the removal in the report
Review the output before sending

2. Check people and revisions

An author field, comment or tracked change can identify a person or change the document text. Review the content-removal report as well as the visible page.

Author and editor names
Tracked insertions and deletions
Comments and speaker notes
Visible content after processing

3. Check the verification state

A clean label is useful only when the format-specific result was verified. If a field remains or the output cannot be validated, treat the file as needing review.

Check the supported format boundary
Read remaining findings
Open the processed output
Keep the final disclosure decision with the reviewer

What a file review needs

Format boundary: Confirm that the exact file type and finding are supported
File locality: Know where raw bytes are processed and whether any are uploaded
Content changes: Read which comments, notes or form values were removed
Output verification: Check the processed file and any reported residual finding

Removal you can verify

For supported files, ScrubMetadata reports what it detected, what it changed, and whether the processed output passed its verification checks:

17 accepted file extensions, with format-specific boundaries
Raw file bytes stay in the browser for supported processing
The processed output is checked after removal
Findings and content removals are listed before download

A practical release check

Inspect the file, review its report, and open the processed output before deciding to share it:

Check support for the exact format and file finding
Read any warning or content-removal notice
Confirm the processed file opens and contains the intended content
Keep the disclosure decision with the authorised reviewer

Review the Professional file workflow

Approved Professional teams can inspect supported files locally and review the processing report before release.

Review the workflow

Common questions

Can I see metadata in my files?

A file viewer usually shows only selected properties. Inspect the file itself for a fuller account, including embedded media and document history.

Should I remove every field?

Decide what the recipient needs and what your record-keeping duties require. Removing a comment or tracked change affects content, so read the report and review the output before sending it.

What if a file cannot be verified?

Do not treat it as clean. Check the format-specific warning, retain the original and review the output before deciding what to do next.

Does a clean file result decide whether disclosure is lawful?

No. A verified file result addresses supported file findings. Identity, scope, exemptions and the final disclosure decision remain with the responsible people.

What is metadata? | ScrubMetadata