TwinEthosRequest access

Law

China Deep Synthesis Provisions

Cyberspace Administration of China (CAC) · China (CN) · 2 provisions encoded · verified against the official source as of 2026-09-27.

Informational data, not legal advice. Summaries are TwinEthos's own words and rules have not been reviewed by a lawyer: check the official text before relying on any of it. A guard addresses an item; adding it is not a statement that your code meets any law.

Official text: www.cac.gov.cn.

Binding law — in force

Deep-synthesis services that may confuse the public must carry a conspicuous label (China)

互联网信息服务深度合成管理规定 第十七条 (Art. 17) · official text · In force: applies since 10 Jan 2023 · China (CN)

Under China's Deep Synthesis Provisions Art. 17, deep-synthesis services that might confuse or mislead the public — simulated text dialogue or writing, voice synthesis or imitation, face generation, swapping or manipulation, immersive scenes, and other services that generate or significantly alter content — must carry a conspicuous label in a reasonable position on the generated or edited content. For any other deep-synthesis service, the provider must offer a conspicuous-labeling function and tell users they can apply it. Detect a public-facing deep-synthesis output path with no conspicuous label, or a deep-synthesis feature with no labeling option for users.

Who it applies to

  • Duty falls on: provider
  • Systems covered: limited risk
  • Deep synthesis service providers in China whose services may cause public confusion (dialogue/writing, voice, face, virtual persons, immersive scenes). Effective 2023-01-10. Complemented by the 2025 Labeling Measures + GB 45438-2025.

The guard to add

Mark every generated image, audio, video, or text output with machine-readable provenance, such as a signed C2PA manifest or watermark, before it is saved, served, or published.

In the generation service, a marking step sits between the generator call and every sink (image.save, s3.put_object, blob.upload, FileResponse, res.send, publish). Images, video, and audio get a signed C2PA manifest whose actions record digitalSourceType trainedAlgorithmicMedia, and where robustness matters an invisible watermark as well (imwatermark WatermarkEncoder, AudioSeal, SynthID) so the mark survives metadata stripping. Generated text carries provenance metadata in the API response or document, or a text watermark where the model provider offers one. Sinks accept only the marked artifact, and a test confirms the mark is present and detectable.

Where it goes: 9 AI output handling, 1 application source code, 12 repository artifacts.

What this provision adds:

  • Put a conspicuous label in a reasonable position on generated or edited content for simulated text dialogue or writing, voice synthesis or imitation, face generation, swapping or manipulation, and immersive scenes.
  • For any other deep-synthesis service, provide a conspicuous-labeling function and tell users they can apply it.

Example (diffusers + invisible-watermark + c2pa), before:

image = pipe(prompt).images[0]   # StableDiffusionPipeline
image.save(out_path)

After:

image = pipe(prompt).images[0]
content_id = uuid.uuid4()
bgr = cv2.cvtColor(np.array(image), cv2.COLOR_RGB2BGR)
enc = WatermarkEncoder()
enc.set_watermark('bytes', content_id.bytes[:4])   # 32-bit id, detectable later
cv2.imwrite(tmp_path, enc.encode(bgr, 'dwtDct'))
sign_c2pa(tmp_path, out_path, content_id=content_id)   # our helper around c2pa.Builder.sign

Control: Synthetic content not machine-readable-marked. The same guard addresses 4 items with binding law in 3 jurisdictions. Engineering guidance, not legal advice.

Standards that recommend the same control

Rule id cn-deep-synthesis.conspicuous-label · review status: primary source derived