I figured out how to completely bypass Nano Banana Pro’s invisible watermark with diffusion-based post processing.
I’ve been doing AI safety research on the robustness of digital watermarking for AI images, focusing on Google DeepMind’s SynthID (as used in Nano Banana Pro). In my testing, I found that diffusion-based post-processing can disrupt SynthID in a way th…