December 18, 2025
Text watermarking embeds statistical signals into text that can later be detected, enabling traceability of AI-generated content. We explore post-hoc text watermarking through LLM rephrasing, where watermarks are embedded during the rewriting process of existing text to, for instance, protect copyrighted documents or detect their use during training or RAG. Unlike generation-time watermarking which is constrained by how LLMs are served in practice, the post-hoc setting offers control over many generation and detection parameters. We test if we can exploit this freedom by allocating more compute to get a better quality-detectability trade-off, ranging from using bigger models for rephrasing, using beam search or even generating multiple candidates, to utilizing an auxiliary model for entropy filtering at detection time. Our results show that these strategies achieve strong detectability and high semantic fidelity on open-ended text like Wikipedia articles and books, while verifiable text like code remains more challenging due to stricter correctness constraints.
Written by
Pierre Fernandez
Tom Sander
Hady Elsahar
Hongyan Chang
Tomáš Souček
Sylvestre Rebuffi
Valeriu Lacatusu
Tuan Tran
Alexandre Mourachko
Publisher
arxiv
Research Topics
July 29, 2026
Pierre Chambon, Kunhao Zheng, Juliette Decugis, Benoît Sagot, Gabriel Synnaeve
July 29, 2026
July 17, 2026
Zilin Xiao, Qi Ma, Jason Chen, Xintao Chen, Avinash Atreya, Hanjie Chen, Vicente Ordonez
July 17, 2026
June 05, 2026
Zeyu Yang, Qi Ma, Jason Chen, Anshumali Shrivastava
June 05, 2026
May 20, 2026
Dongyan Lin, Phillip Rust, Angel Villar Corrales, Alvin W. M. Tan, Mahi Luthra, Charles-Eric Saint-James, Rashel Moritz, Sheila Krogh-Jespersen, Vanessa Stark, Surya Parimi, Jiayi Shen, Youssef Benchekroun, Yosuke Higuchi, Martin Gleize, Tom Fizycki, Nicolas Hamilakis, Manel Khentout, Sho Tsuji, Balázs Kégl, Juan Pino, Michael C. Frank, Emmanuel Dupoux
May 20, 2026
