What EXIF actually discloses

Embedded metadata routinely carries capture time, camera make and model, lens and exposure settings, orientation, and — most consequentially — GPS coordinates.

Location is the field people think about. Timestamp and device identity are frequently more revealing in combination, because together they place a specific device at a specific place and moment.

Inspect the file you are actually sending

The library's information panel describes the item as the library understands it. What matters is the exported file, which may carry more or less depending on how the export was performed.

Inspect the actual outgoing file with a local tool, and prefer one that works offline — uploading a sensitive photo to a web metadata viewer defeats the purpose of the exercise.

Not all metadata should be removed

Orientation and colour profile affect how the image displays; stripping them can leave a photo rotated or colour-shifted. Provenance information may have value you would not want to discard by default.

Removal should be deliberate and targeted rather than a blanket operation applied to everything.

A workable process

  • Review the information panel, then inspect the exported file itself.
  • Remove location through the platform's own share controls where that is all you need.
  • Create a cleaned copy when broader metadata removal is required.
  • Preserve orientation and colour profile unless you have a reason not to.
  • Re-inspect the cleaned output before sharing it.

Two misconceptions

  • Claiming screenshots contain no metadata at all — they carry less, not none.
  • Stripping provenance data without understanding what it was for.

A fictional example

Noah starts with a non-sensitive test: “Inspect the exact exported file, not only the library record.” Next, Noah follows the second check: “Preserve orientation and color profile where necessary.” This fictional scenario demonstrates the decision process; it is not a report of product testing.

Common mistakes

  • Claiming screenshots contain no metadata at all
  • Stripping provenance without understanding the consequence

What this workflow does not change

  • Claiming screenshots contain no metadata at all
  • Stripping provenance without understanding the consequence

Questions people ask

Does NullVault have a metadata tool?

The website includes a local photo metadata inspector when tools are published.

Sources and further reading