Urgent.News

What's breaking now, across thousands of outlets.

Tech

Implementing Public Watermark Delivery — Keep Original Promo Frames Private

Keep one immutable master private, generate a versioned watermarked derivative once, and let only that derivative cross the public cache boundary. For an edtech creator portfolio that turns prompts into short promo videos, the poster image shown in galleries is disposable and cacheable while the clean frame used to regenerate or re-edit the video is neither. The decision rule is blunt: if…

Public watermarks should be delivered by keeping original promotional frames private. Generate a watermarked derivative once and limit it to public cache. For an edtech platform that converts prompts into short promo videos, the poster image displayed in galleries is disposable but cacheable. The clean frame used to regenerate or re-edit the video is not.

If altering an object requires new creative work, it is a master; if it can be recreated from a master and recipe, it is a derivative. Separate storage namespaces and access policies should be used for masters and derivatives. Derive a public key from master ID, watermark recipe version, and output format. Write with create-only semantics and return immutable cache headers after the derivative exists.

Never make the master reachable through the public handler. Implement a private and public store interface. The private store allows reading masters with no public URL method, while the public store enables creating derivatives but not fetching masters. Use a deterministic publication step: decode the private image, draw the supplied watermark, encode JPEG bytes, and create a deterministic public object with a key based on the asset ID and recipe.

Written by urgent.news from Dev.to's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.

Read the original at dev.to →

More in Tech

More from Saturday 3 October →