All Products
Search
Document Center

AI DeepSign:CreateC2paBucketSignTask

Last Updated:Sep 07, 2026

Creates a batch C2PA trusted signing task for objects under a specified prefix in an OSS bucket. In addition to integrity verification, the signing certificate chain can be validated against the C2PA official trust list.

Operation description

Signing types

  • Basic signing: Signs content using platform-owned certificates. Supports content integrity verification.

  • Trusted signing: In addition to integrity verification, the signing certificate chain can be validated against the C2PA official trust list.

This operation provides batch trusted signing. Use GetC2paSignResult to query the task status and results. To perform basic signing on a single image, call SignUserImage.

Request description

  • SourcePrefix must be located under ai-deepsign/ or one of its subdirectories, and must not overlap with the reserved output prefix ai-deepsign-signed/.

  • The current version supports trusted signing for JPEG/JPG, PNG, and MP4 files. Objects in other formats are marked as failed but do not interrupt the overall task.

  • A single task can include a maximum of 20,000 non-directory objects by default. Each object must not exceed 800 MiB in size.

  • The service automatically scans all non-directory objects under the specified prefix recursively. You do not need to set a directory delimiter.

  • When a task is created, only permissions are verified and the number of objects is counted. To process objects, make sure the service has permissions to read source objects and write data to the destination.

  • Assign specific OSS permissions to the associated role to ensure the process runs smoothly.

Try it now

Try this API in OpenAPI Explorer, no manual signing needed. Successful calls auto-generate SDK code matching your parameters. Download it with built-in credential security for local usage.

Test

RAM authorization

No authorization for this operation. If you encounter issues with this operation, contact technical support.

Request parameters

Parameter

Type

Required

Description

Example

BucketRegionId

string

Yes

The region of the user's OSS bucket. This value must match the actual region of the bucket.

cn-hangzhou

BucketName

string

Yes

The name of the user's OSS bucket. Grant the service-linked role AliyunServiceRoleForAIDeepSign access to the bucket before use.

example-bucket

SourcePrefix

string

Yes

The source object prefix. The value must be ai-deepsign/ or one of its subdirectories. The service recursively processes objects with the .jpg, .jpeg, .png, or .mp4 extension.

ai-deepsign/images/

SourceType

string

No

The optional content source type. Not supported in the current version.

digitalCapture

SoftwareAgent

string

No

The optional name of the software that generated the content. Not supported in the current version.

Adobe Photoshop 25.0

Response elements

Element

Type

Description

Example

object

The result of the create task request.

RequestId

string

The request ID.

01A03DCE-4091-1A91-9810-692C3D783877

TaskId

string

The batch signing task ID for the bucket. Use this ID to query, pause, resume, or stop the task.

047b8305-9572-4eed-b7fb-8588b989b6e5

Success

boolean

Indicates whether the request succeeded.

true

Message

string

The response message.

success

HttpStatusCode

integer

The HTTP status code.

200

Code

string

The return code.

OK

Examples

Success response

JSON format

{
  "RequestId": "01A03DCE-4091-1A91-9810-692C3D783877",
  "TaskId": "047b8305-9572-4eed-b7fb-8588b989b6e5",
  "Success": true,
  "Message": "success",
  "HttpStatusCode": 200,
  "Code": "OK"
}

Error codes

See Error Codes for a complete list.

Release notes

See Release Notes for a complete list.