And so with open weights models, and local fine tuning, watermarking only works when it’s like a book length, but the information manipulators don’t write books to do their manipulation. They rely on interactive, deep faking. The trust is gained by, in real time, they can synthesize a response that looks like an authentic source. But these are almost always very short, which is why watermarking is good.