# Metadata removal tools and metadata privacy: cleaning files before you share them URL: https://webvpn.org/anonymity/metadata-removal/ Updated: 2026-09-13 How metadata in photos, documents and PDFs identifies you, the removal tools built into Windows, macOS, Linux and phones, mat2 and ExifTool, and a workflow for sharing. A metadata removal tool strips the hidden information that files carry alongside their content: GPS coordinates and camera details in photos, author names and revision history in documents, creator and date fields in PDFs. Windows, macOS, iOS and Android include basic removal for photos, and dedicated tools such as mat2 and ExifTool clean many file types thoroughly. Metadata privacy matters because this hidden data has identified people who thought they were sharing anonymously. Most people never see metadata, which is why it leaks. This guide explains what metadata each common file type carries, why it matters for anonymity and everyday privacy, what the built-in tools on each platform remove and miss, the dedicated tools worth learning, and a workflow for cleaning files before they leave your hands. ## What metadata reveals Files carry data about themselves, written by the device or application that created them and rarely shown to the user. Photos store EXIF data: camera or phone make and model, sometimes a serial number, lens and exposure settings, date and time, software used to edit, and, when location services were on, GPS coordinates accurate to a few metres. A photo of a pet on a sofa can carry the address of the sofa. Office documents store author and last-modified-by names taken from the software's user profile, organisation name, creation and modification dates, total editing time, the template used, and, depending on settings, tracked changes, comments and earlier versions of the text. PDFs store author, title, subject, keywords, creator application and producer, and creation and modification dates. PDFs generated from documents may inherit the document's author field. Audio and video store device information, dates, encoder details and sometimes location. Screenshots and images saved from apps often carry little, but not nothing: the device model and the date are common. Each of these fields is a link. A name links to a person; a location to a place; a device serial links every file from the same device together. ## Why metadata privacy matters For anonymity, metadata is one of the classic failure modes. A document leaked anonymously that names its author in the properties field; a photo posted from an anonymous account that carries the coordinates of the poster's home; a series of images that share a camera serial number with images posted under the poster's real name. Each of these has happened publicly and repeatedly. For everyday privacy, the stakes are lower and the exposure is constant. Photos sent to buyers, documents sent to landlords, PDFs sent to strangers, images uploaded to forums: each carries data the recipient did not need and can use. Removing it is a small habit with disproportionate value, and it costs nothing. ## Built-in removal tools by platform Every platform can do basic cleaning, mostly for photos. - Windows. In a file's Properties, the Details tab offers "Remove Properties and Personal Information", which strips many tags from photos and some from documents. Office applications have a Document Inspector under the file information pane that removes personal information and hidden content. - macOS. Preview can remove location data from a photo through its image inspector, and the Photos app can export without location. Office and Pages have document inspection options. The system does not offer a one-click strip for all fields. - iOS. When sharing a photo, the share sheet's Options let you exclude location and all metadata. The Photos app can also remove location from an image's information view. - Android. Google Photos and most gallery apps offer removing location from a photo's details; full metadata removal varies by manufacturer. The share sheet in recent versions offers stripping location in some apps. - Linux. Desktop environments vary; the dedicated tools below are the standard answer, and mat2 integrates with file managers on several distributions. Built-in tools are quick and reduce the most damaging fields, especially location. They are inconsistent about which fields they remove and rarely touch embedded thumbnails or less common tags. For anything that matters, use a dedicated tool and verify. ## Dedicated metadata removal tools Two tools cover almost every need. mat2, the Metadata Anonymisation Toolkit, is free software that removes metadata from images, documents, PDFs, audio, video and archives, and is designed for the anonymity use case. It is included in Tails and available in most Linux distributions, with a command-line interface and file manager integration. It is the tool the Tails project recommends and the one to learn if you clean files regularly. ExifTool is a free, cross-platform command-line tool that reads and writes metadata in an enormous range of formats. It is thorough, scriptable, and available for Windows, macOS and Linux. A single command removes all writable metadata from an image, and it doubles as the best viewer for checking what remains. Several graphical front-ends wrap it for people who prefer not to use a terminal. For PDFs specifically, printing to a new PDF or using a PDF tool's "remove metadata" or "sanitise" function handles the common fields, and mat2 handles PDFs by rendering them to images and back, which is thorough and removes text selectability. For office documents, the application's own inspector plus mat2 is a good combination. Avoid online metadata removers for anything sensitive; you are uploading the file, complete with its metadata, to a stranger. ## A six-step workflow before sharing a file - View the metadata first with ExifTool or the file's properties, so you know what is there and can confirm removal afterwards. - For documents, run the application's inspector to remove personal information, comments and tracked changes, and save a copy. - Run mat2 or ExifTool on the copy to strip remaining fields. - Consider whether the content itself identifies you: text style, visible details in a photo, a window view, a reflection, a distinctive object. Metadata removal does not touch content. - View the metadata again to confirm it is gone, including thumbnails and any fields the tool reported it could not remove. - Share the cleaned copy, never the original, and if it matters, share it through the anonymous channel described in the guides on this site rather than through an account in your name. ## What the tools cannot do Metadata removal addresses what the file says about itself, not what it shows. A clean photo still shows the room; a clean document still contains your phrasing, which as the fingerprinting guide on this site explains is increasingly matched at scale. Some formats embed data in ways tools cannot fully strip, and some fields are integral to the format and are reset rather than removed. Printers and some cameras add near-invisible identifying marks to output that are not metadata and are not removed. Recompressing an image, cropping a screenshot, or retyping a document into a new file are the blunt remedies for those cases, and the OPSEC guide covers thinking about them. ## What the projects and digital-security trainers say The recommendations here follow the tool developers' documentation and the practice of people who help others share files safely. The mat2 project describes its purpose as removing metadata for people who need anonymity, is explicit about the formats it supports and the limits of what removal can achieve, and is shipped by the Tails project as the recommended cleaning tool. ExifTool's author documents it as a reader and writer for metadata across formats and warns that some tags cannot be removed without altering the file, which is why verification after cleaning matters. Digital-security trainers who prepare people to share documents anonymously treat metadata cleaning as a required step alongside anonymous transmission, and cite cases where metadata alone identified a source as the reason. ## Make it automatic Install ExifTool or mat2 today, look at the metadata in a few of your own photos and documents, and notice what is there. Then adopt the rule that nothing leaves your machine for a stranger without being cleaned and checked. The tools take seconds per file, and the habit removes a whole category of leaks that no browser or network setting can address. ## FAQ Q: What is metadata in a file? A: Data about the file that is stored inside it alongside the content: for a photo, the camera model, settings, date and often GPS coordinates; for a document, the author, organisation, creation and edit dates, and sometimes tracked changes and comments; for a PDF, the creator application, author and dates. Q: Why does metadata matter for privacy? A: Because it identifies people and places without anyone intending it. Location in a photo reveals a home; an author field reveals a name; a device serial links files to the same camera. Documents and photos shared anonymously have identified their sources through metadata alone. Q: What is the best metadata removal tool? A: For thorough removal across many file types, mat2 on Linux and Tails, and ExifTool on every platform for images and many other formats. For quick photo cleaning, the built-in options in Windows, macOS, iOS and Android remove location and basic tags. The right tool depends on the file type and how thorough you need to be. Q: Does sending a photo through a messaging app remove metadata? A: Many messaging apps and social platforms strip metadata from images on upload, but not all, and not always completely. Do not rely on the platform; clean the file yourself first if it matters. Q: Does converting a file remove metadata? A: Sometimes. Taking a screenshot of a photo creates a new file without the original's metadata, though the screenshot may carry its own. Printing a document to PDF usually drops the document's revision history but may keep the author field. Verify with a metadata viewer rather than assuming.