Why this matters for coworker deepfake on iMessage

How removal works

The four step deepfake removal process under the TAKE IT DOWN Act of 2026.

What to do, step by step

  1. 01
    Forensically preserve every instance before any other action Capture full page screenshots with the URL bar visible, save the highest resolution copy of the coworker created deepfakes available, and document any visible AI generator fingerprints including watermarks, edge blending artifacts, and skin texture inconsistencies. All deepfake content with URL preservation
  2. 02
    Run a biometric scan to find every copy across platforms coworker deepfake content distributed on iMessage rarely stays there. ScanErase indexes 2.4 billion face embeddings across 200 plus platforms and identifies every current hosting location in a single scan, including mirror copies and AI generated variants.
  3. 03
    Complete the AI tool source identification Document the AI tool fingerprints visible in the coworker created deepfakes. Compare against your authentic source photographs that may have been used as input. This documentation supports authentication under Federal Rules of Evidence 901 and strengthens every parallel removal track.
  4. 04
    Notify HR with documentation of legal action already underway Bring the documented removal notices to the HR conversation. Title VII obligations require the employer to investigate workplace sexual harassment including the creation and distribution of AI generated NCII by employees.
  5. 05
    Coordinate the iMessage platform removal pipeline Apple accepts iMessage NCII reports through its Communication Safety reporting flow. The iOS 17 sensitive content warning system can also be used to flag content for review.
  6. 06
    Notify Google and Bing for search deindexing Search engine deindexing runs in parallel to platform removal. Even after the original is removed, search engines retain cached thumbnails and snippets for weeks. File NCII removal requests with both Google and Bing alongside the platform notice.
  7. 07
    File the complete evidence record for the legal track Federal Rules of Evidence 901 for authentication of AI generated digital evidence provides the foundational legal basis for this action. Document every notice sent, every platform response, and every confirmation in a single evidence file. ScanErase produces this Verified Removal Package automatically as your case progresses.

The 48 hour statutory deadline

Statutory 48 hour removal timeline: 47 USC 223a requires platforms to remove non-consensual intimate imagery within 48 hours of a valid notice.

Legal context

Frequently asked questions

Can my employer fire me because of deepfake content created without my consent?

Title VII protections against adverse action arising from victim status apply when the employer is on notice of your victim status. Provide written notification to HR with documented legal action underway as soon as you learn the content has reached the workplace.

How long will iMessage actually take to remove the deepfake content?

iMessage typically responds in approximately 24 hours when a properly formatted statutory notice is filed. ScanErase files the notice within 5 minutes of authorization and tracks compliance through your Verified Removal Package.

What if the deepfake content is removed before I can complete the evidence preservation?

Even removed content typically remains recoverable through Internet Archive captures, search engine cached copies, and witness reproduction. The platform itself retains records that are recoverable through subpoena. Document everything you can about the URL, posting account, and timing even if the content itself is no longer accessible.

What if the perpetrator re uploads the deepfake to iMessage after removal?

iMessage retains hash signatures of removed NCII content which prevents identical re uploads to the same platform. A follow-up ScanErase scan checks for re uploads across all 200 plus indexed platforms, including AI generated variant versions, so you can file a new notice as soon as matches reappear.

Will the identify the source action reveal my identity to iMessage or the perpetrator?

Documented attribution of the deepfake content to a specific AI tool and source photograph set. This supports every parallel removal track and any civil action against the source operator. The disclosure scope is limited to what the action requires. Your scan and removal process is not disclosed to employers, family, or any third parties beyond the recipients required by the specific legal procedure.

I searched my coworker is making deepfakes of me and found this guide. What is the very first thing I should do right now?

Before any other action, forensically preserve the evidence with full page screenshots and the highest resolution file copies you can obtain. Do not confront the coworker directly or discuss the matter with other coworkers. The matter must proceed through HR with documentation and through your own counsel to preserve employment protections. Once evidence is preserved, the iMessage takedown notice and the identify the source action can proceed in parallel.