If this sounds like your week
Every share is a leak until you prove the metadata is clean.
People look up “bulk remove GPS from screenshots for security awareness training” after a close call or a policy reminder. The risk is concrete: GPS coordinates, owner fields, and software strings are embedded in files that have already been sent before anyone checked. Training decks reuse realistic phone screenshots where embedded coordinates teach the wrong lesson accidentally.
Where tooling usually breaks
Cloud “scrubbers” add a new party to the chain of custody.
Uploading sensitive work to a random site just to remove sensitive data adds exposure rather than removing it. The fix should be on your own machine, deterministic, and verifiable.