About this tool
Extract bounded date fields from local image, MP4, and WAV metadata, preserve timezone uncertainty, and compare the resulting timeline without authenticity claims.
The Media Metadata Timeline Correlator reads the date fields embedded in local JPEG, PNG, WebP, MP4/MOV and WAV files — EXIF DateTimeOriginal, DateTimeDigitized and DateTime with their matching offset tags, PNG tIME, QuickTime/MP4 movie creation and modification times, and WAV INFO ICRD — and lines them up on one timeline alongside each file's browser lastModified property. Timestamps that carry no timezone are kept as unresolved wall-clock values rather than being silently assumed to be local or UTC, and you can apply a fallback offset yourself. It clusters events that fall within a chosen window and flags exact matches across files, without making any claim about whether a file is authentic or edited.
Open Media Metadata Timeline Correlator on AltFTool — it loads instantly in your browser.
Click Add media and pick up to 20 local JPG, PNG, WebP, MP4, MOV, M4V or WAV files — 64 MB per file, 128 MB per batch.
Drag the Proximity window slider (5 minutes by default) and, only with external evidence, type a fallback like +05:30 into 'Optional offset for timezone-free fields'.
Read the clustered timeline with its unresolved wall-clock flags, then click 'Download counts-only report' to save media-metadata-timeline-counts.json.
An EXIF time with no offset tag is reported as unresolved wall clock, so a guessed zone never silently shifts your timeline by hours.
It parses JPEG APP1/TIFF IFDs, PNG tIME, WebP, MP4/MOV atom headers and WAV INFO chunks, converting QuickTime's 1904 epoch to real dates.
It clusters nearby events, groups identical timestamps across files, and flags embedded times more than 60 seconds after the file's lastModified — as observations, not verdicts.
JPG, JPEG, PNG, WebP, MP4, MOV, M4V and WAV, up to 20 files per batch with a 64 MB limit per file and 128 MB for the batch overall. Correlation runs across up to 30 records and up to 80 embedded events per file.
They are marked unresolved with the reason `timezone-missing` and shown as a wall-clock string, so they are never placed on the absolute timeline by guesswork. If you supply a fallback UTC offset, those events are resolved using it and labelled as having used the fallback, while any timestamp that carried its own offset keeps that offset.
Events sorted by absolute time are grouped whenever consecutive events are no further apart than your chosen window, which defaults to 5 minutes and can be set anywhere from 1 minute to 1440 minutes (24 hours). Only groups with more than one event are reported as clusters.
No, and it deliberately makes no authenticity claim. Metadata dates can be edited, stripped, regenerated by any export step, or written by a device with a wrong clock, so a clean or inconsistent timeline is evidence about the metadata only. Treat the output as an investigative aid and involve a qualified forensic examiner when the answer actually matters.