That's true, you could even purposely inject fingerprinting into its writing style and it could still accomplish the goal of conveying information to people.
All I would have to do is run the same tool over the text, see it gets flagged, and then modify the text until it no longer gets flagged. That's assuming I can't just prompt inject my way out of the scenario.
That's true of virtually any detection tool, no?
"All I have to do is modify my virus until the anti-virus doesn't detect it."
But then that wouldn't be “detecting AI”, but merely recognizing an intentionally added fingerprint, which sounds far less attractive…