Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“Unfortunately, it doesn't work on Brave.”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
080a70c60f4755f5522713aa92f4666af1012d3e39ac453afd80b6d07f5e2211
Signature (Ed25519, base64)
XEDCBCuUWxmaB2w7mS8zGxCxKEOnJnLDb4RYJUhVY7G7cmayAblvSmZPoZa+7jSAdlSBsdVcyXCv8Qox3a3GCQ==
Merkle root
749703591848535a8600340214debbd99b61273e3bed402bec28b292f90ce9b6
Merkle path
["080a991930fcb4901d64c6c04842954c5700397f90278f4f93a39a0f8b97f19a","d206082207fdf7b2729b32edea81768a145457651ecd6ec2954ff8705f87d141","e8f9012f80ca2a2ed09b35ddd331fcb5d07633d06af0d982b2cc770111c5e5e9","1e007feb60bffb51048b1281121476ad45e72ec3a7ef472ba6e9d6a566ee44e8","30720c568c3dc7467ff1179a43dc54ff9c880a046e8562d8471db2f8f78615c5","e68269a0bcf87a3a7ea9137c1852d3823b31fc9b2fd888b83b36b939f6d5bdf6","ace9a43b2a8288cf488037319c25fa8ae7df508a34a5c660a1bc9fdc79e39b95","516cc72b8029676d6d6cb7bf29e2bdad4def21719d00c796fbd7047382a41acb","506c51be35b49e5507fc089e75506e5eb61a543fbf3871974ff07cf59056c2a2","76a5a152622f7f8eaf4a3d2405555aded905dcd88ffa2baa5db0ff038bc023a4","0c8a54ec2f885cc371d0c300cb3b016acfb0dbc6c0d5fca12f43e42e90fc244d","a7574a1284f296e344531b28e98ffbc4091b43e8e280936e3f14d9482fb06f49","34c0dfbb126009f4c79d4469e45bcea801fec7d101a7b81a66d8a0095ff6d708","f43a1936699be5b728ab2cee5100b0cce7fa6828f7bb521f1ba149ba44cd48a1","bc5d1d560a30e83fe0f1b6a9452dc46dc135b1a7f73575ec3aa5d459bb76fc8b"]
Anchored
2026-08-19
Public log entry
search.sigstore.dev, log index 2514602687 · entry 108e9186e8c5677ac525…
Expected log hash
e53e7f935eb508100ef1046b60c784e0bda15dd54afae176c275a97cf1f64052 The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1787131269839","kind":"published-quote","locale":"en","page":"product:proton/proton-pass/en","quote":"Unfortunately, it doesn't work on Brave.","rating":1,"review_date":"2026-08-11","source":"Google Play","source_url":"https://play.google.com/store/apps/details?id=proton.android.pass","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (749703591848…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.