Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“Verification is currently not possible with a phone that lacks NFC.”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
09c6ba07e33d4bc049174e4e4b47693bb94acfd2094dbedecb9db68273e233b8
Signature (Ed25519, base64)
367rFRMij/+4rwB579kACXArEO5TBwh7dYgNzPlMzMp/5HQElPE03+DZFZXseKoX61wQNpd8wxwf5PTQQff/Aw==
Merkle root
e6ac019704b226508e994cc0855a4d192d5ca56f36bf79e20dc9e3368a99cf1c
Merkle path
["09c8d596ac649ebe241785a34d796eb6c30f437ac19b9345c42caeb9ed29180c","9f2c8a42b31f610caf61ae7724f5e3a65aa4b321f69f55386459b9a8c0a4bcff","60fde20408020dfbf4622c5759696ce72e5453cf6fcbd0868d3f2753e997e6a8","a3b8fdbaea0cc96939f7f48e0642fc07fb7400ea74ccb4a22086fb0048ea1441","2dc764fe3a1dd6e088c5c33e1acef3b5cfc4c10caedb002d1ca344f580094962","90a9a2747ce88b2dcac0b910dbdabd36aea362b195db293e5eb589a21fb5f24c","1d553705b92aa6baeb895aad66a4b2925bb9b908de900a84ed4c38d952e65c7f","c689bb7a5c5c73ff64368fdd8f246690c8c649df282a35c2a6eceb00ffd6225b","7f86487e6558657b32be0b5d50be242ac00917da539d493fb2209bb39488af2e","6651c9cffae29657c2783a52ad745af90d49949609c2047204d49c67f0076cfc","e6cc2e980815e5085e45d94597d214cb8a671eee8f8d8bc713278ad1394457d0","76aa14c6b140f882f5a6ca82e1bd3d30ada81e6f9ebf68b6cb689ed74e97d2de","af32e6ce7a9c3f92995c628e9a34041f7ca98856143c57e4fbb6f9b1d2e86f88","300daef4aa548e8c10fcf4706d8cd6c134a74d44a2fedd09c528770268883f87","55037d90ebc6f8ee5750b678c0269386792b0a1b293edb3e029a7c8e378291ff"]
Anchored
2026-08-29
Public log entry
search.sigstore.dev, log index 2631716425 · entry 108e9186e8c5677a0f4e…
Expected log hash
45ebfa784ea01d364c463997b417af34e35327c4187ff9e9782aece8c325deea The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1787968874252","kind":"published-quote","locale":"en","page":"brand:relai","quote":"Verification is currently not possible with a phone that lacks NFC.","rating":1,"review_date":"2026-07-04","source":"Google Play","source_url":"https://play.google.com/store/apps/details?id=com.relai","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (e6ac019704b2…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.