Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“Created another account on windows. Tried logging in on iPhone, tells me password is wrong”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
0b0ad8b782c5a3ab9a7a199ece454702bfc1d4a5c66b9965e0c497c170c22dd6
Signature (Ed25519, base64)
dBc+1eie35AgupTKrZytyNVsBJQX+JkHIo4gm6PpJh6iMrlZRccQwChu66Y5j5t8Q2cMGnua1np00kBHfw2xDA==
Merkle root
f38f8904a05de694c6e6e57f469170363c186b63988b16538157b391550377da
Merkle path
["0b0b0671bba60fcdfb1135e71ed85b194e907be58f896cc6917291e848f73a27","d69c672fb49e7748432468c75a4cb38dbc57d5b9f6c068ff44cb0c17f05f0055","6f1535ae0f3409600538d687f1cb52050bf34be190037861f3496fb9cd7e82f5","5936a7778ed68bb9ca34e6df9a86870d2dd952452adecf6e9d11487514bc1a2d","20cbc6366b15c1eb7dfd86c72004a91663b904ddce38e828ea5e5f4a33895276","38057ee31e9a969706c8c03ea6b1f7edad8d1c84aab8b4cd4ab719a425458d32","15cba9105e502fb1171901bf3cf67bd3288a24d5fb5f8e4c5bfd569cb7db4d6e","7555d19e0a9ae5bd7c99748713b016b4cc0c2340583a9a727016ad8bbedd19e7","5d0b7415652558c201002c809e23bccd432a5b8481cc602b63bd9cd81591e54a","2f425d2efb9a139ad71cc84311b1e29ba28793fd80c659d43fb04a1d8903eb62","e27e1e3535b015fc5077ae55cdfaf52d9c459320cf12b186e1779ad387add63b","b7e823da7d6ee89998200b8ed35eae781a25b00437aa2fcb75142fe4ddcf22ea","2bf000c88cc8431b1bce6508e73d514bc43a6cd24b2ba59433542ef8888cc163","e4533dce2749228d7790c4470ecae8703c042944bcd79d1df522a76c8f3470c4","363506105d168854fe4696d63de08b4a6d73b966d2ba65fdb1b6dbae6e92d22f"]
Anchored
2026-08-27
Public log entry
search.sigstore.dev, log index 2612284956 · entry 108e9186e8c5677a3e36…
Expected log hash
d95595121700c1f4a1721dd1280bdc6970a7fa601baed76ffaca595721fac7d0 The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1787798682688","kind":"published-quote","locale":"en","page":"subtheme:proton/ordering/account-login/en","quote":"Created another account on windows. Tried logging in on iPhone, tells me password is wrong","rating":1,"review_date":"2026-07-25","source":"Apple App Store","source_url":"https://apps.apple.com/gb/app/id1437005085?see-all=reviews","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (f38f8904a05d…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.