Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“they didn't accept my ID card because it didn't have an NFC chip”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
0b1ff503b3f8d5f4f09a5f8f2eb11b09b3260dfbe68009cf6922e585398f0ff9
Signature (Ed25519, base64)
LzfbyBGNsB0jtjDdRMrryB9CC8o0lVU9EWkbKcSX/w1tqnSWWSYRYvkw/EdDmoikzaYnN7OdfAJfKfGUPcCqBA==
Merkle root
f38f8904a05de694c6e6e57f469170363c186b63988b16538157b391550377da
Merkle path
["0b2250edeb28657099d694b03a2b14ef1eacfbf5b828c55c279bc6aa9e6115e8","b400e58d5469334e89c571224095df87c02b9dafa6680e8ed0a01c9a62c4c195","5863bf9612b15fbaa981fe99c9aa943d1d5b0c993dd8c353bb5e8ab009feefe0","9223399f7b7a650610f2bb3115af181f4731987a14b718c76f0a04eb2353f7cd","c6786fe86c497a70b5132d715f31de4780476f708c31955a2a5e8cfa613e6476","73b169c1672978255d2c444972972d995af3d28b85096ef0c5d6d58f1a477024","15cba9105e502fb1171901bf3cf67bd3288a24d5fb5f8e4c5bfd569cb7db4d6e","7555d19e0a9ae5bd7c99748713b016b4cc0c2340583a9a727016ad8bbedd19e7","5d0b7415652558c201002c809e23bccd432a5b8481cc602b63bd9cd81591e54a","2f425d2efb9a139ad71cc84311b1e29ba28793fd80c659d43fb04a1d8903eb62","e27e1e3535b015fc5077ae55cdfaf52d9c459320cf12b186e1779ad387add63b","b7e823da7d6ee89998200b8ed35eae781a25b00437aa2fcb75142fe4ddcf22ea","2bf000c88cc8431b1bce6508e73d514bc43a6cd24b2ba59433542ef8888cc163","e4533dce2749228d7790c4470ecae8703c042944bcd79d1df522a76c8f3470c4","363506105d168854fe4696d63de08b4a6d73b966d2ba65fdb1b6dbae6e92d22f"]
Anchored
2026-08-27
Public log entry
search.sigstore.dev, log index 2612284956 · entry 108e9186e8c5677a3e36…
Expected log hash
d95595121700c1f4a1721dd1280bdc6970a7fa601baed76ffaca595721fac7d0 The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1787798682688","kind":"published-quote","locale":"en","page":"brand:relai","quote":"they didn't accept my ID card because it didn't have an NFC chip","rating":1,"review_date":"2025-10-18","source":"Google Play","source_url":"https://play.google.com/store/apps/details?id=com.relai","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (f38f8904a05d…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.