Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“The only downside is that one can’t pay in from outside of Switzerland.”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
0b40d1c6241639cd65187f3c669fd60810908d4cb4350adaeb333dbcf815d9a8
Signature (Ed25519, base64)
0tfkX7vjfNtvx57UA1l0sME7XeXyjiRGkkmafURqKBZE+cbRSQAMiKIj0vG4nSV7rny5cLQ+ItHh/WFmMjc6DQ==
Merkle root
5d4c740cfb04de8d4854517684b156439ff79300bdd067e79539539dd3846340
Merkle path
["0b4117bf0385471c746952ea79ba01fc165e1fe932e8afb68b1fb1ce17901512","7156df243c7cab1a3a26d4f6a02a6bda6052f192f4141600f0778bef7c9269cf","58c1d81cd3ad9e94cf3da060a54e348fa9cab3b90dc8f00b2745ece8475f2019","cd5e79304e2ca4bda1ffd0e4e8ea00d8cfc1cda540a71ab22ef167210e2f0214","3be23c9b17ccbbb13e326c12cfce5e90777d572ca3274b6425fc2a6d4d93031b","6f9886d9a50def408a55b2e263b3ec87636beb1c60998557610910e950fba507","ff830bd77baf50d0c58cd43ec61aaec30e339a2df0813324a8fef97d79b8c6ca","f4f1cc051a45cf539b280ce24dfa142504ae6e03a6fc22279cd8a189feb27b08","50538a4d1f896eefd12759d2dc2763f6489f266ff763ec7aa5ce1e3396e0006a","a9b0ca4045948ef48f2df244965abd47918725cdc8403f13f9fb7696cc61d92a","e8e90b1f24d3289a3271f708fb31f5dcfdd2ccb5fa7e0edb54f0a15255e9fa86","3d966bf9eb9c173480976357bfad8ab8a9f30e0030ad2552b80594af72683aa0","5e27b068076e1a64d2c4a3f8b0e7d48cc15ca396e4e09f17700344f4530128e0","a377e8a70654e5d15090d2c58b23722fc9eaf89fbf61d1f3010bc694e59ee4fb","2e63e22e3b767e949db06640d7c1058b569ed9fafcf20124800547f9cce53523"]
Anchored
2026-09-02
Public log entry
search.sigstore.dev, log index 2684971219 · entry 108e9186e8c5677ae85c…
Expected log hash
fd3192eb36809a910252a34a8f2882c4830a1a219dccb9afb1f12e6b5620cd6d The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1788343168574","kind":"published-quote","locale":"de","page":"theme:findependent/ordering/de","quote":"The only downside is that one can’t pay in from outside of Switzerland.","rating":5,"review_date":"2026-07-15","source":"Apple App Store","source_url":"https://apps.apple.com/ch/app/id1510962836?see-all=reviews","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (5d4c740cfb04…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.