Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“If your ID card has a faulty NFC chip, you can't even verify yourself.”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
0b9799db3cb20e99be961f444a3e84fde4fa18fa16f91f9d0cd93052d19b7045
Signature (Ed25519, base64)
/lkHlT/q8fpaLrdxwIlozL0nhomVNy8UFUwBocLmnxZa84mrATX1VAyQxm5LvtFf0JfdHH9CaO7vJvCJWf62Cw==
Merkle root
1394768b0826b6b937ff0b31004a422bee2419644b39fe97fb77e14074b67bd4
Merkle path
["0b9407256cd41041561d6cd578c02000b97215dca5b7613aa19f78563040f05c","7022350a0ecaddb94481cfce6e1bba92ec1405937548e4f70085416253d2e2fc","33719a7a65c32316ad3100ddf845bfc9bd872d1f10d141391fe3f3b6e6e0e05d","2934a8921010640ca0b662f91e21a92b0d81f6a991c2b55b37eec5b6593406a4","893d5e6cedc0cf88a090ea318e09af658989eb08f2ebadc9736afc79bfbf92c2","6c4212cc56e9ff7c7f1985855e6d430b05a711a8a539a08a438c0e69061d9d25","73cf013e068e8e3de5ca8a2b5c68c0d200a19bf23395aa59e1bfcff2c07aad2b","269d7df3556df596ef1e165d38ccb06e94857fd945f1f56c2b69ee1a7a3c3ec3","eaff486d7735fdc068bfa8c54ce44f1fe373c0390082731e599b1cb1dec0a77a","4171b4c4bb3d0beefaaec22f48e113007ccb86a267c56231bf00651f68eed89d","2dff10b560e728bc186bbfe1279a67e21eb2b712083b7223276cef8ad74998ad","52b2c4a8d2bccf71f3075d767fa8d390e76ae1c508be885212a29f3bea41c41d","7abe31e12d6c8fffef71c3a666a728674401fe7c669faaf1386bd07be69da5d1","3e5915c1d5ccf543ae966ab1f581b7d947356c48fd6eb1769bcd77639aaa067a","ff7db8bf767e6864d9791ed835780c06b3f04b9b86a4e7b38bb489221b57ef0e"]
Anchored
2026-09-01
Public log entry
search.sigstore.dev, log index 2671093901 · entry 108e9186e8c5677ad1d6…
Expected log hash
c8e5f7895de34ce4719896fef161b45264e25a8df573e258498630d492ecbe4f The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1788232827800","kind":"published-quote","locale":"en","page":"brand:relai","quote":"If your ID card has a faulty NFC chip, you can't even verify yourself.","rating":1,"review_date":"2025-05-13","source":"Google Play","source_url":"https://play.google.com/store/apps/details?id=com.relai","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (1394768b0826…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.