Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“Please change the description so it's clear how many postcards you get.”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
0c3f8da4301cdbfd72e3f70978251ab59ff18afd060b824660a4b82b1c12e417
Signature (Ed25519, base64)
GwBfQZkxMRbYaFehqoEl5HGGnvaE9S/CBWfGzEElM/f5X2AuPvdEQrIh8VaDVl9JdjLIg88SPprkSVGD5XD6Ag==
Merkle root
9d32c0cbfb02966e7a561566f948b48040888a6535c058e814428126106ff945
Merkle path
["0c401b530ad2ab1a273304ba2eb9dd99bb04be94a2431ebe2a763ed029326efd","117663585bb79db48ab9afe18fb374437ee0d6efe0b5785f6fafb7951ca61832","2b158db088454c7c179a6977dc14a5f985bf59f41eb7df48d4d640fcc977127f","76b440feea4e656751d1ccc80bd54d240c510bd38f06a1df785c097566ce07dc","15ba7904c6132fb361b7a7fbd9989edbe9010858d9f4e9339fd740a65896127b","2e04330c6bff6e5b389e20f13f3a90adad8d45e12e9dc3c818673530772cee36","d3f20bfc49bc435303711cf7f3b47120e6b3b176ef3c958d3ef3b47365d5c470","a2bf297a76d3a176ffb232d1c01f906cdc55f78353affdd5d324769701705343","51885b4cf4f66d05e926ab42924aca46b44f59778dd2915bca250e65689046bd","4f37e7e38af413e5d07cc0bb7c4c45f409d6ba03c2bdfe2b4d721602d9276ad3","8a4cfef7e35a5d667d2595c0ce1d30c86cc41bd1a413dcb831e8fc8a36bcb588","099f7d3196db535359fcd86eeb99184950451a46bf171aeb6e1628c4c60b8490","1b6827f0620411d457632601225bf0c0fa08a550569ab3a9309e36b42067eb0d","97b419a98acf461915694d49df1436895896a22d4e853073303f64e609656c20","a892fc29bb3c992428927e47e35596c876cca06d89acb4ca102f2a534ba3ab13"]
Anchored
2026-10-07
Public log entry
search.sigstore.dev, log index 3121837738 · entry 108e9186e8c5677a0c6c…
Expected log hash
a0090149b27e60cea52dd7dc5f0abf6dd7c00feef65be2874742fff2aa9e8bad The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1791340487550","kind":"published-quote","locale":"en","page":"product:cewe/karten/en","quote":"Please change the description so it's clear how many postcards you get.","rating":2,"review_date":"2026-05-16","source":"Trusted Shops","source_url":"https://www.trustedshops.de/bewertung/info_XE3D21EA81A56276ACEED1C9AFB85F941.html","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (9d32c0cbfb02…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.