Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“It no longer works properly”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
0c5e5a376b0d83071aeda2318f9003bf4879287aedfa2b589767c81be06ef3e0
Signature (Ed25519, base64)
zVVKf/yd0Whwg0G+ZNiWcWdft9rvuF5L4MNsniuQzJhejTrUi1Kckdm9RxRRtBOx5DWEXjr4GScgCZTt8IQZDQ==
Merkle root
172a3e0b3c9f8b02f52318e01ba6beb899404e00e91c15eebc4dea38467e1404
Merkle path
["0c55922ffbb561c207ccec132154cb75050d63fb1c027ee8961849cc716efdf2","93318cc35bd042e599f102f9d7b1361130c69957f3620bc34ed2c2456c412933","631127e83e14f374c68d4c08ad6d352818abe538816e61aeecaaaf41ea61ad42","06c40a221f8d6c0eca60569519c810e3fcc4577b87c42bc2ed684ce927975d99","2e41833d24ab30bcb172464a95ea4255abafceb5a38b5748f1895de12d2fe2e9","a6e4940bdbad3ee8f49f70acf06cc584a7d347c4b2469fab456c57c9b3ef00b1","d3e69ab22440076b6fa4338cf6fe8784817877d153b7d261a04923cdfa92975c","7381fff9c33142b218880066f95dbb8664aa2b67d9c08da210a2c5a7a4dde9ac","ff604653e5e8d58f0411545975a3e6b024d06112292f39121d25c3d11f0b0a10","df200e91e939d688cbc99ac4f3906138872a97b47540a15c5b59645c51dcc345","b9f941e6f506f26041e061465870845d16c7c20ff6defa76d5eb1ce53facfec2","589c22da96e3ff60efb0f79f96ffe7af6214e9470898a7edd786e91a2a5cbbad","6582b4bd72409a5334905e80c9e3aeb7c43a20c5eb4c139595bd990bb777102a","b2e250a62b44b0b9c303f91afd3aac8852fa6af504d7d68ed736141a3dd71161","7731d0ded4f51d151ea3e84474d1e27a6279e8756420c93cf5fec0abf7f11add"]
Anchored
2026-08-21
Public log entry
search.sigstore.dev, log index 2543025731 · entry 108e9186e8c5677a8971…
Expected log hash
19ecbe4a66d8adbd7c6057dbf6ed9be73485c248dba1e0c595279a908b3e8bea The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1787283443958","kind":"published-quote","locale":"en","page":"theme:meteomatics/ordering/en","quote":"It no longer works properly","rating":1,"review_date":"2025-08-17","source":"Google Play","source_url":"https://play.google.com/store/apps/details?id=com.meteomatics.app","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (172a3e0b3c9f…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.