Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“It won't connect, it says it's already linked to an account”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
0c948d1e06c9e2e57d90cab31b6d7d6fb6d4536875bf42ab7b10b084f921bc0a
Signature (Ed25519, base64)
85s3qXG9iw53y14ILFfNAHxaFPLgR/z4VuHjyULM3JBff2N5vQn6Ay6FPuimBGWdbQfLL5H9jAwHAFB0mljLCA==
Merkle root
d07487a7d8598747d5b143d9a16722ca7a83f5bd36bc79d5bf9130c2672dae41
Merkle path
["0c978a61a0a293803e7d96f0a07b4764896f5cef626ef513326a3374cce0da8e","2ba54dfdbd809db81b1bde78a5a247473efe2b0bc5e9f5018c7b414c891ffc77","11ce500f4b006143201e252536751535352d344310cd50460b218be21dcacd80","a72a71487dfde684a2258c6700904640a294c63f5fd6b685d2c6e2f454b7c67d","d0446729a86067fd3107f57832a642d4f8bae74f0e54afdc7b1907db6e602678","86b2e14f403a57567a2416c90744d521baa9de93a65bef82787efc0e70e8be2c","21e8947bda2eb6da0024e3a99c3952627639d5eecafd4bec1dc4b9ae52ab1ba3","f8c266173e2f70c7dd0a2d8d3db77c37d4cbda946fac4299b0aff4490b3a2e72","30d230e590ae294748ad6ba3a4f220d6549bd2928a8be97360e6c9b56b71037f","ad8bf15d9b7c6d81e14d912a86a64cd3bccfbf7b55c11ec8aefee72270d10057","6cdc6f101c275a381c25ee7c6393bcfd7ea6fb58256b219da2a01c59b46d7464","a0fdfe7690d005e054fb3a90a34d7cb5dfb00910c185dee375fbde390d3c55bd","884e6220e81a9d5982bd71d70ff9eeca2e340f53981f663fa0ca7490cce6445f","39aaf77ef5b3e4cffa994bd58b84219ff7133fe1d71c02bfd8ea2a47d2f7467b","fa743bec0c13730c5e9e6be51f1ac48c3e9e0953b18cdf4cd6390a132151d0a5"]
Anchored
2026-08-28
Public log entry
search.sigstore.dev, log index 2621505474 · entry 108e9186e8c5677a1258…
Expected log hash
7fc4ddca6f65b68d7bb8897b96188547f56c1ba672ff212c685cdf4bf7438da9 The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1787887633012","kind":"published-quote","locale":"en","page":"subtheme:proton/ordering/account-login/en","quote":"It won't connect, it says it's already linked to an account","rating":5,"review_date":"2026-08-13","source":"Google Play","source_url":"https://play.google.com/store/apps/details?id=ch.protonvpn.android","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (d07487a7d859…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.