Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“Great and reliable app.”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
0d1797d0088103067a15a0fdaab5ec4607244bfe54a1baf142def5e7b63543af
Signature (Ed25519, base64)
Ir/fMEQ9ouKczbSlhxgMD/jxGRsk0Dg63VUNOpc6o0ICbbjm/2rerN64ZPVNdBM5+xGYtn2Jkx7Qb7BA3hs/Bw==
Merkle root
01ca9a914d9cb7fdb6291f3c0bffafc2c86f57c6ac9bbbe06ca1ea757b85fdea
Merkle path
["0d16a804e925b5a2ff4fa2b726e796e2c9599fb35f1541369e1501ef172e2d95","05a6da59941606cab0adb89602ec2523d0ebaa92b1c6d64132283197f42e7a00","738805ff616c0c3cc5696a335ce1e77a19e813397f47d0066a333344aa226cec","315d3529fceadb1e94007a22c6ba60705340f3729cd1df23f2c90959fc5a3a44","4780b81922da5ebb072b523fd3278c9427f42e33bc870f06424d6ac532052bed","aeaa67abfc1dbd08d2fb4888f06438682284e84da8588927c9aceb17ac4237dc","d0036fa4ced0fc24da18c17a9e71935522ddc61543765272ea7b3fbfde8fe359","e512857f8e1e2820a919e40cc1f29c0fff128f60a01281cae56fc5b6f9a518c5","42b7542fddc3df7e6d600de96bcbac4e9b920b31a80f80ddd240cd8aa0d01ab4","4cefb17b7a70e1cbb681f04ec4ac86afac8602825343b51ad998ba3c8fd55983","14138cf1dd8d8c2508a5f0d8fd35ff6330b8bdd1199e28dd072b2363cb82b87e","122878c07314ad3cc2a2cf0ce355b0a54bc51d36abcbde0759035a88c6991648","c94b2deffec3728e453fee18e0972292972c1acf359c73e609f82c71f84f6262","581f6e77367a390c6be41617812d1bc389d35491529f5e765ef954249e5ece06","e1421d191a62564ab151ed4f3d8990bb670a4cf79ef1b438c8dbf253dc424e03"]
Anchored
2026-08-30
Public log entry
search.sigstore.dev, log index 2647682298 · entry 108e9186e8c5677af736…
Expected log hash
1dfa1bea15f2cfa02080ed204683ae7d0bc0936afc7a7dabbbde7cc96ee2bc57 The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1788066809618","kind":"published-quote","locale":"en","page":"subtheme:meteomatics/quality/forecast-accuracy/en","quote":"Great and reliable app.","rating":5,"review_date":"2026-07-17","source":"Google Play","source_url":"https://play.google.com/store/apps/details?id=com.meteomatics.app","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (01ca9a914d9c…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.