Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“maybe the feature will be available as a paid upgrade in a few months.”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
0e1c0e7e804e859aadc0a6f1e9deacc08d3a56c27fd5b2c15bb49588ded51f3f
Signature (Ed25519, base64)
FXmU1pyAdxIGLfpYckEVoBV887xT73eCeGqtGv6PmCM2jOr2nePEMAzvaUNfktiFxMZpmH6sV5Hwsoxk1GW2BA==
Merkle root
30b81ce96f52ff8c37a1dce6a2cf1045c2f51663c1ddbd5ca071d040e32c05d6
Merkle path
["0e1b058e111850b5aefa436a15c91da06a793e30fad6293737e2abacc828a1b2","a2dc2b03b666069e4b45c5431c0a0d6ac89fa1a34f1b134961c9acdef1b5b410","005e4b733d5f77082133a80cd69789f5e033b72220f5e927edc3c2a5f3aeedb5","7f54665e90df7788d53cae0a17eb875941fc3e75031b80ef3963bb0cba1637cd","a58c74375dd7c27848ad2852747849d8758bff1c8aa56ccdfa7481f34705674a","6a3c29ab44f2bf33c47e0ffed4f6911adf22c40ae225aea75ef837adf7e90dfe","d30ddce9f91bf71872db0c50086f65750e72f567960e5da5739e8cedf19662b5","7db5da729601283e607abd0c5a0f6291bdae725ab69b41d1a3352ff5afb71a46","f6741d3ce6f953cb399249f428d61a9ad09fc0345beb5b27a895c9d4aca832dd","81d848351e04ec9693df452695c43ac7f8781ac1715a3b24c5da53337ecc7747","33e624e56a8e981203122a1e10d68f6dff92266673c731646b1617906773aeba","a2256427495313e98c459069132e7417853c94b24e75c257deff8b35fc6b26f1","bd7ac11e6e3167391f14df63bc65a4bf46202d1841b8198af1861fe0409c39d8","d2f0bde8db363c9acc10fb20e031bdddc43b684fa5984306f2efdec113caa9a4","dd9b0a9d584b044c4116e1c10c4b8cf4a06383a771a07c9f3d39f998f23cf36d"]
Anchored
2026-08-19
Public log entry
search.sigstore.dev, log index 2515243153 · entry 108e9186e8c5677a8eb5…
Expected log hash
314ca716b1ad71ca29fff6da960e81a719fe30fa5fc14d8646acca79a7c09353 The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1787138594002","kind":"published-quote","locale":"en","page":"theme:sevdesk/fit/en","quote":"maybe the feature will be available as a paid upgrade in a few months.","rating":1,"review_date":"2025-06-05","source":"Apple App Store","source_url":"https://apps.apple.com/de/app/id731738076?see-all=reviews","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (30b81ce96f52…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.