Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“nice interface, but the forecast for my region is terrible bad.”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
0ebe616a8b61a5da2862c806283aa8af6b819b78c1333afa24e10ed675191852
Signature (Ed25519, base64)
Bd3CiCRe9AS9usMHMg/MGyp1/B12bkEAFUTKe4iCI5iwSxZ5wJx5qkEC3bYHfefz79eL3QzNhSt4Dn7/njvKAg==
Merkle root
96fbff9333062c6f240ebc674c358d11c91e32417964c7b74e7a085ad09b3148
Merkle path
["0eb8540ea3362987610267f5ea6c1144259934bfc7c7b13718dbbc3972b12ee0","84f1d72cf7e66533e805aa8c651e54f6ff43b93991be73d7be9e87c6d3cfa5dc","46c4d42541b23b144547634a01ebd66f60d8d38d2faa3b38c4918f4052303fa4","bb9bb82ce5fd35a705c2f4e95115c539902c6e2bed92d85fe52cb9845721593a","a96e64ba8d325fe736fcdee91f6eb5f9cc5de712899227ee6b452c95d7c00cf1","2ec539a8e3496eca167f719d4c069f6c0ebfabc704550e695ad447a6093c9420","b4a50539263e2c084820d0f3ec3bb77b3af44f5861e2e48f028d790b0353b324","68eca5c9fdb8f422dd92764a8013155b1ce6bfa644ccbac86a8266efbbaa72f4","02efcc17211ba693d49b21b38fb56ae0627cc9b4402764c13acf8436ebc38525","fed43698a22f926c25af35321acc9fff5db3cd87c9d6ff160237b719cc901ebb","7d02d43fb1928e3ccc029c215d21e63b8e4bff729f800aa5a9ed26d015bc3631","94f788ee88a3a5d0527e939fc2fb4326b3a860536a5801cfffd8d3c9817768c3","79a4550b200fde9b3a943415990b5226f73c8c365540528c8ac5ff0f8d838204","392c4ff19a61c37ccb09c095c4cdb0c4164ec867c437a8e3033cfe3fe2edd46f","60ceee9d6856471604c29353be774f78386c382c47f03b784bbb0ee7fd843f1c"]
Anchored
2026-09-02
Public log entry
search.sigstore.dev, log index 2685152720 · entry 108e9186e8c5677adce2…
Expected log hash
b48044e152c7f9f6bdada08baa42518b66cab68608ac945b90bbbe4a8f1ed0a5 The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1788347082424","kind":"published-quote","locale":"en","page":"brand:meteomatics","quote":"nice interface, but the forecast for my region is terrible bad.","rating":2,"review_date":"2025-06-26","source":"Google Play","source_url":"https://play.google.com/store/apps/details?id=com.meteomatics.app","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (96fbff933306…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.