Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“I contacted Proton customer service and explained the situation.”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
0fa0c43f9d9f26fae145b9bcb9b8d626bc8ec8956f81086863b0df9a474e6504
Signature (Ed25519, base64)
arovKEA8wB3Wgp932rHHxaVntsyuLdXfvZVmWTEHEtLyzRCMQfHedc+XCrYeynd0H5zRsei+njcp8gj1nOc7BA==
Merkle root
249a627257bd2a9dbd9bc74ec65dce63e29c9ccd8f402432a46bbf1cfa12c86d
Merkle path
["0f9f8c8de2f53b0fbe52c9c15f0e375cfbb33bc323c879a78bba7cae9e863c8d","28a21e6895663d01910121a3593981d430cebfd6c0c298bbefcee8d5d925c2e5","c3bec8105757c6573b88acff28748d31f39f10445ebe1a420fccbea173d6f753","457bc22617339f1bcc2b9c40971732b0c03293d7d08b2112b853df022ded7335","f9f67cb587998ae0781df73c61861c8900492daf09f6c0ef4dd10f5cf12db36b","329bcf98d5d48adc7064a8d641c2dd3287df67ea8e1890b65955f34977f10d9e","30ebdec27ef8465b58039f8faecf809d1ca876c1c139d8793ac9c94390a5ea96","34ef384190118ebd672068641d6c05b525e23fe7f2b9780f60b85c74dba09a55","241617d66ffd9e0a12805cda452dd37632ba96de337e6616be27f4d76429eefa","08edefd4693fa0aa7333d87469629603fb226935c66348339583991e4074ff89","69e410b5b5c48b40f8e52c4f9c155f124fae82584906da27750633db67b1b9dd","93da08a32a88984f43cb8cf77dc9f15f59275e83068c84de6557b04be928f845","eb7727f04a590b9f55c190f90839cbf73f485e828dfdac586db4b55a34076c29","c94857f058a09552518db3b6411014dc84d9bd9a71b10e488f83e40faa66dd70","98481510f61448eaf55101f28c348e05af213e498327b1646c7ec76c471de7a8"]
Anchored
2026-08-26
Public log entry
search.sigstore.dev, log index 2595205423 · entry 108e9186e8c5677a9f26…
Expected log hash
fbc678ced8e0822086692e4ab6d232b628f26b1a50cd2c52eadc2f6910e32e8a The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1787717877847","kind":"published-quote","locale":"en","page":"theme:proton/billing/en","quote":"I contacted Proton customer service and explained the situation.","rating":1,"review_date":"2026-08-07","source":"Trustpilot","source_url":"https://www.trustpilot.com/reviews/6a7636cd366de4153942bd88","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (249a627257bd…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.