Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“Gut gestaltete App, übersichtlich und sehr gut zu handhaben.”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
0fe8de58bbcb704e9891639accba79bed7fca323473ad92d08984306aaa6e8c9
Signature (Ed25519, base64)
oSEM108LGRvlYGFzfTMySWGYers1ccHgcVBD0oXmzacmJHKrQJu5/Xh6YaozKRVzJ08hxwxHP0Y+FqA4AA5PCA==
Merkle root
d4c4aaf139801abe64089c6a646a11881b578559d9cb7d88d2fc9332bf4b830b
Merkle path
["0fead655a72a1ebfb98ff0be412f5baea301fea97421097f7fb5ed7a8ab865d6","e664f5fe5f95ff912db93351c19b1c8e6817741a424cd98ada72c44bd91583d6","5dfe9b1900cf41b39a82ad70abbe91a4c1cc4d34677a46d6c0a082fdc24b6655","19ee4e47db418daaeaf6295540fc3058d9e80ed4da6d04af820ec1ce16194ed3","e86df5ec0a0fda68acf4d289d4efbd84274c1a6dccf301e2e81235b98fca0e57","221c5d77ad6e1ae14140039507d1f8a1918c3e18d459cf33b95ce829e8fc4774","6e1cb3dbb77e8dd69be913d83c0068feb280059150f1617e9255727eddc04ff4","c4a45d4e05c6c533e1eac64414d46a53169a8fade2c5f251722c3c31f80981c8","8fb90a08b46c893ad7e68aff366b4aa65002dcb7a0b5df95b5558ac096191d7e","7eeb6faf205cf316cdda1a3d396c6ab3c33ba64a27c14c03a33eb8050da2eaa4","612d08b8d05702daec4d8791a8c0f8711da13b9e0aab194f6280cb89a8db2aef","34219eeded0fbdad71a4c54612fcdf090ca93e67f7f8e7798421a503a9d4cdfb","6100b8f7cb9a0ad1a2de57d39552d426d438448f64577a5ca4cb2472f553358d","ef527f45d797e2d831211fa20aa17755e8de8cd626bcb27abeeea7640d159dbe","9b3fe954f7b51d7ce6fa763f00e1815ec4c70f892ca128b9deb83a2e107b9fb2"]
Anchored
2026-09-02
Public log entry
search.sigstore.dev, log index 2683384390 · entry 108e9186e8c5677ab9ad…
Expected log hash
911a6ed7ed419f928c9567229b2f9168f943e91a3951514581f7a3ba93db232b The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1788324112523","kind":"published-quote","locale":"de","page":"subtheme:meteomatics/ordering/benutzeroberflaeche-design/de","quote":"Gut gestaltete App, übersichtlich und sehr gut zu handhaben.","rating":5,"review_date":"2026-02-20","source":"Google Play","source_url":"https://play.google.com/store/apps/details?id=com.meteomatics.app","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (d4c4aaf13980…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.