Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“When I designed my book it asked for login details and then didn’t recognize details.”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
101a25d5d88edfb2f1e84fe968037011eebcac8b880bacd436cefe735d403019
Signature (Ed25519, base64)
Kf1q+VTRVO/iBFbALhEABWl0ry9RTfJGXviAW8IFp28GOipmVNrRE5FCwM2P7/hA1dCNVcNfboCkuDoHnVbECg==
Merkle root
7af90f1f77475369ba79c6de04e2b96410d172ee274478b168f1a4f09d59cf0a
Merkle path
["101b77b47ce06994f8eac6c6fcbcca4b3a6ab2b2eea729e35d8d77807e7704ac","e6b9ef0257d2738bdfc27d36787e3e2714253554be6e92d68bfaedb0f5fabe97","e5d1ee2defed640d92ae976e6c1d1c07afd31a2ce126a201815d9f4886f2b170","301b837ee1a421390b92bf75f34eed1a3eb1a5d5c5a7828a0a5dbf4e384d54c7","3067190515907b695a82f1c413949d44f876ead02362e0acca89d68f20254480","fc7c5a46924197791f8b3a0b691ab550b8f60bf7d5e7e8f49fe747a63d0a93bf","749fa5ecbe9c58b91fe95f2b2d7add1307f1b4283c6ec172c760a1641aae917a","cb30333e542e802a4bb63010fb10e589f207e5fd30e0f899feb3eee524fa82a3","7b683082598df148ccb66a0738a306b33aafc8421b9a12a5be9f79baefcf0694","62388e3fb5ce637bba5350df755a92972d3ea88c694fdf0bf4001d8f200f5f29","fad5f91227f3db233cf08e54a03053b3165c899f37de0fd799ea129ffa9c8a17","cd317d1649e0bf58d681935e8e6f1141a5adb633ef6f6b322f1066f04e04b19f","7bc35fc0b1ac5e00a1fac8e18f18c60265fead1085e85ee607cd9a0bc565efb6","8d579e642eab71e9d60e8b7671af998b44e10d0e640b4db5ad57a1bf7f65fdb8","afa871c197d2bb2eb51f71afd159f7ec4121066866dcecb4444e5695267b9e03"]
Anchored
2026-08-31
Public log entry
search.sigstore.dev, log index 2657999633 · entry 108e9186e8c5677a0b7e…
Expected log hash
0cff664c54333cfb7f43cecbc2192b6f4608e129f59e5098ef757ce353383fa6 The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1788148761434","kind":"published-quote","locale":"en","page":"brand:cewe","quote":"When I designed my book it asked for login details and then didn’t recognize details.","rating":1,"review_date":"2024-12-31","source":"Apple App Store","source_url":"https://apps.apple.com/ie/app/id923535970?see-all=reviews","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (7af90f1f7747…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.