Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“Many basic functions are missing, incomplete or not consistent.”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
114a56b62805974db5a4034f8183688f1b5eae8fb00a1afa8161751a0a5b333e
Signature (Ed25519, base64)
4GU/KK0G3lnQPsa5w7pMH/WLzpacNJgndicQUQdD+2GanpQEwlUTfzOMO9KHCvT86t8AJrYxGqXI7bBWILJAAw==
Merkle root
fbbe54686ff192def9dac89bdc2006ad47a493d00db3b3a9ff43e3b123308061
Merkle path
["114832589fe035d37fae5f26dd20f4417d0243e06763bea30c2858d30bc5aa2c","b778c234c1db5167e229177d9bbfa03ea4d15229bcd0de72fd3eb1883f34f36b","b9ab6bcaf7512ba1e46c208aade520d0c752a859348729afec3ca289f9a4a956","a53b3beb4ba60f495bdcac63fcaf20ef6dfd8d5a0e3a0d313ca86bdea5eebcc6","694f6a5c928fa8fc21e1d111c510f4d2aad581b77791ecdded5b73bfde26e094","4ae8e411e7a88e38690082eb7673bae950a9a03db00ba58dd33b099be99fa070","fd89e2de2797d8833f82bd3ceb153846de4f7c33af429588151f1da0a4467faa","ccc01a032a19ed7e31ff635f45ec24ae30d2e16f27ffc39a52d10dca65895cdb","0ce4cbd13db590bfe2515f1cab46fe1fbbd2a839ca2fd60b7c8847386a3d2aea","263d470def7580ad6e06d5702530792cc2575c633bd36550cc310c9483f9dc0b","0e6f6371b58cf2500327a70b004c370117a0f78370f876c41c96de96ca6b9321","81209070664570597e8bf61666e34f9722287e281f0452904740719a0e227776","625eca1bb9e6a91dfa6035d766ca1bb6ab8a6b58b95ce694996f607f2e15cc42","924cd389915044788bccd2a79bfcfb29ab0fa44adbc43b1e7877ad3c03c87c9f","910ae6498c24b3e218a7772cda41516322afe32b5ccc8489f6bd972bc23cc14e"]
Anchored
2026-08-30
Public log entry
search.sigstore.dev, log index 2647504463 · entry 108e9186e8c5677ab12e…
Expected log hash
3bc4a58498687620ad93cc1fb735b54a6af64886697db4c643becfe466e70236 The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1788063157670","kind":"published-quote","locale":"en","page":"brand:bexio","quote":"Many basic functions are missing, incomplete or not consistent.","rating":1,"review_date":"2025-04-25","source":"Trustpilot","source_url":"https://www.trustpilot.com/reviews/680abc759201fb12d9c9dad1","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (fbbe54686ff1…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.