Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“I've used the app for a short time but I'm fully enthusiastic about it.”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
1159771a4281b244ab484d49237a96964b734487037b685bed614717f765bac3
Signature (Ed25519, base64)
PxxnLKAo7P7jUdpN9pa1YvjMxe/nLCwUkkUyHbdKLGo8gVbHHiKZ4nIeCto3Eclq/Bsq5vaD4JUhccG9JptOCg==
Merkle root
bdbf351c9ce626213a7937b083c4ac066820b0192efeebf285f31c724e7c7386
Merkle path
["115dc86fdac2674064e45f7ceb715c371ffcda717213aafcd13677bb4b7ac8c7","5eef57821325e3070fb1fb644ab6a047aad8ff94d36bed633758fde260c2b23a","71a8eb25fd1e7ade65a4fae88a9c3de210006aa84efc9ae6b9d7915605fa3b2e","0389f262c6a94318a7ae4d68fbc8b30dec1d068f4c9d90915d030f223b0833b5","aa5692237b9d673d799086952d88b4d7722b2430a5d4fc60db268fd8b0b54341","44f9d5edbdc245dc51da3332faf7975cedbf08db07cee0696ccb5c741e26c556","369755cda59e1bb6969fdfa1c103ca300ca267b3f95093a4658b63be919d7e28","7a266bea5cc98adfefc06b778e264e08b5d79ab39db749e9bc3f75e16b9d0856","72276db78fc39d81bbf026e02369be920fcb19a3f000aa38bf33a738f76dc236","eb68c47f6456106f52596110b81899ab30450a22ae84efab1867a8595bbb9e01","298cc0957339feb0c8e72c1f7b6cbb277bb879b01abd41057693b60c7a1fa4b5","ed0847d04ab049e21d5f1209b43d9db4f9d0aa8b87c3438b7bdd9107f7128c2d","73428a6555103c20fb5ea743b73a12642caa27a1cad4c3aeec7f2fe71e2bad2d","8c4971ed811477bb80cd783319a321eb7e74e629d6c92773766b417396748f8e","4ffd3e6ce61b4807f2bbaabc5ea992d56be24a3e1b0106159ebe9c57df57e830"]
Anchored
2026-08-27
Public log entry
search.sigstore.dev, log index 2611694692 · entry 108e9186e8c5677a584f…
Expected log hash
e78df4d3c8e2db621642a45dcf6ea56f33edf489d8662048cde27bc12924afda The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1787755965154","kind":"published-quote","locale":"en","page":"subtheme:meteomatics/ordering/ui-ux-clarity/en","quote":"I've used the app for a short time but I'm fully enthusiastic about it.","rating":5,"review_date":"2026-03-27","source":"Google Play","source_url":"https://play.google.com/store/apps/details?id=com.meteomatics.app","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (bdbf351c9ce6…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.