Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“would be better if I didnt always loose the recovery phrase”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
115c586ca92c83cd5893ab8e2c435407c6364cf39e98c7a24058a5dc6dad705a
Signature (Ed25519, base64)
ATAfEtkqfPSsfDl1kPww/lOG04PEdXaWA0mlwFuvuQ9ZMzgq7X3i0bQk/rE6pAP/I14qj2i62OMIOAzp4ipmAQ==
Merkle root
7b64262ccb6992b4b1db9e70024ed7bf00a279068dc28cec38a2b0e5ad6c1f05
Merkle path
["116d0d14ca7afe746ecd70f40d5e592d24e10880cf1bad0a304370c0655de166","3588597945618c0461de98b7b841b0549e8bbe4dfbef0b74cf466ab8063b33d1","a631b826b66ad58e88b7c3f144eb08a761ee3c2662cdb1256c0a53f40649e04b","c5b7e307ca079808728a6859ceff0029a0b359454bc069b12dce7f5667e29247","00757c86750c75ec44af885a66d9972952fa19f9d15196dbe5f7ae1862ce6ef4","bb892c23182fc31941b97c86bba025aa66033b841ba86fbe01659fda582cd6b1","b303ec363d4ea36512f84dd8afb252ec1f255c45aab6500c9beb2ee4f9884328","83f6eadefa9ad27a5b7277c153828d44f3b4325b65e9abeac681851041046f64","8f62b3f27141aa0dceceeb4c1c827ba60dc4962c1777841070bb2e1eb34b3c96","92be90305ace4cddfdcfa1ddbc369a1c6bf1c05e0e32b585e99c9e83ba9544de","7f6fe663af0898621d81a00559eee8e2e1765df718fc2854d200f1ead808fce1","aa818fc3ed365700a313226e531d8d443301c73e224b86ab4bc8740c08d56de9","df04ec2f9a279e16bd1cc7da71d9e700ebfbf4bc60d39678c8af20f9e3783085","320bc2a1db4514fccd8cf8663fb8c3ce3d8b8f889769795ae761d0eb0ef5b761","6b57fd4f8c09475077477ccea0d971c3d4573af62c3a98d844ca044662800d45"]
Anchored
2026-08-24
Public log entry
search.sigstore.dev, log index 2579318932 · entry 108e9186e8c5677af677…
Expected log hash
32fe6d62a45bd1680e87bec92e1d4c4241f512243c06642638c7afa2cdade2a2 The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1787537478837","kind":"published-quote","locale":"en","page":"product:proton/proton-mail/en","quote":"would be better if I didnt always loose the recovery phrase","rating":4,"review_date":"2026-08-12","source":"Google Play","source_url":"https://play.google.com/store/apps/details?id=ch.protonmail.android","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (7b64262ccb69…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.