Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“good but difficult to understand the app because of the features!”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
146e5c09938b1a9e05dd44fa3611311cfb6919d3710347976b31199135f535a8
Signature (Ed25519, base64)
U4x1odCFcrwLhGaQdbxjRUcy/IExqXvs5nt02/DDAexi1LoYltipqeG4v/jy9omEXnRBvKR7bZiP1s9LGAzdBw==
Merkle root
33c00cd8782e83e7660b36f31023b9067dd316746fb34a5456c153a308339c6d
Merkle path
["146feb3bc464ce3d537670dfb1366510dac51783aae7507be15c0ebae9caab9a","6b61817c87a68fef0b47a57f3284cea85a3cf769448041b6c616275eccf9ce50","d60e072403406a92df86ac6b9841d86bc1c25db55d820212707012dff513877c","d4d3eb701fa8f8a342c812c734cae9678edda8dfec6c31c3a707df86a86fcf40","5417381afe359c3a107c17992aed794d05cc09f05d3834cd08e4a272ea893659","b0f57940dd7ff3ec58ce5bba5b85bffdf91021141104911410b6af123b26c8b8","d5e5c1a49793b56d13e503dd2e4dd9204aa503dd6ffb7ba7a324fa9028b85a08","5526f797a32abe9e2b1a3d725dc7623ce9caf26704e4a13aa902f4932545355e","76154a66088bb9509e73acdf97a16b8718f6c8dab25fa75bd65fcb819f624edf","dbf3cbf5b81bc976d39549e0022f7aa18ab40ff81f208b2f2ef0d37f6ae9a1eb","267958dba583829fd86af7dd435d0c1de6cd61b6e49b166770f30d08ea9a596e","d3aa483f4e4b46fe7fc7e840fc99c1ee942dfde16579987c10dca7fe286b8a16","d18f27a41b03a07d2014714c62631a673cf276797806c236330f5fe764feb6bc","c4aec0fb70f7ab82582654e3e3f71a251f73979eaf3fcf5c39210c14e09f34e5","1c612a54ea4200be62bfda791ae9c32645368a1c77880f74595307b48a6cb39a"]
Anchored
2026-09-01
Public log entry
search.sigstore.dev, log index 2681187280 · entry 108e9186e8c5677a68da…
Expected log hash
6c4c4fe04f66541fe16d28c86bc42894dbce07874d32b961c3ed57a7667195e3 The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1788300906973","kind":"published-quote","locale":"de","page":"theme:canva/quality/de","quote":"good but difficult to understand the app because of the features!","rating":4,"review_date":"2026-08-11","source":"Google Play","source_url":"https://play.google.com/store/apps/details?id=com.canva.editor","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (33c00cd8782e…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.