Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“The accounting feature doesn't update transactions with any consistency”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
147cc34f591b576d3d5b9eb62771d10983f89e0a20a14b9e4513d2f791689ac8
Signature (Ed25519, base64)
A9mNTh6idJhJVOzJGWLyOuJKyzkxJU1iOv+fGxwyEpD/0dHoYttgDmla72SjnnzOwVeXusJy/Z9g2AtDuppKAQ==
Merkle root
97eb1062a862b99998bef0a84476eb3c3812bb77c2cb927f4fd2933b59da9e3d
Merkle path
["147f9c07b8273db4be0e785008b4d671078bc8bf31d968f793b7a7a259c6638d","a2997540c6a461cc3eabc7469758c520b7a2c31c38e605ad414c2106500b1fe9","e123a7d9d972fb7f65ef6dbc69eb96b54131597147c5684d111688d0e0c07e5a","8c758f9408d9069539dd9fbdc54086c7a0bda1f3f74d0f864f6e6fc327279d60","cbd325c82209f8d247b259773d6632163ab60df68e925b3499acc5754b9b7509","6ae4d3aa384aa8b849e4843687bfe266012c3d493b8afc0a93fbcefba144a34a","dc7d4b67ffe3521da97af1347bc8a9c2542168ac16b7ed0c7173ee79bd3e490c","531392aca7f2cedc3e42525b422c785141c809e40bea2fe21a621afe5e091954","71fa99dfb7af1457fc6004bafa49530dce25da62cd6d2573fe039660d23560ff","395b180c77ccd11120a7cda4cd1dd93f02a32dda4ea752d18370c9990eeea689","3debd39a24af6852066a31af419923ca1fb9349fdf8444f76aef62b0f9a98230","7fc459298391904a3838099fd1a0b7e635c26503d7f861328c446e440a4bd8b4","5b47260d99d2c4ad6e0d963995c990c8506dbf10eb0b146a116c3fc6ba348071","a9559f2ca8536f2c18bf059f3f0099d62235a93ac35dc17b09967d392b72be7f","01242865574478f13dcf9d888236d7a907264abdb87f360db7db06de0945075a"]
Anchored
2026-09-11
Public log entry
search.sigstore.dev, log index 2789279696 · entry 108e9186e8c5677a3885…
Expected log hash
05c7009ecf7ce5cf315c252c2a1dd135e64989a02cacdaaa3c5a87412a2e921c The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1789017464005","kind":"published-quote","locale":"en","page":"theme:wave/billing/en","quote":"The accounting feature doesn't update transactions with any consistency","rating":2,"review_date":"2026-08-02","source":"Google Play","source_url":"https://play.google.com/store/apps/details?id=com.waveapps.sales","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (97eb1062a862…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.