Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“flexible Anlagelösung und transparente Kommunikation”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
1806ef530befe517cb8ad84c845eb93b17a9ace4c34d5103d2a87f56ea5b6b6d
Signature (Ed25519, base64)
6jnoFH1rfsvlXZ7L1z52LJRHKe6em6LOMxemkzSX+GVCnUVnn38UnNcpY6B0VeYK9WQPei36+UVp61YCnyApCg==
Merkle root
9b1b0ea5ff073795652912177ab0790127c9d286c797e205e428b8d86989b898
Merkle path
["1806dd097bc8ea6c66895269edd8d666bfc066912d7cb92dd242cad3e4f07074","0cac03e0db08ae55997ec4d897a7cbb3fd466a1558dc345f35a2c9d052bffc34","6676032ebba372862cc9beab4ee04de6475597dec086ea9f8855bc792eb9569b","bccc43c8b6ee0804b0975ed91b999866481992d8e9be6413a4f09a60962077e6","80899d1e936c7d52c450a32d338988f92a36192e036273664936aecc6cfab548","d819d18149fa6e38996b3462360a49b64d9c6463be0069ae194a4a1d90487c7b","51c994f13a43c963cc18b419564fd6cfd1f2a6bca1c766d5e5c3be3d4d7474ad","c4b941eea4cfe3167df2733a5ab52f6cbaee1df20faef96ad88ca84d3957b0c1","a9709fa6a1bef9d71df994167265f59731010de6598849fa1092df4db31afb23","f0ba4d3e8a3ea7141b43fef9542fe7f4b07eeb1ddecebdbd8e77812230195da0","587c0504f6b66a14d0cf1636cc403562cf1bff11d027a872318a2408e1456f07","562c1a9e664e25be9b46cbc686b10744e0419af0094bbcb823977c944d90e3db","8a5809f94963a5df81714440927362d38263f78c79f37bf57de7b411279bcd69","1f2e00fbb60a33ba3643132ac67d23ed080f5d4ace7fdf97cd794367db9dab8e","cb32073192135525777f5779b873b337bde4d009abe6b4aee36e0d683387aeb9"]
Anchored
2026-09-02
Public log entry
search.sigstore.dev, log index 2684091718 · entry 108e9186e8c5677ac9b2…
Expected log hash
de33a5856ee5b3a69957109416f9fe5937b2a435c3e2583dddb1e30f75d54093 The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1788333782203","kind":"published-quote","locale":"de","page":"theme:findependent/communication/de","quote":"flexible Anlagelösung und transparente Kommunikation","rating":5,"review_date":"2025-11-23","source":"Apple App Store","source_url":"https://apps.apple.com/ch/app/id1510962836?see-all=reviews","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (9b1b0ea5ff07…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.