Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“When I try to delete the app, it tells me all data will be lost.”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
19a40e2d283ac1b59111f7ac69ad51839ab9edf70d4655aa9ac1081eec46b6b0
Signature (Ed25519, base64)
XDD/a4mo6rnpiL1/4g/Wt2Kmeb6dQIE73GUCqfMOfdPFrSIg2oYvHWcl0R+znYfsAu+64WrifzrdT7O6HVDIAA==
Merkle root
62390602d5b1801b2c96dd61074fd5810278db65461e368ee19c9bb147d249dc
Merkle path
["19a8bb2ff43269a3dd95d2fb99c64d112dbbc43e61c2ac73807f71c983c4f0d4","bcbdbc340a66e665a90f1f7c2aa4476d35a3f324eb93bf1a5b4b908306ecce2f","cb65826a40b9139171f6ef1af1ccd46e0f17c608058a1d58dc1999b308ae9d8a","83655b971d3c72d259680866da7ceda0bb9b0ca1529f2e48cdcb329ebc988c4e","7d9241ff44e62ae6af41e382a611bc3e47498e492a9b07c01682ad0ff8100ee6","253c40253be281f4d612a50b88c47fc22a350c53cf71b9de9a75e0801ba1a534","641c33d8c8bce1c62e6bc344b108ee8a38846a44b9725acac867b5acd9355ad8","7937e7d0305fe836c810090d0b4aabe873ab7f8b4ea7bf246f57feb31ec2f3a1","b25f871df034efc38e9e2ee0ee263391e4575ca6338107252f2673d01d6ebf15","7bf8a68cfe21562720624ab5c85e9a6dd8e4da0abe67627e0d16c8b6740e5276","a8d7187eda10f2a7dc37b30040462e7e3fc22afa01243f96051a7cf956994783","e911feeb6297634230e1c194a3232128e192163d132f854ecdbd3fbe854b9056","06126886ac349781fe1d6d4a328ccc86737b00245fa7d0405aabdcca4527bb60","67ecfe5896e15a16726f3975884f00c44d75c0b203d4245b5c0b41921a024634","9092fce07a46a5708f071a70ba5ae2d3ebe27de5e813ea1756180e7747d7c5d9"]
Anchored
2026-08-19
Public log entry
search.sigstore.dev, log index 2515033577 · entry 108e9186e8c5677aaea6…
Expected log hash
458ac564101d02a2c8a5f98465ce4e920300682f0855e017234ab870c48a16cf The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1787135948936","kind":"published-quote","locale":"en","page":"theme:sevdesk/returns/en","quote":"When I try to delete the app, it tells me all data will be lost.","rating":3,"review_date":"2026-03-14","source":"Apple App Store","source_url":"https://apps.apple.com/de/app/id731738076?see-all=reviews","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (62390602d5b1…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.