Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“The app has almost no technical added value for everyday trade work.”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
1da03398a594e47a403da5ef1ad6fc2395fe679f3fee4e822d38ad27f1cece9f
Signature (Ed25519, base64)
+ACVyGxpI5DTl5T8Gk26Cw+Juk+gFJBTk4tAoxrbwiHip84SWBcax4nrnwp2n7Kl+WgNnoTWjeRlRbQm9WsdCg==
Merkle root
2030d4ef17fc68fad1320305cf569e85a00baea931fba0d3ebe628cf9c90c35f
Merkle path
["1d9c7232a6ae79d83f1bf6bed64dc14d255009e7bd3ac513511d2d17ac2fb3f8","61ae4f6e6cadc10ace7e34b230e2ebf8764161b00bfc3c2fc12a249dab9a55d2","2de7935e520d08282619933e8a7ef2978f4e377618e37150823da9d7f18d2c04","a2d5e41e84f8687be396d6e94255a1cc78c2f5f328f4e1764685beadd7972e86","3700a47da657b3fd2b9fae20fb506040e9c8ca850e6d8746add1cba856d5a3b2","b7567d97a5d35eef2f4f5b6b6a11b111dab3839090657e3370f5aaa53f624021","6f7accf8280b326cd0024b6eccb5980de739c0bda615b62f444c9ce46c0f5dff","044241417c27504d246a1763218c33877ba795229ab1b56e28d89198630c50fd","11583b8f7cdbbf979c975aef42cb6c79857d273c184cf4f12b752ca3dec83a1c","243fca69d01346bdec4f946522d6b2d24d02f81150e10f7d28c9422f0d956917","baf3058639f82605e35443fa821132136bb23b87dacf3a30556244dda4eb1346","af485fdd9f62d4a3834c43ddc67cf656281b4618ebdf7abcd0b6f5f8c2b34124","918213bbcd6c7aeea281036e9f4d443f99addb7e227a2f8f78d8ca7cbe526c6b","bac51ea5b704b29646e9427857e311e108c5e79191194f7fff260047321ecdd7","e362b663c2c1f5a93380a04a7aa41b42f4bafc7f870e85cf63803f76c744c486"]
Anchored
2026-08-19
Public log entry
search.sigstore.dev, log index 2514654467 · entry 108e9186e8c5677a9253…
Expected log hash
ddd8d6dfa3771a4106292f7bec674337dc9649465b28b118bb17bfc2b8ff0a67 The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1787132872903","kind":"published-quote","locale":"de","page":"brand:sevdesk","quote":"The app has almost no technical added value for everyday trade work.","rating":1,"review_date":"2026-07-21","source":"Apple App Store","source_url":"https://apps.apple.com/de/app/id731738076?see-all=reviews","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (2030d4ef17fc…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.