Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“The weekly recommendations lack consistency and don't suit my taste at all.”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
1dd74e36bd6550b3693ca4d548e0196f4fe00e31eee7235e890ab24651e2f399
Signature (Ed25519, base64)
JSUS/TgUvi83ZKsMQq1tMUa3u+Gx0jsqdbqnbGUs/3DuztYsmVM8cbti2ECjvPLCjie4mz4gvGI2/4T2Yg9RAA==
Merkle root
f26292e960b34f73f9768b4afc64585e265549d794b35b8167826c2bcda92ef5
Merkle path
["1dd6eadcc3252c3b1c8fc4669bc45c717a22ff376311330d78b7269f801f2742","a67442133f19106ac8740ef68f9084c883067561bc8fc25dfe59616be7138552","7c9bb2f378e577de0bd282c2059d08b12322c0522706688bc15b44a2b6ddaa90","5afc2c203825bc905f26ccce8453d31cccdcfa8d2e47be897b465123aa18ed1e","359e4df782df86d7b2dc2e1bfb965b92a0f1a48b46e7d1da110d93fbdb51595a","f9ca90997bde6bcb8aadd85e97dee8b2eede448f5b4b1a4ef39288d662fb864e","d483bd8d2bce567eb6c4993c5f4ad4506a3b35294548155c61310b36f82a68e2","0dd34b2731f686ab289a00e19df7fe295f4057d869b3201b054e53563de06c4a","e66dc22b1adadd94247e52ec69adcc209de748b0471bc86232636f4963b8941f","76ea1eec8f3166ec8f8bb1c354ac4d9c6f8890447e8c39e1b4b27d8ed3dc04a5","87663b8060c34bd52c43cfcf9acc13e2c203c164aac9770ed6b0742f89820281","dffbc784da6e78ce004c2715fd64b08f8014ea3a60655e0f193168cea47c89e8","14d95cb3ffe81dc7ba7bda02f51c7ab9c1977951e0a9ce587124764e85380fa3","0cf751b4d000491c43eea40a33568458d763987b542601ca0644e491c0b04ce6","e95e880a53b013b49906f2e6b9dcc652726333d77986f48029bb634dc427e2de"]
Anchored
2026-09-23
Public log entry
search.sigstore.dev, log index 2913636507 · entry 108e9186e8c5677aea51…
Expected log hash
417fac9b806377ff48d30ded01faf8424eb98406df713fe2564ee9077747e6a6 The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1790070376053","kind":"published-quote","locale":"en","page":"theme:deezer/fit/en","quote":"The weekly recommendations lack consistency and don't suit my taste at all.","rating":4,"review_date":"2026-09-18","source":"Apple App Store","source_url":"https://apps.apple.com/fr/app/id292738169?see-all=reviews","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (f26292e960b3…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.