Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“It's so easy to use thank you!”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
2ecfbe537a31cb7001d2eb49a99002a6896cca4e2926a0d6310bb0d9bbde3cff
Signature (Ed25519, base64)
t/gpzFpn5vlD0np8/WSKtzLPZ0pZvShLrn85//hgwveHpmyJONmBGCvBXwJ7oS0H5No4fDSolrjcYylMfbELBw==
Merkle root
3ac2a65164a98b25d6607e9cd20ce9559bf4391886ca2eae943b9792fcb8a323
Merkle path
["2ed06fe438e0f104436ba5d229a9281eae4d44b784437ff012d1148b3114f5be","30d08d055b357a8181149c7e0652c2d2f43b3486785cd45043b3e4952d6ddd02","20164bbc030152d35070c8c9ea7caa6f6b137129809f282bd12038fd0f959c75","559c61201d1c6b0b20351002fff4beaeec4888bfbece469da7342dc0c4f6a1a5","0dbddfd3b0c77cc6fe250050a5392e44c0a8381a337294ebc83146694047ec38","501c8cd77b6a4e3e47e51346006960dc2f926b68164009852287037c113b5af5","941530ce2acbeea0163afa8e4eb5eada7bdda63ec61763f9d66de55745b4ed2e","b6c448221ce31f151afb443962324fdbe9165d554d27bdde53f47d343b1ef140","3ef1e7cf8c3a4890bf303f0cca8dd5980dc80c84a46d6923477f392d87722f38","6023ebaf1d1d15a5db889e48fc571bff7ce121f851e48a84080d97010debdd91","39d0bb73d3c363dd5ea6f1636604a0d217c3fea13fa942ae215fcdd4dd99a9db","2094ab83c3c47e93e56205cdb18aac43fb141c04c25a12152217e58fb016ae9c","18d7e09a11c1aefd8f659754a760d772ba4400d2a964c6d68bd3555565e60300","900a8ed1297dc836a8b3be52e4e74bbac6319948157ba123cef010c147d9cd86","b933f107006d8bf043be83ef3bd88a04368b06893809d6915935ad1f675c78b6"]
Anchored
2026-10-05
Public log entry
search.sigstore.dev, log index 3083528439 · entry 108e9186e8c5677ac4c0…
Expected log hash
8816bf48c9e6a0b1ef2758b04fc7021824819cb4cee30b879cd603a10d38b8a0 The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1791181418024","kind":"published-quote","locale":"en","page":"brand:signnow","quote":"It's so easy to use thank you!","rating":5,"review_date":"2026-09-05","source":"Trustpilot","source_url":"https://www.trustpilot.com/reviews/6a9bcc3d870e34a40614bd6d","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (3ac2a65164a9…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.