Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“Amounts can only be posted if the invoice and the incoming or outgoing amount match 100%.”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
2f9021a3286c5854489a02717bcb08af44dacc6b1b6dac2c19d30e98656dca02
Signature (Ed25519, base64)
/ibYCeH9suKiyo7YHuvrAU+HK5VUu+29WhIw1Av1UgKG4rIStpj2rC9T5OeXKpLCeVVL4wDJ0b44uSAlK60oAA==
Merkle root
1dd7fec10002d9304505761bfad9c0f048c94d1d6a0775b6fc4291f712d4106b
Merkle path
["2f8d8f14663d5de6bca682890a1710c44a7a928aab81b8f3c29aa58bd7f06574","093d2d170ee7dc43730d571fb5ffab166b861a4b5ea3eb10784aa0593a873f48","a173e3a39c4ac353dcdb52e2f3afebae3e0644893041de0ada044337d592ed63","c7e06b4377a72552fb5ff372f20350506d40b6c98072df743d1e61aa6e4b5862","77707d394f54007c355b1f43575e753d3bbf4193310840399955c916ee2103de","20f204f9603f5a8b538d153135ab3c34786734eab5388c05775426a94d6b3786","885455933bd5b9bf0319ed1ad9a41db34c5fc896fec74259a4e7a88899e79085","6eed70065f295b2ebdbd98fb37c8a08fe6d856490c1f73b81dc51b51abb6954b","4f361980a96072235a2d021288bdfd356e97af5f758de5349b2f46989944962f","20864bbbe89f49647a9294170d1bd55a73f015fb4f5dd36642a09cba8b559291","4b06291f7784d6222f0fc22cd97f989862f31499c2f8ef7ea6ac1d7a320acc7a","98438ed119190bf5694defbff6a1b322c9742356112668a6bf5fcba714c46914","1e0f2b6cff090cfdd5d25ead7f46fcfc2672d59cdc86bdf2b9755ea459d71ff0","96733967bd879589a2091176049a40f13c26bf93f656924a17f15f3f405bad21","54bbc2d7930ffae8e416e662d825fe408002ca5c9c581c2388ff0eb5a37134ae"]
Anchored
2026-08-19
Public log entry
search.sigstore.dev, log index 2514297706 · entry 108e9186e8c5677ab801…
Expected log hash
861cb9c1424d2f408888a591a8305206c340f8249f4a4581b32f940ce8815405 The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1787126020727","kind":"published-quote","locale":"en","page":"theme:sevdesk/billing/en","quote":"Amounts can only be posted if the invoice and the incoming or outgoing amount match 100%.","rating":1,"review_date":"2025-11-09","source":"Google Play","source_url":"https://play.google.com/store/apps/details?id=de.sevdesk.sevdeskgo","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (1dd7fec10002…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.