Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“la synchronisation est mauvaise, même après la soi-disant mise à jour de l'API”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
301e9c36c8bd7e73490577e0dadcc0ea2732733996d884a08b4b1bfe305f365e
Signature (Ed25519, base64)
XmYDJRiLVD/rPUadIxHqktzIcjSzuL2jyd83/fXBAWiLd8fo3Ce5xBTnMLFsZ1MhoDCYMCpxW5AI/eYsiYPlDA==
Merkle root
1dd7fec10002d9304505761bfad9c0f048c94d1d6a0775b6fc4291f712d4106b
Merkle path
["301db9eac571ff55b204f10e598728c0636ebaaa2e9a1179d46208f567337220","9896efdc3d90832976735e8c2b171e22bad3854362bc0098820cbb8ea5c84353","0d703b758b93003cf5c43a2d290b89953979a83589f79050295f48f239bb2261","11b035c49a5c8f6ebefa9f04691191c189f662614a1a265293d3a249820849c3","3a7a25b3556ea71cede5eb2e9fb2b9443188d2c572896b666a4d1dfc77b10cd8","219037090658a3334691636e14ab1c6fa1cacc7db5575ecb530c1d9d434e6fdc","ecf0ef464c051d9e977a4bcfbd348fc3222ff9d38509ed0fb3245bdabe3f2868","a9710bd79f3995844055a52a1e14cb50f732ba89e43107f535efad54d40d86ce","7498a47726116c66f6d7472284d75a42f4fdd1dadbcaf2787c486893cb7cd6c3","96a85287a5a6dcbd6d7671627a2a9017d2b145bdc17d6b3c19a25329f8cd41ed","abf7351eb104e29d2c6012be24a110eb7c16583d319eb1838ff7940bd1ec5292","63140a7b4811bd870f16dd92bcd1060f3b5aa64f6aa47d4aae76261963134c77","b7aec9f3c94c31d180edcce99e1c822102bdcebd141a0695527f2567ce2d6e06","96733967bd879589a2091176049a40f13c26bf93f656924a17f15f3f405bad21","54bbc2d7930ffae8e416e662d825fe408002ca5c9c581c2388ff0eb5a37134ae"]
Anchored
2026-08-19
Public log entry
search.sigstore.dev, log index 2514297706 · entry 108e9186e8c5677ab801…
Expected log hash
861cb9c1424d2f408888a591a8305206c340f8249f4a4581b32f940ce8815405 The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1787126020727","kind":"published-quote","locale":"fr","page":"product:proton/proton-drive/fr","quote":"la synchronisation est mauvaise, même après la soi-disant mise à jour de l'API","rating":2,"review_date":"2026-08-12","source":"Google Play","source_url":"https://play.google.com/store/apps/details?id=me.proton.android.drive","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (1dd7fec10002…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.