Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“a real hassle”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
32606ffd39f98ae9ac88bf85c65666bede6187cf806f1e3caebd4473f0352297
Signature (Ed25519, base64)
3QLkITAnPR6kNeqcX5rE/Kj6ORsggKKs/573h+zN8zmUZ144hJRnvxgSrqDbtbdnIxlvUcgZXXp1xivkHCgfAQ==
Merkle root
e6ac019704b226508e994cc0855a4d192d5ca56f36bf79e20dc9e3368a99cf1c
Merkle path
["32606a884dc059fc56c7f9614343267024fb0ab0fc165629da0ccb962c241e43","1b23a443e946a689f7a0361c5cca6c6f9c0e42ed4e7f6aad5e54f3407a6a9109","53fac3a321bb3f7b676ffa4ac64db9b9a599d336b65fff5f456b035a378f1dda","9b1111c9fe245a2688cae3b02fa010f5337bbe980f94d5fe0b38be05ff5617bd","00653e1f58aaa4620e19640b7d836accc84fcf4ad0ec74d018a3945d7e70e0b9","1e423847b1a61953876e4ef8b8f6dab4c6cd2145171f87ed12a7c1cd723ce4fb","789ff3cb30b2b59437c56d35b4af94be270f76f7f80e7baac45e77c45ddd4125","db9ef8c63e983a37910efcb3fdc6bd4bb4ffdfb05dfd518820d93ee924d6132a","6e93966ba54159694bb9ab01f2bd7880de7b0a48823c28661d39eb366ddf7b42","497babe63c11e4fc0154a4c4545a5b071387ac573672dda1ba1885217b3fcc7f","b5c32ee5dc3d3e7f46ade1921a47c7b4e8a3d6e9c2d05481d24eb3c97fbad285","34cf0a4c736d1fe831861780b0a960a206a4635794e0e9b8826f3233c55b1efb","6607742043dd5e4f5ff4cde1fc26a938e3b873d3f1925aa6b85feed605673817","300daef4aa548e8c10fcf4706d8cd6c134a74d44a2fedd09c528770268883f87","55037d90ebc6f8ee5750b678c0269386792b0a1b293edb3e029a7c8e378291ff"]
Anchored
2026-08-29
Public log entry
search.sigstore.dev, log index 2631716425 · entry 108e9186e8c5677a0f4e…
Expected log hash
45ebfa784ea01d364c463997b417af34e35327c4187ff9e9782aece8c325deea The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1787968874252","kind":"published-quote","locale":"en","page":"brand:swisslife","quote":"a real hassle","rating":1,"review_date":"2026-02-26","source":"Google Play","source_url":"https://play.google.com/store/apps/details?id=ch.swisslife.apps.android.ideasy","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (e6ac019704b2…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.