Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“Every time I try to specify the purpose of use, there are no options available to me.”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
32b00f3b85550742400b9e00a78a9cab2297d45c921df77c8978c40855831a67
Signature (Ed25519, base64)
2hEQcqj6jb/wDIDUENSWLzFBvqKGKAAhKj/pLvKBFj7P/1vECf3Y+6FIRwnzZ4MK8fEH5vK1IEdFsJPp54JCCQ==
Merkle root
ccae92ceb3dcfba104788424188fa34a8cb1410075ff6c1a21fa513e89f0c4fe
Merkle path
["32aa50a0e3b4ac96f86967f88cbf2592505ef9314900661dcdb45942cb405701","406ec2e462fab66df3bf8ac6829dce60b061d323467cb0c4032c903bac63ce53","d12cc8326258d510acc8d6269595aea25456674c5a095504179ae3bf3ce13b66","70ceb54a2215febe9a8a82f5ace3b97d23cd6c4a08d9f1ef998989729ba364ff","daa3127352c2b4557ab8550b3d06454873cef1d87578b85c08ce67d89749715c","48ee358440c8be41361a420cf0dba0f32ae8e7682265eeeac2070efe8d870af9","6f4c9ac3d2d5541adbf1be1bc19fe6c85c236a41a599914e7c5bae2c911fbcf1","ab71489ede074bc9ce51b9e31a203a6638edba2760fb2e52edb32c59f288e762","a2aa87057bc2bc24497745521fd4994fb7935fbbc68509865fc10acb2c98e14a","b12f099e67bcdc725c2b968b60b648db337b5aa6f6120215fa86a52489d52d32","58a2c7885cd95f735a22d037f04716195fcb88dc97c3004c9bf1293cb63f1502","99697468961eaaa4b5797561798cc5ffa2ab8acd44a284d775f26b440d075f5b","f7990b6d58a0125e363e1c2ccaf33e30b0b4839c002a218db24fff9488bf159e","818afa9b60a40d27c2e88a8e5f62585c079335588148aef8eef246906a1d9ee6","f73291c2ca924ce4b3764e4b6ff1da65a701069f04fad47c52c8b693a0ec7e41"]
Anchored
2026-08-19
Public log entry
search.sigstore.dev, log index 2515282333 · entry 108e9186e8c5677a6652…
Expected log hash
af455e73500113c158c8df9793eab703ff863c9c98fe38560752c9a1772810a8 The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1787139531268","kind":"published-quote","locale":"en","page":"theme:relai/communication/en","quote":"Every time I try to specify the purpose of use, there are no options available to me.","rating":1,"review_date":"2026-06-26","source":"Apple App Store","source_url":"https://apps.apple.com/de/app/id1513185997?see-all=reviews","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (ccae92ceb3dc…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.