Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“I still did not receive my full Swiss phone number or the eSIM activation/QR code”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
3311158af366d25312826f8c0893daf33d2ec26086b016c205015945f73c74ef
Signature (Ed25519, base64)
8KsjPCoUHJ4E2F9+K3tXG7yTMiekEciiMNa4wEeRGJSJtgSoRhmm9ctqA2EJrBh9N+x95e+LJkNoB+VFydWiDg==
Merkle root
2f068f3de56bebe7a575ba4a979c9244445d2350140e36238e088fa40fbfdd88
Merkle path
["3310b0365d16d4de5b97b8b2cee22739abb54558e31081e1226edef64aea7243","e60776ab880d55d7a497e23ee469bcdf7f18cec20c374fa07dc12077b9f12f91","62055bb8192c7911e46b359acc25964bf247fc0a120c965bf00fabe6c8976dcf","0de5141507ac8d589ad15b6e0f2426b5dcc9fd32e67a578ccbf6ece299c4f87c","7feca166c7accc217930a8702101189d9bdfdc764712e9dd1beedc79e3842664","207f67169dfc94106bb682fecdd805d7b7ac220d15729ddafce9dae264ad4d6d","b577fbc5f5e547992704417873c27b4583b1ef650ae152ae1f841259953b8d8e","b39c706c732a5dfe34baa5560ea0b5bc39cc890f67dd69d0db33535721fbadf0","2e6c7173c1c3694937423581fe353d45910277ddc89f02eaefa84d1d6bde42a8","09b76453d38425a6062cfe43813cd596622f08887e7658ab45f8bc0288f0f702","198ec620523c93713c12a5fdef13ab3b73c38312f8c69950c0a24237f8311f64","ba64597144ad55469e4304807853557493bdf960abe724dca5437e442c223165","67b7564c01b814702c17628742fb6a8cbfa0e8a213c06511e31c90cf9f3e3578","03c5fc675733b417d9af5e071de3aba38ae7f09fa5781cbd0133ff9d4e234e36","98191c82333f4385e47f318835e01d44ca8835262c6d0df40edfd5f6a4dc5c19"]
Anchored
2026-09-20
Public log entry
search.sigstore.dev, log index 2893887498 · entry 108e9186e8c5677af79f…
Expected log hash
90099e0300c6e23b62e79318296ebab91bff130379d248ada57f044f77e72ccd The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1789796056710","kind":"published-quote","locale":"de","page":"brand:sunrise","quote":"I still did not receive my full Swiss phone number or the eSIM activation/QR code","rating":1,"review_date":"2026-08-31","source":"Apple App Store","source_url":"https://apps.apple.com/de/app/id466738063?see-all=reviews","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (2f068f3de56b…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.