Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“No transparent fee breakdown, no explanation for the difference.”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
370ebc8509448620a1c68ed9e589e8d04b736d46197e019b5b588c7138958f58
Signature (Ed25519, base64)
RoHeuk34f02yzCb2YjQhbObi5tV3mf/XPhQkKWqhrg9BrezDuOd00AJ+oexqf3HE/cEbW07/H1JS0RhmAo8BAg==
Merkle root
1154a265a990612db5567445e00872656e7ced32aff0b18660887a40a375699b
Merkle path
["370888c8ea1d1fb6e526c792aff682bba7ea903123dab95e9121e03bf0d4bd72","13a14c172be6277587e74a85a6d82dd138dc9397cc6b79625782bbcb11d8abb2","12d48775bfcb57a51c2020a3188485695bd6c0b791762f29502a6d63e2706f27","59520a8ae4cf4be2d8b4645fcf539dd0171f719549024c112b8031651d776d2f","c37d83fa32634b8a4b7c328a85dfdc070a8b39f074064315e587960a0d52194c","fb8a8c5814d23cfd2c38f4d1085f605864b6dea0759a60150668302ce77cc5bd","bd585f69ac6a09b0ccb4691944311b775277ad5f57fba7c722e6462279d19a09","b08fce8a24091199b9c82ebeada9c6e13349613309f1d20949b25884f98ef3df","65b80cd8d387ad2abbf6fbd0f82f2efda93dea62ba70ea8b655071e391934a16","f74f9d263a202b0f3455dede684327e96f456b9d40e7caf2038f186c05a6c8be","cb652c19515421365623e93c8f17f8749dd71f783a11cfceec8af6f2d3efec67","e0eb51bca6e68e490a806d99145fa323bed979ded5bce9406cc39bf48fc6cede","6d5115041922f2279278f451ada3e9cd256690b7258d9e789640b2b97919128e","6b47d1533765a8fe766882eb411a4cf6ead3b0e29c680883d52a550ee72264e8","8f93c563d7c563da751df1a0efbe13b6ce9bd7032eb6dd0a995c545aff2f5a1d"]
Anchored
2026-08-20
Public log entry
search.sigstore.dev, log index 2524110285 · entry 108e9186e8c5677a87bd…
Expected log hash
34efb4ec1aab60168b83ec62d0334b8e10d9814c0de0cc0d3569d176ff20bc2d The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1787152786156","kind":"published-quote","locale":"en","page":"product:relai/relai-business/en","quote":"No transparent fee breakdown, no explanation for the difference.","rating":1,"review_date":"2025-07-14","source":"Google Play","source_url":"https://play.google.com/store/apps/details?id=com.relai","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (1154a265a990…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.