Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“Cannot create invoices;”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
424d581e61649df8da634f15e7cc740a438c01ee9e80fe3541b00fe6021544b9
Signature (Ed25519, base64)
e43lF3fsWMf/uv71z6nWDZEVtiPcb9sGzdtZoLTnY9UmizqghjkCRf1AGmq3XBtvNNFYhVSxhirwB72S++JmAg==
Merkle root
a086f9fa8309b32cad6e06b6c84c12133a405483807f462eafed4cabc6f3fb99
Merkle path
["425181198ac004afd7997d6d1073a5f26b10dd5230bf2b3c26b6fc23b8431ef0","095e52c111a82280f2e70f22f5113c9a6762eab9bfb567448897026f33e95811","68e019f7ed341a7025df025c0ade98f1b34152dd433ec85d44d2ebd5c9c22132","1ee13adb3fe5f2b944ddc541f09bb605b0cad6c121ca5414eb5ddc442a36367a","d7813cedcf809fa63c60e8b4c47e4d4d3fa6bf43fd257fc92391554596117a46","9b5df95204c9c7ac036a2720ca479d719c0afbb8d7eb34fb12d0c13662610f21","186a54305dc328a38822bb360880e7f27b1a92a1ce310efa2d996e2d74df8f22","65628a96997cff8bafa6e03d9a5f9fed5900d4dfdafa44323c7b83de3d00d66e","40480638f9b298c3b22dd4e070ea661d0a3c868f89c65464e26862951765c9f5","41f3fcf7f8259f625af5526622a667fada40473217425780a87d067c61d53879","069846bc39ef7b2cc85d9b36f46428c2e17ca62ae9012b559b683d9dc76f4d41","4934690989d304b1694ace22bcf62bd57118451327eb5142bf2e3297b19fd207","70bafc13b011fd7d1efcc84705491ed97b239fef58436211e6e791ef161e4f98","3aaa0ca1c59e2fffb0896520bfab42cd665f7155bd5324013ae19a22f4f790c8","d4cf3fd862731bc6a1728d66b360c0434f801f84e015a828556d2731bd771b26"]
Anchored
2026-08-19
Public log entry
search.sigstore.dev, log index 2514476227 · entry 108e9186e8c5677ab19c…
Expected log hash
9a346357c8991b17bced8f12238c2332c4ac3078c0d9a283ee00f82b3c69be66 The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1787129084398","kind":"published-quote","locale":"en","page":"product:sevdesk/buchhaltungssoftware/en","quote":"Cannot create invoices;","rating":1,"review_date":"2025-08-03","source":"Apple App Store","source_url":"https://apps.apple.com/at/app/id731738076?see-all=reviews","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (a086f9fa8309…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.