Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“L'application ne fonctionne pas correctement lors de la numérisation des reçus.”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
445248ffa2a7aa1110d708d8d9035b3813809e4b7dae6407970114cce135b53c
Signature (Ed25519, base64)
Z0SNn1slmj6HLi1fFfNzkc57nLCOsP8Z7FjmQHH+d13q7oACwf4F2OPOHI7PInwsRiFupN1VR1HkjofaVYIvCg==
Merkle root
c69b412346f0db8d88aed17dbaf2e4876a3743c1c4d16fb306ba56b5c0573123
Merkle path
["44518fb5cc9bb45223549da4f030d81585eb1d6e740507ff2cf45df9380dd2ec","62511e0fd6c6da3afe1bdde37419fba8f29ba18b71645f6512073e384ae90c50","c6b7aca9fda94b039a689cda88f14eb105f07bb68d54517ba892a48b4acd3c5b","dc4c22e34aa9769e8f744a8b79b5b083b691bc0561724389e2184f507ae6f38c","7b155a61caecd0b940559bfdc324e65263d9d5b236b806e149c388e4b14ec470","08fdda30c154d3c70dc741f06827b6cdd11726c3c5bab6d6fb2b2d73da2c6f2c","5b2cb9300ed23e57aedf1c8e860f56d69ded10c6c14c41e4083f4ad8becd2549","f920c4c45c09a3ef143dabd1b865ae1acbc210bd843ade737b647cd26ba7c7e5","4b8c779effb33b396f3608ca4dc5a1cbafbfe35b79d16527ab5c7ef0330c8570","4bc6c6390cb11d4db75dd65ec374d9ad0e08059baea3e5264e7f2e20566de77c","1ad4af6caaf97ea6aa4e6e68d13e07b350047e95146effbdb504ab065eb218a1","6bc505cec9cfa6c65890bf4e5567a5e9c41915dc5198970e3883c998d4888fbc","2902401036646228e991cedada72ba594212cade8227204cfe8c0e390674d7b1","62927e8f71080777dd1935c21221e60b742dc0377a31e2f20a0a64cf6c3282e8","3da38b679e2392986aef224a332d14750fb3a22c4e75287765e8f68f575f24f3"]
Anchored
2026-08-20
Public log entry
search.sigstore.dev, log index 2525010456 · entry 108e9186e8c5677a4287…
Expected log hash
659be4fcc7663b2dc65a53351e16497fea44ed9ec8aef1f3c48c8e452b350dc6 The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1787194832011","kind":"published-quote","locale":"fr","page":"theme:bexio/ordering/fr","quote":"L'application ne fonctionne pas correctement lors de la numérisation des reçus.","rating":1,"review_date":"2026-03-16","source":"Google Play","source_url":"https://play.google.com/store/apps/details?id=com.bexio.bxBexio","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (c69b412346f0…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.