Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“Erscheint immer wieder App aktualisieren, äusserst mühsam.”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
50637e7ab100aa1b7c0f3b82b2785e6dabc691aef7d1304afc2d9606411aeeb8
Signature (Ed25519, base64)
eNQv2ykUq1n8zOph+7goXGntoquGvKyU5YZTswy6Y05du7K3+POYhT4WjBUIdFMEbNTKsJmkFpIcmNS9KeqvBw==
Merkle root
2f068f3de56bebe7a575ba4a979c9244445d2350140e36238e088fa40fbfdd88
Merkle path
["506187ce4bcd38fec6d8c370f95c81f18b65dce2053178c8dc9975865ca26f48","dc0382773d0d4e62892bc82defc6b482d9d27c4d7030a4a743cbed5702dad700","912bc3836c330ac9474c5a8ec77ed63b29b9722eec90d9fd19e368145226df49","b59b6351e05417dfd0ffa0aaa26626a1bf544241364da97df051b6a78594ffa1","0424419952c22673a5c8540a21760da444b8e0f9350635a859d343ad54fff90f","0233d9d5773eb67ad4d5568870062aad12d432c170da441191a566051104c656","e405d5f8ace61baaeaf3229f66c0394c5036f7bae6d3c68699a39ca591449d82","3a342cddcc1b26ca4b55ef3c4ebceed38882d6c0950c423fc055457140173f0a","924b81f9a0c81e3ff5e7922d69f4e2218fd16b47027294a37dffc18354c08fb3","22b03dc3fa80f5086ab247fd815bae6e6c5634e48b4979d8fd15d44f992dcc60","cc8eb8c110ad6bfe15d65752a33499baacb1799054e70cec984d4c86cc084a38","ddad24b033c054e618d3abbc2cd0303f49551ff001beb238cabbc4b73bc7d951","d1960e2348cd4a71c41d10f1fdeb248b829ec3849e0b1a948157b58e7b767ef1","f2c4543851e26fd9d1e3721e592d66b00f142e537786e975d115c14b9cb61c0e","98191c82333f4385e47f318835e01d44ca8835262c6d0df40edfd5f6a4dc5c19"]
Anchored
2026-09-20
Public log entry
search.sigstore.dev, log index 2893887498 · entry 108e9186e8c5677af79f…
Expected log hash
90099e0300c6e23b62e79318296ebab91bff130379d248ada57f044f77e72ccd The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1789796056710","kind":"published-quote","locale":"de","page":"theme:atupri/ordering/de","quote":"Erscheint immer wieder App aktualisieren, äusserst mühsam.","rating":1,"review_date":"2026-06-26","source":"Google Play","source_url":"https://play.google.com/store/apps/details?id=ch.atupri.myatupri","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (2f068f3de56b…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.