Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“The PIXUM application itself is very practical and easy to handle.”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
5f5dc25c1874e732a652d32e6515ad2ab2b9beef08cb42ff59fab2a2606b09ae
Signature (Ed25519, base64)
eQTfMoCO50HU5XfMdhHLG2oIiYbSMzmvCv9KmpGoVbAid90bbnBiEzghJFOgow3rjCf1867B+XAgW/lVEqYWCA==
Merkle root
3ea09355a1b22a15fffcd33ac0d37e4039cee2896092e637dd8c4e7dfb5d507a
Merkle path
["5f607ff5b507feb4529c0bcba2af3391b5c800e9e176f03fa60905a74675864c","a68c205911b427b6ebf3b313c762dcee27da06bdd37840e0a7bc2228fe179bb6","5630e69d360e34c9a22a7ff68a9b7744aad73a5232265db633210047d1686c11","23680b94d68574781ab381224d81c811403fd3c893d9c561b8615ce2e8282aac","c4a337088318030aba43737d1d171dd1760b74e60cb6e278f51a61275944d396","7d782f5344fd2cc53fa458264d98247b85fac4c0fc810e7dca1180b4ea1ce5d0","51cad40a9db419c0b5469250a37e8395de69a3055012540b2d31e1b3c2bca367","72f4fe9d76bf3ad9251940d9d5bf8d26b9b0fa932016040a7797ac22b2ee2b9f","82a59f59bd3c38cf3e47a0b1982b46d2f8eb5c38cca7e414fa3a034c60bd8fe7","bbfc5d54caa82e3313a267bb950f2bb203770a9762f1a897c77b4386569ab21a","749b2de37aa90dddb58a80e94b12872d74e40d0ce17e71af8889b838bb64d846","a73db05799ca1e13264d43e8e441e21951bdd9bfbe513d98e8158f9d932b3d1d","d6068d4ec75b75f9574a0a861640ba111f52465cdd49a59f89c94af17934576b","c813a34665dab5ffae8513e10cc2fedc27edee77c70c636abfc3ac5275137875","331ffac0f34e1f76cacd782a04285f7bacef5f5dffbd1f8163703fce9b22280d"]
Anchored
2026-08-21
Public log entry
search.sigstore.dev, log index 2543978942 · entry 108e9186e8c5677ac836…
Expected log hash
69ff2d97383073bd392d75b79533a80cb25c69be55aee7dcb24b1acf4a379172 The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1787289230204","kind":"published-quote","locale":"en","page":"product:pixum/fotobuch/en","quote":"The PIXUM application itself is very practical and easy to handle.","rating":3,"review_date":"2025-12-22","source":"Apple App Store","source_url":"https://apps.apple.com/de/app/id1319898516?see-all=reviews","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (3ea09355a1b2…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.