Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“It's crucial for me to be able to create invoices via the app!”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
63cd3bc1f0c30699bbb5e5f94420e600a710c8f2cbdbcd9d7e1d5e5a8fe30bcc
Signature (Ed25519, base64)
A0Njrgm7XgqVvYRfWxF9ddMUNQ3hHOo00cvZsBp9hg/fW99BwFv0KJsfmG09zV1mnRWNwuk87CHA03mL+2jMDw==
Merkle root
aacc11945f125ee3fcdef86ba030016c440bcc608f4e51f0ffffdb4cdc5e9321
Merkle path
["63ce12849932bed570354223a75c884bc230af633874ca75cb12b17056f9c51b","18c0be39fb2c5a29c23baf6e344c365133d13b00bf9afa8b80428c1e307b578b","47141320ba53aa1db5a9521b7967af005a83ce5874b8e7df2d929635d6892468","6cbccf26677b47025f900015715f121a377a0f5c27917b78cb5e7785f0c77993","35eb9c5831346901d5600b9b0b541f42541b724f2562ee5a33a5427aeb22a6a2","7ee7ddb151d04ec45cad847c4415ab5b1b91e26052146243f75c1068800bc52c","315d7386ad3cedce69a78a1f22fd8d28c252d812c42d531a3420db7b1e18e51a","d4a1bae67e47b165c5268d7469db0a70eeef895642e025c6183b1f851ac3c548","004bdb5a9e475009c8d7333a5c313875f502f59b0f41a76c3dde7a24465037d7","590b75a206d93de9a03dadcd24e5524db77b67bf901908a5f2523c3b2193a1b6","02a5ea4f3197332385fe41072b523becd1651e68a5ab126f089fa99ed22d0ad9","10417bf8400d993dc5bc51fcb3c27f6a0c34b723944b9a3d537122bb9e0d2970","a67383a47457a5cf1d5e37868e4ed4249ae6b4ada373e7ec00eea3b30391affe","b1c6c1169310bc9b3706487a8b54e13d2c5256c24253b48b4df6440bd230af21","2309962142b16600f7fc4d57273f3042f382acb91be89aac7f00112f61b58f1d"]
Anchored
2026-08-21
Public log entry
search.sigstore.dev, log index 2543547848 · entry 108e9186e8c5677a921a…
Expected log hash
bb93f13ee7a4a636e28586b842e19662b148eb18166a89b3ae7d189bb8e81689 The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1787286345433","kind":"published-quote","locale":"en","page":"theme:sevdesk/communication/en","quote":"It's crucial for me to be able to create invoices via the app!","rating":4,"review_date":"2026-03-14","source":"Google Play","source_url":"https://play.google.com/store/apps/details?id=de.sevdesk.sevdeskgo","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (aacc11945f12…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.