Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“I would like to see more customisation options with the widgets”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
685c2118c90d9ed2729022d8ef4eec83388418521c9c3a32ccd1df27b8b72933
Signature (Ed25519, base64)
OkGWshAB589+k+p0pbbLFdXPhl7l6wSt6cqf55KrBZPmby0Lp9DoZOixtunJI/uq2VRJyRNiGyhe1KpzH6/KBA==
Merkle root
a086f9fa8309b32cad6e06b6c84c12133a405483807f462eafed4cabc6f3fb99
Merkle path
["685b2e59a104b31c1b179e048ab449ebb8ed62fa63f6a82198974a251b10a578","0eb8cc30ba35c1cc058a3ebfd4f76f637ab1259e8cf6f435c93c91517e85774f","ab7fb6d3953c3d92acee2fef04c81c1a494c6dca0345c96a66ee8d84724c81bf","30f3bca34a486db382accc4264d9328a1e5e57fe7125824a0b4b778ee8122dd6","7e1f07ae6827f30478bd52d09794470abd3d23667db00c53beee426d82e30095","067f3f2754b525b3b7448701327bb2f804094a79d345c73c3ded9270b20ce3a4","d999dd99cba424fb606d132525bf06dc7623d0851111ecff2892cadc522fa29c","90324494946818d8292ba8e1ba19e1b2d71d61015a1416cc83c6127c732c15d0","44eb60d370cb58b7dbd8f1b228e4bc513f0e65e08b072651aef9d97c013feef7","9cff19da083cabbd5266cfb1b3fbd77d891981865c4e5b007fabd682c84d7816","423c033c40ba143c6f84aa2a773cf83469afd70fc0d9aa701605d7ae7efb335c","246afafffca2f7633ac3b302d7076540ed8eb1b54bcdd20ea0afda4f6f41b399","c1423a4d1e3405e61a7dfa0f9f0d35446d77e6ae8a2a30431655b9bbf5a67719","1d7676f67710cf1152e64179021560b173262f0f0c11c7101c22e9929c376319","d4cf3fd862731bc6a1728d66b360c0434f801f84e015a828556d2731bd771b26"]
Anchored
2026-08-19
Public log entry
search.sigstore.dev, log index 2514476227 · entry 108e9186e8c5677ab19c…
Expected log hash
9a346357c8991b17bced8f12238c2332c4ac3078c0d9a283ee00f82b3c69be66 The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1787129084398","kind":"published-quote","locale":"en","page":"theme:meteoblue/fit/en","quote":"I would like to see more customisation options with the widgets","rating":4,"review_date":"2026-07-11","source":"Google Play","source_url":"https://play.google.com/store/apps/details?id=com.meteoblue.droid","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (a086f9fa8309…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.