Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“adding reference number and address fields”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
72724e494cc7147101e70f9659ac825f3e37f24bb30044edd58c8ed7ca5a54ac
Signature (Ed25519, base64)
PbL0+ZE5T9sX89dbrPLDDpyR5eJjou9PKURmH5BoJ4JP7m2cwojSuSXb4kyE1IFKZf04NZ2Av3c/aRcGiP9IBg==
Merkle root
97eb1062a862b99998bef0a84476eb3c3812bb77c2cb927f4fd2933b59da9e3d
Merkle path
["727313e60178c9fb4b407cabe8844b0bdb7ef61ebcb6d725c92f91592ec9ce59","12e7b3ae1fecf1bc293a7def86f9033625050ee2c9d05b15cb186fbb77ceef20","64403769a4e4586808db16fb922ce353c559ec73a368138638a4559b5b5c6889","1cad4fa84e6e9ec88fc0393ccb1809615e5bc5fa6faa4a8d9f691de7e637a71c","0310f6647c56800d249a55c4dc8bfed16d0861c650d6d16e1317ee948b26e143","319811644ba8d15fdd089c84533929b3d7c866d88ee6a09a478521d30e1e3fca","7b4383efcc09bb1eb42f35f87132369c141ebc7ccbe752cde226e4c0b70a1e0f","069795e061e4085467fad0944a0c4d6d9b1cf6c8a7b4e1c478de23dec145764b","70821a32f385bbb488033b1903be5e737a4a48ae33ec6e7aadfe6038e00bda89","e744619e83a49db37b70bf05caea63c980ba94de213475076734b7c31f2c6118","af29131d06cf5d38c81cf1b17bfc06e6e5720db0c8182d9166073999fd5b8a6c","cc930d9a14ea152753caf04b31f0e79f0b00ba63dec8c58c38ded3f85cfd7dad","66d13e8b5300f6cf7ae49f9f9692863758845bb98773f7a2bbb28032eed5ad1c","90e3c3ed08ff9f4dee6683cf95bfff311f4715cac07e97ca75ea5b9bcf13efe4","01242865574478f13dcf9d888236d7a907264abdb87f360db7db06de0945075a"]
Anchored
2026-09-11
Public log entry
search.sigstore.dev, log index 2789279696 · entry 108e9186e8c5677a3885…
Expected log hash
05c7009ecf7ce5cf315c252c2a1dd135e64989a02cacdaaa3c5a87412a2e921c The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1789017464005","kind":"published-quote","locale":"en","page":"theme:xero/quality/en","quote":"adding reference number and address fields","rating":2,"review_date":"2026-08-11","source":"Trustpilot","source_url":"https://www.trustpilot.com/reviews/6a7ae41accd0a9462bb687a9","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (97eb1062a862…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.