Quote verification
This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.
“Showed me how to upload receipts within the Xero app.”
Checks (re-run on this request)
- ✓ Signature — Ed25519 signature over the record hash, verified against the public key at /.well-known/citatio-signing.json
- ✓ Merkle inclusion — Leaf recomputed through the sibling path to the anchored root
- ✓ Public transparency log — Sigstore Rekor log index 2789279696
Proof data
- Record hash (SHA-256)
7e6478bf4a7a04ad16afc7b62064b7c49450426d85e65f543c4a11400048611c- Signature (Ed25519, base64)
7fm8huYNpm+wJTS5wsuAZrPYYLi7vwqFd7M0zLU3i0CMS+x38xHvnJkSVD9ecM46vGsHVjFqtnrMtLOASvPBAg==- Merkle root
97eb1062a862b99998bef0a84476eb3c3812bb77c2cb927f4fd2933b59da9e3d- Merkle path
["7e6594b493501b032f450c113cad623589a438881068724b9a1055278737ae74","05f10a1be5f32d500ec227dfd7f2352fa527d5565e3f6c06bd6b980ef23c691c","4f945caf55c9a1bd95649da8918c4a54e77fd1009f1b5a447c3f5a01045ea1e6","de7f42d967fd5ec3d70e1a9e6b9d49196cf3659ff616e56b4e82477b168ae9c9","488ce4c3ddfb8df72e1ca406ab0ec480de3b8d7e10288f2a8051701efae948dd","174da9f5fec8c40ab713e5d002dd3d7b6ee6c78e8048c0859acf54f45e8fe515","fa3736c053dcfc666f23091b2acbcc1edf698fea15587e9c43f141f2816a4129","8b01ea52675c2e5e7b31c5870b57b193c4e18e0f0cadf8aebf439a0948be6fac","92f7117612021e3adbd40c532fa5e96c6655a0dabe48bf741b61f9fc8b174827","2d8ecb41f8400c70f915406462ee47efc269e681ddb12759aa75be7bb6a1c1b3","4a7da3ae635c518c772181747583fe91b52dc970a195f2fea0b029288d95f308","ed5206c0018c25fc911a5b83d48a4b07edf1ca07ade25d7e56162349167c269c","6772a6b2cfb742f4baa103e424787f6ab6a8cbdfc294db886f1451f7c9752077","90e3c3ed08ff9f4dee6683cf95bfff311f4715cac07e97ca75ea5b9bcf13efe4","01242865574478f13dcf9d888236d7a907264abdb87f360db7db06de0945075a"]- Anchored
- 2026-09-11
- Public log entry
-
search.sigstore.dev, log index 2789279696 · entry
108e9186e8c5677a3885… - Expected log hash
-
05c7009ecf7ce5cf315c252c2a1dd135e64989a02cacdaaa3c5a87412a2e921cThe log entry'sspec.data.hash.valuemust equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm. - Canonical record
{"dataset_version":"v1789017464005","kind":"published-quote","locale":"en","page":"theme:xero/billing/en","quote":"Showed me how to upload receipts within the Xero app.","rating":5,"review_date":"2026-08-18","source":"Trustpilot","source_url":"https://www.trustpilot.com/reviews/6a842b44421b405682d98972","v":1}
Verify in the public log
- Open the Rekor entry (pre-filled with this proof's log index).
-
In the entry, compare
spec.data.hash.valuewith the "Expected log hash" above: it is the SHA-256 of the Merkle root string (97eb1062a862…), which ties this proof's root to the log entry. -
Decode
spec.signature.publicKey.contentfrom base64: it must equal Citatio's published key at /.well-known/citatio-signing.json. -
The entry's
integratedTimeis the independent timestamp: the root, and with it this quote, existed no later than that moment. - Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.