Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“Die Verwaltung der Playlists ist mittlerweile wirklich unübersichtlich.”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
7f7e9c68df85705e59d9684855a001eecc0cf2117c1720c1f4eff9a57bd4dd1b
Signature (Ed25519, base64)
nUp2a0Z5fd/zOuynb/2lViERGKbAyyPTQmIgrXO2acPpci7UhSIVhAfRqGnkdW1YKSefV7xpIjS/JG7gZglZCQ==
Merkle root
f26292e960b34f73f9768b4afc64585e265549d794b35b8167826c2bcda92ef5
Merkle path
["7f7e0f13fcd2cd633dfc960bbb3a58ab423ca596be7b7cc46de9454fb555f17b","33407fec125f4134480fae2174cecf3c942a9d816c1c77208d1b7c55f1eca8d4","712278f3549f3848ec87b82d5f47abb6b297643f25f7f436dc086b566274ffe8","2d6a76699905860ec1fe25a08e386bfbeac46314437c58836ac62ca9eaeb98f1","cda446819afdcf18d0ce7b36ef0a55675d0568a50f29b4a905cbebf00e8ddfad","aa178753fda0d022e5989ff0763fe643a774cb036d5ad95d76b23428392ded4b","692b7ce79139202ecf613cac15d58bbcf934f0a11ca164a18aa03f298510bb45","78b5b0b20fb44a598ebf579c60b4f47564695f26dec41f17e88c7e5afe8619c5","4f0e6ed093d27c1b635c1c5b6720174d7e1b778a53441e31dfa90ff9aadd89f7","f1379a56decd53048540488df5b225a4ecc0cb7be7306dd61747c953986e0ab1","dae7bfd6c108e5c8e6def41305d16045bc4033712b2e981438c95b3e764d0576","9a9aacd96a1ac53199b2b5828545bdd6abac29af29da6dc5f9cc3106d65b75ac","ff839efe243c09faa45172bad7cb61d9b7e0949040c580ec02a160cb61e2c279","7a8821e5f39bd89945ecf080ecd049c93644614124901c8b74f26df2e34d9289","e95e880a53b013b49906f2e6b9dcc652726333d77986f48029bb634dc427e2de"]
Anchored
2026-09-23
Public log entry
search.sigstore.dev, log index 2913636507 · entry 108e9186e8c5677aea51…
Expected log hash
417fac9b806377ff48d30ded01faf8424eb98406df713fe2564ee9077747e6a6 The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1790070376053","kind":"published-quote","locale":"de","page":"theme:spotify/ordering/de","quote":"Die Verwaltung der Playlists ist mittlerweile wirklich unübersichtlich.","rating":1,"review_date":"2026-09-20","source":"Google Play","source_url":"https://play.google.com/store/apps/details?id=com.spotify.music","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (f26292e960b3…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.