Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“Doesn't work with GrapheneOS”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
92ae5930603360fe6a45ab0da3983907efdd3d6a69bba172b156d2c2b6d48e23
Signature (Ed25519, base64)
0I2nwLmaNSI9tKB0onarkChZGktEEzoSRWUd+5YAT66u79Kl1cuGWNNMkAaohXgIAwJwtHLhdIrIyqw6uto+BQ==
Merkle root
e61c2598d4d03770603e24740bcc427581e87bcbeea2e56dc34fd81a9f496465
Merkle path
["92b1ee3c264e2b161de6521e950b68b73f174e9acfcb5374a59beef9b5cf9ba9","d658a7b4f281395a96d822a67ea511d4061b3abc16b7eedccd0dc817f43b540f","29804c1c05539bc25d1cb11d5ffba231f9c647d949c7777568ad9c017620643c","4a501918f191b3ee22a19d7625f8d57bf608757119122c5d9928e94cb1c61582","61221922c5c780f4d1d73fd52f7f73e8eca3986f5b6963cdf671c19a374c7b55","b06de470b2bf458a20d1e56ed84d583f079c0c47655841dc612b20d56951c246","a8d1021930a55ac38f168f71732b9f7920139246ae34ab72df34549da0574bc1","0a663b4b2fe73fe145bd5568c1846220dc6885b38bc6e4e06c1066aac5637b66","0107145422db4571f45cc0df0caed624dc6a069f0a8e8c045f5ec69a56d9f6fe","c003f1c4e26eb538ce7e42e9cdb9d3921ebab1175dca0494cf21a1cd71ceee01","363a76c1bec74dccfd51f9ec32c9490f453e3a9c242c1396947cbf70e27a9167","d6dae92236724a1c5c630ec88cd9d856a8dba9968dbb6dfd88b7689ffda11388","b27b4094565f0ca03603ebfc1ba563e714e2f591604e1f375155619236859cbc","f1950e4af29dd22cc94bc58ead6e376c41b02edc9ab0ebaff7fa6fa0f9bd3732","11a62e67a9d98d919358ca5b8855f911ccdc865f14b203213de31adc67657443"]
Anchored
2026-08-19
Public log entry
search.sigstore.dev, log index 2515345787 · entry 108e9186e8c5677a749c…
Expected log hash
d9a90b5e7311041bf4315991ca7f2fbceee461daa2ae70a8b8b95323461a31cd The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1787140356347","kind":"published-quote","locale":"en","page":"brand:nexi","quote":"Doesn't work with GrapheneOS","rating":1,"review_date":"2026-04-11","source":"Google Play","source_url":"https://play.google.com/store/apps/details?id=it.icbpi.mobile","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (e61c2598d4d0…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.