Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“Keeper does not save passwords without manually adding them.”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
92e33aea2b8c4e1e80732b3fac0886449bddcc544600d155f44c636bb031fdad
Signature (Ed25519, base64)
VcbLXc9chtQHGl2NAJL/TuHaDE+vqHNHJkCs7OjKgkApE9QlPlA9IaqSS3hMZ15kXK+khr+UwL53v/OsyJ1ECg==
Merkle root
97eb1062a862b99998bef0a84476eb3c3812bb77c2cb927f4fd2933b59da9e3d
Merkle path
["92e6cb7ce86095e0684950e84e5c5fe030ef5cf21d7f7a5869a12c32c4350afb","694a6f08afee920efe060c773fb20f506dc188f9abd34c0770f08145b12ef6eb","674607ee5af9dc3d6c411ce58aba33fc286028423adf5f55d96aaa1ada6197b5","b7cb5c7aa280a0c5d3acc26bc3b360d59fab5e3e0ba70309324a97f0d1214cac","f3129eabe0240a106ff9bc6e015f9993ddf82d479d34ea7522c38034e2b3b347","a3894c42450b66b8183a47e85d5fb567350c5f5c70511af24429128b02269132","eb905a613e8c7be44621ee592c72fa126af763aceeb2937dc435e08740e8b52a","303c7ab25855f900eb4e27a78ec0e8e1228f44d99ff72fdb0b034879d3cac192","7c6407cabd096d14916fcade37af40360ce3c139af05fe285d0fd3021dad85c8","b9bd72e0b07764a446b09bc0f7c7ae658a7517144bc27d39a88cae70fc5dee2b","400abd053c2aaf50c3e9947fd0ffb052641babc26e674c2fb04a1eafa76dd64b","0bbaca186fa570cfa914cb3e4cb0d5d663a77ff60ade12385fa90fdfef78367f","6772a6b2cfb742f4baa103e424787f6ab6a8cbdfc294db886f1451f7c9752077","90e3c3ed08ff9f4dee6683cf95bfff311f4715cac07e97ca75ea5b9bcf13efe4","01242865574478f13dcf9d888236d7a907264abdb87f360db7db06de0945075a"]
Anchored
2026-09-11
Public log entry
search.sigstore.dev, log index 2789279696 · entry 108e9186e8c5677a3885…
Expected log hash
05c7009ecf7ce5cf315c252c2a1dd135e64989a02cacdaaa3c5a87412a2e921c The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1789017464005","kind":"published-quote","locale":"en","page":"theme:keeper/quality/en","quote":"Keeper does not save passwords without manually adding them.","rating":1,"review_date":"2026-02-22","source":"Trustpilot","source_url":"https://www.trustpilot.com/reviews/699b1df657bd26d3b7c34e35","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (97eb1062a862…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.