Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“ist nicht so kompliziert wie beim VLH”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
980ef68afe1696ab0f55aee1cd5011500652d29e8b2494a43ef66a116519041e
Signature (Ed25519, base64)
f6nTNIWP2yOaJd6SSwYuoQ9anZApYVeVqE9Uy9GQbS7mczyJFkOzGy29uFV3quAOQx7RmRFSw4aO2Zd6ZWQBAw==
Merkle root
2f068f3de56bebe7a575ba4a979c9244445d2350140e36238e088fa40fbfdd88
Merkle path
["980ecfebaea7e6e2e7b5af4e537ca01d90887e778b5199449a6cd6a872607f76","6f32654b87d00a5ee263f4da5f30d2e43197702cff0b56b94e444702597421d6","248a391bd50272d3655c7f7a37e931de7a36a15259b7f17213f1c5449c59deb2","bcbd8cbac0672a8abdfcddb7df34e1c55a61ecf91f34c8557c9b438eb979dafd","182fac961b2b28e7d51b68daad22f6649505a271eb40342b5e52cfadfd7d39f3","ff5a30c0e48a8b6339c2060ac5d3b9f18eb8db0a66de9ef60a03b66accc22f5d","6fe062adc2a3391edf3b81fec43d2678b25fc158e23517ff82f3483aabf3b548","8c459771f4df7b8a54e0a6327dff80a9b4a5446a8de7bd167de825e3a8e1f46d","fc3e0b7c62c2e51daf4ac8151c095c0d97d40abb00d4c2cd4b48cfb26f6c5738","d5757b3f14eddec1a63446afba47a4013316446391a57df432171bffea08a3f3","6900195e4203d1c8cd26c13eff44866a664af0e306b06dc11a266a9357e24fbe","c22fe83bd144008efb96895e17f4e6f8919a56dd8220cca85f3aa44cd67de0ee","27978d996981aec54e7305bc9bddff422c8ed02487f8eaef12f84d0b2ba90b9f","537f00dd60bfbd8c049786f7eae4da8a735af5b60dacd3bc1b6054b8ac3175e3","58a3dfc9ad8696e92f5fc9960e9c6bc4cc04e270091b574a948593298b33d1f5"]
Anchored
2026-09-20
Public log entry
search.sigstore.dev, log index 2893887498 · entry 108e9186e8c5677af79f…
Expected log hash
90099e0300c6e23b62e79318296ebab91bff130379d248ada57f044f77e72ccd The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1789796056710","kind":"published-quote","locale":"de","page":"theme:taxfix/ordering/de","quote":"ist nicht so kompliziert wie beim VLH","rating":5,"review_date":"2026-09-11","source":"Google Play","source_url":"https://play.google.com/store/apps/details?id=de.taxfix","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (2f068f3de56b…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.