Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“The app doesn't allow you to create a list of listened-to books.”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
a072040a7c8873c0b6b97fbe7e0eba1b13a525f8462ba4133797e7e5465710ad
Signature (Ed25519, base64)
4P9RJMBSqjGn0Ef1XIyn7ZuRMXoVNr2oWLP6XvdRoT5lRSj8Twglv3t701C7Wf3DWOYY5zXrsHt9inmPNxLyCw==
Merkle root
f26292e960b34f73f9768b4afc64585e265549d794b35b8167826c2bcda92ef5
Merkle path
["a071bbb2594d5894230f7b6bb46a5fce5e1c4254956ea2dca0496be5494fb60e","e1a5d176e439552df4fb8b24249e377ec51720cf6ffbe33f6528a5e4651bb371","cb058790ed453c4de18df10ee82593e5adad4834e3e397e8038b664dea068ced","1fda34a233a6dbe264e6dde4f25108cbe67433fb64dbd57ad888860b9b42cb14","b8823f96dbcb93b93695c7b853a6dee14c7b0361245af5e533ef50a833873bd8","b2ec568338c35baebc8abdd2f5463c3dc0c5967cc5738215838d735881bbbd1e","accefef88036a812a8fad1d91bcf39c946232134917f68e634799d017d9fd696","be4ae36b4d3ff95d84cf9dd36e0cd8599a231fde2d1fa0d314c714c4d3849e07","714962656f154b23766607b342f31abf8ae59c9b593e4ecc297c6ca4d05762d0","83e1cdaef7bddbc2ccd805267fb199cfcd625756f8eb8f8d9f1cf74b762fa9fc","dfda572672fd24920819a6943f95ad4310aceeb99c5317f19a653df1f79f0e48","dda2bd27fa15f75292648f9c602f964628d9c021f5588053dbc2603c0cd3f589","edcaec9f8e5156b483404ee77350f2ddca893e6ce1a1eb48e97046facf217e60","ebe1651655c8b61b6b5364f1f9c2df6d3d2570b884eb1475b1f154f5054feeba","a616224c7837fee9e37cf9dfa53b6dc52945555438d928215ead84ba8ccc7b57"]
Anchored
2026-09-23
Public log entry
search.sigstore.dev, log index 2913636507 · entry 108e9186e8c5677aea51…
Expected log hash
417fac9b806377ff48d30ded01faf8424eb98406df713fe2564ee9077747e6a6 The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1790070376053","kind":"published-quote","locale":"en","page":"theme:audioteka/ordering/en","quote":"The app doesn't allow you to create a list of listened-to books.","rating":4,"review_date":"2026-08-02","source":"Apple App Store","source_url":"https://apps.apple.com/pl/app/id1107917398?see-all=reviews","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (f26292e960b3…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.