Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“No subscription shows up in my app, yet I'm still being charged.”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
b1050f1137238cf3a63b763935749a579a52a6d67f53dc3dfcd325d1f16c439d
Signature (Ed25519, base64)
6vifV7/lplP8v3mWS8KmNJ0pY6ewEJhcngVbzPNwPMG9TBKz1j9LDMMnnHAj2Dmy6vV9P0LxYqm1RdUzDuz4CQ==
Merkle root
2f068f3de56bebe7a575ba4a979c9244445d2350140e36238e088fa40fbfdd88
Merkle path
["b105b56337eb05e683059daad9e2cbb34748ea0e4185ff522e448c4b3d43ce5a","2e649f18277ed3743071b31ec3f613228505b980a4bc68a31809f19b0a844e44","8e29127531c9f5a91bda1568e2df9b0589e92bcf7251725d172559b4ca4e8d60","83def8cde166af01147835cbf70eab128a6a9207999e36487cb4bbf0451fdacc","e0af3bc34db2707c3c868c9fdb08a2d8ac1969139d534d94447c36c73d74aa9d","b2d564ebb997635837f705c99e1347e1a2fc08d22851e60ac57db61d1ce166fe","dc288fe2187f57a38ba08c4a6fcb688fc109b1b0c9f68dc0046f97170f653f08","53b55042eccd74725bd8046d7c071797a2fafb4cde9048165c30a7809363471f","3f0a6c1a869317b67a71924015d7ca1609eeff2e82772c4c08d397364fcfb60d","289a288a3dd99531088a0a5a04240a7cd0a08cfa94a37d50b01d83e5e4bad9e8","86c12730349fc5d6ac0f2950e37fc472c8263259c13a59ef5e1e26828166b9d7","bcaffb66f7637f1faea00b39e1b086b5c8748b956d5fec046d9c8718408ebc96","27978d996981aec54e7305bc9bddff422c8ed02487f8eaef12f84d0b2ba90b9f","537f00dd60bfbd8c049786f7eae4da8a735af5b60dacd3bc1b6054b8ac3175e3","58a3dfc9ad8696e92f5fc9960e9c6bc4cc04e270091b574a948593298b33d1f5"]
Anchored
2026-09-20
Public log entry
search.sigstore.dev, log index 2893887498 · entry 108e9186e8c5677af79f…
Expected log hash
90099e0300c6e23b62e79318296ebab91bff130379d248ada57f044f77e72ccd The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1789796056710","kind":"published-quote","locale":"en","page":"theme:ifood/ordering/en","quote":"No subscription shows up in my app, yet I'm still being charged.","rating":1,"review_date":"2026-09-17","source":"Reclame Aqui","source_url":"https://www.reclameaqui.com.br/ifood/estao-cobrando-iffod-clube-no-meu-cartao-sem-eu-ter-assinatura_PPQG-lLg1JIb1-7U/","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (2f068f3de56b…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.