Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“Still impossible to log in with biometrics”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
b2f24837f026a3c0c65413da18ce98982cc5c365250ddac058e5a72437d71e1b
Signature (Ed25519, base64)
+NHYMDj3s/3cSOnMkzc1hkPx0G27ohA2fjbbOYjxDCHN63y9emZfQUGkKH+Bv75mwUDhV5Ibm7K6rKSFmM20DA==
Merkle root
2f068f3de56bebe7a575ba4a979c9244445d2350140e36238e088fa40fbfdd88
Merkle path
["b2f1f96b482272a0e310d8d26397ef4d963b8b093b7a4fe24ac000bd26ba2efc","fa693a00eb662b716e45cf5d1b8de9d361df244228a1297ff3228f429137acba","96bf7f94ebc8b59a60911268eb2f3bd2d37cb2d5396d8b43bb6d55a3d59cceb6","5cadf628a1ea0e25b7877631ddd97535fecdd346937a7c08d011b0f9743906f0","a56b28188be7e7f0f521558d8b13612dec7bb1cec88888da81109a35029cec65","573e0283ea312a23c29cdf21e524184c897ece983e07368e94f68def882e9f65","cb97ca3fc78531038df909994ce7fa82e8905d2383bfeeb9558c5be143260438","f238c5582b6bd5f7576212fd4346c165e40e5fd67a607d02359d8c8c5dff4073","1f6c58f039e3daaade47193e221028f6f9dd4a347d80013a6d935fdcb9596c58","289a288a3dd99531088a0a5a04240a7cd0a08cfa94a37d50b01d83e5e4bad9e8","86c12730349fc5d6ac0f2950e37fc472c8263259c13a59ef5e1e26828166b9d7","bcaffb66f7637f1faea00b39e1b086b5c8748b956d5fec046d9c8718408ebc96","27978d996981aec54e7305bc9bddff422c8ed02487f8eaef12f84d0b2ba90b9f","537f00dd60bfbd8c049786f7eae4da8a735af5b60dacd3bc1b6054b8ac3175e3","58a3dfc9ad8696e92f5fc9960e9c6bc4cc04e270091b574a948593298b33d1f5"]
Anchored
2026-09-20
Public log entry
search.sigstore.dev, log index 2893887498 · entry 108e9186e8c5677af79f…
Expected log hash
90099e0300c6e23b62e79318296ebab91bff130379d248ada57f044f77e72ccd The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1789796056710","kind":"published-quote","locale":"en","page":"theme:atupri/service/en","quote":"Still impossible to log in with biometrics","rating":1,"review_date":"2025-07-23","source":"Google Play","source_url":"https://play.google.com/store/apps/details?id=ch.atupri.myatupri","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (2f068f3de56b…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.