Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“keeps it to themselves stating that I need to be verified, but doesn’t allow any verification through”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
bcf5579ee575596eca221e4dfaee6a09016f9838a132ee47ed372b33efb569f9
Signature (Ed25519, base64)
+y1Rbv4VBQakiquKkgQQlKIQPXbRBG0yhiEKHOeap49FTDduCJ01Bet/EomewfUfjegj1fHyuNkGB+uceUcNCg==
Merkle root
aacc11945f125ee3fcdef86ba030016c440bcc608f4e51f0ffffdb4cdc5e9321
Merkle path
["bcf103131de9f43139edc380fe8f0872b72f23b03c299580f12d0a8c1e8429cc","f71ddc15c338eceac1559fac3b4616e70f7dc51efcc54bfca4fdc226bcd4b49a","ad2163fce2ac85d0696764b9bd5d1b9cff56c9fc329be0a8386e748efdc0ebc8","837d2f3473f4bf87ee6861d3d5eb8814e0348e2bf619341126bd13548b8971ec","b2a0c486f459ee10754232907ae8166a943b9abf7c7084f589f37bfa014ec235","75678b5a3a0d458314150f458133f9e4881f500c68db71bbb0c70e55cb9ffe71","586d09528cacbd6043f510cdba14e123cb83b9319001f08829150377c31460ef","cc60a84b71af84a47b6ac29e0826b3ca3afb1a2b1a5b93649d257873b93e0f12","a29c141bedb20569769cad90590c222d2a9b5044cb49190c8b7b168ad48f0a64","48c33909eefd3573104948fe658378e5e20b394b9cf0f773f7de039e7b35049a","1161ce147c8b3003f6d2b03529bd50c6a14bff0c9d9f1e2f98e6d12028225797","8cd76c1c170dbe293560960ebc25fb9fbeb75ec1e63932e29d1cf176cf8493ea","5cc879d970bd25ed7bf08e6b0ef30fd4eaa07afc421cc2c206a72deac6f48789","b1c6c1169310bc9b3706487a8b54e13d2c5256c24253b48b4df6440bd230af21","2309962142b16600f7fc4d57273f3042f382acb91be89aac7f00112f61b58f1d"]
Anchored
2026-08-21
Public log entry
search.sigstore.dev, log index 2543547848 · entry 108e9186e8c5677a921a…
Expected log hash
bb93f13ee7a4a636e28586b842e19662b148eb18166a89b3ae7d189bb8e81689 The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1787286345433","kind":"published-quote","locale":"de","page":"brand:adyen","quote":"keeps it to themselves stating that I need to be verified, but doesn’t allow any verification through","rating":1,"review_date":"2025-12-03","source":"Trustpilot","source_url":"https://www.trustpilot.com/reviews/69304b3dae22469b0d7bccb6","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (aacc11945f12…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.