Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“blazingfast inbox that handles custom domains and aliases flawlessly.”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
d28d2caa316226f5ad19a564d1cd5ba17cfd5b7af65df7f06af599a4187029fa
Signature (Ed25519, base64)
Y43XVYMpm4VhckQXVDUPlwdFQ0ixj0cijFxEJ0iGiH2SMQyc//CGkWW32GIbmPns6jSrm6myuPLz6R51+e8nBg==
Merkle root
97eb1062a862b99998bef0a84476eb3c3812bb77c2cb927f4fd2933b59da9e3d
Merkle path
["d2915f7127f4c8624dc2fe97c795e5f6d215a028c650145bb1ddd61afa4bc295","3fe885417950b4ea8d37762e86613c3466a5dfe17549b32a0772f3de826d75ee","3234d57faad127c918841418a87e28d6fc52a7cc7f783079b102954f2a82d836","92859eb6a09fb8a2b39e4ed5cb172c98718e86db17212f340b023ed34586607e","34fa62d2c85efed293adb1da670cc539c96b7bfe468426dc0f818ab75393b133","daf4b8d04c8d4ba3d81b71167c0ce998d796440e7d01793ac3abe3836d6571d7","18a707f7d8a0909c7a75f9829e73fd87a12408122e5bd436e58a3ef5c1b1434d","71c3d68c4ac47fbcd625eaa96b2143af72c5d2a257f9687f24bcfe9b33e40a1a","bd71c4cffc30c2a0efcc881945ad8f04331a72f713749d3cf5a43da0765ca488","d0733a94549ad1fa7b1ad05e67e0265e952bcc5dee973bda31ac76bec60d164b","aa7b928bd16720157d334bc98b7e5ebd98d6cf216ff9136e6ccd291dc6661148","c0cc50f924fcd6f909769461f841119392c2e50ee0690447644c3ed97414e04f","6a087565eaa0768d4c576fd78f88585a902d61259a245be7f47bc24b1ead4c18","fb01c9b29e184d558c43a512ba05af475ec20eceeace4dde365559da92299892","46bcfbc656e0e2a380a8a94cdc0be3d8b4c668e5f9e54a10ba396a45b371339b"]
Anchored
2026-09-11
Public log entry
search.sigstore.dev, log index 2789279696 · entry 108e9186e8c5677a3885…
Expected log hash
05c7009ecf7ce5cf315c252c2a1dd135e64989a02cacdaaa3c5a87412a2e921c The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1789017464005","kind":"published-quote","locale":"en","page":"theme:fastmail/price/en","quote":"blazingfast inbox that handles custom domains and aliases flawlessly.","rating":5,"review_date":"2026-05-18","source":"Apple App Store","source_url":"https://apps.apple.com/us/app/id931370077?see-all=reviews","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (97eb1062a862…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.