Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“If it goes past that limit, there should be a right to cancel”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
d2b4b99dfe80460d7161271ec6923b3313f22d0dfbacb4faca3e1197bf26cac2
Signature (Ed25519, base64)
C9bqymSqBgPC/giKmifNlsumoEq+7XVjYY3p/On2oHzG/by9Tmv7dE9mFsxVn/CMJo0Nb/Q04MpJeX6/n2IxAw==
Merkle root
2f068f3de56bebe7a575ba4a979c9244445d2350140e36238e088fa40fbfdd88
Merkle path
["d2b416e4155d780a59f12b6f923699a9aaec8be27798cfd3cd552af436ed3864","4fe88795ac5a97ca5de99a9a6eac6ed64205a3f4f545f5bd8cecb5ce1fe9dbca","cc5c7282562adb28aa0344dbfefb956e5ce38b75fc84838784e3b6cffdee3096","903e47c07653bac6423d95e39bdce65a0622bc67a540c50be800581405dbbd27","70c8b2f0a5254d2e306745e307d8e1128339ae0dc0bb702674a25f8650eaafad","fd781682d3742bb25d20c7d554f5baeb936ebcc9304f02b87f6c8081eb606998","49d340dbda5e5c9380410fe72afdd67278f9b683da73d5a20fc3117baf81314c","db0923e7a75853b18228077efcead500ea7a051ba271e1634d7280a0df8fd0b6","ae82af297fa62b8143ea54eefe99b61443e10d44405a9f80079017dedf927d4a","afcbb6b1f67dfb1bff60df00622b5552f68aa81c7dfc27c87791c7f6e8df1dde","1d9405e14643af107c29759ed9a24a4b18aeab1b3e8759243d7815e5613d437a","4c50ad53b7f499e0679555fac955a3a7f15d25b2f16f07f89bffb825c220a814","f798c0971d32a6ae8da39cbfdd643aa26fcc32dd200aa7f9151048a02f8ece59","537f00dd60bfbd8c049786f7eae4da8a735af5b60dacd3bc1b6054b8ac3175e3","58a3dfc9ad8696e92f5fc9960e9c6bc4cc04e270091b574a948593298b33d1f5"]
Anchored
2026-09-20
Public log entry
search.sigstore.dev, log index 2893887498 · entry 108e9186e8c5677af79f…
Expected log hash
90099e0300c6e23b62e79318296ebab91bff130379d248ada57f044f77e72ccd The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1789796056710","kind":"published-quote","locale":"en","page":"theme:quero-delivery/returns/en","quote":"If it goes past that limit, there should be a right to cancel","rating":3,"review_date":"2026-07-18","source":"Google Play","source_url":"https://play.google.com/store/apps/details?id=com.querodelivery","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (2f068f3de56b…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.