Quote verification

This proves the quote below is recorded by Citatio exactly as displayed and has not been altered since it was committed and anchored. It documents Citatio's crawl observation; it does not imply endorsement by the source platform. The quote links to the original review.

“I just cancelled the subscription and uninstalled it.”

Checks (re-run on this request)

Proof data

Record hash (SHA-256)
fff3d419f2f5a21445d7fe80d4cf7cbb8250d1ea35be6ac01790c38d7cd78dc6
Signature (Ed25519, base64)
VcSpZURFGjTlLL2DebUX0vyi8FSsR5PIQWNbqZKu3fkCxRJNNjZhHpH8E7fJNo8GFup8p822GQ+LJmMhgu5GCQ==
Merkle root
8a6ad893af0f0bb6c448016a777af61f3f4935afd82df0db132e64f813535715
Merkle path
["fff3527fcba4aa977ce14cab6bef23299ab45ebc4df3bcd94aa7996b25ae0643","f1fef5683c10fb1817c1799c6e3e485699f7058fb5e6e06cf6e62164813db4f3","2f4d88263166581ae59c284163dff1c14c23b8273ce98e80ee354d6ad338a845","fffdd871d3bdb4b4b2ddd2bc3c208c446d0bcafac212980634a1757fbe6b6760","8f6156d53aaebc6bd07033d4d186a5d2988405302eefb21ef9926c5f9b803e8c","b7e2ffd7cc3751040d6333db1d59798bc6858d8e51d673c786b5113b7cb010fa","e935a047d05ae025b873abd86951bd3a367a901bd3cb04fcce7237ba3fa9b9b9","5bc1168c47f5724c35ec8610ad8e7047dceb7d2dc8be9a835d1c344ea14431e5","aca625c2c743c13b7e188c90a8dcb2895afae601815729b8511e9bcc31ba8968"]
Anchored
2026-08-19
Public log entry
search.sigstore.dev, log index 2515144749 · entry 108e9186e8c5677a63b7…
Expected log hash
b6b79ad662332330e69c4ef135f6fb13ddc70048f846024d496aaa533f7f7fc0 The log entry's spec.data.hash.value must equal this value: the SHA-256 of the Merkle root string above. Recompute it yourself from the root to confirm.
Canonical record
{"dataset_version":"v1787137589246","kind":"published-quote","locale":"en","page":"theme:meteoblue/returns/en","quote":"I just cancelled the subscription and uninstalled it.","rating":1,"review_date":"2026-06-27","source":"Google Play","source_url":"https://play.google.com/store/apps/details?id=com.meteoblue.droid","v":1}

Verify in the public log

  1. Open the Rekor entry (pre-filled with this proof's log index).
  2. In the entry, compare spec.data.hash.value with the "Expected log hash" above: it is the SHA-256 of the Merkle root string (8a6ad893af0f…), which ties this proof's root to the log entry.
  3. Decode spec.signature.publicKey.content from base64: it must equal Citatio's published key at /.well-known/citatio-signing.json.
  4. The entry's integratedTime is the independent timestamp: the root, and with it this quote, existed no later than that moment.
  5. Locally, without any Citatio infrastructure: SHA-256 the canonical record (must equal the record hash), verify the Ed25519 signature against the public key, and fold the hash through the Merkle path (sorted-pair SHA-256) to reach the anchored root.