Privacy

Privacy Policy

Effective 9 September 2026

This policy covers Geul.it, an iPhone app published by TIGER LABS.

What is collected

Geul.it collects no advertising identifier, no behavioural analytics, and no sign-up details. Drafts you write and posts you keep in Scrap are stored on your device.

Public Steem data and publishing

To show feeds, posts, comments, tags and profiles, the app calls Steem's public JSON-RPC services. If you connect an account and choose to publish, comment or vote, that account, the content and the transaction are recorded publicly on the Steem blockchain.

Your posting key

The posting key you enter when connecting an account is stored only in the iOS keychain. It is tied to your device passcode and is not restored to another device from a backup. The key itself is never sent to a server; it is used on the device to sign transactions. Owner and active keys are refused at the check and never stored.

Push notifications

If you turn notifications on, the information needed to deliver them is stored on a notification server operated by TIGER LABS. That is: the push token Apple issues for your device, the Steem account name notifications are for, which kinds of notification you have enabled, and a record of what has already been sent so the same notification is not delivered twice. The server uses this only to deliver notifications and does not share it with third parties.

The notification server never receives or stores a private key. Notification content comes from Steem's public data.

Turning notifications off in the app, or revoking Geul.it's notification permission in iOS Settings, stops delivery. To have a stored device token and its settings deleted, write to the address below.

Images

Only when you choose to add an image to a post are the selected image and its file name sent to a Steem image hosting service. An uploaded image may appear in a public post.

Retention and deletion

Local drafts and Scrap are removed from the device when you delete them in the app or remove the app. A connected account can be disconnected in the app, which deletes the stored posting key. Content already published to the blockchain cannot be deleted by the app, as a distributed ledger does not permit it.

Contact and changes

For privacy questions and deletion requests, write to admin@annotateshot.com. If the practices described here change, this page's effective date and content are updated.