Summary

18 items · 10–20 minutes

Why Shared Devices Carry Real Risks

Using a library computer, a hotel lobby kiosk, or a friend's tablet is perfectly normal — but these devices are different from your own. You don't know what software is installed, whether the browser saves passwords automatically, or who used the device before you. Information you enter can linger in browser history, autofill fields, and even clipboard memory long after you walk away.

The good news is that a short, consistent checklist keeps most of that risk in check. Whether you're checking email while traveling or printing a boarding pass at an airport terminal, these habits protect your accounts and data without requiring any technical expertise.

For a broader look at how your data moves online, see our complete guide to online privacy — it covers tracking, data collection, and practical protections.

Before You Start

Open the browser in private or incognito mode before doing anything else, so the session won't be saved to history. Must
Confirm you're using a trusted, up-to-date browser — avoid installing browser extensions or plugins on a device you don't own. Should
Check that the address bar shows HTTPS (the padlock icon) on any site where you'll log in or enter personal data. Must
Avoid accessing banking, healthcare portals, or other highly sensitive accounts on a device you don't control. Must

During Your Session

Decline any browser prompt to save your password — tap 'Never' or 'Not now' every time. Must
Do not enter payment card details unless absolutely necessary, and never save them to the browser or site. Must
Avoid opening email attachments or downloading files; if you must download something, delete it before you leave. Should
Be aware of people nearby who could see your screen — reposition or angle the monitor if needed. Should
Do not copy sensitive data (passwords, Social Security numbers) to the clipboard — it can persist after you close the browser. Must

Before You Leave

Sign out of every account you accessed — do not just close the tab; find and click the 'Sign out' or 'Log out' button. Must
Clear browser history, cookies, and cached data using the browser's settings menu (usually under 'Clear browsing data'). Must
Close all browser tabs and windows — don't leave any page open for the next user. Must
Delete any files you downloaded during the session from both the downloads folder and the recycle bin or trash. Must
If you used autofill at any point, check the browser's saved data settings and remove your entries. Should

After Your Session (from Your Own Device)

Check your email for any unexpected login alerts that may have been triggered by your session. Should
If you're unsure whether you logged out fully, change your password for any account accessed on the shared device. Should
Review active sessions in your account security settings (most major services let you see and remove other logged-in devices). Nice to have
Enable two-factor authentication on any account you don't already have it on — this limits damage if credentials were captured. Should

Tools and Settings That Help

You don't need special apps to stay safe on a shared device — the right browser settings and a few built-in features do most of the work.

Required

Incognito / Private Browsing Mode

Prevents the browser from saving your session history, cookies, and form data locally on the shared device.

Required

Browser's 'Clear Browsing Data' Feature

Manually removes history, cookies, and cached files at the end of your session if private mode wasn't used from the start.

Optional

Account Security Dashboard

Built into most major services (email, social media), it lets you view and remove active sessions from devices you no longer trust.

Optional

Two-Factor Authentication (2FA) App or SMS

Adds a second verification step so that a captured password alone isn't enough to access your accounts.

If the shared device is on a public Wi-Fi network, the risks compound. Our article on using public Wi-Fi safely explains which tasks carry more risk on open networks. And when you're browsing, always look for HTTPS in the address bar — that padlock icon matters more than most people realize.

Incognito Mode Is Not Invisible

Private or incognito browsing stops the browser from saving your history and cookies locally — but it does not hide your activity from the network, the device's operating system, or any monitoring software that may be installed. On a library or workplace computer, IT administrators may still be able to see what sites you visited. Treat incognito mode as a cleanup tool, not a cloak.

Finally, adding two-factor authentication to your important accounts means that even if a password is somehow captured on a shared device, an attacker still can't get in without a second verification step — it's one of the most effective protections available.

Share

Internet & Mobile Editorial Team · Contributor

Internet & Mobile Editorial Team is the collective byline for our editorial team and contributor network. Articles published under this byline or an editorial pen name are researched, written, and reviewed according to our editorial standards for clarity, consistency, and independence before publication.

The content on this site is for informational purposes only and is not a substitute for professional advice. Always consult a qualified professional for guidance specific to your situation.