UsefulOrbit

Public Computer Safety: Libraries, Hotels, and Shared Machines

Public computers look harmless: a quiet library terminal, a hotel business center, a hostel kiosk. But every shared machine carries a history you cannot see and a future you cannot control. Public computer safety comes down to a few habits: what you type, what the browser remembers, and what you leave behind when you stand up. Here is how to use any shared computer without handing over your accounts.

Illustration of a shared desktop with a warning

Why shared computers are risky

Anyone who used that machine before you could have left something behind, and anyone who comes after you could pick up what you leave. The main threats are simple and quiet:

  • Keyloggers. Software that records every keystroke, including passwords, can run in the background without you noticing.
  • Saved passwords. A browser on a shared machine often offers to remember your login. The next person can simply click in and walk into the account.
  • Forgotten sessions. Closing a tab does not always end a login. If you walk away, the person after you may see you still signed in.
  • Leftover malware. The previous user may have visited a dangerous site, and you have no way to check the machine's health before you start.

Before you start: decide what you will not do

The easiest way to keep a shared computer from hurting you is to give it as little as possible. Banking, payment details, government portals, and primary email are the highest-risk logins, so avoid them unless there is no alternative. If you must sign in somewhere, reach for a password manager so you never type a password someone can watch you enter. If you do not use one yet, our password manager guide walks through the setup. Also watch for shoulder surfing: someone behind you may be memorizing what you type, so angle the screen and type carefully.

While you use it: private and guest browsing

Every major browser includes a private mode: Incognito in Chrome, Private Browsing in Safari and Firefox, InPrivate in Edge, and guest accounts on many operating systems. Opening one before you log in tells the browser not to save your history, cookies, or autofill entries when the window closes. It is not a shield against malware, but it removes most of the traces you would otherwise leave. The tools work differently, so see our breakdown of incognito vs VPN vs Tor before relying on any one of them.

The critical habit: sign out of everything

Closing the tab is not signing out. Some sites keep your session alive for days, and the next visitor may only need to click your profile picture to be in. Before you leave:

  1. Open each account you used and choose the explicit Sign out or Log out option, not the window close button.
  2. Check every kind of account: email, social media, cloud storage, shopping, and any payment site.
  3. If the machine has a lock screen or user switching, return to the login screen so no profile stays active.
Illustration of a hand signing out of an account
Explicitly sign out of every account before you walk away.

What to check after you finish

After signing out, take a final minute to sweep the machine:

  • Confirm no browser prompt is offering to save your password; decline it or clear the saved password list.
  • Turn off autofill if it stored any of your personal details.
  • Clear the browsing data, including history, cookies, and cached files, from the window you used.
  • Delete any files you downloaded and empty the trash if you can.
  • If the option exists, restart the machine, which wipes most in-memory sessions.

The honest note: treat every shared machine as untrusted

No routine makes a public computer trustworthy. Any shared machine could be running a keylogger or other malware installed by a previous user, and you have no way to prove it is clean. Private browsing does not stop software on the machine from reading what you type. So assume the device is hostile and act accordingly: treat anything you enter as something an attacker could capture. That is why the real protection is limiting what you do on the machine, not trusting its settings.

Better options: your own device first

The safest alternative to a shared computer is your own. Your laptop, tablet, or phone is the only device you fully control, so it should be your first choice for anything sensitive. When you do use it, connect through a phone hotspot instead of the hotel or cafe network, since public wifi risks extend well beyond the computer in front of you. A hotel business center is convenient, but banking from your phone over a hotspot protects you twice: your own hardware and a network you control.

FAQ

Does private browsing on a shared computer protect me? Partly. It stops the browser from saving history, passwords, and cookies locally, but it does not stop malware already on the machine from recording what you type, and the sites you visit still see your activity.

Can I do online banking on a library computer? You should avoid it. If you must, treat the machine as untrusted, use private browsing, sign out immediately, and never let the browser save your login. If something goes wrong, file a report with the FBI's Internet Crime Complaint Center.

I think I forgot to sign out. What should I do? Go back and sign out if you can, then clear the browsing data. If you cannot return, change your passwords and log out of all sessions from your phone, since most services offer that remotely.

Does clearing the browsing history remove everything I did? No. It removes local traces, but the websites themselves still recorded your activity, downloaded files can remain, and any malware on the machine is untouched. That is why keeping sensitive logins off shared computers matters more than cleaning up afterward.

Sources and further reading

---

Written by Hassan Arshad, founder of UsefulOrbit. Last updated August 31, 2026.

Keep reading