Airport Wi-Fi, hotel networks, public USB charging points, border checkpoints — every one of them is a place where your phone and the personal data on it are more exposed than they are at home. A detailed guide from solo travel site GRRRL Traveler lays out how travellers can lock down their devices before and during a trip, and the advice is worth acting on before you fly, not after something goes wrong.

The logic is simple: your phone now carries banking apps, saved cards, emails, passwords, social accounts and biometric data. Lose it, get it searched at immigration, or connect to the wrong network, and a stranger could access all of it. Even the writer admits to casually trusting free Wi-Fi in airports and cafes — a habit most of us share.

Preparation starts at home. Update your operating system and apps (especially banking and email), enable two-factor authentication on essential accounts, set a strong passcode with automatic screen lock, and switch on Find My Device so you can locate or remotely wipe a lost phone. Turn off Bluetooth and Wi-Fi auto-connect, log out of apps you won't need, and back up your photos and files to the cloud plus one offline copy. Two smart habits stand out: screenshot your passport, visa and bookings so you don't need an internet connection to reach them, and carry a dedicated travel credit card linked to a limited-funds account. If it's skimmed or stolen, the damage is capped.

Airports get their own warning. Treat every airport network as hostile — no banking, no logins. Skip the public USB charging stations because of juice-jacking risk, and charge a power bank instead. Disable AirDrop and file sharing, and consider a global eSIM so you can use your own data connection rather than public Wi-Fi. The guide also suggests choosing a manual passport check over a biometric scan, and using RFID sleeves for cards and passports.

Border crossings are where things get serious. Border agents abroad aren't bound by your home country's search rules, and officials can compel you to unlock a phone with your face or fingerprint — but generally cannot force you to reveal a passcode. So disable Face ID or fingerprint unlock before immigration, power devices down, keep sensitive data off local storage, and don't volunteer passwords unless legally required. iPhones have a Lockdown Mode that restricts most attack vectors if you expect a search.

At your accommodation, watch for fake Wi-Fi networks with lookalike names, use a VPN on hotel networks, log out of smart TVs, and avoid shared lobby computers entirely. Day to day, favour contactless payments (they defeat card skimmers), never scan random QR codes, store passwords in a proper vault rather than a Notes app, and keep your phone on your body rather than in a backpack.

If the worst happens: freeze affected cards immediately, check for unauthorised logins, remote-wipe the device, change key passwords from a clean device, and file a police report — insurers usually require one for reimbursement.

This is practical pre-trip homework for anyone travelling with a smartphone, which is to say almost everyone. Twenty minutes in your settings could save you a ruined holiday.