What Public Wi-Fi Can See
On an untrusted network, what can actually be seen?
The idea
Encrypted connections hide the content of your traffic, while the sites you visit can still be visible.
In the real world
A network operator seeing which service you connected to but not what you did there.
Going deeper
Encrypted connections protect the content of your traffic, which is most of what people worry about. What remains visible to the network is metadata: which sites you connected to, when, and roughly how much data moved.
So logging into a bank over café Wi-Fi on a properly encrypted connection exposes that you contacted the bank, not your credentials or your balance. That is a much narrower risk than the common assumption, and it means the practical advice is simply to check for a secure connection rather than to avoid public networks entirely.
Where it stops applying
This assumes the connection is genuinely encrypted and certificate warnings are not dismissed. Hostile networks can also attempt downgrade or lookalike attacks, which is where a VPN adds value.
Why it matters
It replaces vague fear with an accurate picture of what is and is not exposed.
Try this today
Check that a site shows a padlock before entering anything into it.
Test yourself
Someone logs into their bank over café Wi-Fi on an encrypted connection. What can the network operator observe?
Show the answer
That a connection was made to that bank, roughly when and how much data moved. The credentials and page contents are encrypted end to end. The metadata is exposed and the content is not, which is a much narrower risk than is usually assumed.
Learn this in the feed Answering from memory, then again days later, is what makes it stick.