Risks on a shared network
A café, hotel, airport, train, or coworking space may have many networks with similar names. A convincing lookalike can be created by anyone nearby, so ask staff for the exact network name and sign-in method. Disable automatic joining for unfamiliar networks. A strong signal does not prove ownership, and a familiar venue logo on a browser page does not prove that the page is genuine.
Other risks exist after you join the correct network. Shared Wi-Fi can be misconfigured, monitored, or interrupted, and another device may try to direct you to a fake sign-in page. Keep the operating system and browser updated. Reject certificate warnings, device-management profiles, and unexpected software downloads. A VPN reduces exposure on the local link but cannot make a malicious destination safe.

Before you connect
Prepare before opening email, banking, work chat, cloud storage, or any account with private data. Confirm the venue's Wi-Fi name, turn off automatic connection to similar networks, and make sure BratVPN came from the official store or desktop download. If the venue uses a captive portal, join the network and finish that narrow sign-in step first. The portal may be unreachable while the VPN tunnel is active.
A legitimate portal normally asks you to accept network terms, enter a room number, or provide another venue-specific detail. It should not require the password for your email, Apple Account, Google Account, bank, or employer. If the request seems unrelated, ask staff rather than guessing. Use mobile data or a trusted hotspot when the network identity or portal cannot be confirmed.
Use BratVPN on public Wi-Fi
Connect BratVPN immediately after the portal is complete and before opening sensitive services. Wait until the app reports an active connection, then load an ordinary HTTPS page that contains no private information. If the page works, open a second familiar service. This separates a single broken website from a general network problem and gives the tunnel time to settle after the portal handoff.
Keep changes small if something fails. Restart the app once, check that the portal session is still valid, and compare the same harmless page on mobile data or another trusted network. Do not disable browser security, accept an unknown certificate, or install a profile just to make venue Wi-Fi work. The safer answer may be leaving that network and using your own connection.
- 1Confirm the Wi-Fi name with the venue and disable automatic connection to lookalike networks.
- 2Join the network and finish its captive-portal sign-in without entering unrelated account credentials.
- 3Open BratVPN and connect before using email, banking, messaging, or work services.
- 4Confirm the app shows an active connection and test an ordinary HTTPS page.
- 5Reject unexpected certificate warnings, device-management profiles, and software downloads.
- 6Disconnect from the public network and make the device forget it when finished.
What the VPN does not protect
The VPN encrypts traffic between your device and the VPN server. It does not check whether a shop page is genuine, stop you from downloading malware, erase cookies, or hide information you enter into an account. Websites can still see their own login and activity data. Continue to check domains, use HTTPS, keep unique passwords, and approve two-factor prompts only when you initiated the sign-in.
A VPN also does not override workplace policy, hotel terms, service rules, or local law. Managed devices may contain approved network profiles or security tools that you should not remove. If a corporate app behaves differently on shared Wi-Fi, use the employer's documented process or contact its administrator. Avoid moving confidential work to a personal device merely to bypass a policy restriction.
If the network blocks the connection
First confirm that the captive portal is complete. Disconnect BratVPN, open a plain browser page to trigger the portal, accept only the venue's expected terms, and reconnect. If that does not help, close and reopen BratVPN and test the same safe page. A network change is more informative than repeated connection attempts on one access point. Mobile data can show whether the app itself is working.
Some shared networks apply policies or routes that prevent a VPN connection. BratVPN cannot promise access on every venue, provider, or country. Do not install unofficial software or weaken device security to force a connection. Record the venue type, platform, app version, approximate time, and visible error, then send that limited context to support without including credentials or private browsing activity.
A safer routine after you leave
Close any unfinished sensitive session, disconnect from the venue network, and tell the device to forget it. This prevents an automatic join if a network with the same name appears later. Re-enable your normal connection and confirm BratVPN's state before continuing. If you accepted a certificate warning or installed a profile by mistake, stop entering credentials and review the device with a trusted administrator or support channel.
Watch for unexpected account alerts after using any shared network, even when a VPN was connected. A login warning may relate to a phishing page, reused password, or account event rather than the Wi-Fi link itself. Change a compromised password from a trusted network and sign out other sessions through the service's official security page. The VPN is one part of the routine, not a substitute for account security.
Frequently asked questions
Should I turn on the VPN before joining Wi-Fi?
Join the confirmed network and complete its captive portal first, because the portal may not load through a tunnel. Connect BratVPN immediately afterward and before opening sensitive services.
Does a VPN make an unsafe website safe?
No. It does not fix phishing, malicious downloads, an incorrect domain, or missing HTTPS. Keep browser protections and account security in place.
What should I do if the VPN will not connect at a hotel or airport?
Finish the portal, restart the app once, and compare another network such as mobile data. Contact support with the platform, app version, network type, and non-secret error if it still fails.
