The usual worry about online meetings is eavesdropping: can anyone hear us. For the mainstream services in common use, the answer is almost always no, because the traffic is encrypted and that's the most mature part of the system.
The leaks that genuinely happen come from somewhere else entirely, and all of them are preventable with no extra tools.
The shared screen
Cause number one, and it always looks similar. Someone shares their whole screen to show one document, and what comes along is:
- Notifications popping up in the corner, carrying fragments of messages from other people.
- Other browser tabs whose titles are perfectly readable.
- Desktop filenames, which often carry client names, quoted figures, or something unannounced.
- Address history appearing the moment the address bar is touched.
Three preventions, needing nothing but habit:
- Share one window, not the whole screen. Every meeting service supports this.
- Turn on focus or do-not-disturb before starting, not after the first notification.
- Prepare the window you'll share in advance, and close the rest.
If you use a second display, remember that screen sharing often grabs the primary one, not the one you're looking at.
Meeting links
Equally common. A meeting link is a key, and it gets treated as ordinary information: copied into a group chat, pasted into a widely shared calendar invite, sometimes readable on a shared screen.
- Turn on the waiting room for meetings with people outside the organisation. It's one switch, and it turns the link from a key into merely an address.
- Don't use your fixed personal meeting link for external meetings. The same link forever means anyone who ever received it can walk in any time.
- Lock the meeting once everyone's in, for sensitive discussions.
- Check the participant list before you start talking. A simple habit that catches nearly every case of someone who shouldn't be there.
Recordings
The most neglected part, because it doesn't feel like a risk at the time. A meeting recording is a complete copy of the conversation, the shared screen, and often the transcript, stored somewhere whose access is never reviewed again.
- Tell participants when recording. Beyond being required in many contexts, it also changes what people choose to say, which is the point.
- Decide how long recordings are kept, then enforce it. Last year's internal meeting recording is almost never needed, but it can still leak.
- Check who can open the recordings folder. In many organisations the answer turns out to be far more people than expected.
If recordings contain customer or patient data, the obligations match any other data and are covered in personal data security and the PDP law. For meetings that monitor or discuss employees, the boundaries are in rules on monitoring employee internet use.
Meetings from public places
The worry usually named is cafe Wi-Fi. For the meeting content that worry is overstated: the traffic is encrypted, so the network owner can't hear anything. What deserves attention is more ordinary:
- The people around you. Screens are visible and voices carry. This is the biggest risk in a cafe, and the only fix is choosing your seat and wearing earphones.
- Similarly named open networks. Not to eavesdrop on the meeting, but for whatever else you open between meetings. Covered in fake Wi-Fi and evil twins and using public Wi-Fi safely.
- Connection quality, which in public places often breaks up audio. That's a technical issue rather than a security one, covered in choppy video calls.
A VPN is useful here, but for a reason often misunderstood. It protects traffic that isn't already encrypted and hides your destinations from the network owner; it adds nothing to a meeting that's already encrypted. Explained in VPNs on public Wi-Fi.
If you're the host
A few settings worth checking once and then leaving alone:
- Only the host may share screen until permitted. This prevents disruption in open meetings.
- Participants join muted.
- Disable file sharing in chat for meetings with external attendees.
- Restrict who can change their display name, since a name resembling another attendee is the simplest way to impersonate.
In short
What leaks from online meetings is nearly always what's visible, not what's audible. Share one window rather than the whole screen, enable the waiting room for external attendees, check the participant list before you start talking, and decide how long recordings live. Those four habits close almost every real incident, and not one of them requires extra hardware or a subscription.
Frequently asked questions
Can someone on the same Wi-Fi listen to my meeting?
Not the conversation itself, since the traffic is encrypted. What's visible is that you're using a particular meeting service and for how long. The real risk in public isn't eavesdropping, it's the person sitting behind you.
Is sharing one window safer than the whole screen?
One window, nearly always. Sharing the whole screen means every notification, browser tab, and desktop filename comes along, and that's the most frequent source of leaks.