Network
Security lives in the network, not the phone.
Most hotspots in SenSignal today aren’t run by SenSignal. Here’s what we do now, and how SenSignal-managed hotspots are designed.
Today
A discovery and trust platform
SenSignal lists public Wi‑Fi from many sources: venues, the community, public information, and SenSignal’s own hotspots. Each is labeled by its evidence. SenSignal doesn’t manage most of these networks, and the app says so.
As SenSignal hotspots roll out
Managed, monitored public Wi‑Fi
SenSignal-managed hotspots report regular health checks. If checks stop or fail, the hotspot loses its verified status in the app automatically.
How SenSignal-managed hotspots are designed
These protections work for every device on the network, including laptops and tablets without the app. They reduce risk; no public network is ever risk-free.
Encrypted open Wi‑Fi where supported
Enhanced Open (OWE) encrypts traffic over the air without a shared password, on devices that support it.
Client isolation
Devices on the guest network can’t reach each other directly.
Managed policy and updates
Firewall rules, segmentation, and firmware are managed centrally and checked in health reports.
What we don’t publish
To keep people and venues safe, SenSignal never publishes internal addresses, credentials, keys, or the private details of how the network is built. Public pages describe the design at a high level only.
Open source foundations
SenSignal-managed hotspots are planned around established open-source networking tools rather than proprietary lock-in. We’ll document the details as hotspots are deployed.