Using a burner device properly — discipline beats hardware
A “burner” is a throwaway/secondary device you deliberately keep apart from your everyday life — for pseudonymous accounts, sensitive communication or travel. The hardware is the easy part. What really counts is the discipline around it: a burner you use like your main phone isn’t a burner — it’s just a second phone that gives you away.
What a burner does — and what it doesn’t
A burner separates identities: what happens on the burner isn’t tied to the fingerprint, accounts and contacts of your everyday device. It does not make you invisible. Carriers, Wi-Fi operators and the services you log into still see what they always see. A burner lowers linkability, not visibility.
The one rule: no overlap
Anything that connects burner and everyday life undoes the separation. A single overlap is enough to merge both identities:
- No shared Wi-Fi/network at the same time and place (same IP = correlation).
- No shared accounts, numbers, emails — not even “just once”.
- No shared contacts: anyone who has both numbers connects them.
- Don’t run them in lockstep: two devices that always go on/off together and travel the same routes are trivial to pair by location.
Setting it up cleanly (step by step)
- Acquire it separately. Device and SIM/eSIM with no link to your identity (cash; see our guides on payment/numbers). Not with your credit card, not to your home address.
- Set it up separately. Do the first setup not on your home Wi-Fi. Use a clean network of its own (someone else’s/public Wi-Fi, or the burner SIM’s mobile data) + VPN/Tor from the very first second.
- Its own identities. Fresh accounts for this persona only, a fresh number, a fresh email. Reuse nothing.
- Keep it minimal. Only the apps the persona genuinely needs. Every app is attack surface and a metadata source.
- Encrypt it. FDE with a strong passphrase — on loss/seizure, nothing is readable without it.
Location & metadata: the silent tell
Usually it isn’t the content that gives you away — it’s the pattern. A burner that registers on the same cell every evening as your main device is tied to you through the tower, no matter how anonymous the SIM is. So:
- Don’t run the burner permanently at your home/work location; keep it off when not in use.
- Never registered at the same place at the same time as the main device when separation matters.
- Don’t mirror movement patterns (don’t take both devices along the same routes).
When to “burn” it
A burner is meant to be thrown away. Draw a line when the persona is compromised, when you’ve broken the separation even once, or when its purpose is served. “Burning” means: close/abandon the accounts cleanly, reset the device (a factory reset with FDE active makes the data unreadable), dispose of the SIM. Don’t migrate data to a successor device — that would drag the old identity along.
Realism
A burner is a tool for separation, not a cloak. It’s only as good as the consistency with which you run it. For most threat models, a hardened GrapheneOS device with clean profile separation is the better everyday approach; a true burner is the escalation step when identities must stay hard-separated. Decide by your threat model — not by the feeling of being “safe”.
Want a cleanly separated secondary device (encrypted, minimal, VPN on it) without us knowing your identities? Ask about the setup service in the configurator.