Guide

Securing the Agent Workstation

4 minute read · Updated August 10, 2026

The console is only as safe as the machine

Discussions about chat security tend to be about the platform: how data is transmitted, where it is stored, who the vendor is. Those questions matter, and they are also the part of the chain most likely to already be handled competently. The weaker link is usually physical and unglamorous — a laptop with the agent console open in a tab for eight hours a day, on a home network, next to a cup of coffee, sometimes shared with a household.

An agent console is a genuinely sensitive surface. It shows conversation history, visitor details and whatever customers have chosen to type, and it is authenticated as someone your customers implicitly trust. Anyone with access to that screen has access to all of it, without needing to defeat anything.

Start with the lock screen, because it is free

The single highest-value control is the one everybody knows and few enforce: the machine locks itself after a few idle minutes, and it requires something to unlock. Almost every realistic exposure for a support laptop is somebody walking past an unattended screen — a flatmate, a family member, a cleaner, a stranger in a cafe. None of them are attackers in any meaningful sense, and all of them can read a customer conversation that is sitting open.

Make it automatic rather than a habit. Habits fail exactly when things are busy, which is when the agent is most likely to walk away mid-thought. A short idle timeout is mildly annoying and completely reliable, and the annoyance fades within a week.

Separate work from everything else, as much as you realistically can

The ideal is a machine used only for work. For plenty of small teams and contractors that is not the reality, and pretending otherwise produces a policy nobody follows. The workable middle ground is separation inside the machine: a distinct operating system user account for work, or at minimum a distinct browser profile that holds the console session and nothing else.

The benefit is not theoretical. A separate profile means an extension installed for a personal reason cannot read the console, a family member borrowing the laptop does not land in an authenticated session, and the browser is not autofilling personal credentials into a work context. It costs a few minutes to set up and removes a whole family of accidents.

Take browser extensions seriously

Extensions are the most underrated risk on a support machine. Many of them legitimately request the ability to read and change everything on every page, which means an extension installed for a shopping discount can read every chat transcript the agent opens. Extensions also update themselves silently, and a well-behaved one can change hands and start behaving differently without any visible signal.

The rule that works is narrow: on the profile that holds the console, install nothing that is not needed for the job, and periodically remove what has accumulated. This is another argument for the separate profile — it converts a difficult conversation about what people may install on their computer into a simple one about what is allowed in one specific place.

Home networks and public Wi-Fi need less worry than people expect

Remote support work raises the network question immediately, and it deserves a proportionate answer. Traffic to a properly configured chat platform is encrypted in transit, so the coffee shop network is not reading conversations off the air. The real network risks are duller: a router with a default administrative password, other compromised devices on the same home network, and shoulder surfing in public, which is not a network problem at all and is the one most likely to actually happen.

So the practical guidance is: change the router password, keep the work profile off shared family devices, and be aware of who can see the screen in public. A privacy filter costs very little for agents who genuinely work in public spaces.

Protect the account itself, not just the device

Device hygiene stops someone using the machine. It does nothing about someone using the credentials from their own machine, which is why the account controls matter alongside it. Every agent should have their own login rather than a shared one — shared accounts make it impossible to know who did anything and impossible to remove one person’s access — and those credentials should live in a password manager rather than in a browser, a spreadsheet or a memory.

The password manager point is worth insisting on for a specific reason: it makes each password unique, which means a breach of some unrelated service does not become a compromise of your support console. Reused passwords are how most account takeovers actually happen, far more often than anything targeted.

Write the short version and hand it to new agents

All of this fits on half a page: lock the screen, use a work profile, keep extensions off it, use a password manager, do not share logins, report anything odd. Give it to agents on day one as part of onboarding rather than circulating it after an incident, and revisit it when someone leaves, because offboarding is the moment when good device hygiene stops being about prevention and starts being about actually removing access.

How MyLiveChat fits

MyLiveChat agents log in with individual accounts managed from the dashboard, which is what makes per-person access removal possible — so the advice to avoid shared logins is not just good practice, it is what keeps offboarding a one-minute task. Roles are admin or agent, so the decision about who holds admin is worth making deliberately at setup. The console runs in the browser on desktop and there are apps for mobile and desktop use; whichever your team uses, the underlying point is the same, because the protection around the session is provided by the device and the account, and those are yours to get right.

Note that the chat console has its own idle handling, and it is weaker than it sounds: what happens when an agent goes idle explains why the lock policy is not a screen lock.

The console sign-in on that workstation shares its failure budget with every other door into the account, which is worth knowing before you dismiss a lockout report. What ten failed sign-ins actually locks has the detail.

Password managers also head off the most common cause of a locked-feeling sign-in: repeated failures from one office address. Why the sign-in page starts asking for a code covers why a shared connection trips that for everybody at once.

Put it into practice

MyLiveChat is free forever for one agent, with unlimited chats and the embed code ready in about a minute.

Free forever for 1 agent

Give every visitor an instant way to reach you.

Launch live chat, connect your knowledge base, and add AI answers when you are ready. No credit card, no trial clock.