Skip to content
Skip to main content
First Response & Preservation Operational Explainer

Should I enable flight mode?

Use flight mode only when it addresses a defined wireless risk and the change itself is justified.

It is not a universal evidence-preservation button and it does not prove complete isolation.

Before touching the setting
Work out which connection is causing the risk. Then decide whether flight mode actually controls that route without destroying more useful state than it protects.

Record the current connection state first

Where visible, note:

  • mobile signal;
  • Wi-Fi;
  • Bluetooth;
  • VPN;
  • cables or dock;
  • active sessions; and
  • current screen state.

A quick note might read:

Pre-flight-mode state
Mobile: 5G connectedWi-Fi: Hotel-GuestBluetooth: onVPN: activeUSB-C: power only appears visible

That gives you a baseline.

Flight mode may change some radios but not every route

Its behaviour varies by device and settings.

Wi-Fi or Bluetooth may remain active or be re-enabled separately.

Wired Ethernet, USB data, tethering or a dock sit outside flight mode entirely.

Does flight mode disable every connection? covers that distinction.

The interaction itself may change evidence

Opening settings and enabling flight mode can:

  • create system records;
  • expose notifications;
  • alter application behaviour;
  • close remote sessions; or
  • stop cloud content loading.

On an unlocked or encrypted device, specialist advice may be sensible where available before changing state.

Verify the observed result

If flight mode is used, record:

  • who enabled it;
  • time;
  • method;
  • which indicators disappeared;
  • which remained; and
  • any immediate application or session change.

Do not report “device isolated” simply because an aircraft icon appeared.

The practical point is: flight mode is one device-dependent control. Use it for a defined purpose and verify what it actually changed.

Reference: FRP-047First Response & Preservation