Metlivi Blog

How can you prevent sensitive companion-app content from leaking through lock-screen notifications?

A locked phone can reveal more than a sentence. A companion-app notification may show the app name, character or sender, generated reply, image thumbnail, voice transcription, file title, one-time code, or a button that replies without opening the app. Hiding message text on the phone may still leave a full preview on a watch, desktop, tablet, car display, or notification history. The right setting depends on who can see the device and which alerts you still need. Start with a surface map, choose the minimum useful signal, and test it while the device is genuinely locked. Menu names vary by operating-system version and phone maker, so use current first-party instructions for the device in your hand.

August 30, 20268 min readHome, Safety, Pets & Sustainable LivingBy Metlivi Editorial Team
Section 1

Inventory what one notification can disclose

Trigger a harmless test message and list every visible field: app icon and name, account or character name, message text, attachment thumbnail, time, profile image, badge count, and available actions. Include missed-call cards, live activities, widgets, voice-message transcription, and grouped notifications; they may use different channels. Decide which fields are sensitive in your context. Someone who shares a household may not need the message body, while a workplace visitor should perhaps not see the app name. This inventory is more reliable than assuming the operating system automatically recognizes all companion content as sensitive. Android's developer guidance makes clear that apps can mark visibility levels, but the final result also depends on the user's settings.

Section 2

Set the operating-system default, then narrow the app

On iPhone, review “Show Previews” and the companion app's notification style; Apple documents global choices and app-specific Lock Screen delivery. On Android, choose whether all lock-screen notifications, only redacted content, or none should appear, then inspect the app or notification category. Android Help warns that the names and locations vary by manufacturer. A useful compromise is often to retain a generic “new message” signal while hiding the sender and body until unlock. If even the app identity is sensitive, disable its Lock Screen delivery or notification entirely. Do not confuse a stacked or count-only layout with redaction: a tap, expansion, or authenticated glance may still reveal content depending on configuration.

Section 3

Review quick actions and unlock behavior

A hidden preview can still expose a reply box, mark-as-read control, call-back button, or expanded card. Test whether a long press or swipe reveals the full text before authentication and whether replying requires unlock. On supported iPhone versions, locking or hiding an app can prevent its information from appearing in notification previews and other surfaces, but that state applies per device and has product-specific effects. On Android, notification actions can be designed to require authentication, yet users cannot assume every app has implemented that option. If the companion app offers an internal setting such as “include message text,” turn it off as another layer; an in-app toggle does not replace the operating-system check.

Section 4

Audit linked screens as independent endpoints

Walk through the notification settings on a paired watch, tablet, desktop browser, operating-system companion service, car interface, and any shared smart display. Mirroring may copy the phone's alert, or the linked app may have its own session and preview rules. Android documentation notes that notifications may appear on paired Wear devices; Apple settings and app-lock behavior can also differ by device. Put the phone in a bag and observe the actual linked display during a harmless test. Remove old browser notification permissions and sign out unused desktop sessions. A protected phone screen does not control a screenshot or banner generated independently elsewhere.

Section 5

Test locked, unattended, and after an update

Lock the device with the passcode or biometric boundary active—do not test immediately after a face or watch has already authenticated it. Place it on a table, send a group message, image, voice clip, missed call, and generated reply using non-sensitive sample text, then try tap, expand, swipe, and quick action without unlocking. Repeat with the always-on display if present. After an operating-system or app update, check one harmless notification again because menu placement, channels, and defaults can change. Samsung's documentation is one example of manufacturer-specific menu paths; verify the current instructions rather than copying steps written for another device model.

Section 6

Separate preview control from retention and access

Removing a banner or hiding a preview does not delete the conversation, notification history, attachment, backup, or service-side record. Conversely, deleting a conversation may not clear an already mirrored desktop notification. Review chat retention and linked sessions separately, and use remote-lock or session-revocation tools if a device is lost. Document your chosen state in plain language: “phone shows app name only; watch receives no companion alerts; desktop browser notifications off.” Recheck when lending a device, adding a wearable, enabling a car connection, or changing biometric settings. These measures reduce casual disclosure at display surfaces; they cannot promise that content already seen, copied, or retained elsewhere disappears.

Related questions

Common questions

Is hiding message previews enough?

Not always. The app name, sender, thumbnail, badge, quick actions, and linked-device mirrors can still disclose information. Audit each surface separately.

Why do Android instructions look different on my phone?

Android Help notes that settings vary by manufacturer and version. Use the current device-maker documentation and test the actual locked result.

Does clearing a lock-screen notification delete the chat?

No. Notification display, notification history, in-app conversation retention, linked-device copies, and backups are separate controls.

Related reading

Keep exploring this topic