WhatsApp Web doesn't show you a login history the way email does
WhatsApp Web is the browser version of WhatsApp that runs on your computer. Unlike Gmail or Facebook, it doesn't keep a visible list of every time you logged in, what device you used, or where you were. Instead, WhatsApp shows you active sessions — the devices currently connected to your account — and you can see them only in the WhatsApp app on your phone, not in the web version itself.
If you want to know whether someone else has accessed your WhatsApp Web, or if you've left a session open on a computer you no longer use, you need to check your phone. The phone app is where WhatsApp stores this information.
Key Takeaways
- WhatsApp Web sessions appear in your phone app under Settings, not in the browser version itself.
- You can see which devices are currently logged in, but WhatsApp does not record past login dates or times.
- If you see an unfamiliar device, you can log it out when ready from your phone without needing a password.
- Logging out of WhatsApp Web on a computer does not automatically happen — the session stays active until you end it or change your phone's password.
Where to find your active WhatsApp Web sessions on your phone
Open WhatsApp on your phone and go to Settings (the gear icon in the bottom right on iPhone, or the three dots in the top right on Android). Tap Linked Devices. This screen shows every computer or tablet currently logged into your WhatsApp account.
Each device appears with a name — usually something like "Chrome on Windows" or "Safari on Mac" — and the approximate time it was last active. If you see a device you recognize, that's one of your own sessions. If you see something unfamiliar, someone else may have scanned your QR code and logged in.
WhatsApp does not show you the exact date you first logged in to each device, only when it was last used. If a device hasn't been touched in weeks, it will still appear on this list until you remove it.
How to log out a WhatsApp Web session you don't recognize
If you see a device on your Linked Devices list that isn't yours, tap it and select Log Out. You don't need the password to the computer or the WhatsApp password — just tapping that button from your phone ends the session when ready. The person using that browser will be logged out the next time they try to send a message or refresh the page.
After you log someone out, they cannot access your messages unless they scan the QR code again. If you're concerned about unauthorized access, change your phone's lock code or password as well, because WhatsApp Web doesn't require a second password — only the initial QR code scan.
Why WhatsApp Web doesn't show a full login history
WhatsApp Web is designed for convenience, not security logging. It assumes you're the only person with access to your phone, so once you scan the QR code on a computer, that computer stays logged in until you manually log out. There's no automatic timeout, no email notification when a new device logs in, and no record of when each login happened.
This is different from Gmail, which sends you an alert email whenever someone logs in from a new location, and keeps a timestamped list of the last 10 logins. WhatsApp prioritizes simplicity over that kind of detailed tracking. The Linked Devices list is the closest thing to a history — it shows what's currently active, but not what was active in the past.
What to do if you think someone else has accessed your account
Check your Linked Devices list first. If you see a device you don't recognize, log it out when ready from your phone. Then review your recent chats to see if any messages were sent that you didn't write — WhatsApp Web has full access to send and receive messages, so unauthorized access is a real concern.
If you find suspicious activity, change your phone's lock code and consider changing your phone number in WhatsApp settings. You can also turn off the "Allow login with phone number" option in some regions, which forces anyone logging in to scan a fresh QR code each time. This prevents someone from logging back in if they memorized your phone number.
How to prevent unauthorized WhatsApp Web access
The simplest step is to log out of WhatsApp Web when you're done using it on a shared or public computer. On the browser, click the three dots in the top right corner and select Log Out. This ends the session on that computer only — your phone remains logged in.
On your own computer, you can leave it logged in safely. But if you use a library computer, a work computer, or a friend's laptop, always log out before you leave. WhatsApp Web doesn't have a "remember this device" option or two-factor authentication, so the QR code is the only barrier to entry.
You can also periodically check your Linked Devices list to make sure no unexpected devices are connected. Make this a monthly habit if you use WhatsApp Web frequently.
Frequently Asked Questions
Can I see the exact date and time I logged into WhatsApp Web?
No. WhatsApp shows only the last time each device was active, not the original login date. If you need a complete login history with timestamps, WhatsApp doesn't provide that information.
Does WhatsApp notify me when someone logs in from a new device?
WhatsApp does not send notifications for new WhatsApp Web logins. You have to check your Linked Devices list manually to see if a new device has been added.
If I log out of WhatsApp Web on my computer, does it log me out on other devices too?
No. Each WhatsApp Web session is separate. Logging out on one computer doesn't affect your phone or any other browser. You have to log out of each device individually.
What happens if I don't log out of WhatsApp Web and just close the browser?
The session stays active. The next time someone opens that browser and goes to web.whatsapp.com, they'll be logged in without needing to scan the QR code again. This is why logging out is important on shared computers.
Can I see who logged into my WhatsApp Web from a different country?
WhatsApp doesn't show location information for WhatsApp Web sessions. You can see the device type and last active time, but not where the login came from geographically.