From what I have tested, the best way to see both types of traffic, is to do a span/rspan session of a trunk port on the switch and send it to my wireshark pc. As all traffic has to traverse the trunk port on the access switch to go up to the core/distribution layer. So if voice and data separation is done correctly via different broadcast domains (vlans), you guys are right, I should not being seeing voice traffic from my pc as this pc sits on the data vlan and voice on another vlan.