Secure connection and certificate errors
Safari: This Connection Is Not Private
Safari could not confirm the website's certificate.
Quick answer
Safari checks each encrypted website's certificate. If it is expired, untrusted or for another name, Safari warns you, because someone could be impersonating the site or reading your data.
When to wait: Waiting does not help; the certificate must be fixed.
If you are visiting the website
- Go back Leave the site. Apple's advice is never to enter passwords or card numbers on a site with this warning.
- Check the address Fraudulent sites sometimes change one or two letters of a real address. Type the address yourself rather than following a link from a message.
- Check your device's date and time A wrong clock makes valid certificates look expired. Turn on automatic time and reload.
- macOS
- Apple menu > System Settings > General > Date & Time. Turn on "Set time and date automatically".
- iPhone and iPad (iOS)
- Settings > General > Date & Time. Turn on "Set Automatically". If the switch is greyed out, a Screen Time passcode or a work profile may be blocking it.
- Sign in to public Wi-Fi Hotel and café Wi-Fi often shows a login page first. Finish that sign-in, then open the site again.
- Test without Private Relay If you use iCloud Private Relay, test once without it.
- macOS
- In Safari, choose View > Reload and Show IP Address.
- iPhone and iPad (iOS)
- Turn Private Relay off temporarily in your iCloud settings, reload, then turn it back on.
- Try another network Switch between Wi-Fi and mobile data. If the warning only shows on one network, that network is changing secure connections.
If you run the website
- Renew or fix the certificate Check expiry with
sudo certbot certificates, renew withsudo certbot renewand reload the web server. Make sure the certificate lists every hostname visitors use. - Serve the full chain Include your intermediate certificates after your own certificate in the server configuration. With Certbot, use fullchain.pem.
- Use TLS 1.2 or newer Apple lists TLS 1.1 or earlier as a reason for Safari warnings. In nginx set
ssl_protocols TLSv1.2 TLSv1.3;and reload. - Serve every form over HTTPS Safari also warns when an unencrypted page asks for a password or card number. Redirect all pages to HTTPS.
Is it the website or me?
If the warning appears on your iPhone and your Mac, on different networks, the website's certificate is at fault.
If it appears only on one device or one Wi-Fi, check that device's clock, the Wi-Fi login page and Private Relay.
Why Safari shows this warning
Apple lists several reasons: an expired or illegitimate certificate, an outdated TLS version, or an unencrypted page asking for a password or card number.
In each case Safari cannot guarantee that only you and the real site can read what you send.
What this warning is not
It does not mean your iPhone or Mac is infected. It is a safety stop for one connection.
It is also not proof that a site is malicious. Many warnings come from a simply forgotten renewal.
Common questions
Is it safe to visit the website anyway?
Not if you will log in, pay or enter personal details. Apple advises never to enter a password or card number on such a site. Contact the owner instead.
Why does the site work in Chrome but not in Safari?
Browsers check certificates a little differently, and some settings, such as Private Relay, only affect Safari. If Safari warns, treat the warning seriously.
Should I install a profile to make the warning go away?
No. Only install profiles or certificates from your own school or company IT through official channels.
Does resetting network settings help?
Rarely, and it removes saved Wi-Fi passwords and VPN settings. Try the clock, Wi-Fi sign-in and another network first.
Likely causes
- Common The website's certificate is expired or misconfigured. (Website side)
- Sometimes Your device's date and time are wrong. (Your side)
- Sometimes Public Wi-Fi requires a login first. (Your side)
What to avoid
- Do not continue to enter passwords or payment details.
Is the website down? Check it now
One measurement point. Results explain what we saw, not a worldwide verdict.
Related messages
Sources
- Apple Safari User Guide: Avoid fraud by using encrypted websites in Safari on Mac
- Apple Support: If you see a 'Not Secure' warning while browsing with Safari
- Apple Support: If Safari doesn't work as expected on Mac
- Apple Support: If you can't change the time or time zone on your Apple device
- Certbot documentation: User Guide
Last reviewed: