Your website shows “Not secure”
Visitors see “Not secure” next to your web address, or a full-page warning before your site loads.
Applies to: Any website.
Try these steps
Try the secure address
Type your address with https:// at the start. If it loads with a padlock, your certificate works and the site probably just isn’t sending visitors to the secure version automatically.
Read the warning
If you get a full-page warning, note the message. It usually says whether the certificate has expired or doesn’t match your address.
Check your dashboard
In your website builder or hosting dashboard, look for an SSL, HTTPS or security setting. Many have a switch to turn HTTPS on or to always use it.
Think about recent changes
If you recently changed your domain name or hosting, the certificate may need to be issued again. Note when the change happened; it helps whoever fixes it.
Check it worked
Open a private or incognito window, type your address starting with http://, and check it ends up on https:// with a padlock. Try it on your phone as well.
When to stop and ask for help
- The certificate has expired and you don’t manage the hosting yourself.
- The padlock shows on some pages but not others. This usually needs page-level changes.
- Your dashboard has no HTTPS option, or the fix involves your domain’s settings (DNS).
Rather not do it yourself?
Tell us what you’ve tried. We’ll reply with the scope, price and timing before any work starts.
Menus and settings change over time. If what you see looks different, the tool’s own help pages have the latest steps. Last updated .