A certificate manually marked 'Never Trust' in Keychain Access, or a leftover corporate root, overrides the normal trust decision for that domain.
A certificate manually marked 'Never Trust' in Keychain Access, or a leftover corporate root, overrides the normal trust decision for that domain.
Open Keychain Access → System Roots, search the issuer, and reset any custom trust setting back to 'Use System Defaults'.
Mac has its own failure mode, but Your connection is not private has a wider set of causes. The most common one overall is: The certificate expired (NET::ERR_CERT_DATE_INVALID).
Renew the certificate and reload the web server.
Running the check from outside your device separates a real certificate problem from a local clock or network issue in one step.
A certificate manually marked 'Never Trust' in Keychain Access, or a leftover corporate root, overrides the normal trust decision for that domain.
Open Keychain Access → System Roots, search the issuer, and reset any custom trust setting back to 'Use System Defaults'.
Chrome's full-page warning shown whenever certificate validation fails. It is not a single error — the real cause is the NET::ERR_CERT_* code printed underneath it, and that code tells you which of expiry, trust, or hostname is wrong.