Your connection is not private on Mac

A certificate manually marked 'Never Trust' in Keychain Access, or a leftover corporate root, overrides the normal trust decision for that domain.

Why it happens on Mac

A certificate manually marked 'Never Trust' in Keychain Access, or a leftover corporate root, overrides the normal trust decision for that domain.

The fix on Mac

Open Keychain Access → System Roots, search the issuer, and reset any custom trust setting back to 'Use System Defaults'.

If that didn't fix it

Mac has its own failure mode, but Your connection is not private has a wider set of causes. The most common one overall is: The certificate expired (NET::ERR_CERT_DATE_INVALID).

Renew the certificate and reload the web server.

Check your own domain

Running the check from outside your device separates a real certificate problem from a local clock or network issue in one step.

Frequently asked questions

Why does Your connection is not private happen on Mac?

A certificate manually marked 'Never Trust' in Keychain Access, or a leftover corporate root, overrides the normal trust decision for that domain.

How do I fix Your connection is not private on Mac?

Open Keychain Access → System Roots, search the issuer, and reset any custom trust setting back to 'Use System Defaults'.

What does Your connection is not private mean?

Chrome's full-page warning shown whenever certificate validation fails. It is not a single error — the real cause is the NET::ERR_CERT_* code printed underneath it, and that code tells you which of expiry, trust, or hostname is wrong.