Base44 deployment

SSL Certificate Errors on Base44 Published App

Your published Base44 app shows SSL certificate warnings in the browser. Users see "Not Secure" in the address bar, a certificate error page they must click through, or mixed content warnings where some resources load over HTTP instead of HTTPS.

SSL issues erode user trust and can prevent some browsers from loading the app at all. Modern browsers increasingly block mixed content and show prominent warnings for certificate issues, making this a critical problem for any production app.

The issue may affect only your custom domain while the default Base44 URL works fine with SSL, or it may manifest as intermittent certificate errors that come and go.

Error Messages You Might See

Your connection is not private NET::ERR_CERT_COMMON_NAME_INVALID Mixed Content: The page was loaded over HTTPS but requested an insecure resource This site's security certificate is not trusted
Your connection is not privateNET::ERR_CERT_COMMON_NAME_INVALIDMixed Content: The page was loaded over HTTPS but requested an insecure resourceThis site's security certificate is not trusted

Common Causes

  1. The SSL certificate for a custom domain has not been provisioned or has expired
  2. Mixed content: some images, scripts, or API calls use HTTP instead of HTTPS
  3. The app references hardcoded HTTP URLs in custom code or embedded content
  4. DNS changes disrupted the SSL certificate renewal process

How to Fix It

If using a custom domain, check whether the SSL certificate has been provisioned by visiting the domain and inspecting the certificate in your browser. If it hasn't been provisioned, re-verify your DNS settings and trigger a re-provisioning if Base44 offers that option.

For mixed content warnings, search your app's custom code and component settings for any http:// URLs and change them to https://. Embedded iframes, images, and external scripts are common culprits.

Persistent SSL issues, especially on custom domains, may require developer intervention to properly configure the certificate chain and ensure all resources are served securely.

Real developers can help you.

Luca Liberati Luca Liberati I work on monoliths and microservices, backends and frontends, manage K8s clusters and love to design apps architecture Prakash Prajapati Prakash Prajapati I’m a Senior Python Developer specializing in building secure, scalable, and highly available systems. I work primarily with Python, Django, FastAPI, Docker, PostgreSQL, and modern AI tooling such as PydanticAI, focusing on clean architecture, strong design principles, and reliable DevOps practices. I enjoy solving complex engineering problems and designing systems that are maintainable, resilient, and built to scale. BurnHavoc BurnHavoc Been around fixing other peoples code for 20 years. Mehdi Ben Haddou Mehdi Ben Haddou - Founder of Chessigma (1M+ users) & many small projects - ex Founding Engineer @Uplane (YC F25) - ex Software Engineer @Amazon and @Booking.com Nam Tran Nam Tran 10 years as fullstack developer Jaime Orts-Caroff Jaime Orts-Caroff I'm a Senior Android developer, open to work in various fields Meïr Ankri Meïr Ankri Full-stack developer specializing in React / Next.js / Node.js with 6+ years of experience. I've worked across various sectors including automotive (Reezocar/Société Générale), healthcare (Medical Link SaaS), and e-commerce (Glasman). I build web apps end-to-end, from architecture to production, with a focus on scalability, performance, and code quality. I also mentor junior developers and contribute to technical decisions and code reviews. Krishna Sai Kuncha Krishna Sai Kuncha Experienced Professional Full stack Developer with 8+ years of experience across react, python, js, ts, golang and react-native. Developed inhouse websearch tooling for AI before websearch was solved : ) MFox MFox Full-stack professional senior engineer (15+years). Extensive experience in software development, qa, and IP networking. Simon A. Simon A. I'm a backend developer building APIs, emulators, and interactive game systems. Professionally, I've developed Java/Spring reporting solutions, managed relational and NoSQL databases, and implemented CI/CD workflows.

You don't need to be technical. Just describe what's wrong and a verified developer will handle the rest.

Get Help

Frequently Asked Questions

Why does my Base44 app show 'Not Secure'?

This usually means the SSL certificate isn't properly configured or there's mixed content (some resources loading over HTTP). Check your custom domain SSL settings and search for any hardcoded HTTP URLs.

How do I fix mixed content warnings in Base44?

Find any images, scripts, or API calls that use http:// URLs and change them to https://. This includes embedded content, external scripts, and image URLs in your database.

Related Base44 Issues

Can't fix it yourself?
Real developers can help.

You don't need to be technical. Just describe what's wrong and a verified developer will handle the rest.

Get Help