ERR_CERT_AUTHORITY_INVALID 🟨 JavaScript

NET::ERR_CERT_AUTHORITY_INVALID (Your connection is not private)

The site’s certificate isn’t signed by a CA the browser trusts — self-signed, missing intermediates, or intercepted by a proxy.

Seen on: JavaScript

Meaning

Self-signed certs in development, servers missing the intermediate chain, and corporate/antivirus HTTPS inspection all show this warning.

Common causes

  • Self-signed certificate
  • Server not sending the intermediate chain
  • Corporate proxy / antivirus HTTPS interception

⚡ Quick fix

  1. Install a certificate from a public CA (Let’s Encrypt)
  2. Serve fullchain.pem
  3. For local dev use mkcert to create a trusted local CA

Detailed fix by platform

Linux

  1. mkcert -install && mkcert localhost 127.0.0.1

How to diagnose

  1. Chain — Does SSL Labs/openssl show a complete chain?
  2. Network — Proxy intercepting?

🧠 Still stuck? Analyze your error

Paste the full message, response headers or stack trace — we'll detect the platform and point to the most likely cause.