Every plan includes a free SSL certificate that installs by itself once your domain points to our servers, usually within a few hours.
1. Check the certificate is active
Open https://yourdomain.com. If you see the padlock next to the address, it works. If you see a warning, wait a few hours after changing the nameservers; if it persists, open a ticket.
2. Change the WordPress addresses
- In WordPress go to Settings → General.
- Change WordPress Address (URL) and Site Address (URL) so they start with
https://. - Save. WordPress asks you to log in again.
3. Fix "mixed content"
If the padlock is crossed out, some image or file still loads over http://.
- Install a search-and-replace plugin (for example Better Search Replace) and replace
http://yourdomain.comwithhttps://yourdomain.comin the database. Back up first. - Check your theme and widgets for images with hand-written links.
4. Always redirect to HTTPS
So that anyone typing http:// lands on the secure version, open Domains in cPanel and turn on Force HTTPS Redirect for your domain.
Your site is then protected, and Google ranks it better.