WordPress

How to turn on HTTPS (SSL padlock) in WordPress

Every plan includes a free SSL certificate that installs by itself once your domain points to our servers, usually within a few hours.

1. Check the certificate is active

Open https://yourdomain.com. If you see the padlock next to the address, it works. If you see a warning, wait a few hours after changing the nameservers; if it persists, open a ticket.

2. Change the WordPress addresses

  1. In WordPress go to Settings → General.
  2. Change WordPress Address (URL) and Site Address (URL) so they start with https://.
  3. Save. WordPress asks you to log in again.

3. Fix "mixed content"

If the padlock is crossed out, some image or file still loads over http://.

  • Install a search-and-replace plugin (for example Better Search Replace) and replace http://yourdomain.com with https://yourdomain.com in the database. Back up first.
  • Check your theme and widgets for images with hand-written links.

4. Always redirect to HTTPS

So that anyone typing http:// lands on the secure version, open Domains in cPanel and turn on Force HTTPS Redirect for your domain.

Your site is then protected, and Google ranks it better.