How to Force Google Chrome to Load Websites in HTTPS

When browsing the internet, data traveling between your computer and a website can either be encrypted or completely open. Websites using standard HTTP send data in plain text, meaning anyone on your network—such as the administrator of a public coffee shop Wi-Fi network—can easily intercept and read your passwords, credit card numbers, and browsing habits. Conversely, websites using HTTPS encrypt that connection, ensuring your data is secure.

While the vast majority of modern websites default to HTTPS, some legacy sites still offer both versions. If you type a URL without specifying the secure protocol, the server might inadvertently load the vulnerable HTTP version. To guarantee your security, you can configure Google Chrome to forcefully upgrade all connections to HTTPS, warning you before you ever visit an unsecured page.

How to Enable “Always Use Secure Connections”

Google has integrated a feature into Chrome called “Always use secure connections.” When activated, Chrome will intercept any attempt to load an HTTP website and automatically attempt to rewrite the URL to load the encrypted HTTPS version instead.

  1. Open the Google Chrome browser on your computer.
  2. Click the three-dot menu icon in the top-right corner of the window.
  3. From the drop-down menu, select Settings.
  4. In the left-hand sidebar menu, click on Privacy and security.
  5. In the main window, click on the Security section.
  6. Scroll down to the “Advanced” section and locate the toggle switch labeled Always use secure connections.
  7. Click the toggle to turn it On.

What Happens to Websites That Do Not Support HTTPS?

If you attempt to visit a very old website that physically does not have an SSL certificate installed, Chrome will not be able to upgrade the connection. In this scenario, Chrome will completely block the webpage from loading.

Instead of the website, you will see a stark warning screen stating, “The connection to this site is not secure.” This acts as a critical safety net, preventing you from accidentally entering sensitive information on a compromised network.

If you absolutely must access the unsecured site (for example, a legacy intranet portal at your workplace that you know is safe), you can bypass the warning. At the bottom of the error screen, click the button labeled Continue to site. Chrome will load the HTTP version, but the address bar will display a prominent “Not Secure” warning to remind you of the risk.

Why This Setting is Crucial for Public Wi-Fi

This setting is a mandatory security measure if you frequently travel or work from public spaces. Public Wi-Fi networks in airports, hotels, and cafes are notoriously insecure. Cybercriminals often connect to these networks and run packet-sniffing software designed specifically to capture unencrypted HTTP traffic.

By forcing Chrome to always use HTTPS, you ensure that even if you click an outdated link in an old email, your browser refuses to transmit your data in plain text, neutralizing the most common forms of public Wi-Fi interception.

Leave a Reply

Your email address will not be published. Required fields are marked *

Get the best tech tips delivered straight to your inbox.

Join thousands of readers mastering Apple, Google, Microsoft, and Linux.

Receive our best articles and tips delivered straight to your inbox.