Securing Sites

Enable HTTPS with trusted local SSL certificates using mkcert.

Securing Sites (HTTPS)

Enable local HTTPS to test features like geolocation, secure cookies, payment gateways, and browser security policies.

1-Click Trusted SSL

To secure a local site, toggle the padlock switch next to the site on the Projects page. Alternatively, run the following command in your terminal:

burrow https enable myapp.local

Trusted Certificate Authority (CA)

Burrow integrates mkcert to manage local SSL certificates:

  • The first time you enable HTTPS, Burrow installs a Root Certificate Authority (CA) into your Windows Certificate Store.
  • Browsers like Chrome, Firefox, and Edge recognize this Root CA, serving your .local sites with a valid secure lock icon and no warning screens.
  • Certificates are saved to %USERPROFILE%\.burrow\ssl\certs\.
  • Nginx is automatically updated to serve the site on port 443 and reloads in under 50ms.