Mixed content: load all resources via HTTPS to improve the security of your site code example
Example 1: disable mixed content via javascript
<meta http-equiv="Content-Security-Policy" content="upgrade-insecure-requests">
Example 2: mixed content: the page at was loaded over https, but requested an insecure xmlhttprequest endpoint
Add below code to your index.php file for on the https
if((!empty( $_SERVER['HTTP_X_FORWARDED_HOST'])) || (!empty( $_SERVER['HTTP_X_FORWARDED_FOR'])) ) {
$_SERVER['HTTP_HOST'] = $_SERVER['HTTP_X_FORWARDED_HOST'];
$_SERVER['HTTPS'] = 'on';
}