I think it's a known issue with electron apps, there was a subtlety about certificates I don't fully understand yet.

We might change to display a broken lock instead of showing a modal, that sounds less intrusive

Yeah that would be a lot less intrusive. Maybe show this modal when the lock icon gets clicked on the address bar.