In situations requiring penetration testing with a website running over HTTPS, a tester must import the PortSwigger CA certificate as a trusted authority within their browser.