I noticed this too. I found the culprit.
https://www.linksalpha.com/social/loader_iconbox will load secure but inside it is a call for http://www.linksalpha.com/scripts/require.js which is not secure. Can you update this to be secure?
This issue has been fixed. Thank you for reporting.
Hy
over https you can call javascript files, like linkedin button without http:
$this->enqueue_script(‘Social_sharing_linkedin’, ‘//platform.linkedin.com/in.js’, $footer);
this solution work fine for me.
still a problem:
loading https://www.linksalpha.com/social/loader_iconbox sets the BASE_URL to http://www.linksalpha.com which is used to construct “/images/iconbox_18.png