It tells me to trust it. After all, it’s a certificate that’s signed by a CA that isn’t in the list of known certificate authorities.
I don’t trust certificates. There is a list of certificate authorities a mile long stored on my computer of groups who are to be trusted when a certificate is presented. I don’t know them from adam, and the certs from the Hong Kong post office are about as trusted as the ones from the Apple Root CA – get real people this is not security, this is just posturing. I trust them about as much as I trust the digital quicksand upon which they are based.
I’ve stopped caring anymore. The only thing that these certificates establish is a temporary private channel between me and the web server. The rest; it’s just smoke and mirrors.