SOLVED:
the flag has been renamed "Insecure origins treated as secure"
and now has a input box to safelist your self-signed certificate domain names