Found this thread after having Enpass lock itself due to this.
This is not an acceptable solution. Your SSL verification check cannot be relied upon. To add further to this, I GET the verification email that the app is sending. However due to this flawed implementation, I am unable to enter the verification code I received. Asking people to "go ahead and get IT to disable network intercepts" every time users want to activate or update is bad.
I will be moving on and recommending other password managers if this isn't sorted out quickly.