CA Certificate Authority
A trusted party that signs TLS certificates so browsers can trust a site is who it claims to be.
Browsers ship with a list of trusted CAs (Let's Encrypt, DigiCert, GlobalSign...). A cert signed by a CA is accepted automatically. The whole HTTPS system rests on CA trust.