You can read SSL traffic if you're able to install a root certificate on your device and the website/app doesn't use certificate pinning.
I recently used HttpToolkit to reverse engineer a REST endpoint that used SSL encryption
I recently used HttpToolkit to reverse engineer a REST endpoint that used SSL encryption