A plan tosecure a critical domain
| Step | Action | Tip |
|---|---|---|
| 1 | ActionSecure ownership and recovery | TipUse company details and more than one responsible owner |
| 2 | ActionProtect the account | TipUnique password, 2FA and recovery codes outside email |
| 3 | ActionLock transfers | TipKeep Auth/EPP secret and unlock only for an approved change |
| 4 | ActionMonitor DNS and DNSSEC | TipLimit admins, enable alerts and keep a zone backup |
| 5 | ActionControl renewal and access | TipAudit registrant, expiry and users twice a year |
Secure the registrar
Use a unique password, two-factor authentication and company-controlled recovery methods.
Lock and monitor
Keep transfer lock enabled, protect the authorization code, limit DNS administrators and retain a zone backup.
Verify renewals
Open the registrar from a saved bookmark instead of urgent email links, and review ownership and recovery access twice a year.
Verified sources
Go deeper
These two resources expand on the key points with criteria, data and guidance from the organizations responsible for them.
It covers threats to registration accounts and controls for credentials, contacts, locks and recovery that reduce domain hijacking.
It brings together practical account protections: unique passwords, multifactor authentication, updates and phishing detection.



