Console Order now
All included — nothing sold twice

The panel your domain answers to

Registering a name is a minute of your life. Managing it well is the next decade — this is the cockpit we built for that decade, and every switch in it is free.

Nameservers

Point the name wherever the project lives

Run on Hostrena anycast nameservers, swap to your host's or Cloudflare's in one edit, or register child nameservers — ns1.mybrand.com on your own IPs — with proper glue records. The panel validates before it saves, so a typo warns you instead of taking the weekend.

  • Two to thirteen nameservers per domain
  • Child nameservers with glue records, self-service
  • Validation before save — broken delegations get caught
Nameserver Shield

The hijack playbook, retired

Domain theft follows a script: quiet unlock, stolen code, midnight transfer. Nameserver Shield breaks every page of it — registry transfer lock held on, DNSSEC signing your zone, and explicit confirmation on the changes that matter, so control of your inbox alone never equals control of your domain.

Transfer lock

On by default, re-arms automatically after every legitimate move.

DNSSEC

Signed DNS answers resolvers can verify — spoofing and cache poisoning go dark.

Change confirmations

Nameserver and registrant changes ask twice. Attackers hate the second question.

Domain routing

Send visitors where the action is

Forward the bare domain to www, an old name to the rebrand, a campaign domain to the landing page. Three modes, chosen per rule: 301 when the move is permanent and SEO should follow, 302 while you are still deciding, masked when the address bar should keep your name on it.

301 — permanent

Search engines transfer the ranking to the destination.

302 — temporary

Traffic moves, authority stays put until you commit.

Masked

The visitor sees your domain while the content serves from elsewhere.

DNS zone

A zone editor that respects your time

Every record type that matters, on anycast nameservers, behind a form that validates as you type. Set TTL per record — from 60 seconds during a migration to 24 hours at cruise. Changes publish in seconds; the rest of the internet catches up on the TTL you chose.

Per-record TTL, 60 seconds to 24 hours
  • A A / AAAA — the address records: point the name at IPv4 and IPv6 servers
  • CNAME CNAME — alias one name to another and follow it automatically
  • MX MX — route the domain's mail to any provider, with priorities
  • TXT TXT — SPF, DKIM, DMARC and every verification string a service asks for
  • CAA CAA — name the certificate authorities allowed to issue for you
  • SRV SRV / NS — service discovery and delegation, fully editable
WHOIS privacy

Own the name. Keep the address book closed.

The public WHOIS record was designed in a friendlier decade — today it feeds spam lists and social-engineering scripts. Privacy swaps your details for proxy data on every extension that allows it, free and on by default, while your legal ownership stays intact and provable.

  • No harvested inbox the week after registering
  • No "domain renewal" scam letters built from your record
  • Ownership unchanged — you remain the registrant in full

A few country registries mandate public registrant data — the pricing table marks them honestly.

Domain email

hello@yourname, working today

Free forwarding aliases turn the domain into a professional address before you ever buy a mailbox: hello@, sales@ and billing@ all landing in the inbox you already check, with replies configured from it too. When real mailboxes make sense, our email hosting connects with one click of MX templates.

  • Unlimited forwarding aliases per domain
  • Catch-all option — anything@yourdomain reaches you
  • One-click MX templates for major mail providers
Auto-renewal

The name keeps itself

Toggle auto-renew per domain and expiry stops being a calendar event: we renew ahead of the date against your saved card and tell you before each charge. Prefer manual control? Reminders land at 30, 15, 7 and 1 days — the choice is a switch, not a policy.

The going rate for "free"

Standard practice elsewhere, priced honestly here: zero.

Feature Hostrena Typical registrar
Full DNS management Free Basic or metered
WHOIS privacy Free Often $5–15 / yr
Transfer lock + DNSSEC Free Sold as an add-on
Domain & email forwarding Free Sold as an add-on
Renewal reminders + auto-renew Free Varies
Transfer out Free Fees or friction

Management questions

Is DNS management really free with every domain?

Completely — every record type, unlimited records, anycast nameservers, per-record TTL, no monthly quota and no "premium DNS" tier hiding the good parts. We treat DNS as what it is: the half of the product that makes the domain do anything. Charging extra for it would be selling you a car and metering the steering.

How do I point my domain at my server with an A record?

Panel → your domain → DNS zone → add record: type A, host @ (or a subdomain), value your server's IP, save. The record publishes in seconds and the wider internet follows within your TTL. Add an AAAA beside it if the server speaks IPv6 — same form, longer address.

What is the difference between changing nameservers and editing DNS records?

Nameservers decide WHO answers DNS questions for your domain; records are the answers themselves. Editing records in our zone changes the answers we give. Pointing nameservers elsewhere hands the entire answering job to that provider — and our zone goes dormant until you point back. Day to day you edit records; nameserver changes are for re-homing DNS wholesale.

Can I use Cloudflare or external DNS with my domain?

Freely — add the domain at Cloudflare, copy the two nameservers they assign, paste them into the panel here. Registration, renewal, privacy and the Shield stay with us; DNS answering moves to them. Reversing it later is the same edit backwards, and nothing about your registration is disturbed either way.

Which extensions support free WHOIS privacy?

Nearly every generic extension — .com, .net, .org, .io, .ai, .dev, the whole modern catalogue — has privacy on by default at no cost. The exceptions are country registries that legally require public registrant data: .de, .sa, .us among them. The pricing table carries a privacy column so you can check any extension in two seconds.

How do I enable DNSSEC?

One switch inside Nameserver Shield. On our nameservers the whole chain is automatic: we sign the zone and publish the DS record at the registry — nothing to copy. Running external DNS? We generate the keys and show exactly what your DNS provider needs. Switching it off again is the same toggle, no support ticket involved.

Can auto-renewal charge me without warning?

No — a notice lands in your inbox before every auto-renew charge, stating the domain, the date and the exact amount. Plenty of time to switch the toggle off if plans changed. No card on file simply means auto-renew waits, and the standard reminder sequence runs instead. The feature exists to prevent surprises, so it doesn't get to cause them.

How does domain forwarding work?

You set a rule — this domain or subdomain sends visitors to that URL — and choose how: 301 if the move is permanent and search ranking should follow, 302 if temporary, masked if the address bar should keep showing your domain. Rules live in the Routing tab, save in seconds and stack per subdomain.

Can I add TXT records for Google or email verification?

Yes — TXT is a first-class record type in the zone editor, and it is how you verify with Search Console, prove ownership to Microsoft 365, and publish SPF, DKIM and DMARC for honest mail delivery. Paste the string the service gives you, save, verify; the panel keeps even long DKIM keys intact.

How many nameservers can I run on one domain?

Two minimum — registries insist on redundancy — and up to thirteen, the protocol ceiling. Two well-anycast nameservers serve almost everyone; large setups add more for geographic spread or to mix providers as a failure hedge. Ours are anycast already, so each name you list is many physical servers wearing it.

Can I create subdomains with my domain?

Unlimited, straight from DNS: an A record with host blog creates blog.yourdomain.com, a CNAME can alias shop to your storefront platform, and a wildcard record catches anything-at-all.yourdomain.com in one rule. Subdomains are just records — no fee, no count, no approval step.

Can I move my domain away from Hostrena if I want to?

Yes, and without drama: switch off the lock in Shield, copy your EPP code from the panel, hand it to the new registrar. No exit fee, no retention call, no code that takes a mysterious week to generate. ICANN guarantees the right; we just decline to make exercising it unpleasant. Registrars confident in their product don't bolt the doors.

What is Nameserver Shield exactly?

Our name for the protection stack every domain deserves but usually has to assemble piecemeal: registry transfer lock, DNSSEC zone signing, and explicit confirmation on high-impact changes like nameserver or registrant edits — managed as one switch with visible status. It ships armed on every domain, because security that needs configuring is security most people don't have.

How does free email forwarding on my domain work?

Create an alias — hello@yourdomain — and pick where it delivers: your Gmail, Outlook, anything. Mail to the alias lands in that inbox; with send-as configured there, your replies leave from the professional address too. Add specific aliases or one catch-all, all free. When you outgrow forwarding, hosted mailboxes plug into the same domain without touching the aliases.

What are glue records and child nameservers?

They solve DNS's chicken-and-egg: if your nameserver is ns1.mybrand.com, resolvers must learn its IP from somewhere before they can ask it anything. A child nameserver registers that name at the registry with its IP attached — the glue. You need this only when running DNS on your own infrastructure under your own domain; the panel handles registering both in one form.

Is there an API for managing domains?

The panel is the supported surface today — built fast enough that bulk work doesn't hurt, with grouped operations for multi-domain changes. A public API for registrations, DNS and transfers is on the platform roadmap with our developer tooling; if API access would change how much you bring here, tell support — volume moves roadmaps.

Your name is out there — make it yours

Search once, register in minutes. Honest renewal prices, free DNS and a control panel that does what big registrars charge extra for.

No setup fees — DNS is live within minutes of registration.