Security
Access should be temporary, scoped and revocable.
DNS and domain accounts are high-impact infrastructure. SaveMyDNS uses a least-privilege approach whenever access is required.
Access policy
✓
Never email passwords.
Do not send account passwords by email or contact form.
Do not send account passwords by email or contact form.
✓
Prefer temporary access.
Use provider invitations, temporary users or scoped API tokens where practical.
Use provider invitations, temporary users or scoped API tokens where practical.
✓
Use the least privilege needed.
Read-only access is preferred during diagnosis when changes are not required.
Read-only access is preferred during diagnosis when changes are not required.
✓
Revoke after completion.
Temporary access should be removed once the case is complete.
Temporary access should be removed once the case is complete.
Security reports
If you believe you found a security issue affecting SaveMyDNS itself, email:
Do not use this address to bypass the paid emergency support workflow for customer DNS incidents.