Home / Blog / Expiry reminders
Expiry reminders

Why does a stale contact email silently kill a domain renewal you thought was safe?

Registrars can only warn the address on file. When that mailbox belongs to a former employee, a closed agency, or the expiring domain itself, every notice and every verification request disappears without a trace.

A quiet small office desk with a tall stack of unopened envelopes, a dusty keyboard, and an empty chair pushed back, soft morning light through a window

Where renewal notices actually go

A registrar sends expiry reminders to two places: the contact email attached to the domain record and the email attached to the account login. Those are frequently the same address, but in a company that has been around for a few years they are often not. The domain may have been registered by a web agency in its own account, or by a founder using a personal address, or by an engineer who has since moved on. ICANN policy requires registrars to send renewal reminders before and shortly after expiry, but the policy covers sending, not receiving. Once the notice leaves the registrar, nobody checks whether a human read it. Related: The Hidden Cost of a Missed Renewal

The failure patterns are predictable. The mailbox belongs to someone who left and IT disabled it. The agency that set everything up went out of business. The address is a catch-all that lands in a shared inbox nobody triages. The nastiest case is circular: the contact for example.com is admin@example.com. Reminders arrive fine while the domain works, and then the final warnings after expiry bounce, because the registrar has interrupted DNS for the very domain that handles the mail. The one moment the notice matters most is the moment it cannot be delivered. Related: Never Lose a Domain Again: A Simple System

Keep reading: The Hidden Cost of a Missed Renewal, Never Lose a Domain Again: A Simple System, SSL Certificate Expiry and How to Stay Ahead. See how LatePinger helps you expiry reminders for domains, ssl, and renewals.

Verification emails that quietly suspend a domain

Under the agreement registrars sign with ICANN, they must verify the registrant email after certain events: a new registration, a change to registrant contact details, or a bounce from a previous notice. The verification arrives as an email with a link. If nobody clicks it within a short window, typically around two weeks, the registrar is expected to suspend the domain until verification completes. The site goes dark and email stops even though the renewal was paid and auto-renew is on. Teams regularly mistake this for a hack or a DNS outage and lose a day looking in the wrong place. Related: Auditing Your Subscriptions Before They Auto Renew

Prevention is mostly attention. After any change to contact details, watch for the verification message and complete it the same day. Add the registrar's sending domains to an allow list so the message does not land in a promotions folder. Log into the registrar dashboard after each change and look for a pending verification banner, since some registrars show the warning there before they send anything. Remember that a bounce can trigger a fresh verification cycle, so a mailbox that fills up or gets deactivated can start the clock without any action on your part.

Building a contact address that outlives people

The durable answer is a role address on a domain you control that is not the domain being protected. Something like domains@ on your primary company domain works for satellite domains, and a short secondary domain works as the contact for the primary one. Make it a distribution group with at least two real humans on it, not a shared mailbox with a shared password. Check the group's settings, because many groups default to accepting mail only from inside the organization, which silently blocks every registrar.

Put the registrar account login on the same role address, and set up two-factor authentication in a way that can be handed over: an authenticator app with backup codes stored in the company password manager, rather than a code sent to one person's phone. Be aware of how WHOIS privacy services work. The privacy service publishes a masked address and forwards to the underlying contact. If the underlying contact is dead, the forwarding fails and you will never see the bounce. Once a year, list every domain with its registrant email and its account email, and confirm each still routes to a living person.

A quarterly check that takes ten minutes

Send a plain test email to each contact address and confirm someone replies. Open the notification settings at each registrar; many allow a secondary notification address, and that is a cheap extra safety net. Then make sure a reminder exists somewhere the registrar does not control. A shared calendar works, and a dedicated reminder service like LatePinger can notify several people at several lead times, which is the point: the registrar's email should never be the only thing standing between you and a lapsed domain.

When you discover a dead address, fix it in a deliberate order. Update the account login email first, then the registrant contact, then complete the verification the change triggers. Do not do this in the last week before expiry. A change of registrant name, organization, or email at most registrars starts a sixty-day lock on transfers to another registrar under ICANN transfer policy, and some registrars pause other actions while verification is pending. Make contact changes when there is plenty of runway, and renew first if the date is close. Related: How to Build a Single Calendar for All Your Expiries

Key takeaways
  • Registrars only warn the address on file, and nobody confirms a human read it.
  • A contact address on the expiring domain itself stops working exactly when the final warnings go out.
  • Unanswered verification emails can suspend a fully paid domain within about two weeks.
  • Use a role address with two humans on a separate domain, and keep an independent reminder outside the registrar.
Julien Jimenez
Written by

Julien Jimenez

Julien Jimenez is an independent software builder based in Paris. He designs, ships, and operates focused SaaS products for small businesses and independent professionals. Read the full author page.

Never miss a renewal that matters

Expiry reminders for domains, SSL, and renewals. LatePinger is built to help you put this into practice.

Track a renewal

More from the LatePinger blog

Get the LatePinger playbook

Practical guides on expiry reminders, straight to your inbox as we publish them. No spam, unsubscribe any time.

By subscribing you agree to our privacy policy.