01Reserved addresses
When an owned domain is connected, Sacred intends to establish role-based addresses for support, privacy, fraud, complaints, security, and registry communications. No address is represented as active before its domain and mailbox are verified.
- support@[official domain]
- privacy@[official domain]
- fraud@[official domain]
- complaints@[official domain]
- registry@[official domain]
02Sender authentication
The selected mail provider must supply DKIM records. Sacred will publish a restrictive SPF policy covering only approved senders and begin DMARC in reporting mode before moving toward quarantine or rejection after delivery is validated.
03Domain protections
DNSSEC will be enabled where the registrar and DNS host support it. Administrative accounts must use strong multi-factor authentication, least privilege, recovery controls, and change records.
04Current state
No custom domain or transactional provider was selected in this release. The current Sites address remains canonical, confirmation messages remain queued, and no DNS record has been fabricated.