Domain vault and ownership
Every apex and subdomain is registered with a named owner from the employee directory, a registrar and a renewal date — one list instead of several registrar logins.
Domains are the quietest asset class you have: cheap to buy, easy to forget, catastrophic to lose. Lojycal puts each one in the operational graph with an owner, a renewal cost, a DNS posture and an evidence trail.
A registrar invoice tells you what renews. It does not tell you who owns the domain, whether mail from it can be spoofed, whether a certificate lapses next month, or whether a forgotten subdomain still points at a service you shut down two years ago. Lojycal reconciles domains against the same records that already carry people, assets and contracts, so every name has an owner, a budget line and an audit trail.
Every apex and subdomain is registered with a named owner from the employee directory, a registrar and a renewal date — one list instead of several registrar logins.
MX, SPF, DKIM and DMARC are checked per domain, so a name that can be spoofed is visible as a finding rather than discovered through a phishing report.
Certificates are inventoried with issuer, validity window and days remaining, and approaching expiry is raised ahead of time with the attributed owner.
Dangling delegations that still point at decommissioned services are flagged so they are removed or re-pointed before someone else claims them.
Registrar cost and renewal dates roll up into a forward view, putting domain spend next to licences, hardware and cloud in the same financial picture.
Ownership changes, exemptions and remediation decisions are written with actor, reason and timestamp, and export as a record for an auditor.
Domains are imported or entered once, with registrar, renewal date and cost. Nothing in your DNS is modified.
Each domain is bound to an employee, mailbox or distribution group, so accountability survives a change of team.
DNS records, certificates and delegation posture are read on a schedule, and each observation is dated.
Findings are accepted, remediated or exempted as recorded decisions — never resolved silently.
When an auditor asks who owns a domain, when its certificate last renewed, or why a DMARC policy is set to none, the answer is a dated record with an actor and a reason attached — not a reconstruction from registrar emails.
Every observation is dated — reports point at an observation window.
We walk your domains, DNS posture and renewal exposure through the graph in a live session.