How to Host Family Email on Your Own Domain
A family email domain gives a household stable addresses that can survive changes of internet provider, email host and device. The practical setup works best when one technical family member administers the domain while everyone else gets an ordinary private inbox.
That division of responsibility is important. The administrator handles DNS, creates recipients, plans migration and manages routing. Family members sign in to their own accounts, keep separate passwords and use email without learning how MX or DKIM works.
Thelemail is designed around this model. The family email hosting page explains the current household plan, while this guide covers the decisions an administrator should make before moving a domain.
Start with ownership and continuity
Your domain is the durable part of the setup. If your family uses addresses at family.example, you can change hosting providers later while keeping those addresses. The registrar continues to manage ownership, and the DNS zone determines which service receives and authenticates mail.
Choose a domain that the household expects to keep for years. Confirm that the registration email, recovery method and renewal payment are current. Enable registrar account protections such as multifactor authentication and a transfer lock where available. Losing control of the domain would affect every address built on it.
Choose one primary administrator and at least one documented recovery path. A second trusted adult can hold registrar recovery information without becoming responsible for daily mail administration. Record which company holds the registration, which service hosts DNS and who can access each account.
You can start together on Free Family with @thelemail.com accounts and one shared address. A paid Family plan lets you connect your own domain when you are ready.
Design the address structure before changing DNS
List every active address at the current provider. Include personal mailboxes, public addresses, forwarding rules, old aliases and addresses used only for account recovery. Search password managers and important online accounts for addresses that may have been forgotten.
Give each person a separate mailbox. A mailbox has its own sign-in, private inbox, storage and encryption key. Separate accounts make password recovery, device sessions and future offboarding much clearer than shared credentials.
Then classify the remaining addresses by purpose:
- Use a shared address for household responsibilities handled by several people, such as
bills@,school@orbookings@. - Use an alias for a purpose-specific address that should route into one existing mailbox.
- Keep a personal mailbox for messages intended for one person and protected by that person’s credentials.
Paid Family plans have unlimited aliases, subject to a workspace anti-abuse guardrail. The personal Free plan has no aliases. Free Family includes one shared @thelemail.com alias. Mailbox, storage and custom-domain capacity still follow the selected paid plan, so review the current family pricing and capacity before inviting everyone. The alias, mailbox and shared address guide gives a more detailed decision framework.
Use a naming system the family can understand later. Service-specific aliases such as shopping@ or travel@ are easier to reassign than names tied to a temporary responsibility. Keep a simple register showing each address, its type, its destination and the accounts that depend on it.
Prepare the domain in stages
A safe setup leaves the current provider receiving mail while the new account is prepared. The general order is:
- Verify domain ownership with the supplied TXT record.
- Publish the sending records supplied by the new host, including DKIM, SPF and DMARC.
- Create every family mailbox, shared address and alias.
- Import existing messages where required.
- Test sign-in, recovery and outbound sending.
- Change MX after every recipient has a destination.
MX controls incoming delivery, so it belongs near the end of the sequence. Ownership verification and sending authentication can usually be prepared while the old MX records remain active. Thelemail’s domain connection walkthrough follows this staged approach.
DNS values must be copied exactly from the provider. Record names vary among DNS dashboards: some expect the full domain name, while others append the zone automatically. Check the provider’s verification screen after every change. For a technical explanation of each record, read SPF, DKIM, DMARC and MX for domain administrators.
Move mail with a complete recipient inventory
The most common migration risk is an address that existed at the old provider and has no destination at the new one. Mail sent to that address can fail as soon as new MX records take effect. Create recipients from the inventory first, including low-traffic aliases and recovery addresses.
Export or import historical messages while the old account is available. Keep the old service active through the DNS transition because some sending systems may continue using cached MX information. Check both services during the overlap, then perform a final import if the migration method supports one.
Plan a rollback before the change. Save the former MX values, note the current DNS TTL and keep administrator access to both providers. Restoring the old MX record can redirect new deliveries, although DNS caches mean the change also takes time to reach every sender.
The full sequence, including preparation, verification and post-cutover checks, is covered in the staged MX cutover guide.
Set recovery rules for the whole household
Family email often becomes the recovery channel for banking, education, travel, utilities and device accounts. Treat recovery as part of the initial setup.
Each member should store their recovery method somewhere they can reach after losing a device. The administrator should document how to recover the registrar and DNS accounts separately. Avoid circular recovery where the email account depends only on the domain registrar and the registrar depends only on that same email account.
Thelemail’s zero-access storage design has a direct consequence: losing both a password and its recovery method can make stored mailbox content unrecoverable. Review that boundary with every member before migration. The security and threat model explains stored-mail encryption, internal end-to-end encryption, external delivery and visible metadata.
Decide how shared household mail should behave
A shared address should map to a real household responsibility. Select the members who need a copy and decide who is expected to reply. Members continue using their own sign-ins and encryption keys, which keeps account access attributable to a person.
Revisit shared routing after life changes. A child may take over a school or subscription account, a partner may assume bill administration, or an elderly relative may need another person included. The public address can stay stable while the administrator updates its recipients.
Aliases deserve the same maintenance. A unique alias for an online service can reveal which service leaked or misused the address, and the administrator can redirect or retire it without disturbing a person’s main mailbox. Keep aliases meaningful enough that their purpose remains clear years later.
Run a final household readiness check
Before changing MX, confirm all of the following:
- The domain registration, renewal and recovery details are current.
- Every family member has a separate mailbox and working recovery method.
- Every old recipient appears as a mailbox, shared address or alias at the new host.
- DKIM, SPF and DMARC show the expected state in the setup wizard.
- Historical mail has been imported or archived according to the family’s plan.
- The former MX records and rollback steps are documented.
- Family members know when to check both old and new inboxes during the transition.
After cutover, send tests from an external provider to every recipient type. Send outbound messages to several major providers and inspect authentication results in the received headers. Continue watching the old inboxes until cached delivery has ended, then close the former service only after the family confirms that important mail is arriving.
A well-run family domain should fade into the background after setup. One administrator maintains DNS and routing, each person keeps a private account, and the household retains control of its addresses as providers change.