Domain operations platform

Run every domain like a piece of infrastructure.

ZentraLink is the control plane for the domains, DNS zones, certificates and providers your business depends on. One dashboard. Every signal. Audited, automated, ready when something breaks.

  • No credit card
  • Read-only by default
  • Made in Germany
  • GDPR-ready
app.zentralink.net/dashboard
ZentraLink DashboardHealthy

Domain Health Score

0/ 100

Domains

24

Risks detected

2

Open tickets

3

Providers connected

9

Live check:Checking DNS records

Single source of truth

Every domain, provider and risk in one health score that updates live as checks run.

Works with the registrars and providers you already use

Cloudflare
Hetzner DNS
AWS Route 53
DigitalOcean
PowerDNS
IONOS
Gandi
GoDaddy
Namecheap
OVH
Porkbun
DNSSEC
DKIM
DMARC
SPF
BIMI
CAA
TLSA
One control plane

Every domain. Every provider. One source of truth.

Connect Cloudflare, Hetzner, AWS, IONOS, Gandi, Porkbun and the other providers in your stack. ZentraLink mirrors them in real time, normalises the data and shows you one consistent operational picture — even when half your portfolio lives in different consoles.

  • Eleven provider integrations, day one

    DNS, registrar and account-level reads. No copy-paste between consoles.

  • Read-only by default

    Every connection starts safe. Active management is a deliberate switch you flip per provider.

  • Continuous drift detection

    An out-of-band DNS change is detected, diffed and surfaced before it costs you traffic.

Change detected
Cloudflare · acme.com
+

MX acme.com

mail.acme.com

+

TXT _dmarc

v=DMARC1; p=quarantine

DNS, with a paper trail

Every change reviewed. Every version recoverable.

Approval policies for critical records. Snapshots before every write. One-click rollback. Audit log entries with the exact diff so a post-incident review is a five-minute job, not a five-hour reconstruction.

  • Approval rules per record type, per scope
  • Zone snapshots taken automatically before every change
  • One-click rollback to any historical version
  • Out-of-band drift detected and surfaced live
SSL & TLS, on time

Never miss an expiry again.

Continuous certificate scans across every domain in your portfolio. Layered warnings at 60, 30, 10 and 1 day. Issuer detection, chain validation and CAA conflict checks built in.

42

Days ahead

60+ days 10–30 days < 10 days

acme.com

Let's Encrypt R3

64d

shop.acme.com

DigiCert

27d

api.acme.com

Let's Encrypt R3

8d

status.acme.com

Cloudflare

73d

mail.acme.com

ZeroSSL

41d
Health score, explained

Every domain rated. Every risk explained.

A single number you can trust — backed by six axes covering DNS configuration, SSL hygiene, mail security, monitoring depth, registrar posture and integration coverage. Click into any axis to see exactly what's pulling the score down.

  • Six-axis scoring across every signal we can see
  • Per-domain breakdown with linked fixes
  • Risk Center prioritised by blast radius, not noise
  • Predictive alerts before an outage shows up

87 / 100

Excellent

Live score

Teams & reports

Roles that match how your team actually works.

Admins keep full control. Supporters get scoped, time-bounded access to the exact domains they're working on. Reports compile themselves and land in stakeholders' inboxes — branded with your company, not ours.

Granular team access

LK

Leon Kratz

Full workspace · All domains · Billing

Admin
MS

Mira Schäfer

DNS write · 12 domains

Supporter
AV

Aksel Vega

SSL read · all production domains

Supporter
EA

External auditor

Read · audit logs · 30 days

Viewer

Granular access · time-bounded · audited per action

Reports your stakeholders read

+18%

Domain health · trailing 7 months

M-6M-5M-4M-3M-2M-1Now
Try it now

Run a live health scan on any domain.

Drop a domain and watch a simplified scan run end-to-end. The result mirrors the real Risk Center — you'll see exactly what we surface on day one.

Demo · simulated data
Try:
Resolving nameservers and DNS records
Fetching and validating SSL certificate chain
Checking SPF, DKIM and DMARC posture
Computing health score
Comparison

Why ZentraLink instead of a console — or a spreadsheet?

Most teams pick between a single provider's console (limited scope) or a shared spreadsheet (no scope at all). ZentraLink gives you the depth of a console and the breadth of a control plane, with the audit trail neither has.

Provider console

Single vendor only

  • Multi-provider visibility
  • Approval workflows
  • Zone snapshots + rollback
  • SSL + mail-security monitoring
  • Audit trail, customer-grade
  • Branded reports for stakeholders
  • Public API + webhooks

ZentraLink

You

Operational control plane

  • Multi-provider visibility
  • Approval workflows
  • Zone snapshots + rollback
  • SSL + mail-security monitoring
  • Audit trail, customer-grade
  • Branded reports for stakeholders
  • Public API + webhooks

Spreadsheet

Manual, no live data

  • Multi-provider visibility
  • Approval workflows
  • Zone snapshots + rollback
  • SSL + mail-security monitoring
  • Audit trail, customer-grade
  • Branded reports for stakeholders
  • Public API + webhooks
FAQ

The questions we hear most often.

Short answers. If you need more depth, the docs and our team are a click away.

  • Nothing wholesale. ZentraLink sits on top of the providers you already use — Cloudflare, Hetzner, AWS, IONOS and the rest — and gives you one operational layer across all of them. It is the dashboard, audit trail and workflow engine your stack was missing.
Get started

Take control of your domain stack today.

Free to start, ready in minutes, easy to leave. Bring one domain or your entire portfolio — ZentraLink scales with you.

No credit card required · read-only by default · cancel any time