Half of ICANN Registrars Under One Roof: The Hidden Risks of Domain Market Consolidation and How to Respond

One entity controls nearly half of ICANN registrars, raising systemic risk and competition concerns.
A single corporate entity now controls nearly half of all ICANN-accredited domain registrars, creating serious risks including single points of failure, weakened competition, and governance imbalances. This article examines the economic drivers behind domain market consolidation and offers practical guidance for developers and businesses to protect their domain assets through diversification, transfer planning, and privacy awareness.
An Underestimated Industry Signal
In the world of internet infrastructure, domain registrars are one of the most easily overlooked yet critically important components. Recently, a Hacker News discussion titled "Almost half of all ICANN-accredited registrars are controlled by the same company" drew modest upvotes and comments, yet it revealed a structural issue that warrants the entire industry's attention: the extreme consolidation of the domain registration market.

ICANN (Internet Corporation for Assigned Names and Numbers) is the top-level coordinating body for the global domain name system. Any company wishing to sell domain names must obtain its accreditation. To understand ICANN's role, you need to know the three-tier architecture of the domain name system: at the top sits the Registry, such as Verisign, which operates the databases for .com and .net — they maintain the "master ledger" for top-level domains; in the middle are Registrars, the companies that sell domains to consumers, like GoDaddy and Namecheap; at the bottom are Registrants, the individuals or organizations that actually purchase and use domain names. ICANN reviews and authorizes registrars through a Registrar Accreditation Agreement (RAA), which requires applicants to pay thousands of dollars in application and annual fees while meeting technical capability, financial stability, and other requirements. In theory, thousands of independent registrars form a competitive, decentralized marketplace. In reality, however, there is an enormous gap between the number of accreditation credentials and actual market control.
Why "One Company Controls Half" Happens
Bulk Hoarding of Accreditation Credentials
The reason a single entity can control nearly half of all ICANN-accredited registrar seats is typically not because it operates thousands of independent brands, but because it achieves this through bulk applications and acquisitions of accreditation credentials. Each ICANN accreditation account is technically an independent "registrar" entity, but behind the scenes they may share the same operational systems and the same parent company.
This practice falls within the rules. Large domain conglomerates have expanded through mergers and acquisitions for years, and it's commonplace for a single holding group to own hundreds of registrar brands. Consider some of the most representative groups in the industry: GoDaddy is the world's largest domain registrar, managing over 80 million domains, having acquired Host Europe Group, Media Temple, and other companies; Tucows, through its Enom and OpenSRS platforms, serves thousands of white-label resellers and manages over 27 million domains in total; Newfold Digital (formed from the merger of Endurance International Group and Web.com) controls Bluehost, HostGator, Domain.com, Network Solutions, and many other brands — all of which appear independent but actually share backend infrastructure. Hoarding accreditation credentials helps capture market share and gain scale advantages in wholesale pricing and registration quotas. Some conglomerates also leverage multiple registrar identities to secure more allocation slots during priority registration phases for different TLDs, or bid on expiring domain auctions under multiple entities — creating structural advantages that ordinary registrars simply cannot match.
The Economic Drivers of Consolidation
Domain registration is a high-volume, low-margin business, and understanding this requires dissecting its cost structure. Take the most common .com domain as an example: registrars must pay the registry Verisign a wholesale price of approximately $10.26/year per domain (2024 rate), plus an annual transaction fee of $0.18 per domain to ICANN, along with an annual accreditation fee based on registrar tier. Meanwhile, the typical retail price for consumers to purchase a .com domain is only $10–$15/year, and many registrars even offer below-cost first-year promotional pricing (as low as $0.99), recouping profits through renewals and value-added services (WHOIS privacy protection, SSL certificates, email hosting). Under this cost structure, scale is the moat. Only giants with massive user bases and automated operations can survive and profit in price wars by spreading fixed costs (engineering teams, compliance audits, customer service centers) across a larger base. For small registrars with annual revenue under a million dollars, ICANN compliance audits and technical infrastructure maintenance costs alone can eat up all profits — naturally driving market consolidation toward a handful of players.
The Real Risks of Domain Market Consolidation
Single Points of Failure and Systemic Fragility
When nearly half of all registrars are operated by the same entity, the underlying technical architecture, DNS resolution, and billing systems are likely highly coupled. To appreciate the severity of this risk, you need to understand the basic DNS resolution chain: when a user types a URL into their browser, the request passes sequentially through recursive resolvers, root name servers, and TLD name servers before finally reaching the domain's authoritative DNS server to obtain the actual IP address. Many small and medium-sized websites use the authoritative DNS service provided by their registrar. If a conglomerate controlling hundreds of registrar brands runs the DNS services for all those brands on the same infrastructure, a single underlying failure could trigger a cascading effect — tens of millions of domains becoming unresolvable simultaneously, meaning the corresponding websites, email, and API endpoints all go dark. There's already historical precedent: the massive DDoS attack on Dyn DNS in 2016 caused Twitter, GitHub, Netflix, and numerous other websites to go down for hours, and that attack only affected one DNS provider. If a similar concentrated failure occurred at the domain registrar level, the blast radius would be even wider. This systemic risk runs directly counter to the decentralized design principles of the internet.
Weakened Competition and Pricing Power Monopoly
On the surface, users can freely choose among thousands of registrars, but if they're actually controlled by the same company, that "choice" becomes an illusion. Pricing, terms of service, and privacy protection policies can all be set uniformly, leaving consumers with no real ability to vote with their feet. This is also the most classic example of concealed concentration from an antitrust perspective — known in economics as the "Common Ownership" problem. Research shows that when the same controlling entity owns multiple seemingly competing brands in an industry, the intensity of price competition among those brands drops significantly, because internal competition only cannibalizes their own profits. Even more concerning, domain registrars also control renewal reminders, expiration handling, and transfer processes. If a conglomerate intentionally sets up hidden barriers to prevent user churn (such as complex transfer verification procedures or extended lock periods), users may find themselves "trapped" within the same group without even knowing it.
Governance and Accountability Dilemmas
ICANN operates under a governance framework known as the Multistakeholder Model, designed to allow governments, businesses, the technical community, civil society organizations, and individual users to jointly participate in shaping internet naming and addressing policies. Within this framework, the Generic Names Supporting Organization (GNSO) is the core body for developing gTLD (generic top-level domain) policies, and the Registrar Stakeholder Group is an important voting bloc within the GNSO. Members of this group theoretically represent the diverse voices of thousands of independent registrars, but if nearly half of those members are actually controlled by the same conglomerate, the concentration of voting rights and influence becomes inevitable. In key policy discussions — such as domain renewal price caps, registrant data protection (balancing WHOIS and GDPR), and new TLD openings — large conglomerates can coordinate the votes of their multiple registrar entities to exert influence far beyond what their apparent representation would suggest. The effectiveness of community consensus mechanisms is undermined, and policymaking may tilt more toward the commercial interests of large corporations rather than the rights of ordinary domain holders and end users.
How Developers and Businesses Can Protect Their Domain Assets
For developers, startups, and enterprises that depend on domain names, this phenomenon offers several practical considerations:
- Carefully assess the true ownership of your registrar. When choosing a registrar, take time to investigate the parent company and operating entity behind it, and avoid concentrating critical domain assets under the same conglomerate. You can consult the publicly available ICANN Registrar List, which provides affiliated company information for each registrar. Registrars like Cloudflare Registrar, Porkbun, and Gandi, which currently maintain relatively independent operations, can serve as options for diversifying risk.
- Prepare domain backup and transfer contingency plans. Domains are the core of digital identity — ensure you have full administrative access, exportable DNS records, and understand the process for transferring to another provider. ICANN has established the Inter-Registrar Transfer Policy (IRTP), which stipulates that domain holders have the right to transfer their domain from one registrar to another. A transfer typically requires obtaining an authorization code (Auth Code / EPP Code), confirming the transfer request, and generally completes within 5–7 days. Note that domains are usually locked and cannot be transferred again within 60 days of initial registration or within 60 days after a completed transfer, so plan ahead before critical deadlines. It's also advisable to regularly export your complete DNS zone files so you can quickly migrate to another DNS provider in an emergency.
- Pay attention to privacy and data policies. Consolidation means your registration information may be aggregated by just a few companies, making privacy protection terms worth reviewing clause by clause. Since the EU's GDPR took effect in 2018, ICANN has made significant adjustments to its WHOIS data disclosure policies — registrants' personal information is no longer publicly displayed by default. However, registrars still hold this data, and large conglomerates' data integration capabilities mean they could potentially build detailed profiles covering tens of millions of domain holders. When choosing a registrar, check whether they offer free WHOIS privacy protection (some registrars still charge extra for this), review their data retention policies, and look for clauses about sharing data with third parties.
Conclusion: The Tension Between the Decentralization Ideal and Market Reality
One of the founding principles of the internet was decentralization — no single entity should be able to control the entire network. This principle traces back to ARPANET, the internet's predecessor, whose distributed architecture was designed precisely to eliminate single points of failure, ensuring that even if some nodes were destroyed, the network as a whole could continue to function. The DNS system itself embodies this philosophy: hierarchical, distributed, and operated by different organizations. Yet driven by commercial logic, from cloud computing (AWS holds approximately 31% of the global market) to CDNs (Cloudflare and Akamai together serve a massive share of internet traffic), and now the domain registration market, the infrastructure layer is continually consolidating around a few giants.
"Half of all registrars under one roof" may be just the tip of the iceberg. It reminds us that decentralization is not a state already achieved, but an ongoing game that requires constant maintenance. For industry regulators, the ICANN community, and every internet participant, finding the balance between efficiency and diversity will be a challenge for years to come. Some potential governance improvements are already being discussed within the community, including mandatory disclosure requirements for registrar affiliations, allocating voting rights based on actual control rather than the number of nominal entities, and more rigorous technical redundancy audits for mega-registrar conglomerates. Whether these measures can be implemented depends on whether the community truly recognizes the cost of consolidation.
Related articles

Building an AI Robot Dog for Kids: Multi-Model Routing, Content Filtering, and Latency Optimization
A $130 AI robot dog for kids integrates 8 LLMs with 61-language voice interaction. The team shares key engineering lessons on content safety filtering, multi-LLM intent routing, and sub-1-second latency optimization.

Can Omarchy Dominate the Sub-$1000 Laptop Market? An In-Depth Analysis
Omarchy, based on Arch Linux, shows unique advantages in the sub-$1000 laptop market. This analysis compares Windows and MacBook performance bottlenecks on low-spec hardware and examines why Omarchy enables cheap laptops to run smoothly, plus the ecosystem challenges and market prospects it faces.

AI Agent Beginner's Guide: Building a Creative Strategy Intelligent Assistant from Scratch
A complete guide to building a creative strategy AI Agent from scratch. No coding required — use tools like Dify and Coze to quickly build an intelligent assistant.