Skip to main content

Email Setup

Setting Up a Catch-All Email Address the Right Way

Route mail sent to any address at your domain into one inbox — and understand the spam trade-offs before you turn it on.

1

Setting controls all unmatched addresses

24/7

Human support if routing needs troubleshooting

Free

SSL protecting every webmail login

30-day

Money-back guarantee on hosting

In short

A catch-all email address captures every message sent to your domain, even to addresses you never created, by forwarding it to one mailbox or address instead of bouncing it. In cPanel this is configured under Email > Default Address, where you choose a destination account for undeliverable mail instead of the default 'fail with error' setting.

Catch-alls are convenient for never missing a mistyped address, but they also expose you to a heavier volume of spam, since spammers can guess random addresses at your domain and everything still arrives.

Every domain that hosts email has to decide what happens to a message sent to an address that doesn't exist — like a customer typing sales@yourdomain.com when your account is actually contact@yourdomain.com. By default, cPanel rejects that mail with a bounce-back error. A catch-all address changes that behavior so nothing addressed to your domain is ever silently lost, no matter how it's spelled.

This is useful for businesses that publish an email address inconsistently across print materials, old business cards, or third-party directories, but it comes with a real cost in spam volume. This guide covers the exact cPanel steps and the trade-offs so you can decide if a catch-all is right for your domain.

What a Catch-All Address Actually Does

A catch-all — called the 'Default Address' in cPanel — is the destination for any mail sent to your domain that doesn't match an existing mailbox, forwarder, or alias. Instead of the sending server receiving a bounce-back, the message is delivered to whichever address or account you designate, silently and automatically. This applies to every possible combination at your domain: typos, old retired addresses, and addresses that were never created in the first place.

It's important to understand this happens at the domain level, not per-mailbox, so a single catch-all setting covers every unmatched address for the whole domain. If you host multiple domains on one account, each domain needs its own default address configured separately, since cPanel treats them as independent mail routing zones.

Configuring the Default Address in cPanel

In cPanel, open Email > Default Address (sometimes listed as 'Default Address' under the Email section) and select the domain you want to configure from the dropdown if you manage more than one. You'll then choose between forwarding unmatched mail to an existing email account on the domain, forwarding it to a completely different email address, piping it to a script, or discarding it silently.

For most small businesses, forwarding to an existing mailbox — such as your main admin or support inbox — is the simplest and safest option, since you'll see everything in one place without creating a dedicated new account. Save the change and it applies immediately; no DNS propagation wait is needed because this is a server-side routing rule, not an MX or DNS record.

The Spam Trade-Off You Need to Weigh

The convenience of a catch-all comes at a real cost: spammers routinely run dictionary and brute-force attacks against domains, sending to thousands of guessed addresses like info, admin, sales1, contact2024, and random strings, hoping something sticks. Without a catch-all, all of that junk simply bounces and never reaches you. With a catch-all enabled, every single guess lands in your inbox, often overwhelming spam filters that are tuned to a normal mailbox's traffic pattern.

If you enable a catch-all, pair it with stronger spam filtering rules on the destination mailbox and review it more frequently than a normal inbox, since it will accumulate a disproportionate share of junk. Many businesses find that after a period of routing to a catch-all, they identify the two or three address variants people actually use and switch to dedicated aliases for those instead, then turn the catch-all off.

Safer Alternatives to a Full Catch-All

If your goal is simply to avoid missing mail from a handful of predictable typos or old addresses, individual email forwarders are a more targeted option — you create a specific forwarder for each known variant (like info@ and contact@) pointing at your main mailbox, without opening the door to every possible combination. This gets most of the benefit of a catch-all with a fraction of the spam exposure.

Another middle ground is a catch-all that pipes to a script or a dedicated, lightly-checked mailbox rather than your primary inbox, so you can periodically skim it for anything genuinely important without the noise disrupting your daily email. Whichever approach you choose, review your default address setting whenever you retire an old email account, since forgetting to update it is a common way stale routing rules linger for years.

How to Set Up a Catch-All Email Address

Mail Routing You Can Actually Configure Yourself

Catch-all routing, individual forwarders, and full mailbox management all live in the same cPanel-style panel across every Hosting Cheap plan, so you're never stuck submitting a support ticket just to change where a mistyped address goes.

If a catch-all starts pulling in more spam than expected, our 24/7 human support team can help you tighten filters or switch to targeted forwarders instead, without touching your MX records.

  • Default Address (catch-all) setting available in every cPanel-style panel
  • Individual email forwarders for targeted, lower-spam routing
  • 24/7 human support for mail routing questions
  • Daily backups protect your mailbox configuration and messages

Why Hosting Cheap

What you get

Simple cPanel routing

Set or change the default address in a few clicks, no DNS edits required.

Per-domain control

Configure separate catch-all rules for each domain hosted on your account.

Built-in spam filtering

Apply spam scoring to catch-all traffic so junk doesn't flood your main inbox.

24/7 support

Get help tightening or removing a catch-all if spam volume becomes a problem.

Daily backups

Mailbox and forwarder settings are backed up daily along with your mail.

Free SSL

Auto-renewing SSL keeps webmail access to your catch-all inbox encrypted.

How It Works

Get set up in a few steps

1

Open Email > Default Address

Select the domain you want to configure from the dropdown in cPanel.

2

Choose a destination

Forward unmatched mail to an existing mailbox, another address, or discard it.

3

Monitor and adjust

Review the catch-all inbox regularly and switch to targeted forwarders if spam grows.

Included

Everything you need, on every plan

  • Confirm which domain you're setting the default address for
  • Decide between forwarding to an existing mailbox or a new address
  • Enable spam filtering on the destination mailbox before turning on catch-all
  • Save the setting and send a test email to a made-up address to confirm delivery
  • Set a reminder to review catch-all volume weekly
  • Identify frequently-used typo addresses and create dedicated forwarders for them
  • Turn off the catch-all once genuine variants are covered by named forwarders
  • Update the default address whenever you retire an old mailbox

FAQ

Frequently asked questions

Where do I set up a catch-all email in cPanel?

Go to Email > Default Address in cPanel, pick the domain from the dropdown, and choose a destination mailbox or address for any mail that doesn't match an existing account. The change applies immediately without any DNS propagation delay.

Is a catch-all email address safe to use?

It's safe from a technical standpoint, but it increases spam exposure since every guessed address at your domain lands in your inbox instead of bouncing. Pairing it with spam filtering and reviewing it regularly keeps it manageable.

Can I have a catch-all for one domain but not another?

Yes, the default address setting is configured per domain, so accounts hosting multiple domains can enable a catch-all on one and leave others set to bounce unmatched mail.

What happens to mail sent to a nonexistent address without a catch-all?

Without a default address configured, mail to an address that doesn't exist on your domain is rejected and the sender receives a bounce-back error, meaning the message never reaches you at all.

Should I forward my catch-all to my main inbox or a separate one?

A separate, dedicated mailbox is usually safer, since catch-all traffic includes a disproportionate amount of spam that could bury important messages in your primary inbox. Check the dedicated mailbox periodically instead.

How is a catch-all different from an email forwarder?

A forwarder routes one specific address to another destination, while a catch-all routes every address that isn't otherwise defined. Forwarders are targeted and low-spam; catch-alls are broad and higher-spam by nature.

Take Control of Your Domain's Email Routing

Configure catch-all addresses, forwarders, and spam filters from one simple panel with 24/7 support.

Get Started