Hard drive shredding and certified data destruction.

Retired drives leave your building as an asset, not a liability. Every one of them accounted for by serial number.

R2v3 Certified · Cert. C2026-04479 Data sanitization audited by an accredited registrar, not self-declared. See the methods
  • Certificate of Data Destruction on every serial
  • Documented chain of custody, dock to disposition
  • Free collection, whatever the volume
  • Value returned on anything worth reusing
Get a Destruction Quote

Tell us what you're retiring and we'll come back with a method, a price, and a sample of the certificate you'll receive. No cost, no obligation.

NDA available on request, signed before you send us a single serial number. We respond within 1 business day.

The problem

A deleted file is not a destroyed file

Most of what passes for data destruction inside an organization removes the pointer to the data and leaves the data itself sitting on the platter. The gap between those two things is where breach notifications come from.

Deleting and reformatting

A quick format rewrites the file table, not the blocks. Free recovery tools pull the contents back in minutes.

Factory resets

Reliable on a modern encrypted phone, unreliable on everything else. On many devices it clears the profile and nothing underneath it.

Overwriting an SSD

Wear levelling means a multi-pass overwrite never reaches the spare blocks. Flash needs a purge command or destruction, not a scrub.

Drilling and smashing

A hole through the casing leaves most of the platter readable, and leaves you with no record that anything happened at all.

The failure mode is rarely the technique. It's the missing paperwork: no serial list, no method on record, no signature. If you can't evidence destruction, you can't evidence it didn't leak.

How we destroy data

The right method for the media, evidenced either way

NIST SP 800-88 Rev. 1 draws the line between Clear, Purge and Destroy. We pick per media type and per your risk appetite, and the method we used goes on the certificate against the serial number.

Logical sanitization (Clear / Purge)

Every data-bearing device we receive is sanitized in line with NIST SP 800-88 Rev. 1 under our R2v3-certified Appendix B process, and the result is verified before the asset moves on. Every pass is verified by re-read, and a drive that fails verification is never given a second chance — it's rerouted to physical destruction.

Cryptographic erase

On self-encrypting drives and modern encrypted endpoints, destroying the key destroys the data. Fast, verifiable, and the only sound approach on flash that was encrypted from first use.

Physical destruction (Destroy)

Media that cannot be verifiably sanitized — failed drives, damaged media, and anything you designate as destroy-only — is physically destroyed by a certified destruction partner inside our audited downstream chain, under documented custody from your dock to the shredder. The shredded material stays in the recycling stream — destroyed, then recovered, never landfilled.

Evidence, either way

Sanitized or shredded, the output is the same document set: a serialized Certificate of Data Destruction, a chain-of-custody record, and a disposition line you can reconcile against your asset register.

What we handle

Every kind of media that ever held your data

If it stores a byte, it goes on the inventory. Below is how each class is normally treated — your policy overrides ours on any line.

Media Default method Why
Hard disk drives (HDD) Purge, or shred on request Overwrite reaches every addressable block on magnetic media and the drive keeps its resale value.
SSD, NVMe and M.2 Cryptographic erase or sanitize command Wear levelling hides spare blocks from an overwrite. Flash needs a firmware-level purge.
Phones and tablets Purge, with lock and activation checks Encrypted by default, so key destruction plus a verified factory state clears the device.
Laptops, desktops and workstations Purge in place, drive pulled on request Keeps the machine whole and remarketable, which is where your return comes from.
Servers, RAID arrays and SAN Per-drive purge after array break-down Controller-level wipes miss drives that dropped out of the array before you retired it.
Backup tape (LTO, DLT) Destroy Sequential media can't be verified block by block, and tape rarely has residual value.
USB sticks, SD and CF cards Destroy Low value, high risk, and controller quirks make verification unreliable at volume.
Optical discs Destroy Write-once media cannot be overwritten at all.
Printers, MFPs and network gear Purge of the internal drive or NVRAM The forgotten category. Copiers hold years of scanned documents on an internal disk.
Chain of custody

Six handoffs, every one of them signed

A certificate is only worth the custody record behind it. Here's the record you get.

01

Inventory and agreement

We agree the media list, the method per class, and the reporting format before anything moves. Mutual NDA signed first if you want one.

02

Secure packing

Containers and tamper-evident seals arrive ahead of collection. Seal numbers are logged against your job at the point they're closed.

03

Collection

Freight is booked and paid by us, tracked end to end, and released only against a signed manifest. You keep a copy at the dock.

04

Receipt and serialization

Seals are checked, every asset is scanned into our system by serial, and the received list is reconciled against your manifest. Discrepancies are raised the same day.

05

Sanitization or destruction

Each asset is processed by its agreed method and the result recorded against its serial. Anything that fails sanitization is rerouted to destruction, not retried.

06

Certificate and settlement

You receive the Certificate of Data Destruction and the disposition report. Anything remarketed is settled at the price we quoted per grade.

Your evidence

What's actually on the Certificate of Data Destruction

Auditors don't accept a logo on a letterhead. Ours is a line-per-asset document you can hand straight to a reviewer.

  • Serial number, make, model and capacity of every device
  • The sanitization or destruction method applied to each one
  • Verification result and the date it was processed
  • The technician and facility that carried out the work
  • Our certificate numbers and the standard applied
  • Final disposition: reused, recycled, or destroyed

Delivered as a signed PDF with the underlying data in CSV, so it drops into your asset register without retyping.

Regulatory context

The obligations this evidence supports

Media disposal sits inside almost every framework your organization reports against. We don't make you compliant — your policy does that. We give you the artifacts the policy requires.

HIPAA / HITECH

Disposal and media re-use safeguards for protected health information, evidenced per device rather than per shipment.

GLBA & FACTA

Proper disposal of consumer and financial records, including the disposal rule's demand for a documented, reasonable measure.

FERPA

Student records on retired one-to-one devices, handled with the same serial-level record as enterprise hardware.

PCI DSS

Rendering cardholder data unrecoverable when media is retired, with the destruction method recorded for your QSA.

GDPR & US state privacy law

Erasure and storage-limitation obligations, supported by proof of when personal data stopped existing and how.

SOX & internal audit

Asset disposal that reconciles line for line with the fixed asset register, so the write-off stands up in review.

Underpinning all of it: NIST SP 800-88 Rev. 1, the media sanitization guidance nearly every US framework points back to, applied under our audited R2v3 process.

Independently audited

Certified, not self-declared

Gizmogul is certified to The Sustainable Electronics Reuse & Recycling (R2) Standard v3 by Perry Johnson Registrars, Inc. (PJR) under certificate C2026-04479, covering our Canton, Massachusetts facility.

The part that matters for data destruction is the scope. Ours explicitly covers logical data sanitization and downstream vendor management — meaning both the work we do ourselves and the partners who destroy what we can't sanitize are inside the audit, and get re-audited every year.

Certificate number
C2026-04479
Certifying body
Perry Johnson Registrars
Certified facility
15 Dan Road, Suite 150, Canton, MA 02021, United States
Valid through
July 14, 2029

Also certified to the Recycling Industry Operating Standard (RIOS), Rev. 2016 (certificate C2026-04480), covering our quality, environmental, and health & safety management systems.

Worth knowing

Shredding is the right answer — sometimes

Plenty of vendors shred everything, because shredding is the easy thing to charge for. A shredded drive is a cost line. A sanitized one is a credit.

Destroy it when

  • Your policy or a regulator requires physical destruction, full stop.
  • The drive is failed, locked, or can't be verified after sanitization.
  • The media class can't be reliably purged — tape, optical, loose flash.
  • The residual value is lower than the cost of handling it.

Sanitize and remarket when

  • The hardware is in a refresh cycle and still has years of service in it.
  • You'd rather offset the cost of the new fleet than add to it.
  • Your sustainability reporting counts reuse ahead of recycling.
  • You want the same certificate either way — and you do get it.

We'll tell you which side of the line your inventory falls on before you commit, even when the answer costs us the shredding fee. Reuse first, responsible recycling second, landfill never.

Questions

What IT and security teams ask us first

Is shredding safer than wiping?
Not inherently. A verified NIST SP 800-88 purge leaves data no more recoverable than shredding does; the difference is that the drive survives. Shredding is the right call when the media can't be verified, or when your policy says destruction and nothing else. Both come back to you with the same evidence.
Can we watch the destruction?
Tell us what your policy requires for witnessing and we'll confirm in writing what we can arrange for your job before you commit to anything.
Do you destroy on our site?
Our standard service collects sealed media and processes it at our certified facility, with custody documented at every handoff. If your policy requires destruction before the media leaves your building, raise it in your quote request and we'll tell you plainly whether we can meet it.
How quickly do we get the certificate?
The certificate is issued once every serial on the manifest has been processed and reconciled. We commit to a date in your quote and tell you if anything on the manifest is going to hold it up.
What happens if a drive on our manifest never arrives?
You hear about it the day we scan the shipment in. Received serials are reconciled against your manifest at receipt, and any discrepancy is reported before processing starts — not discovered months later when the certificate is short a line.
Is there a minimum volume?
Tell us the counts in your quote request. We handle single-site clear-outs and multi-site refresh programmes, and we'll be straight with you if your volume is better served elsewhere.
Where does the shredded material end up?
Back into the materials stream through our audited downstream chain. Downstream vendor management sits inside our R2v3 scope, so every partner handling that material is vetted and audited too. Nothing goes to landfill.
Will you sign our NDA and MSA?
Yes, and we'll sign it before you send us an inventory list. We can also provide our own mutual NDA, our standard MSA, and a Certificate of Insurance issued to your entity — all listed on our procurement documentation page.

Retiring drives? Start with the paperwork you'll be asked for.

Get a Destruction Quote
Loading...

Processing your request...