NIST 800-88 is a data sanitisation standard published by the US National Institute of Standards and Technology that defines three levels of data destruction — Clear, Purge, and Destroy — and it's the most widely referenced benchmark UK and international IT teams use to prove a device's storage has been properly wiped before reuse, resale, or disposal.
Clear uses standard read/write commands to overwrite all addressable storage locations, suitable for devices being reused within your own organisation where physical security is otherwise controlled. Purge applies more rigorous techniques — such as cryptographic erase or multiple-pass overwriting — that make data recovery infeasible even with advanced laboratory techniques, and is the level most commonly required for devices leaving your organisation's control. Destroy is physical destruction of the storage media itself (shredding, disintegration, incineration), reserved for the highest-sensitivity data or drives that have failed and can't be reliably wiped.
Deleting files or reformatting a drive removes the file system's pointers to the data, not the data itself — the underlying bits typically remain recoverable with freely available forensic tools until they're overwritten. This is the gap NIST 800-88 exists to close: it defines sanitisation methods that are actually verifiable and defensible, not just visually "empty."
When a laptop or phone returns from a departing employee, it likely still contains cached credentials, saved documents, browser history, and app data — even after a factory reset in some cases, depending on the storage type and reset method used. A NIST 800-88 Purge-level wipe, performed correctly, removes this data to a standard that satisfies most compliance frameworks, insurance requirements, and data protection obligations before the device is redeployed to a new employee or sent for resale.
A proper data wipe process produces a certificate of destruction — a timestamped record showing which device (by serial number), which method, and which standard was applied. This certificate is what you'd produce in a compliance audit or, in the worst case, as evidence that a specific device's data was properly destroyed before a breach investigation. Without it, you're relying on someone's word that the wipe happened at all.
Data wiping only works if the device actually gets back to you — which is why sanitisation and recovery logistics are really one problem, not two. ReturnKits offers NIST 800-88 compliant data wipe as an add-on to any return, with a certificate attached to the order's audit record, so recovery and sanitisation happen as a single tracked step rather than two separate processes that can fall out of sync.
Clear, Purge, and Destroy. Clear uses standard overwrite commands for internal reuse, Purge applies techniques like cryptographic erase for devices leaving the organisation, and Destroy is physical destruction of the storage media for the highest-sensitivity data.
No. Deleting files only removes the file system's pointers to the data — the underlying bits typically remain recoverable with forensic tools until they're actually overwritten, which is exactly the gap NIST 800-88 exists to close.
A timestamped record showing which device (by serial number), which sanitisation method, and which standard was applied — the evidence you'd produce in a compliance audit or breach investigation.
Not reliably. Cached credentials, saved documents, browser history, and app data can survive a standard factory reset depending on the storage type and reset method, which is why a verified Purge-level wipe is needed before redeployment.