Compliance

The standard on the certificate is the standard you signed.

Custodyne is standard-neutral by design. Each tenant configures the sanitization standard its certificates cite, and every Certificate of Destruction quotes the exact standard named in the customer’s signed consent.

Canadian tenants

CCCS ITSP.40.006

IT Media Sanitization — the current Government of Canada guidance. It supersedes the legacy CSEC ITSG-06, which appears only as a superseded reference. Custodyne’s wipe stage records the method used against each drive.

US tenants

NIST SP 800-88

Guidelines for Media Sanitization. US-based tenants configure their certificates to cite NIST SP 800-88. The certificate always matches the standard named in the signed consent — never a default substituted after the fact.

The seal

A SHA-256 hash fixes the record

At signing, Custodyne hashes the exact document the customer saw. That SHA-256 hash, a UTC timestamp, the signer’s details, and the legal text version are all captured — so the approval and its certificate can be proven, not just asserted.

Document hash

SHA-256 · 9f2c4b7a…a41d8e03

Signed 2026-07-14 14:33 UTC

Public verification

Anyone can check a certificate

Every certificate footer carries a verification link and its number. The recipient enters the number and confirms the media, the date, the standard, and the hash — no account required.

Verify a certificate