🔒 Free Onsite Hard Drive Shredding · Witnessed Destruction · Greater Phoenix AreaSee Mobile Shredding
Compliance12 min readUpdated May 16, 2026

The Complete Guide to NIST 800-88 Data Sanitization

NIST Special Publication 800-88 is the gold standard for media sanitization. Learn Clear, Purge, and Destroy methods.

What is NIST 800-88?

NIST Special Publication 800-88 (officially titled Guidelines for Media Sanitization) is the definitive standard for data sanitization published by the National Institute of Standards and Technology. First released in 2006 and updated to Revision 1 in December 2014, NIST 800-88 provides organizations with a systematic framework for permanently removing data from electronic storage media.

NIST 800-88 is mandatory for all U.S. federal agencies and is widely referenced by private-sector compliance frameworks including HIPAA, SOX, GLBA, PCI-DSS, and CMMC. Any organization handling sensitive data — particularly in healthcare, financial services, government, and defense — should treat NIST 800-88 as a baseline requirement for data sanitization.

The standard defines three progressively more rigorous sanitization methods: Clear, Purge, and Destroy. Each method corresponds to a different level of data recovery resistance, and the appropriate method depends on the media type, data sensitivity, and whether the device will be reused or disposed of.

The Three Sanitization Methods

NIST 800-88 organizes media sanitization into three categories, each providing an increasing level of security assurance. Understanding the differences is critical for compliance and for making cost-effective decisions about retired IT equipment.

1. Clear

Clear applies logical techniques to sanitize data in all user-addressable storage locations. This typically involves a single-pass overwrite of all addressable locations with a fixed value (e.g., zeros), resetting the device to factory state, or performing a full format. Clear protects against simple, non-invasive data recovery techniques — the kind used by data recovery software available to the general public.

Clear is appropriate for media that will be reused within the same security boundary or for data classified at a low confidentiality level. It is the fastest and most cost-effective method, and it preserves the device for remarketing and value recovery. However, Clear may not sanitize areas of the media that are not directly addressable by the user, such as HPA (Host Protected Area) or DCO (Device Configuration Overlay) regions on HDDs, or over-provisioned cells on SSDs.

2. Purge

Purge applies physical or logical techniques that render data recovery infeasible even with state-of-the-art laboratory techniques. For magnetic media (HDDs), Purge can be achieved through degaussing with an NSA-listed degausser. For flash-based media (SSDs, NVMe), Purge typically involves cryptographic erase (destroying the encryption key that protects the data) or block erase commands specified by the manufacturer.

Purge is required when media will leave the organizational control boundary — for example, when devices are sent to a third-party ITAD vendor for remarketing, donated, or transferred to another organization. Most enterprise ITAD engagements require Purge-level sanitization at minimum.

3. Destroy

Destroy renders the media physically unusable and data recovery impossible by any known technique. Methods include disintegration, incineration, pulverization, shredding, and melting. For magnetic media, degaussing combined with physical destruction is considered the gold standard.

Destroy is required for media containing highly classified or regulated data (e.g., DoD classified information, certain categories of ePHI, CUI) or when the media type does not support effective Clear or Purge techniques. While Destroy eliminates any possibility of data recovery, it also eliminates the possibility of value recovery through remarketing — a tradeoff that organizations must evaluate.

Choosing the Right Method

FactorClearPurgeDestroy
Security LevelBasicHighMaximum
Recovery ResistanceConsumer toolsLab techniquesAll known methods
Device ReuseYesYes (if not degaussed)No
Value RecoveryFullPartial to FullNone
Best ForInternal reuseThird-party ITADClassified data

The decision framework is straightforward: consider the confidentiality level of the data, the media type, and whether the device will remain under your organizational control. When in doubt, default to a higher level of sanitization — the cost of over-sanitizing is minimal compared to the cost of a data breach.

Compliance Documentation

NIST 800-88 emphasizes that sanitization is only as good as its documentation. Organizations should maintain records including:

  • Asset inventory with serial numbers, make/model, and storage capacity
  • Sanitization method applied to each device
  • Tool and version used for sanitization
  • Verification results confirming successful sanitization
  • Certificate of Destruction with date, operator, and witness signatures
  • Chain-of-custody logs from decommissioning through final disposition

Phoenix ITAD provides all of this documentation automatically for every engagement, ensuring that your organization is audit-ready at all times.

Frequently Asked Questions

What is NIST 800-88?

NIST Special Publication 800-88 (Guidelines for Media Sanitization) is a standard published by the National Institute of Standards and Technology that provides guidance on how to sanitize data from storage media. It defines three methods: Clear, Purge, and Destroy.

Is NIST 800-88 mandatory?

NIST 800-88 is mandatory for all U.S. federal agencies. It is also referenced by HIPAA, SOX, GLBA, and many other compliance frameworks, making it effectively mandatory for organizations subject to those regulations.

What is the difference between Clear and Purge?

Clear uses standard overwrite techniques that protect against simple recovery tools. Purge uses more advanced techniques like cryptographic erase or block erase that protect against laboratory-level recovery attempts.

Does NIST 800-88 apply to SSDs?

Yes. NIST 800-88 Rev. 1 includes specific guidance for flash-based media including SSDs. Due to wear leveling and over-provisioning, cryptographic erase or physical destruction are the recommended approaches for SSDs.

Need Expert ITAD Services?

Get a free quote for certified data destruction, IT asset disposition, and electronics recycling.

Get a Free Quote