About
Data erasure that produces
evidence, not just logs.
WipeCert builds certified data erasure infrastructure for IT teams, MSPs, and enterprises. Every wipe produces a cryptographically signed certificate that any auditor can verify independently, no vendor account required.
Mission
“Make it impossible to retire a device without producing a certificate that stands up to a regulator, an insurer, or a courtroom.”
What we believe
How we build
Proof over process
A wipe without a certificate is a liability. Every erasure WipeCert performs produces a cryptographically signed, publicly verifiable record, not just a log entry.
No trust required
Certificates are signed with Ed25519 over RFC 8785 canonical JSON. Any auditor can verify any certificate independently using only the public key. No WipeCert account, no phone call.
Standards, not marketing
NIST 800-88, DoD 5220.22-M, IEEE 2883, GDPR Art. 17, HIPAA §164.310. We implement the actual standards, not a checkbox version of them.
Operator-first design
Built by an endpoint engineer who retires devices for a living. The workflow is designed around how technicians actually work, not how compliance teams wish they worked.
History
How we got here
First release
WipeCert v1.0.0 shipped on April 21, 2026 with the dashboard, the wipe agent, Microsoft Intune integration, the REST API and PDF certificates. The bootable ISO and PXE network boot followed the next day.
Signed certificates
Version 2 certificates: Ed25519 signatures over RFC 8785 canonical JSON, HMAC-sampled Merkle hashes of the drive, and a public JWKS so anyone can verify a certificate without a WipeCert account. eMMC erasure landed the same week.
HTTP Boot
UEFI HTTP Boot (wipecert-netboot.efi) so machines can boot the wipe environment over the network without a PXE server, plus agent Wi-Fi reconnect after a wipe.
Intune Add-On
Intune remote wipe became available as a $129/mo add-on on any paid plan. It stays included with Enterprise.
Compliant with global standards
For full details on our security architecture, key management, and subprocessors, see our security page.