Single Drive Sanitize
Full physical drive sanitization with real-time sector visualization, live byte inspection and cryptographic audit hashing.
Sector-level erasure that talks straight to the hardware, a full audit of the machine around it, and a signed certificate for both.
Built and supported in IndiaAligned with the DPDP Act 2023 · data never leaves the machineOne screen answers the only question that matters before a wipe: what is attached, is it healthy, and which standard will run.
Sentinel Live continuously scores the machine and reports drive health across every attached disk.
Physical disk count, total connected capacity and completed sanitization jobs, always current.
Live hardware feed per disk — model, bus, health, serial and used capacity, straight from the controller.
Rescan on demand to re-enumerate every attached drive in seconds, no restart required.
SP 800-88 Rev. 1 Clear applied out of the box, switchable per job from eight certified methods.
Built on direct Win32 IOCTL, ATA pass-through, SCSI/SAT translation and NVMe admin commands — no abstraction layer between the app and the platter.
Full physical drive sanitization with real-time sector visualization, live byte inspection and cryptographic audit hashing.
Concurrent sanitization across multiple physical targets — NVMe, SATA and USB — in a single job.
Target specific logical partitions, with automatic advance warning when an OS system boot volume is selected.
MFT directory record clearing, filename randomization and file slack space zeroing, with inline timestamps and size badges.
Wipes deleted-file remnants from unallocated clusters, MFT free records and NTFS journal space without touching live data.
Deep storage inventory — ATA IDENTIFY, SMART attributes, SMR zone detection, interface bus types and volume mappings.
Kernel P/Invoke AC adapter detection, ACPI thermal zones, fan speed telemetry and input device enumeration.
Guided six-step onboarding for compliance policy alignment, workspace selection and initial diagnostics.
Hardware-bound RSA-4096 activation with an offline request and activation challenge flow.
Keep scrolling — the app moves through its modules with you. Same build, same theme engine, switched at runtime.
Pick whole disks or individual partitions across NVMe, SATA and USB, then run them together — each target gets its own worker thread and its own handle to the hardware.
Point the segment at the boot server and every machine on it wipes itself.
The target answers on the wire with no disk and no OS of its own.
boot.wim streams off the share and runs from RAM, leaving every disk free.
Every drive the client can see is overwritten to the policy the server set.
Sampled sectors are read back and hashed against what was written.
The client writes its signed certificate back to the share, then shuts down.
The reel turns by itself and each film lands in the monitor. Click the screen to play it right there, or take it fullscreen.
Pick the method the auditor asks for — from a single NIST Clear pass to a full 35-pass Gutmann run — and export a signed certificate for every job.
| Standard | Description | Passes |
|---|---|---|
NIST SP 800-88 Rev. 1 (Clear)Default | Logical block overwrite with single-pass zeroing | 1 |
NIST SP 800-88 Rev. 1 (Purge) | Cryptographic erase plus physical sector block purge | 3 |
DoD 5220.22-M | US Department of Defense 3-pass overwrite (0x00, 0xFF, random + verify) | 3 |
DoD 5220.22-M (ECE) | Enhanced 7-pass character overwrite sequence | 7 |
IEEE 2883-2022 (Purge) | IEEE standard for sanitizing security-aware storage media | 3 |
Gutmann Method | Full 35-pass magnetic media sanitization algorithm | 35 |
BSI GS / AFSSI-4B1 | German and French government data destruction standards | 3–4 |
DPDP Act 2023 / ISO 27001 | Aligned with the Indian DPDP Act 2023 and ISO/IEC 27001 audit standards | Custom |
Three kinds of floor use DS-OS for three different reasons — throughput, evidence, and reach across an estate.
Running the drives in parallel changed how we staff a shift. What used to be a queue one bench worked through is now a batch that clears while the team handles intake.
The verification pass is the part our auditor cared about. A wipe log on its own was never going to be enough — the signed certificate answered the question without a follow-up.
We had a floor of machines to retire and a policy that said nothing with data on it leaves the building. It was done on site, and we had the serial-level report the same week.
Illustrative of the engagements we run — sample wording, shown while customer quotes are being approved for publication. Named references can be arranged on request.
One device is one activation. Every paid licence carries every feature — the number you buy changes the price, not the product. No renewal date, nothing expiring underneath you mid-project.
Prove the erasure engine on one machine before you pay for anything.
Every feature, at any size. Price scales with devices, nothing else.
A licence unlocks all 39 features at any size — unlimited erasures, unwatermarked certificates and the customer portal. Compare free and licensed →
Drive counts, standard requirements, and whether machines can be taken offline — those three answers decide the licence you need.
What you send is used strictly to answer your enquiry. It is never added to a mailing list or shared with third parties.
Download DS-OS and run your first verified NIST SP 800-88 sanitization in under five minutes — complete with a signed report.