For healthcare IT
Data-aware refurbishing for hospitals, clinics, and health-tech.
Media sanitization to NIST 800-88 Purge standards on every drive. Certificates of Sanitization and Destruction issued per unit. Chain-of-custody logs on every PO, formatted for your security audit.
- Per-drive certificate
- NIST 800-88
- Reverse-logistics intake
- HIPAA-aware
- Log per PO
- Chain-of-custody
What’s included
Security controls that ship with every PO
NIST 800-88 Purge sanitization
Every drive in every refurbished unit is sanitized to NIST 800-88 Purge standards before the unit leaves intake.
Certificate of Sanitization per drive
Per-drive sanitization certificate issued on request, listing serial, method, verification pass, and operator.
Certificate of Destruction for RMA media
Storage media removed during RMA are physically destroyed. Certificate of Destruction issued against the original PO.
Chain-of-custody log per PO
Timestamped custody handoffs from intake through sanitization, refurb, and outbound — one log per purchase order, audit-formatted.
HIPAA-aware reverse-logistics intake
Trade-in intake handled under documented access controls. Media is segregated and sanitized before any downstream processing.
BAA available on request
For engagements that require one, we sign a Business Associate Agreement prior to any hardware or media movement.
Pricing & payment
How healthcare orgs buy from us
Scope
Clinical and back-office IT, refresh cycles, and end-of-life asset disposition. Full schedule on /pricing.
- Clinical workstations — Refurbished endpoints sanitized per drive; grading and warranty on /legal/warranty.
- Back-office IT — Servers, laptops, and peripherals for finance, HR, and revenue-cycle teams.
- Trade-in + refresh — Combine a refresh PO with a trade-in intake; see /compliance for the data-handling scope.
- Asset disposition — End-of-life hardware picked up, sanitized, and reported — certificates issued per unit.
Payment & terms
Net terms apply to approved accounts. Invoices reference the PO and the sanitization certificate pack.
- NET 30 on credit approval for hospitals, clinics, and health systems.
- Purchase orders accepted against an approved account.
- ACH, wire, and card payments; W-9 and COI on request.
- Tax-exempt invoicing with an exemption certificate on file.
Process
How a typical engagement runs
-
01
Share requirement + data-handling level
Tell us the SKUs, quantities, and data-handling level (HIPAA, internal, non-sensitive). Any trade-in media is flagged at this stage.
-
02
Quote + BAA (if applicable) issued
Signed quote returned within one business day. A Business Associate Agreement is issued alongside when the engagement requires one.
-
03
PO received; intake window scheduled
Against your PO we schedule the intake window for trade-ins — pickup or inbound — with tamper-evident packaging instructions.
-
04
Delivery + CSV + certificates + custody log
Refurbished units ship with a CSV of serials and grades, sanitization certificates per drive, and the chain-of-custody log for the PO.
FAQ
What healthcare buyers ask first
Will you sign a Business Associate Agreement (BAA)?
Yes, when the engagement warrants one. A BAA is issued alongside the quote when trade-in media or any environment touching ePHI is in scope. For non-PHI purchases — new hardware with no trade-in — a BAA is not typically required, but we will sign one on request. See /compliance for the full posture.
What's the difference between Sanitization and Destruction certificates?
A Certificate of Sanitization documents that a drive was erased to NIST 800-88 Purge and verified, and is issued for drives that remain in service inside a refurbished unit. A Certificate of Destruction documents that a drive was physically destroyed — typically for media removed during RMA, trade-in, or asset disposition — and includes the destruction method and witness. Both reference the serial number and the originating PO.
Can you pick up end-of-life hardware on-site?
Yes. On-site pickup is scheduled against the PO, with tamper-evident totes and a signed manifest at handoff. The chain-of-custody log begins at the pickup signature and continues through sanitization and reporting. Coverage and lead times on /legal/shipping.
Do you provide tamper-evident shipping?
Trade-in intake and asset-disposition pickups ship in tamper-evident totes or bags with numbered seals recorded on the manifest. Outbound refurbished units ship in standard protective packaging; tamper-evident outbound is available on request and quoted per PO.
Security-conscious refurbishing?
Send the BOM and the data-handling level. You will get a signed quote, a BAA if the engagement calls for one, and a chain-of-custody plan before the PO lands.