How to verify a certificate of destruction
A certificate is only as strong as a third party's ability to check it. tScrub builds verification in, so anyone can confirm it in seconds.
Every tScrub certificate carries a QR code in the corner. Scanning it opens tscrub.com/verify?cert=…, a public page that confirms the certificate against tScrub's records. It turns a static PDF into something that can be checked independently — by a client, an auditor, or a regulator — without calling you.
What the verification page checks
- The certificate ID exists in tScrub's issuance records.
- The document hash matches the certificate that was actually issued.
- The certificate's tier — and therefore what the signature means.
A match returns "Certificate Verified." A certificate that isn't found, or that has been altered, won't verify — which is exactly the point.
Free vs paid certificates at verification
Verification is honest about what it can confirm:
- Vendor-signed (paid) — the page fully confirms the certificate and its attribution.
- Self-signed (free) — the page explains that the certificate is self-signed and cannot be independently attributed, with a prompt to upgrade. It's tamper-evident but not independently confirmable.
Why independent verification matters
A certificate you issue is a claim you make. A certificate a third party can verify is evidence they can rely on. That's the difference between a PDF that reassures internally and a record that survives external scrutiny — especially for drives that left your control.
FAQ
Does the QR code work without an account?
Yes. The /verify page is public — no login required. That's what makes it useful for third parties.
What if a certificate doesn't verify?
That means the document or the record doesn't match. It's a sign to check the file's authenticity — and the source you received it from.