All Features

Professional Android
Functions & Features

From FRP bypass and root management to IMEI repair — Android Root Tool gives technicians everything they need in one powerful suite.

9+
Brands
180+
Functions
1500+
EDL Models
24/7
Support
S
Samsung

The most comprehensive Samsung support in the industry. ART covers both Exynos (Download Mode & ADB Mode) and Qualcomm (EDL / Sahara) platforms — FRP bypass, root & unroot, IMEI repair, EFS repair, device restore and more across thousands of Samsung models including Galaxy S, A, M, F, J, Note, Z and Tab series.

Exynos Download Mode Qualcomm EDL — 800+ Models FRP Bypass Enable ADB Restore Device Root & Unroot IMEI Repair EFS Repair Knox Reset MDM Remove
Samsung Exynos — Download Mode & ADB Mode New
New
Reset FRP — Download Mode
Remove the Google Factory Reset Protection lock on Exynos Samsung devices directly from Download Mode, without needing the device to boot into Android.
  • Works from Download Mode
  • No Google credentials required
  • No ADB / USB debugging needed
  • All supported Exynos chipsets
New
Enable ADB — Download Mode
Force-enable ADB (Android Debug Bridge) from Download Mode so you can access a device whose screen is locked or whose USB debugging was never turned on.
  • Enables ADB on locked devices
  • No developer options access needed
  • Gateway to further ADB-based repairs
New
Restore Device — Download Mode
Bring a soft-bricked or bootlooping Exynos Samsung back to a working state by restoring the original system partitions from Download Mode.
  • Recovers soft-bricked devices
  • Fixes bootloop after bad flash
  • Restores stock partition state
New
Reset FRP — ADB Mode
Fast one-click FRP removal over ADB for Exynos Samsung devices where debugging access is already available — the quickest route when the device is reachable.
  • One-click over ADB
  • Fastest FRP method
  • No firmware flashing required
Samsung Exynos — Supported Chipsets 25 chipsets
Exynos 7 Series

Exynos 7570 · 7870 · 7880 · 7884 · 7885 · 7904

Exynos 8 Series

Exynos 850 · 8890 · 8895

Exynos 9 Series

Exynos 9610 · 9611 · 980 · 9810 · 9820 · 9825 · 990

Exynos 1000 Series

Exynos 1280 · 1330 · 1380 · 1480 · 1580

Exynos 2000 Series — Flagship

Exynos 2100 · 2200 · 2400 · 2500

Samsung Qualcomm — EDL (Sahara) Mode New
New
Reset FRP — 800+ Qualcomm Models
Erase Factory Reset Protection through EDL (Sahara) mode on over 800 newly supported Samsung Qualcomm models — covering Galaxy S, Note, A, M, F, J, C, E, Z and Tab series plus Japanese carrier variants.
  • 800+ newly added models
  • Works on hard-bricked devices
  • No Google account needed
  • Sahara Protocol V2 / V3 / V4
New
Format — 800+ Qualcomm Models
Full factory reset over EDL for the same 800+ model range — clears screen locks, MDM residue and corrupted userdata without needing the device to boot.
  • Userdata & cache wipe
  • Removes pattern / PIN / password
  • Recovers corrupt userdata
  • No firmware download required
800+ Samsung Qualcomm models supported Galaxy S, Note, A, M, F, J, C, E, Z Fold/Flip, Tab and Japan (Docomo/AU) variants View models
FRP Functions
FRP
Samsung FRP Bypass
Remove Google Factory Reset Protection lock from Samsung devices without requiring the original Google account credentials.
  • Supports Android 5 through 14
  • One-click bypass via ADB
  • Compatible with all Galaxy series
  • Works without disassembly
Root & Unroot
Root
Samsung Root
Gain full superuser root access on Samsung devices to enable advanced customization, custom recovery, and system-level modifications.
  • Magisk-based patching supported
  • Preserves OTA update capability
  • Supports Exynos & Snapdragon
  • Galaxy S / A / Note / Tab series
Unroot
Samsung Unroot
Safely remove root access and restore the original system state, removing all traces of root for warranty service or resale.
  • Full stock firmware restore
  • Knox counter not reset (info)
  • Clean unroot — no root traces
Mi
Xiaomi / Redmi / POCO

Full support for the entire Xiaomi ecosystem. ART handles bootloader unlocking (including Temporary & Permanent Unlock for HyperOS), root, FRP removal, MIUI account bypass, IMEI repair (Qualcomm & MediaTek), and Diag port enabling without root across all Xiaomi, Redmi, and POCO series devices.

Bootloader Unlock Temporary Unlock Permanent Unlock SD8 Elite Root & Unroot FRP Bypass Mi Account Remove IMEI Repair MediaTek IMEI (ADB & Preloader) Enable Diag Without Root EDL (Sahara) Mode — 180+ Models China to Global Converter Partition Manager
Root & Bootloader
Root
Xiaomi Root
Root Xiaomi, Redmi, and POCO devices with full Magisk support. Enables module installation, system edits, and advanced customization.
  • Magisk patched boot image
  • MIUI & HyperOS supported
  • Snapdragon & MediaTek chipsets
  • Preserves data option available
Unroot
Xiaomi Unroot
Remove root and restore the original boot partition to factory state, removing all superuser access cleanly.
  • Original boot image flash
  • Removes Magisk completely
  • Safe for warranty returns
Unlock
Bootloader Unlock
Unlock the bootloader on Xiaomi devices to enable custom recovery and full root access using the official or bypass method.
  • Official Mi Unlock support
  • Bypass waiting period tools
  • Required for root & custom ROM
⚠ Feb 2026
Xiaomi Temporary Unlock Bootloader
Temporarily unlock the bootloader on HyperOS Xiaomi / Redmi / POCO devices via Fastboot without Mi authorization. Enables engineering ROM flash, DIAG port, FRP erase, and firmware flashing. Works on firmware before February 2026 security patch.
  • No Mi authorization required
  • Fastboot Mode method
  • Flash eng ROM, open DIAG, erase FRP
  • Firmware before Feb 2026 only
⚠ SD 8 Elite
Xiaomi Permanent Unlock Bootloader — SD 8 Elite
Permanently unlock the bootloader on Xiaomi / Redmi / POCO devices powered by the Snapdragon 8 Elite chipset. Enables full root, custom recovery, and permanent engineering access with no relock.
  • Snapdragon 8 Elite chipset
  • Permanent unlock — no relock
  • Xiaomi 17 series, Redmi K90 Pro, POCO F8 Ultra
  • Full root & custom ROM ready
FRP & Account Bypass
FRP
Xiaomi FRP Bypass
Remove Google FRP (Factory Reset Protection) from Xiaomi devices after a hard reset, without needing the original account.
  • Supports Android 8 – 14
  • ADB-based bypass
  • Works on locked MIUI
Account
Mi Account Remove
Bypass or remove the Xiaomi Mi Account lock (Find My Device lock) that prevents device access after a factory reset.
  • Cloud account bypass
  • Works via EDL / Fastboot
  • Supports MIUI 12/13/14 & HyperOS
IMEI
Xiaomi IMEI Repair
Restore lost or corrupt IMEI on Xiaomi devices using EDL or Fastboot flashing. Repairs null IMEI caused by bad flash or wipe.
  • EDL-based IMEI write
  • Dual SIM support
  • QCN / NV item restore
Mi Assistant Mode (Sideload)
Flash
Flash OTA / ZIP Firmware
Flash OTA packages or ZIP firmware files directly using Xiaomi Mi Assistant (Sideload) mode without entering recovery manually.
  • OTA package sideload
  • ZIP firmware flash
  • Mi Assistant mode
Format
Format Factory Reset
Perform a full factory reset via Mi Assistant Sideload mode, wiping user data and returning the device to a clean state.
  • Full data wipe
  • Mi Assistant sideload
  • Works without unlocked bootloader
Info
Read Device INFO
Read comprehensive device information from Xiaomi devices in Mi Assistant mode including model, build, firmware version, and hardware identifiers.
  • Model & serial read
  • Firmware version info
  • Hardware identifiers
Xiaomi Diag Mode (QXDM)
Certificate
Read Critical Data (Certificate)
Read critical device data including certificates and security keys from Xiaomi devices via QXDM Diag mode.
  • Diag mode access
  • Certificate data read
  • Backup before repair
Certificate
Write Critical Data (Certificate)
Write and restore critical device certificates via QXDM Diag mode. Used for restoring factory security data after repair or replacement.
  • Certificate write via Diag
  • Factory data restore
  • Security partition repair
IMEI
IMEI Repair — RSA (Subsys) Method
Repair IMEI on Xiaomi devices using the RSA / Subsys method via Diag mode. Supports devices that require secure IMEI writing.
  • RSA / Subsys write method
  • QXDM Diag mode
  • Dual SIM support
IMEI
IMEI Repair — NV Method
Repair IMEI on Xiaomi devices using the NV (Non-Volatile) item write method via Diag mode. Works on a wide range of Qualcomm Xiaomi devices.
  • NV item write method
  • QXDM Diag mode
  • Qualcomm chipset support
⚠ Feb 2026
HyperOS 2 / HyperOS 3 — Enable Diag Without Root (Fastboot)
Enable the DIAG (Diagnostic) port on Xiaomi devices running HyperOS 2 or HyperOS 3 via Fastboot Mode — without root or Mi authorization. Unlocks QXDM access for IMEI repair, NV data operations, and service-level diagnostics. Works on firmware before February 2026 security patch.
  • No root required
  • Fastboot Mode method
  • HyperOS 2 & HyperOS 3
  • Firmware before Feb 2026 only
Diag
HyperOS 1 — Enable Diag Without Root (ADB)
Enable the DIAG port on Xiaomi devices running HyperOS 1 via ADB Mode without root access. Provides full QXDM diagnostic access for IMEI repair and NV data operations on HyperOS 1 Qualcomm devices.
  • No root required
  • ADB Mode method
  • HyperOS 1 Qualcomm devices
  • IMEI repair & NV data access
Xiaomi Mediatek — IMEI Repair Updated
New
New Mediatek Models — IMEI Repair
IMEI repair extended to the newest Xiaomi MediaTek platforms, working through either a rooted device, ENG ADB, or the Preloader port — whichever access route the model allows.
  • Root or ENG ADB method
  • Preloader port method
  • Latest MediaTek models added
  • Dual SIM support
IMEI
Xiaomi Mediatek IMEI Repair — ADB Mode
Repair IMEI on Xiaomi and Redmi devices powered by MediaTek chipsets via ADB Mode. Restores null or corrupt IMEI without requiring a physical mode change or special cable, using ADB-level NVRAM write.
  • ADB Mode connection
  • MediaTek Xiaomi / Redmi
  • NVRAM write method
  • Dual SIM support
IMEI
Xiaomi Mediatek IMEI Repair — Preloader Mode
Repair IMEI on Xiaomi and Redmi MediaTek devices via Preloader (BROM) Mode. Used for devices where ADB is unavailable — connects directly at the bootloader level for deep NVRAM repair operations.
  • Preloader / BROM Mode
  • No ADB required
  • MediaTek Xiaomi / Redmi
  • Deep NVRAM write method
Xiaomi Mediatek IMEI repair coverage Root, ENG ADB and Preloader port methods across Xiaomi and Redmi models View models
Xiaomi Qualcomm — EDL (Sahara) Mode New
New
150+ New Qualcomm Models — Without Auth
Service over 150 newly added Xiaomi, Redmi and POCO Qualcomm models in EDL mode with no Mi authorized-account requirement — read/write firmware, erase FRP, format and manage partitions.
  • No Mi authorization needed
  • 150+ newly added models
  • Read / Write firmware & partitions
  • FRP erase and factory format
New
New Qualcomm Models — Temp Unlock Bootloader
Temporary bootloader unlock extended to the newest Xiaomi Qualcomm platforms, with an improved and more reliable unlock routine for existing models.
  • Latest Qualcomm models added
  • Improved unlock reliability
  • Enables eng ROM, DIAG & FRP erase
  • No Mi authorization required
180+ Xiaomi, Redmi and POCO models supported Latest flagships plus 150+ legacy and mid-range models, no authorization required View models
Xiaomi — China to Global Converter New
New
China to Global Fastboot Flasher
Convert China-region Xiaomi, Redmi and POCO devices to Global firmware directly while flashing in Fastboot mode — bringing Google services, global bands and multi-language support to CN-market hardware.
  • Conversion applied during fastboot flash
  • Enables Google Play services
  • Full multi-language support
  • Global OTA updates after conversion
18 models supported for China to Global conversion Xiaomi, Redmi K and POCO F series — converted during fastboot flash View models
Security & Cleanup
Virus
Xiaomi Virus Remove
Detect and remove malicious applications, adware, and system-level viruses from Xiaomi devices that survive factory resets.
  • System-level virus detection
  • Adware & malware removal
  • Persistent threat removal
MDM
IT Admin Remove (HyperOS)
Remove Xiaomi IT Admin / enterprise MDM enrollment from HyperOS devices. Restores full user control over managed corporate Xiaomi phones.
  • HyperOS MDM removal
  • IT Admin profile wipe
  • Restores device ownership
G
Google Pixel

Full support for the entire Google Pixel lineup from Pixel 6 through Pixel 10 series. ART provides Auto One-Click Root & UnRoot, IMEI repair, bootloader unlock/relock, and factory reset across all Pixel models.

One-Click Root One-Click UnRoot IMEI Repair Bootloader Unlock Bootloader Relock Factory Reset Pixel 6 – Pixel 10
Root & UnRoot
Root
Auto One-Click Root Engine
Fully automated one-click root for all Google Pixel models across all Android versions. No manual steps required — ART handles everything automatically.
  • Pixel 6, 6a, 6 Pro
  • Pixel 7, 7a, 7 Pro, Fold
  • Pixel 8, 8a, 8 Pro
  • Pixel 9, 9a, 9 Pro, 9 Pro XL, 9 Pro Fold
  • Pixel 10, 10 Pro, 10 Pro XL, 10 Pro Fold
UnRoot
Auto One-Click UnRoot Engine
Fully automated one-click unroot for all Google Pixel models. Restores the original boot partition and removes all root traces cleanly.
  • All Pixel models supported
  • All Android versions
  • Clean restore — no root traces
  • Safe for warranty & resale
Bootloader & System
Unlock
Unlock Bootloader
Unlock the bootloader on all Google Pixel devices to enable root access, custom recovery, and system-level modifications via Fastboot.
  • All Pixel 6 – Pixel 10 models
  • Fastboot OEM unlock
  • Required for root
  • Note: some carrier-locked devices may not support unlock
Relock
Relock Bootloader
Re-lock the bootloader on Pixel devices after restoring to stock firmware. Required for resale or warranty return with a fully clean device state.
  • All Pixel 6 – Pixel 10 models
  • Requires stock firmware flash first
  • Fastboot OEM lock
Format
Factory Reset (Format)
Perform a complete factory reset on all Google Pixel phones, wiping all user data and restoring the device to its out-of-box state.
  • All Pixel 6 – Pixel 10 models
  • Fastboot format userdata
  • Full wipe — all data removed
IMEI Repair
IMEI
Pixel IMEI Repair
Restore corrupt or missing IMEI on all Google Pixel models. Repairs NV partition data that causes IMEI loss after wipe or failed flash.
  • All Pixel 6 – Pixel 10 models
  • NV partition restore
  • Dual SIM models supported
  • Requires unlocked bootloader
Google Pixel models supported Pixel 6 through Pixel 10 Pro Fold, including a and Pro variants View models
QC
Qualcomm

Complete Qualcomm servicing suite — EDL (Sahara) Protocol V2, V3 & V4 for low-level firmware and partition access, plus professional Diag Mode (QXDM) tools for IMEI repair, EFS explorer, NV item read/write, ESN/MEID write, and QCN file management across all Qualcomm-powered Android devices.

EDL Sahara V2 / V3 / V4 Read & Write Firmware Reset FRP Format / Factory Reset Partition Manager IMEI Repair NV/EFS IMEI in QCN ESN/MEID Write EFS Explorer NV Tool Diag Mode
EDL (Sahara) Protocol — V2 · V3 · V4 New
New
Read & Write Firmware
Full firmware dump and flash over the Qualcomm Emergency Download (EDL) interface. Read a complete backup before servicing, or restore a dead device from a known-good image.
  • Sahara Protocol V2, V3 & V4
  • Complete firmware read (backup)
  • Firmware write / restore dead boot
  • Auto loader (Firehose) detection
New
Reset FRP — EDL Mode
Erase the Factory Reset Protection lock directly at partition level through EDL, with no Google account credentials and no ADB access required.
  • Works on locked / bricked devices
  • No ADB or USB debugging needed
  • Partition-level FRP erase
  • Data on other partitions preserved
New
Format (Factory Reset)
Wipe userdata and cache through EDL to return a device to factory state — ideal for removing screen locks, MDM residue, and corrupted user partitions.
  • Userdata & cache wipe
  • Removes pattern / PIN / password
  • Recovers corrupt userdata partition
  • System partitions untouched
New
Partition Manager
Browse the full GPT layout and operate on any individual partition — read it to a file, write a file into it, or erase it, all without touching the rest of the flash.
  • List GPT partition table
  • Read partition to file
  • Write file to partition
  • Erase single partition
1500+ models across all supported brands Samsung, Xiaomi, Redmi, POCO and more — Sahara Protocol V2, V3 and V4 View models
IMEI Repair
IMEI
IMEI Repair — NV/EFS Method
Repair null or corrupt IMEI on Qualcomm devices using the NV item or EFS partition write method via Diag mode. Works across all major brands using Qualcomm chipsets.
  • NV item write method
  • EFS partition repair
  • All Qualcomm chipsets
  • Dual SIM support
QCN
IMEI Write Inside QCN
Write IMEI directly into the QCN (Qualcomm Calibration Network) file and flash it to the device for a permanent IMEI repair solution.
  • QCN file editing & flash
  • Permanent IMEI write
  • Dual SIM QCN support
ESN
Generic ESN / MEID Write
Write ESN (Electronic Serial Number) or MEID (Mobile Equipment Identifier) on Qualcomm devices via Diag mode. Used for CDMA device repair and restoration.
  • ESN write via Diag
  • MEID write support
  • CDMA device repair
EFS & NV Tools
EFS
EFS Explorer
Browse, read, and write files inside the Qualcomm EFS (Essential File System) partition directly via Diag mode. Full file manager for the EFS filesystem.
  • List directories
  • Create directories (Make Dir)
  • Read files from EFS
  • Write files to EFS
  • Delete EFS files
NV
NV Tool — Read & Write NV Items
Read and write individual NV (Non-Volatile) items on Qualcomm devices via Diag mode. Essential for IMEI repair, network calibration, and restoring critical baseband data.
  • Read any NV item by ID
  • Write NV items to device
  • Network calibration data
  • Baseband NV restore
Calibration
Diag Calibration Network Read/Write
Read and write Qualcomm network calibration data via Diag mode. Improved in v2.0.6.0 for better accuracy and wider device compatibility.
  • Network calibration read
  • Calibration data write
  • Improved accuracy (v2.0.6.0)
I/T
Infinix / Tecno — Mediatek Meta Mode

Professional Infinix and Tecno servicing via Mediatek META Mode. ART supports FRP bypass with the latest SLA authentication method covering all security patch levels, factory reset, IMEI repair via NVRAM, and full NVRAM read & write for Mediatek-based Infinix and Tecno devices.

Reset FRP (SLA Method) Factory Reset (SLA Method) IMEI Repair NVRAM Read & Write NVRAM All Security Patches META Mode
FRP & Factory Reset — New SLA Method
FRP
Reset FRP — New SLA Method (All Security)
Remove Google Factory Reset Protection from Infinix and Tecno Mediatek devices using the latest SLA (Secure Link Authentication) method. Works on all security patch levels including the newest Android 13 and 14 patches that block older bypass methods.
  • New SLA authentication bypass
  • All security patch levels supported
  • Mediatek META Mode connection
  • Infinix & Tecno devices
Format
Factory Reset (Format) — New SLA Method (All Security)
Perform a full factory reset on Infinix and Tecno Mediatek devices via META Mode using the new SLA method. Bypasses all security restrictions to completely wipe and restore the device to factory state.
  • SLA-authenticated format
  • All security patch levels
  • Complete data wipe
  • Restores to factory state
IMEI Repair & NVRAM
IMEI
IMEI Repair — NVRAM Method
Restore lost or corrupt IMEI on Infinix and Tecno Mediatek devices by writing directly to the NVRAM partition via META Mode. Repairs null IMEI caused by failed flashing, bad firmware, or accidental data wipe.
  • Direct NVRAM write method
  • Fixes null / unknown IMEI
  • Dual SIM support
  • META Mode connection
NVRAM
Read & Write NVRAM
Full NVRAM backup and restore for Infinix and Tecno Mediatek devices via META Mode. Read the complete NVRAM partition for backup, or write a previously saved NVRAM file to restore device calibration and identity data.
  • Read full NVRAM partition
  • Write / restore NVRAM backup
  • Backup before repair
  • Calibration data preserve
Infinix models supported in Mediatek META Mode IMEI repair, NVRAM and certificate operations View models Tecno models supported in Mediatek META Mode IMEI repair, NVRAM and certificate operations View models
MT
Mediatek Generic — Meta Mode, BROM & NVRAM Explorer

Universal Mediatek tools covering META Mode, BROM/Preloader Mode, and the NVRAM Explorer. ART provides IMEI repair via Standard and NVRAM/LDB01 methods, full firmware flashing, FRP reset, factory format, ADB enable, and deep LID-level NVRAM inspection — all without brand restrictions.

IMEI Standard Method IMEI NVRAM/LDB01 Read & Write NVRAM Enable ADB Factory Reset BROM / Preloader Mode Write Firmware Reset FRP NVRAM Explorer Hex Viewer
Mediatek Generic — BROM / Preloader Mode Updated
New
Unlock / Relock Bootloader
Unlock the bootloader on MediaTek devices to enable root and custom recovery — then cleanly relock it afterwards for warranty service, resale, or to restore banking-app compatibility. Works in BROM, Preloader and Flash Mode.
  • BROM / Preloader / Flash Mode
  • Clean relock supported
  • Required for root & custom ROM
  • All supported Mediatek chipsets
New
Read, Write & Erase RPMB
Full access to the Replay Protected Memory Block — read the RPMB to a file, write a known-good RPMB back, or erase it to resolve secure-storage errors that block booting after a failed flash. Available in BROM, Preloader and Flash Mode.
  • BROM / Preloader / Flash Mode
  • RPMB read to file (backup)
  • RPMB write / restore & erase
  • Fixes secure-storage boot errors
BROM
Full BROM / Preloader Mode Support
Direct connection to Mediatek devices via BROM (Boot ROM) or Preloader Mode — the deepest hardware access level available. Enables firmware flashing, FRP reset, and factory format on any Mediatek device regardless of software state, including completely bricked devices.
  • BROM & Preloader Mode
  • Works on bricked devices
  • All Mediatek chipsets
  • Bypasses Android OS entirely
Flash
Write Firmware — BROM Mode
Flash stock or service firmware on any Mediatek device directly via BROM / Preloader Mode. Unbricks dead devices and restores firmware that cannot be recovered via normal recovery or META Mode.
  • Full firmware flash
  • Unbrick dead devices
  • BROM / Preloader Mode
  • All Mediatek chipsets
FRP
Reset FRP — BROM Mode
Remove Google Factory Reset Protection lock from any Mediatek device via BROM / Preloader Mode. Works even when ADB and META Mode are unavailable due to a locked or heavily restricted device state.
  • FRP partition erase
  • BROM / Preloader Mode
  • No ADB required
  • All Mediatek chipsets
Format
Factory Reset (Format) — BROM Mode
Perform a complete factory format on Mediatek devices via BROM / Preloader Mode. Wipes all user data partitions and restores the device to a clean factory state — works on screen-locked, FRP-locked, or corrupted devices.
  • Full data wipe
  • BROM / Preloader Mode
  • Screen lock bypass
  • All Mediatek chipsets
Mediatek Generic — META Mode Functions
IMEI
IMEI Repair — Standard Method
Repair null or corrupt IMEI on any Mediatek Android device using the standard IMEI write method via META Mode. Compatible with all Mediatek chipsets including MT6735, MT6750, MT6761, Helio series, and Dimensity series.
  • Standard IMEI write method
  • All Mediatek chipsets
  • Dual SIM support
  • META Mode connection
IMEI
IMEI Repair — NVRAM / LDB01 Method
Advanced IMEI repair for Mediatek devices using the NVRAM LDB01 write method via META Mode. Used when the standard method fails or for newer chipsets requiring LDB01 access for IMEI restoration.
  • NVRAM LDB01 write method
  • Advanced chipset support
  • Fallback when standard fails
  • Dual SIM support
NVRAM
Read & Write NVRAM
Full NVRAM partition read and write for any Mediatek device via META Mode. Essential for backing up device calibration data, network parameters, and IMEI before performing repairs.
  • Read complete NVRAM
  • Write NVRAM backup
  • All Mediatek chipsets
  • Preserves calibration data
ADB
Enable ADB
Enable ADB (Android Debug Bridge) on Mediatek devices directly via META Mode without needing to access the device settings. Useful for locked or FRP-blocked devices where the settings menu is inaccessible.
  • Enable ADB via META Mode
  • No settings access required
  • Works on locked devices
  • Enables further operations
Format
Factory Reset (Format)
Full factory reset on any Mediatek device via META Mode. Erases all user data and restores the device to a clean factory state, bypassing software locks and restrictions.
  • META Mode format
  • Complete data wipe
  • Bypasses screen lock
  • All Mediatek chipsets
NVRAM Explorer
Explorer
NVRAM Explorer — Connected Device
Browse and manage individual NVRAM LID records directly from a connected Mediatek device (Mediatek Generic, Xiaomi, Infinix, Tecno) via META Mode. Read, write, and erase specific LIDs for precise NVRAM-level repairs.
  • Read individual LID records
  • Write LID records to device
  • Erase specific LIDs
  • Supports all Mediatek brands
Explorer
NVRAM Explorer — By NVRAM File
Open and inspect a previously saved NVRAM backup file without connecting a device. Browse all LID records within the file, read individual records, write modifications, and erase entries for offline NVRAM editing.
  • Open NVRAM backup files
  • Read LID records from file
  • Write / modify LIDs offline
  • Erase entries from backup
Hex
Hex Viewer for Records
Built-in hex viewer displays the raw binary data of each NVRAM LID record. Inspect byte-level data below the record list for advanced diagnostics, verification, and manual analysis of NVRAM contents.
  • Hex view of LID data
  • Displayed below record list
  • Byte-level inspection
  • Advanced diagnostic tool
Xiaomi Mediatek — META Mode Features 5 functions

Read & Write Certificate (CSSD) · IMEI Repair (Standard Method) · Read & Write NVRAM · Read Device Information · Factory Reset (Format)

U
Unisoc (Spreadtrum) — Flash Mode & Diag Mode

Full Unisoc (Spreadtrum) chipset support across both Flash Mode and the new Diag protocol — IMEI repair, FRP bypass, factory reset, firmware flashing, NVRAM backup/restore, Xiaomi IMEI certificate handling, RPMB operations, and bootloader unlock & relock. Covers Itel, Infinix, Nokia, Tecno, Xiaomi and Realme devices powered by SC7731E, SC9832E, SC9863A, and Tiger T-series Unisoc chipsets. Over 200 supported models across 6 major brands.

New Diag Protocol NVRAM Backup / Restore Xiaomi IMEI Certificate IMEI Repair Reset FRP Factory Reset Firmware Flash RPMB Operations Bootloader Unlock & Relock Itel Infinix Nokia Tecno Realme SC7731E / SC9832E / SC9863A Tiger T-series
Unisoc — New Diag Protocol New
New
Full Info — Android Build Properties
Read the complete device profile over the new Diag protocol — model, chipset, build fingerprint, security patch level, region and all Android build properties, before you commit to any repair.
  • Full Android build properties
  • Chipset & firmware identification
  • Security patch level readout
  • Safe read-only operation
New
Repair IMEI — New Unisoc Smartphones
Write IMEI on the latest generation of Unisoc smartphones using the new Diag protocol, covering models that the classic Flash Mode method cannot reach.
  • Newest Unisoc smartphones
  • New Diag protocol method
  • Dual SIM IMEI write
  • No firmware flash required
New
NVRAM Backup / Restore
Take a full NVRAM backup before any risky operation and restore it in one click if calibration data, IMEI or network settings are lost during servicing.
  • Complete NVRAM backup to file
  • One-click restore
  • Protects IMEI & calibration data
  • Recovers signal loss after flash
New
Xiaomi IMEI Certificate Read / Write
Read and write the Xiaomi IMEI certificate on Unisoc-powered Xiaomi and Redmi devices — required for a valid, persistent IMEI repair on these models.
  • Certificate read to file
  • Certificate write / restore
  • Xiaomi & Redmi Unisoc models
  • Persistent IMEI repair
New
Factory Reset — Full Format & Wipe Data
Perform a complete factory reset over Diag — full format and userdata wipe to clear screen locks, accounts and corrupted user partitions.
  • Full format operation
  • Wipe userdata partition
  • Clears screen lock & accounts
  • No firmware download needed
New
Reboot / Reboot to Recovery by USB
Send reboot commands over USB — restart the device normally or straight into Recovery mode without touching hardware key combinations.
  • Normal reboot over USB
  • Direct reboot to Recovery
  • No key combination needed
  • Useful on broken-button devices
Unisoc Flash Mode Functions
IMEI
Unisoc IMEI Repair — Flash Mode
Restore lost or corrupt IMEI on Unisoc (Spreadtrum) powered Itel, Infinix, Nokia, and Tecno devices via Flash Mode. Repairs null IMEI caused by failed firmware updates, bad flashing, or accidental partition wipe on SC7731E, SC9832E, SC9863A, and Tiger T-series chipsets.
  • Spreadtrum Flash Mode connection
  • All Unisoc chipsets supported
  • Itel, Infinix, Nokia, Tecno
  • Dual SIM support
FRP
Unisoc Reset FRP — Flash Mode
Remove Google Factory Reset Protection lock from Unisoc-powered Itel, Infinix, Nokia, and Tecno devices via Spreadtrum Flash Mode. Bypasses the Google account verification screen after factory reset without requiring original credentials.
  • FRP partition reset
  • Flash Mode bypass
  • No Google account needed
  • All Unisoc chipsets
Format
Unisoc Factory Reset — Flash Mode
Perform a complete factory reset on Unisoc devices via Flash Mode, wiping all user data and restoring the device to its original factory state. Works even on devices with locked screens or corrupted software.
  • Full data wipe
  • Restores factory state
  • Works on locked devices
  • All Unisoc chipsets
Flash
Unisoc Firmware Flash — Flash Mode
Flash stock firmware on Unisoc (Spreadtrum) devices via Flash Mode. Restore bricked Itel, Infinix, Nokia, and Tecno phones to working condition by flashing the original firmware package directly to the device.
  • Spreadtrum firmware flasher
  • Unbrick dead devices
  • Stock firmware restore
  • SC7731E, SC9832E, SC9863A, Tiger T-series
RPMB
Unisoc RPMB Operations
Full Read, Write, and Erase operations on the RPMB (Replay Protected Memory Block) partition of Unisoc devices. RPMB is a secure hardware partition used for device authentication and security data — essential for advanced repair and re-provisioning operations.
  • Read RPMB partition
  • Write RPMB data
  • Erase RPMB partition
  • All Unisoc chipsets
Bootloader
Unisoc Bootloader Operations — Unlock & Relock
Unlock and relock the bootloader on Unisoc-powered devices including Realme models. Enables custom ROM installation, root access, and service-level operations — and relocking restores the stock security state when needed.
  • Bootloader Unlock
  • Bootloader Relock
  • Realme models supported
  • All Unisoc chipsets
Supported Unisoc Chipsets
Chipset
Generic Unisoc Chipsets
Direct chipset-level support for all major Unisoc (Spreadtrum) processors used in budget and mid-range smartphones across multiple brands.
  • SC7731E
  • SC9832E
  • SC9863A / SC9863A_64
  • Tiger T310_64 · T606_64 · T610_64
  • Tiger T612_64 · T616_64 · T700_64
90+ Itel models supported in Unisoc Flash Mode IMEI repair, FRP reset, factory reset and firmware flash View models 25+ Infinix models supported in Unisoc Flash Mode IMEI repair, FRP reset, factory reset and firmware flash View models 75+ Nokia models supported in Unisoc Flash Mode IMEI repair, FRP reset, factory reset and firmware flash View models 20+ Tecno models supported in Unisoc Flash Mode IMEI repair, FRP reset, factory reset and firmware flash View models
RK
Rockchip — Tablets, TV Boxes & IoT

Complete Rockchip SoC support for the devices most tools ignore — Android tablets, TV boxes, set-top boxes, digital signage and IoT hardware. Read and write full firmware, remove FRP, factory reset, read eFuse and device info, unpack firmware images, and operate on individual partitions across 25+ Rockchip chipsets from the legacy RK2906 to the current RK3588.

Read & Write Firmware Remove FRP Factory Reset Read eFuse Read Full Info Unpack Firmware Partition Manager Tablets TV Boxes IoT Devices
Rockchip Functions New
New
Read & Write Firmware
Dump the complete firmware from a Rockchip device before servicing, or flash a full image back to revive a dead tablet, TV box or IoT board.
  • Full firmware read (backup)
  • Firmware write / restore
  • Revives dead / bricked boards
  • All supported Rockchip SoCs
New
Remove FRP
Erase the Factory Reset Protection lock on Rockchip-powered Android tablets and TV boxes without the original Google account credentials.
  • No Google credentials needed
  • Works on locked devices
  • Android tablets & TV boxes
New
Factory Reset
Wipe userdata to return a Rockchip device to factory state — clears screen locks, accounts and corrupted user partitions in one operation.
  • Userdata & cache wipe
  • Removes pattern / PIN / password
  • Recovers corrupt userdata
New
Read eFuse & Full Info
Read the eFuse state and the complete hardware profile — SoC model, secure-boot status, storage type and firmware details — so you know exactly what you are working with before flashing.
  • eFuse / secure-boot status
  • Full hardware & SoC info
  • Storage type detection
  • Safe read-only operation
New
Unpack Firmware
Extract the individual images out of a packed Rockchip firmware file so you can inspect, modify or flash single partitions instead of the whole package.
  • Extracts packed firmware images
  • Access individual partitions
  • Inspect before flashing
New
Partition Manager
List the full partition table and operate on any single partition — read it to a file, write a file into it, or erase it — without touching the rest of the flash.
  • List partition table
  • Read partition to file
  • Write file to partition
  • Erase single partition
Rockchip — Supported Chipsets 25+ chipsets
Legacy Series

RK2906 / RK2928 · RK3036 · RK3066 · RK3108 / RK3118 · RK3126 / RK3128 · RK3188

RK32xx / RK33xx Series

RK3288 · RK322X / RK3228 / RK3229 · RK3308 · RK3328 · RK3368 / RK3368H (PX5) · RK3399 / RK3399Pro

IoT & Vision Series

PX30 / RK3326 · RK1808 · RV1106 / RV1109 · RV1126

RK35xx Series — Current Generation

RK3506 / RK3506S · RK3528 / RK3528A · RK3562 / RK3562S · RK3566 · RK3568 / RK3568B · RK3576

RK3588 Series — Flagship

RK3588 · RK3588S

General Tools

Universal functions that work across multiple Android brands. These tools are not brand-specific and can be used for general Android servicing, boot image work, partition management, and app control.

Manual BOOT Root Patcher BOOT IMG Editor Fastboot Flash ADB GPT Manager APPS Manager
Boot & Firmware Tools
Root
Manual BOOT Root Patcher
Manually patch Android boot images for root using ARMv7a or ARMv8a architecture support. For advanced users who need custom boot patching beyond automated tools.
  • ARMv7a support
  • ARMv8a support
  • Custom boot image patching
  • All Android versions
BOOT
Android BOOT IMG Editor
Unpack and repack Android boot images (boot.img) for inspection, modification, and custom patching. Supports unpacking ramdisk from boot images.
  • Unpack boot.img
  • Repack boot.img
  • Unpack Android Ramdisk
  • All Android boot formats
Flash
Fastboot Flash Patched Boot IMG
Flash a patched or custom boot image directly to the device via Fastboot after patching with the BOOT IMG Editor or Manual Root Patcher.
  • Fastboot flash boot
  • Works on all Fastboot devices
  • Qualcomm, MediaTek, Unisoc
GPT & Apps Manager
GPT
ADB GPT Manager
Manage GPT (GUID Partition Table) partitions on Android devices via ADB. List, read, write, and erase partitions across all major chipset platforms.
  • List partitions
  • Read partition data
  • Write partition data
  • Erase partitions
  • Qualcomm, MediaTek, Unisoc
Apps
Android APPS Manager
List, enable, and disable installed apps on Android devices via ADB. Useful for removing bloatware, disabling system apps, or managing enterprise app restrictions.
  • List all installed apps
  • Disable apps via ADB
  • Enable disabled apps
  • System & user apps

Ready to Get Started?

Download Android Root Tool and unlock professional-grade Android servicing for all major brands.