FREE BROWSER TOOL. NO SIGNUP.

See what your device
leaks on boot.

Paste a UART boot log or capture one live over Web Serial. BootIntel surfaces exposed debug consoles, vulnerable bootloaders, and matched CVEs in seconds.

No account required. Runs in any Chromium browser.

UART ANALYSIS SESSION
LIVE
[00:00.001]Booting U-Boot 2019.01-g23f89c4 (Mar 12 2021)
[00:00.043]CPU: ARMv7 rev 5 (v7l). Cortex-A7
[00:00.089]DRAM: 256 MiB
[00:00.102]Hit any key to stop autoboot: 3
[00:00.210]Starting kernel ...
[00:00.234]Linux version 4.9.0-generic (gcc 6.3.0)
[00:00.441]Machine model: TP-Link Archer AX50
[00:01.203]BusyBox v1.26.2 built-in shell (ash)
[00:01.890]WARNING: debug_console=1 (engineering mode)
[00:02.100]root@device:/#
โš Bootloader interruption possible, autoboot delay detected
CRITICAL
โš CVE-2019-13103 matched. U-Boot NFS/DHCP parser RCE
CRITICAL
โ—Engineering firmware detected, debug console exposed
HIGH
Every scan

What BootIntel finds
in your boot log.

Every scan runs these four categories against your boot log. No dashboards to configure. No rules to write.

๐Ÿ”

Fingerprint

Identifies the bootloader, kernel, init system, and device family from the boot output. Handles U-Boot, coreboot, OpenSBI, ESP-IDF, and the ESP-family ROM bootloader.

U-Boot ยท Linux ยท OpenWrt ยท Barebox
โšก

Exploitability

Flags interruptible autoboot, root shell drops, exposed debug consoles, and engineering firmware. Each finding cites the log line that triggered it.

0 to 10 severity score
๐Ÿ›ก

CVE matching

Matches detected versions (kernel, bootloader, BusyBox, OpenSSL, dropbear, dnsmasq, and more) against a live NVD mirror. Each match shows the CPE range and fix version.

NVD-synced daily
๐Ÿ“„

Report exports

PDF reports, JSON exports, and evidence packs from every scan. Pro tier adds LLM-drafted remediation summaries and guided mission workflows for common recon scenarios.

PDF ยท JSON ยท Pro tier
Evidence, not just findings

Auditable output for compliance teams.

Every scan produces artifacts you can hand to an auditor: PDF reports with per-finding evidence citations, JSON exports for pipeline ingestion, and per-CVE traceability.

See the framework mapping โ†’ยทNIST 800-53, ISO 27001, IEC 62443, FDA Premarket, EU CRA, UK PSTI

Pricing

Start free. Scale as you grow.

From individual researchers to enterprise security teams.

Free
$0
Always free
Try Terminal
  • โœ“Free web terminal
  • โœ“1 preview/day
  • โœ“5 saved scans/month
  • โœ“30-day log retention
Researcher
$19
/mo ยท $15 annual
Get Started
  • โœ“15 scans/month
  • โœ“1-year log retention
  • โœ“CVE details & IDs
  • โœ“PDF report export
MOST POPULAR
Pro
$125
/mo ยท $99 annual
Get Started
  • โœ“Unlimited scans
  • โœ“1-year retention
  • โœ“LLM-drafted report summaries
  • โœ“Guided mission workflows
  • โœ“API access
Business
$249
/mo ยท $199 annual
Talk to Sales
  • โœ“Unlimited scans
  • โœ“Team workspace
  • โœ“Guided workflows (beta)
  • โœ“Managed integrations
Scale
$649
/mo ยท $499 annual
Talk to Sales
  • โœ“Unlimited scans
  • โœ“SSO / SAML
  • โœ“Admin audit logs
  • โœ“Higher API limits
Enterprise
Custom
Contact us
Talk to Sales
  • โœ“Unlimited scans
  • โœ“Private deploy
  • โœ“Custom retention
  • โœ“Dedicated support

Now try it
on your device.

Paste a UART boot log or capture one live over Web Serial. Findings in seconds. No account required.

Paste a boot log
BootIntel: boot log analysis for embedded devices