device library

Pace P16S-series LiFePO4 BMS (RS485 Modbus)

Register map(s) for this device, with a note of how far each has been checked. Addresses are 0-based, as on the wire. Scale and byte order are confirmed only at the hardware-verified rung.

coherence-checked

Round-trips through a real Modbus stack with no overlapping addresses and a word-order-sensitive codec — the map is internally coherent and wire-decodable. Does NOT prove byte-order or scaling match a real device: the emulator is seeded from the map's own types, so a uniformly wrong byte-order still round-trips. Only hardware-verified confirms byte-order/scale on the wire.

pointaddress (0-based)typescaleunit
Current0I1610mA
Voltage of pack1U1610mV
SOC2U161%
SOH3U161%
Remain capacity4U1610mAh
Full capacity5U1610mAh
Design capacity6U1610mAh
Battery cycle counts7U161Cyc.
Warning flag9U161
Protection flag10U161
Status/Fault flag11U161
Balance status12U161
Cell voltage 115U161mV
Cell voltage 216U161mV
Cell voltage 317U161mV
Cell voltage 418U161mV
Cell voltage 519U161mV
Cell voltage 620U161mV
Cell voltage 721U161mV
Cell voltage 822U161mV
Cell voltage 923U161mV
Cell voltage 1024U161mV
Cell voltage 1125U161mV
Cell voltage 1226U161mV
Cell voltage 1327U161mV
Cell voltage 1428U161mV
Cell voltage 1529U161mV
Cell voltage 1630U161mV
Cell temperature 131I160.1°C
Cell temperature 232I160.1°C
Cell temperature 333I160.1°C
Cell temperature 434I160.1°C
MOSFET temperature35I160.1°C
Environment temperature36I160.1°C
Pack OV alarm60U161mV
Pack OV protection61U161mV
Pack OV release protection62U161mV
Pack OV protection delay time63U160.1S
Cell OV alarm64U161mV
Cell OV protection65U161mV
Cell OV release protection66U161mV
Cell OV protection delay time67U160.1S
Pack UV alarm68U161mV
Pack UV protection69U161mV
Pack UV release protection70U161mV
Pack UV protection delay time71U160.1S
Cell UV alarm72U161mV
Cell UV protection73U161mV
Cell UV release protection74U161mV
Cell UV protection delay time75U160.1S
Charging OC alarm76U161A
Charging OC protection77U161A
Charging OC protection delay time78U160.1S
Discharging OC alarm79U161A
Discharging OC protection80U161A
Discharging OC protection delay time81U160.1S
Discharging OC-2 protection82U161A
Discharging OC-2 protection delay time83U160.025S
Charging OT alarm84I160.1°C
Charging OT protection85I160.1°C
Charging OT release protection86I160.1°C
Discharging OT alarm87I160.1°C
Discharging OT protection88I160.1°C
Discharging OT release89I160.1°C
Charging UT alarm90I160.1°C
Charging UT protection91I160.1°C
Charging UT release protection92I160.1°C
Discharging UT alarm93I160.1°C
Discharging UT protection94I160.1°C
Discharging UT release protection95I160.1°C
MOSFET OT alarm96I160.1°C
MOSFET OT protection97I160.1°C
MOSFET OT release protection98I160.1°C
Environment OT alarm99I160.1°C
Environment OT protection100I160.1°C
Environment OT release protection101I160.1°C
Environment UT alarm102I160.1°C
Environment UT protection103I160.1°C
Environment UT release protection104I160.1°C
Balance start cell voltage105U161mV
Balance start delta voltage106U161mV
Pack full-charge voltage107U161mV
Pack full-charge current108U161mA
Cell sleep voltage109U161mV
Cell sleep delay time110U161min
Short circuit protect delay time111U1625uS
SOC alarm threshold112U161%
Charging OC-2 protection113U161A
Charging OC-2 protection delay time114U160.025S
Version information150U161ASCII
Model SN160U161ASCII
PACK SN170U161ASCII

link settings as documented (unverified): RTU; default 9600 8N1; FC 03,16; Timeout: 200mS, Interval time of the frame: > 100mS

bench facts as documented (unverified)
max registers/read125
response timeout200 ms
inter-frame delay100 ms
model register160
serial register170
firmware register150
doc revisionV1.3
field reports — community-sourced, unverified (checked 2026-06-11)
  • The PACE_MODBUS protocol is often not enabled by default on many firmware versions and must be manually activated using PbmsTools.exe (System Config -> Inverter protocol -> RS485 Protocol). [source]
  • confirmed: comms defaults (9600 baud, 8N1, RTU, Function Codes 3 and 16) — confirmed by PACE BMS Modbus Protocol for RS485 V1.3 [2.3.1]
  • confirmed: register map (current @ 0, voltage_of_pack @ 1, cell_voltage_1 @ 15, cell_temperature_1 @ 31, etc.) — confirmed by PACE BMS Modbus Protocol for RS485 V1.3
  • confirmed: identification registers (firmware @ 150, model @ 160, serial @ 170) — confirmed by PACE BMS Modbus Protocol for RS485 V1.3
  • confirmed: quirks (inter-frame delay > 100ms, response timeout 200ms) — confirmed by PACE BMS Modbus Protocol for RS485 V1.3

The trust ladder

Each rung states what it proved and what it did not. Gray until proven; green is earned by hardware only.

Device not here? Upload its manual and get a checked map back. It's free.

Want it confirmed against your own device? Order hardware verification. If it doesn't check out, you don't pay.

Building on a lot of devices? License the library — machine-readable maps, the firmware matrix, and API access.