1. 53950b6 Fix bug map entry by Jeff Vander Stoep · 8 years ago
  2. df642be Continuation of 9b2e0cbeeaae560b07e4ffa6e5b8e505699e4a76 by Nick Kralevich · 8 years ago
  3. 7631157 Label /vendor/priv-app as vendor_app_file by Jiyong Park · 8 years ago
  4. b9ea282 Merge "sepolicy: Add rules for non-init namespaces" by Benjamin Gordon · 8 years ago
  5. 11c5700 Merge "Remove tracking bugs that have been resolved" by Treehugger Robot · 8 years ago
  6. 9b2e0cb sepolicy: Add rules for non-init namespaces by Benjamin Gordon · 8 years ago
  7. 378763f Remove tracking bugs that have been resolved by Jeff Vander Stoep · 8 years ago
  8. df8d4b8 Allow system_server to remove files in /data/misc/wmtrace/* by Vishnu Nair · 8 years ago
  9. 0f5ad4e Allow AOSP processes to read pm_prop by Jeff Vander Stoep · 8 years ago
  10. 6faa3a1 Merge "shell: neverallow access to 'proc' label." by Tri Vo · 8 years ago
  11. 97c8651 Merge "Add window trace files SELinux policy rules" by Treehugger Robot · 8 years ago
  12. c4ef363 shell: neverallow access to 'proc' label. by Tri Vo · 8 years ago
  13. 499fd01 Merge "mediaserver: remove access to 'sysfs' type." by Tri Vo · 8 years ago
  14. 2d6942d Add window trace files SELinux policy rules by Vishnu Nair · 8 years ago
  15. 2557673 Merge "system_server: access to /proc/sys/fs/pipe-max-size" by Treehugger Robot · 8 years ago
  16. 2ea12cd mediaserver: remove access to 'sysfs' type. by Tri Vo · 8 years ago
  17. e7f4934 system_server: access to /proc/sys/fs/pipe-max-size by Tri Vo · 8 years ago
  18. 0d7e504 Merge "Revert "Revert "Put pm.* property in new pm_prop context""" by Nicolas Geoffray · 8 years ago
  19. 5316548 Revert "Revert "Put pm.* property in new pm_prop context"" by Calin Juravle · 8 years ago
  20. 5984301 Merge "Copy a dontaudit from init to vendor_init" by Treehugger Robot · 8 years ago
  21. 63492cd Copy a dontaudit from init to vendor_init by Tom Cherry · 8 years ago
  22. 248b6dc Revert "Put pm.* property in new pm_prop context" by Calin Juravle · 8 years ago
  23. aca97bc Merge "update_verifier: neverallow access to 'sysfs' label." by Tri Vo · 8 years ago
  24. 7dd4d90 update_verifier: neverallow access to 'sysfs' label. by Tri Vo · 8 years ago
  25. 41401f4 Add tracking bugs to crash_dump denials by Jeff Vander Stoep · 8 years ago
  26. 7c66277 Merge "Allow Instant/V2 apps to load code from /data/data" by Treehugger Robot · 8 years ago
  27. 721b305 Merge "Revert "update_verifier: neverallow access to 'sysfs' label."" by Jeffrey Vander Stoep · 8 years ago
  28. 7650669 Allow Instant/V2 apps to load code from /data/data by Chad Brubaker · 8 years ago
  29. 23e58d1 Revert "update_verifier: neverallow access to 'sysfs' label." by Tri Vo · 8 years ago
  30. f5e53e0 Merge "Add tracking bugs to denials" by Treehugger Robot · 8 years ago
  31. a61b99b update_verifier: neverallow access to 'sysfs' label. by Tri Vo · 8 years ago
  32. 29666d1 Add tracking bugs to denials by Jeff Vander Stoep · 8 years ago
  33. 6fe014f Allow update_engine to access /data/misc/update_engine_log by Hakan Kvist · 8 years ago
  34. aa93dad Merge changes from topic "cki_proc_init" by Tri Vo · 8 years ago
  35. 182dbeb Suppress mediaprover access to certain cache dirs by Jeff Vander Stoep · 8 years ago
  36. 63f4677 Allow vendor apps to use surfaceflinger_service by Jeff Vander Stoep · 8 years ago
  37. 84e181b init: label /proc dependencies and remove access to proc by Tri Vo · 8 years ago
  38. d1cf3a4 Put pm.* property in new pm_prop context by Victor Hsieh · 8 years ago
  39. 640e595 Allow callers of uevent_kernel_*() access to /proc/sys/kernel/overflowuid by Luis Hector Chavez · 8 years ago
  40. 19f8b86 system_server: neverallow sysfs file access. by Tri Vo · 8 years ago
  41. c394258 Remove deprecated aliases by Jeff Vander Stoep · 8 years ago
  42. 5aac163 radio: neverallow access to proc and sysfs types. by Tri Vo · 8 years ago
  43. daac339 Merge "Don't allow dexoptanalyzer to open app_data_files" by Treehugger Robot · 8 years ago
  44. b8a4249 Don't allow dexoptanalyzer to open app_data_files by Shubham Ajmera · 8 years ago
  45. 233c7a6 Neverallow coredomain to kernel interface files. by Tri Vo · 8 years ago
  46. 4200338 Merge "Revert "Neverallow coredomain to kernel interface files."" by Tri Vo · 8 years ago
  47. 83a0680 Revert "Neverallow coredomain to kernel interface files." by Tobias Thierer · 8 years ago
  48. bf4786c Merge "Neverallow coredomain to kernel interface files." by Tri Vo · 8 years ago
  49. 35e9239 whitespace fix. by Nick Kralevich · 8 years ago
  50. 502e43f Neverallow coredomain to kernel interface files. by Tri Vo · 8 years ago
  51. 5850a2a Move most of public/vold_prepare_subdirs.te to private by Paul Crowley · 8 years ago
  52. 621c24c add vendor_init.te by Tom Cherry · 8 years ago
  53. 8bdb1da Add label for /proc/sys/vm/page-cluster by Tom Cherry · 8 years ago
  54. 71b19aa Merge "/proc, /sys access from uncrypt, update_engine, postinstall_dexopt" by Tri Vo · 8 years ago
  55. 8e80585 Merge "allow vold_prepare_subdirs to create storaged directories" by Treehugger Robot · 8 years ago
  56. 04fb82f /proc, /sys access from uncrypt, update_engine, postinstall_dexopt by Tri Vo · 8 years ago
  57. 0187b23 Adding statscompanion_service and a dontaudit for find/add by Max Bires · 8 years ago
  58. 1ff4148 Merge "Revert "Ensure only com.android.shell can run in the shell domain."" by Treehugger Robot · 8 years ago
  59. bf0c2a5 Revert "Ensure only com.android.shell can run in the shell domain." by Nick Kralevich · 8 years ago
  60. c012533 allow vold_prepare_subdirs to create storaged directories by Jin Qian · 8 years ago
  61. 81d8b0e storaged: move storaged file from DE to CE by Jin Qian · 8 years ago
  62. d1467ad Merge "priv_app: move logspam suppression to core policy" by Treehugger Robot · 8 years ago
  63. 917cf07 Merge "Fixup neverallow rule" by Treehugger Robot · 8 years ago
  64. 8dabc2c Restrict netd fwk policy. by Tri Vo · 8 years ago
  65. 4a14d16 Merge "Relabeling /proc/asound so everything has proc_asound label" by Max Bires · 8 years ago
  66. 6233848 priv_app: move logspam suppression to core policy by Jeff Vander Stoep · 8 years ago
  67. 2ec15e5 Fixup neverallow rule by Nick Kralevich · 8 years ago
  68. 714ee5f Ensure only com.android.shell can run in the shell domain. by Nick Kralevich · 8 years ago
  69. d18ff63 Merge "sepolicy for lazy starting HIDL services" by Treehugger Robot · 8 years ago
  70. aae1818 Relabeling /proc/asound so everything has proc_asound label by Max Bires · 8 years ago
  71. 13c3946 sepolicy for lazy starting HIDL services by Steven Moreland · 8 years ago
  72. aed69d6 Allowing system_server to search sysfs_power dir by Max Bires · 8 years ago
  73. 5b962cf vold_prepare_subdirs sets policy in vold-created dirs. by Paul Crowley · 8 years ago
  74. fd03d51 lowpan: Add wpantund to SEPolicy by Robert Quattlebaum · 8 years ago
  75. bbc692c PowerUI access to thermalservice by Todd Poynor · 8 years ago
  76. fce64b0 Merge "system_app: suppress denials for disallowed services" by Treehugger Robot · 8 years ago
  77. 49bb118 Merge "Track priv_app firstboot_prop denial" by Treehugger Robot · 8 years ago
  78. 2d32d81 system_app: suppress denials for disallowed services by Jeff Vander Stoep · 8 years ago
  79. e82c8ab Track priv_app firstboot_prop denial by Jeff Vander Stoep · 8 years ago
  80. 1960215 Label system_server's dependencies in sysfs. by Tri Vo · 8 years ago
  81. 06cef4f Neverallow write access to /sys files for untrusted apps by Jeff Vander Stoep · 8 years ago
  82. 5b4bea4 Create sysfs_dm label. by Tao Bao · 8 years ago
  83. 62d3b4f Ensure /sys restrictions for isolated_apps by Nick Kralevich · 8 years ago
  84. 76d0e41 Remove reboot_data_file. by Dan Cashman · 8 years ago
  85. 3e60e38 Merge "Revert "Ensure /sys restrictions for isolated_apps"" by Nick Kralevich · 8 years ago
  86. ae48ecb Revert "Ensure /sys restrictions for isolated_apps" by Nick Kralevich · 8 years ago
  87. eb1ae18 Merge "Ensure /sys restrictions for isolated_apps" by Treehugger Robot · 8 years ago
  88. 464f59a Extend access to proc/asound/* by Tri Vo · 8 years ago
  89. 579366a Ensure /sys restrictions for isolated_apps by Nick Kralevich · 8 years ago
  90. 5f85a48 Merge "Add drmserver permission for ephemeral apps" by Marco Nelissen · 8 years ago
  91. 3235963 Add drmserver permission for ephemeral apps by Marco Nelissen · 8 years ago
  92. 69ec0f8 Drop isolated_app auditallow rule. by Nick Kralevich · 8 years ago
  93. 9fdb30f Merge "Remove surfaceflinger access to sysfs." by Tri Vo · 8 years ago
  94. 54a2cac Remove surfaceflinger access to sysfs. by Tri Vo · 8 years ago
  95. 4680cd9 [RTT2] policy change for Wi-Fi RTT (v2) framework by Etan Cohen · 8 years ago
  96. 4cc4096 Removing $(PRODUCT_OUT)/root/root by Bowgo Tsai · 8 years ago
  97. 7d1130f Fix build. by Dan Cashman · 8 years ago
  98. c975bd9 Allow system settings to read /proc/version by Jeff Vander Stoep · 8 years ago
  99. 91d398d Sync internal master and AOSP sepolicy. by Dan Cashman · 8 years ago
  100. c998f31 Merge "Move Broadcast Radio HAL to a separate binary." by Tomasz Wasilczyk · 8 years ago