1. 5da7200 Separate product_property_contexts out of system sepolicy. by Tri Vo · 7 years ago
  2. ade7416 Separate product_hwservice_contexts out of system sepolicy. by Tri Vo · 7 years ago
  3. 9f343b3 Allow system_server to read apex_data_file. by Narayan Kamath · 7 years ago
  4. 4d399f6 Merge "SEPolicy for Staged Installs." by Dario Freni · 7 years ago
  5. 274c1de SEPolicy for Staged Installs. by Dario Freni · 7 years ago
  6. 34bd20f Merge "Un-revert "Audit execution of app_data_file native code."" by Treehugger Robot · 7 years ago
  7. 007586d Allow adbd to use a socket transferred from shell. by Alex Buynytskyy · 7 years ago
  8. c6cbead Un-revert "Audit execution of app_data_file native code." by Alan Stokes · 7 years ago
  9. df9d783 sepolicy for vendor overlay by Justin Yun · 7 years ago
  10. 893272d Added placeholder SELinux policy for the biometric face HAL. by Zachary Iqbal · 7 years ago
  11. ca86169 Revert "Add StagingManager service." by Dario Freni · 7 years ago
  12. 9eb3b8f Add StagingManager service. by Dario Freni · 7 years ago
  13. 09c8673 Merge "Add selinux policy for new SensorPrivacyService" by Michael Groover · 7 years ago
  14. 9c9eb2d Merge "sepolicy: Add "rs" and "rs_exec" to public policy" by Treehugger Robot · 7 years ago
  15. 65a89c1 Revert "remove app_data_file execute" by Nick Kralevich · 7 years ago
  16. fa3eb77 Revert "Audit execution of app_data_file native code." by Nick Kralevich · 7 years ago
  17. a34cfe7 sepolicy: Add "rs" and "rs_exec" to public policy by Emilian Peev · 7 years ago
  18. 49ff99f Merge "Make heapprofd work with MLS." by Florian Mayer · 7 years ago
  19. 23e1f4c Make heapprofd work with MLS. by Florian Mayer · 7 years ago
  20. 47c2dee Add selinux policies for network stack service by Remi NGUYEN VAN · 7 years ago
  21. 41b6263 Merge "sepolicy changes for network stack app" by Remi NGUYEN VAN · 7 years ago
  22. 36f93d0 Merge "Allow apexd to write to sysfs loop device parameters." by Martijn Coenen · 7 years ago
  23. 5f3ba92 sepolicy changes for network stack app by Remi NGUYEN VAN · 7 years ago
  24. d7bf921 Allow apexd to write to sysfs loop device parameters. by Martijn Coenen · 7 years ago
  25. 5cbe41b rs.te: Allow following /data/user/0 symlink by Nick Kralevich · 7 years ago
  26. 3361ec4 Separate product_file_contexts out of system sepolicy. by Tri Vo · 7 years ago
  27. ac1a0a7 Adding policy for content suggestions. by Winson Chung · 7 years ago
  28. b209cb9 Merge "Allow to signal perfetto from shell." by Treehugger Robot · 7 years ago
  29. 784c2b8 Create new permissionmgr_service by Todd Kennedy · 7 years ago
  30. 98c6b33 Merge "SELinux policy for rss_hwm_reset" by Treehugger Robot · 7 years ago
  31. 344e87c Merge "Audit execution of app_data_file native code." by Alan Stokes · 7 years ago
  32. 151c7cd Merge "Allow apexd to flush block devices." by Martijn Coenen · 7 years ago
  33. 4e1c576 SELinux policy for rss_hwm_reset by Rafal Slawik · 7 years ago
  34. 0f45683 DO NOT MERGE - Renamed "intelligence" to "content_capture" by Felipe Leme · 7 years ago
  35. 8904147 Audit execution of app_data_file native code. by Alan Stokes · 7 years ago
  36. 558c1b8 Allow apexd to flush block devices. by Martijn Coenen · 7 years ago
  37. aeca04b Allow to signal perfetto from shell. by Florian Mayer · 7 years ago
  38. 2bac81d Allow zygote to create files at /mnt/user/.* by Sudheer Shanka · 7 years ago
  39. 42abd42 Merge "remove app_data_file execute" by Treehugger Robot · 7 years ago
  40. f523218 Merge "bless app created renderscript files" by Treehugger Robot · 7 years ago
  41. b362474 remove app_data_file execute by Nick Kralevich · 7 years ago
  42. 0eb0a16 bless app created renderscript files by Nick Kralevich · 7 years ago
  43. c32ca90 Add persist.heapprofd.enable property. by Florian Mayer · 7 years ago
  44. 2a2d638 New system service: app_prediction_service by Sunny Goyal · 7 years ago
  45. 144607d Merge "Remove unused bufferhub sepolicy" by Fan Xu · 7 years ago
  46. 65b9e66 Merge "Add power.stats HAL 1.0 sepolicy" by Benjamin Schwartz · 7 years ago
  47. a939eca Merge changes I8a42dc04,Iddddb77e by Wei Wang · 7 years ago
  48. 8c8eb69 Revert "Move thermal service into system_server" by Wei Wang · 7 years ago
  49. 2169472 Merge changes I977530a9,Iafb376e6 by Wei Wang · 7 years ago
  50. 76d7046 Allow the Traceur app to start Perfetto. by Carmen Jackson · 7 years ago
  51. 461d91f Move thermal service into system_server by Wei Wang · 7 years ago
  52. e7040ea Add power.stats HAL 1.0 sepolicy by Benjamin Schwartz · 7 years ago
  53. ffffed2 Remove unused bufferhub sepolicy by Fan Xu · 7 years ago
  54. b1553b7 Merge "SEPolicy updates for DeviceConfig Service." by Matt Pape · 7 years ago
  55. 720841c Merge "Remove redundant entries from genfs_contexts." by Alan Stokes · 7 years ago
  56. 6aa4452 SEPolicy updates for DeviceConfig Service. by Matt Pape · 7 years ago
  57. 80cb74c Remove redundant entries from genfs_contexts. by Alan Stokes · 7 years ago
  58. 4802cbd traced_probes: Read tracefs directories in userdebug by Hector Dearman · 7 years ago
  59. 69dc264 Merge "Abolish calls to shell in vold" by Paul Crowley · 7 years ago
  60. 5aacdbc Merge "Remove sepolicy for /dev/alarm." by Treehugger Robot · 7 years ago
  61. 4887b86 Merge "Allow dumpstate to call idmap over binder" by Treehugger Robot · 7 years ago
  62. 51c3eb6 Merge "Allow heapprofd to read system_file_type." by Treehugger Robot · 7 years ago
  63. 02c4c3f Remove sepolicy for /dev/alarm. by Tri Vo · 7 years ago
  64. 657470a Allow dumpstate to call idmap over binder by Joel Galenson · 7 years ago
  65. de3a3e4 Allow dumpstate to dump incidentd by Mike Ma · 7 years ago
  66. 3350a79 Merge "Track add of RuntimeService in system server" by Neil Fuller · 7 years ago
  67. 90760a9 Merge "Track isolated_app app_data_file SELinux denial." by Treehugger Robot · 7 years ago
  68. cc18ba7 Merge "Allow apexd to label apk_tmp_file to apex_data_file" by Treehugger Robot · 7 years ago
  69. 22f8669 Track isolated_app app_data_file SELinux denial. by felkachang · 7 years ago
  70. f58b555 Track add of RuntimeService in system server by Neil Fuller · 7 years ago
  71. 353b93a Allow traced_probes to access battery coulomb counters by Primiano Tucci · 7 years ago
  72. 3f8c271 Allow heapprofd to read system_file_type. by Florian Mayer · 7 years ago
  73. ce15e5e Allow apexd to label apk_tmp_file to apex_data_file by Jiyong Park · 7 years ago
  74. bd0fa53 Merge "SEPolicy changes to allow kcov access in userdebug." by Treehugger Robot · 7 years ago
  75. 5ea85b5 Merge "Add placeholder iris and face policy for vold data directory" by Kevin Chyn · 7 years ago
  76. f0c411c Merge "Add public Codec2 HIDL interfaces" by Treehugger Robot · 7 years ago
  77. f9f7539 Abolish calls to shell in vold by Paul Crowley · 7 years ago
  78. 91c2580 Add placeholder iris and face policy for vold data directory by Kevin Chyn · 7 years ago
  79. 55d9096 SEPolicy changes to allow kcov access in userdebug. by Dan Austin · 7 years ago
  80. 44ffb0b Merge "system_server: Allow binder connections to iorapd" by Treehugger Robot · 7 years ago
  81. 7d9d64d Add public Codec2 HIDL interfaces by Pawin Vongmasa · 7 years ago
  82. 2725edc Wider neverallow rules for coredomain /dev access. by Tri Vo · 7 years ago
  83. 68b2f98 system_server: Allow binder connections to iorapd by Igor Murashkin · 7 years ago
  84. 9cded32 Merge "Remove coredomain /dev access no longer needed after Treble" by Tri Vo · 7 years ago
  85. ad16547 Merge "Allow init to set powerctl property" by Treehugger Robot · 7 years ago
  86. 196b12e Track isolated_app SELinux denial. by felkachang · 7 years ago
  87. 8a6cc52 Remove coredomain /dev access no longer needed after Treble by Tri Vo · 7 years ago
  88. 1e5021c Move some rules around by Nick Kralevich · 7 years ago
  89. b1dad09 Allow heap profiling everything except TCB on userdebug. by Florian Mayer · 7 years ago
  90. ea9cf81 Merge "Add rules to dump health traces" by Yifan Hong · 7 years ago
  91. b2d0d4a Merge "[gpuservice] allow "adb shell cmd gpu vkjson"" by Treehugger Robot · 7 years ago
  92. 0d53ef2 Add rules to dump health traces by Yifan Hong · 7 years ago
  93. ff0f79c [gpuservice] allow "adb shell cmd gpu vkjson" by Yiwei Zhang · 7 years ago
  94. d36b1d5 Allow init to set powerctl property by Branden Archer · 7 years ago
  95. b61ac07 grant system_server read permission of server_configurable_flags_data by Hongyi Zhang · 7 years ago
  96. d81a36a Merge "Allow audioserver to access persist.log.tag" by Mikhail Naganov · 7 years ago
  97. bffe163 SELinux policy for new managed system update APIs by Neda Topoljanac · 7 years ago
  98. bacf448 allow system_server BLKSECDISCARD BLKDISCARD by Nick Kralevich · 7 years ago
  99. cfe1bae place dex2oat auditallow statements in userdebug_or_eng blocks by Nick Kralevich · 7 years ago
  100. c7be91d Merge "Allow webview_zygote to JIT." by Nicolas Geoffray · 7 years ago