1. fa1b5c7 Revert "Update netlink_route_socket for nlmsg xperm" by Bo Hu · 9 months ago
  2. dd25127 Update netlink_route_socket for nlmsg xperm by Thiébaud Weksteen · 11 months ago
  3. 290f005 Add ITradeInMode service sepolicy. by David Anderson · 11 months ago
  4. 6543cf9 Allow priv_app to measure fs-verity on tmp apk files by Victor Hsieh · 1 year, 4 months ago
  5. 015429c Remove the usage of the pm.archiving.enabled system property by Song Chun Fan · 1 year, 5 months ago
  6. e972e93 Revert^2 "Add pm.archiving.enabled system property" by Inseob Kim · 1 year, 5 months ago
  7. 840041d Revert "Add pm.archiving.enabled system property" by Song Chun Fan · 1 year, 5 months ago
  8. 77a3ca6 Introduce vmlauncher_app domain by Jeongik Cha · 1 year, 5 months ago
  9. f09f43c Sepolicy for crosvm to show display by Jeongik Cha · 1 year, 5 months ago
  10. 92ca7b7 Stop granting permission to report_off_body to keystore2 by Eric Biggers · 1 year, 6 months ago
  11. 92b5ea2 Allow pm.archiving.enabled to be read by priv apps. am: 65af65df10 am: 8eb2acdca4 am: b909f63746 by Andrea Zilio · 1 year, 9 months ago
  12. 65af65d Allow pm.archiving.enabled to be read by priv apps. by Andrea Zilio · 1 year, 9 months ago
  13. 7f938f5 Add system_boot_reason read access to priv_app by Bell YAO · 1 year, 9 months ago
  14. 51cc740 Ignore access from priv_app to wifi_config_prop by Thiébaud Weksteen · 1 year, 11 months ago
  15. 5717c08 Add device_config read access to priv_app by Seigo Nonaka · 2 years ago
  16. f3722d5 strengthen app_data_file neverallows by Steven Moreland · 2 years, 4 months ago
  17. b56bf68 strengthen debugfs neverallows by Steven Moreland · 2 years, 4 months ago
  18. 941ba72 sepolicy: rework perfetto producer/profiler rules for "user" builds by Ryan Savitski · 2 years, 7 months ago
  19. dfb3182 allow com.android.vending to access vendor_apex_file by Deyao Ren · 3 years ago
  20. 3060852 Allow priv apps to use virtualizationservice by Alan Stokes · 2 years, 11 months ago
  21. 9aeba4f Allow private apps to report offbody events. by Josh Yang · 3 years, 7 months ago
  22. 4835071 Merge "sepolicy: add permissions for trace reporting" am: 34fb0d8933 am: dc933135a0 am: 6f8a4fc5d7 am: 5c159064bd by Lalit Maganti · 3 years, 7 months ago
  23. b549e2d sepolicy: add permissions for trace reporting by Lalit Maganti · 3 years, 9 months ago
  24. d5d189e Merge "Grant BetterBug access ot WM traces attributes" am: 53b6de0642 am: 2c95edf2af am: af4b21ef5b am: fea7cd0639 by Treehugger Robot · 3 years, 9 months ago
  25. 6b624a5 Grant BetterBug access ot WM traces attributes by Nataniel Borges · 3 years, 10 months ago
  26. 7f23ef4 priv_app: remove sysfs_net permissions bypass by Jeff Vander Stoep · 4 years ago
  27. 737b098 Allow priv_app to run the renderscript compiler. by Hongguang · 4 years, 3 months ago
  28. b382f02 [incfs] Allow everyone read the IncFS sysfs features by Yurii Zubrytskyi · 4 years, 5 months ago
  29. ae9645e Allow betterbug to read profile reports generated by profcollect by Yi Kong · 4 years, 6 months ago
  30. aa4ce95 sepolicy: rules for uid/pid cgroups v2 hierarchy by Marco Ballesio · 4 years, 7 months ago
  31. e92be7b Merge "Allow priv_app system_linker_exec:file execute_no_trans" by Elliott Hughes · 4 years, 7 months ago
  32. 25cb904 Allow priv_app system_linker_exec:file execute_no_trans by Elliott Hughes · 4 years, 7 months ago
  33. b4c9491 [selinux] allow priv_app to get incremental progress by Songchun Fan · 4 years, 7 months ago
  34. 0f01076 Allow dataloaders (priv_app) access to IncFs enabled property. by Alex Buynytskyy · 4 years, 7 months ago
  35. aa8bb3a Revert^3 "sepolicy: rules for uid/pid cgroups v2 hierarchy" by Marco Ballesio · 4 years, 7 months ago
  36. a54bed6 Revert^2 "sepolicy: rules for uid/pid cgroups v2 hierarchy" by Marco Ballesio · 4 years, 7 months ago
  37. 80dfa06 IncFS: update SE policies for the new API by Yurii Zubrytskyi · 4 years, 8 months ago
  38. 2bb8587 Allow shell + priv_app to traverse /data/misc/perfetto-traces by Primiano Tucci · 4 years, 8 months ago
  39. 2f99809 Allow dumpstate to snapshot traces and attach them to bug reports by Primiano Tucci · 4 years, 8 months ago
  40. a45cdda Allow priv_app read access to /data/app-staging directory by Mohammad Samiul Islam · 4 years, 9 months ago
  41. 51c04ac Revert "sepolicy: rules for uid/pid cgroups v2 hierarchy" by Jonglin Lee · 4 years, 9 months ago
  42. f46d7a2 sepolicy: rules for uid/pid cgroups v2 hierarchy by Marco Ballesio · 4 years, 10 months ago
  43. a0518b7 Make kmsg_device mlstrustedobject. by Alan Stokes · 4 years, 11 months ago
  44. affe239 Add sepolicy for music recognition service. by Nick Moukhine · 5 years ago
  45. 3dbf3d8 Add wifi_hal_prop and remove exported_wifi_prop by Inseob Kim · 5 years ago
  46. 0709fbc Allow private app to access system app data file for ContentProvider by tianli · 5 years ago
  47. 01d4c99 Allow priv_app to search apex_data_file and read staging_data_file by Nikita Ioffe · 5 years ago
  48. 3db5a31 sepolicy: clean up redundant rules around gpuservice by Yiwei Zhang · 5 years ago
  49. 2679d8e [selinux] permissions on new ioctls for filling blocks by Songchun Fan · 5 years ago
  50. 82ea55d allow priv_apps to read from incremental_control_file by Songchun Fan · 6 years ago
  51. 3922253 permissions for incremental control file by Songchun Fan · 6 years ago
  52. e3f1d5a Create new mediaprovider_app domain. by Martijn Coenen · 6 years ago
  53. 5119bec Merge "Grant vold, installd, zygote and apps access to /mnt/pass_through" by Zimuzo Ezeozue · 6 years ago
  54. fcf599c Grant vold, installd, zygote and apps access to /mnt/pass_through by Zim · 6 years ago
  55. 9baf6d6 Merge "priv_app: Remove permissions for config_gz" by Treehugger Robot · 6 years ago
  56. 5ab5e8a priv_app: Remove permissions for config_gz by Ashwini Oruganti · 6 years ago
  57. 67a8248 initial policy for traced_perf daemon (perf profiler) by Ryan Savitski · 6 years ago
  58. db553aa priv_app: Remove permissions for selinuxfs by Ashwini Oruganti · 6 years ago
  59. 2e5ce26 Merge "priv_app: Remove permission to read from /data/anr/traces.txt" by Treehugger Robot · 6 years ago
  60. 565c685 priv_app: Remove permission to read from /data/anr/traces.txt by Ashwini Oruganti · 6 years ago
  61. d61b0ce priv_app: Remove rules for ota_package_file by Ashwini Oruganti · 6 years ago
  62. 65d6fd4 Merge "priv_app: Remove rules for system_update_service" by Ashwini Oruganti · 6 years ago
  63. 623fb38 Merge "priv_app: Remove rules allowing a priv-app to ptrace itself" by Treehugger Robot · 6 years ago
  64. a40840d priv_app: Remove rules for system_update_service by Ashwini Oruganti · 6 years ago
  65. 6df2792 Merge "priv_app: Remove rules for storaged" by Treehugger Robot · 6 years ago
  66. 2ba18e9 priv_app: Remove rules allowing a priv-app to ptrace itself by Ashwini Oruganti · 6 years ago
  67. 75ccb46 priv_app: Remove rules for keystore by Ashwini Oruganti · 6 years ago
  68. d1a8f0d priv_app: Remove rules for storaged by Ashwini Oruganti · 6 years ago
  69. 4f362b1 Merge "priv_app: Remove rules for update_engine" by Treehugger Robot · 6 years ago
  70. 5d395b2 priv_app: Remove rules for update_engine by Ashwini Oruganti · 6 years ago
  71. 977fdd9 priv_app.te: Remove auditallows for shell_data_file by Ashwini Oruganti · 6 years ago
  72. c9de5b5 gmscore_app: anr_data_file permissions by Ashwini Oruganti · 6 years ago
  73. f31e862 gmscore_app: shell_data_file permissions by Ashwini Oruganti · 6 years ago
  74. f1f7924 Merge "Allow application to find tethering service" by Treehugger Robot · 6 years ago
  75. 384858e Allow gmscore_app to write to /data/ota_package for OTA packages by Ashwini Oruganti · 6 years ago
  76. 9cc39d9 Allow application to find tethering service by markchien · 6 years ago
  77. 607bc67 Prevent apps from causing presubmit failures by Jeff Vander Stoep · 6 years ago
  78. 9b624df Merge "priv_app.te: Remove auditallow for privapp_data_file" by Treehugger Robot · 6 years ago
  79. b975142 priv_app.te: Remove auditallow for privapp_data_file by Ashwini Oruganti · 6 years ago
  80. 60c6d4e priv_app.te: Remove auditallow for statsd by Ashwini Oruganti · 6 years ago
  81. 9ba277d Allow gmscore to ptrace itself by Ashwini Oruganti · 6 years ago
  82. 9dfaa7d [Tether15] Allow system app to find TetheringManager by Mark Chien · 6 years ago
  83. e6ed127 Audit GMS core related allow rules in priv_app.te by Ashwini Oruganti · 6 years ago
  84. 90bd1de priv_app: supress more snet selinux denial on sysfs by Jeff Vander Stoep · 6 years ago
  85. 5e52281 Allow Java domains to be Perfetto producers. by Florian Mayer · 6 years ago
  86. 8a7bed9 Remove mediacodec_service. by Steven Moreland · 6 years ago
  87. 132b081 Remove perfprofd references. by Elliott Hughes · 6 years ago
  88. e319c03 priv_app: suppress denials to proc_net by Tri Vo · 6 years ago
  89. 565384d Sepolicy: add dynamic_system_prop by Hung-ying Tyan · 6 years ago
  90. 9cc5c09 Allow incidentd to communicate with clients over pipes. by Joe Onorato · 6 years ago
  91. 5c378a5 Clarify priv_app.te. by Alan Stokes · 6 years ago
  92. 544d6b3 Game Driver: sepolicy update for plumbing GpuStats into GpuService by Yiwei Zhang · 7 years ago
  93. 87e9123 disallow priv-apps from following untrusted app symlinks. by Nick Kralevich · 7 years ago
  94. ca0690e Allow heap profiling of certain app domains on user builds by Ryan Savitski · 7 years ago
  95. e1ddd74 drop priv_app app_data_file:file execute; by Nick Kralevich · 7 years ago
  96. dfc3c33 priv_app: remove /proc/net access by Nick Kralevich · 7 years ago
  97. f55c989 Constrain cgroups access. by Tri Vo · 7 years ago
  98. cacea25 Revert "Constrain cgroups access." by Nick Kralevich · 7 years ago
  99. 9899568 Constrain cgroups access. by Tri Vo · 7 years ago
  100. ce3e87c Add system_api_service to color_display_service by Christine Franks · 7 years ago