- bf2d335 Allow lmkd to access vendor_lmk trace event by Martin Liu · 6 months ago
- 5ee832d Allow lmkd to access vendor_lmk trace event by Martin Liu · 8 months ago
- df505fe Allow system_server access to CMA sysfs nodes by Isaac J. Manjarres · 8 months ago
- 419f7a7 Give init and dumpstate access to /proc/allocinfo by Alessio Balsini · 9 months ago
- 3d4d2cd Allow init to write to /sys/module/dm_bufio/parameters/max_age_seconds by Eric Biggers · 9 months ago
- abfc8b0 Revert^5 "Allow system server to access udc sysfs" by Roy Luo · 10 months ago
- 8afcd7b Add sepolicy for ACPI bert_collector by Rob Barnes · 12 months ago
- c7b6e6c Merge "Adjust sepolicy for memevents with lmkd and system_server" into main by Treehugger Robot · 1 year ago
- 63880c5 Adjust sepolicy for memevents with lmkd and system_server by Carlos Galo · 1 year ago
- b268115 Revert "add compaction_proactiveness type" by Martin Liu · 1 year ago
- dbca625 Revert "sepolicy: remove all remaining qtaguid stuff." by Bart Sears · 1 year, 1 month ago
- af08bd3 sepolicy: remove all remaining qtaguid stuff. by Maciej Żenczykowski · 1 year, 1 month ago
- e09cefc Revert^4 "Allow system server to access udc sysfs" by Roy Luo · 1 year, 2 months ago
- b18e810 Revert^3 "Allow system server to access udc sysfs" by Pechetty Sravani · 1 year, 2 months ago
- 0fab925 Revert^2 "Allow system server to access udc sysfs" by Roy Luo · 1 year, 2 months ago
- bbdc1e2 Revert "Allow system server to access udc sysfs" by Roy Luo · 1 year, 2 months ago
- 3c21d8f Allow system server to access udc sysfs by Roy Luo · 1 year, 4 months ago
- 248f0e0 Update transaction log permissions. by Steven Moreland · 1 year, 4 months ago
- 5f805d0 Merge "sepolicy: Add rules for /sys/kernel/mm/pgsize_migration/enabled" into main by Kalesh Singh · 1 year, 4 months ago
- 3a4c68d sepolicy: Add rules for /sys/kernel/mm/pgsize_migration/enabled by Kalesh Singh · 1 year, 5 months ago
- 716260a Allow shell read access to cgroup state by T.J. Mercier · 1 year, 4 months ago
- f739691 add compaction_proactiveness type by Martin Liu · 1 year, 5 months ago
- 9645657 Allow system_server to read binderfs state file by Devin Moore · 1 year, 7 months ago
- ea1bd5d lmkd: Add sepolicy rules around bpf for lmkd by Carlos Galo · 1 year, 6 months ago
- ce8959c tracefs: remove debugfs/tracing rules on release devices by Ryan Savitski · 1 year, 6 months ago
- bdf0a56 tracefs: allow using "/sys/kernel/tracing/buffer_percent" on release devices by Ryan Savitski · 1 year, 6 months ago
- 878f7f1 Merge "system_server: remove access to proc/memhealth/*" into main by Carlos Galo · 1 year, 7 months ago
- 4a9f07f system_server: remove access to proc/memhealth/* by Carlos Galo · 1 year, 7 months ago
- 2141ad5 Use /proc/device-tree for reading AVF DT by Jaewan Kim · 1 year, 7 months ago
- baea641 Rename uprobe_private to uprobestats for BPFs. by Yu-Ting Tseng · 1 year, 8 months ago
- 52aa503 add percpu_pagelist_high_fraction type by Martin Liu · 1 year, 10 months ago
- 0b3f585 Allow system server read binderfs stats by Li Li · 1 year, 11 months ago
- c9b8e1b Merge "tracing: SELinux access to a couple of more binder events" into main by Daniele Di Proietto · 1 year, 11 months ago
- 75603e3 allow writes to /sys/power/sync_on_suspend from init by Steve Muckle · 1 year, 11 months ago
- 3e8e8ea Revert "Revert "SELinux policy changes for uprobe."" by Yu-Ting Tseng · 2 years ago
- ed2a836 tracing: SELinux access to a couple of more binder events by Daniele Di Proietto · 2 years ago
- c69343f SELinux policy changes for uprobe. by Yu-Ting Tseng · 2 years, 2 months ago
- 004cc8c system_server: allow access to proc/memhealth/* by Carlos Galo · 2 years ago
- 262a10f SEPolicy for trace event suspend_resume_minimal by Ioannis Ilkos · 2 years, 5 months ago
- 6b5da95 Use kernel sys/fs/fuse/features/fuse_bpf flag to enable fuse_bpf by Paul Lawrence · 2 years, 6 months ago
- 1b5a9d2 Add sepolicy rules for hyp ftrace instance by Nikita Ioffe · 2 years, 7 months ago
- dd4c5fa Merge "Adds support for fuseblk binaries." by Alfred Piccioni · 2 years, 7 months ago
- 93f5788 Allow virtualizationmanager to read AVF debug policy by Jaewan Kim · 2 years, 7 months ago
- 30ae427 Adds support for fuseblk binaries. by Alfred Piccioni · 2 years, 8 months ago
- 90fa43e Deprecate proc_fs_verity from API 33 by Victor Hsieh · 2 years, 9 months ago
- e14e69a add fs_bpf_loader selinux type by Maciej Żenczykowski · 2 years, 9 months ago
- 3e1dc57 Add NTFS support in sepolicy. by Alfred Piccioni · 2 years, 10 months ago
- b13921c much more finegrained bpf selinux privs for networking mainline by Maciej Żenczykowski · 3 years, 4 months ago
- a933980 Adds GPU sepolicy to support devices with DRM gralloc/rendering by Jason Macnak · 3 years, 7 months ago
- 98f6349 Add sepolicy for Multi-Gen LRU sysfs control by Kalesh Singh · 3 years, 5 months ago
- 7582132 sepolicy: allow access to binderfs feature files by Carlos Llamas · 3 years, 7 months ago
- c27d24c Allow BPF programs from vendor. by Steven Moreland · 6 years ago
- 4c834ad Add additional sepolicy rules for gpuservice by Paul Thomson · 3 years, 8 months ago
- e3e26b7 Allow bpfloader to read fuse's bpf_prog number by Paul Lawrence · 3 years, 10 months ago
- 3702f33 introduce new 'proc_bpf' for bpf related sysctls by Maciej Żenczykowski · 3 years, 10 months ago
- 9e6dcd7 Merge "sepolicy: Allow creating synthetic trace events" by Kalesh Singh · 3 years, 10 months ago
- fab8e1c sepolicy: Allow creating synthetic trace events by Kalesh Singh · 3 years, 10 months ago
- 5e016c1 Merge "Stop using the bdev_type and sysfs_block_type SELinux attributes" by Bart Van Assche · 3 years, 10 months ago
- 6092d63 Allow init to write to /proc/cpu/alignment by Alistair Delva · 3 years, 10 months ago
- 4374a1f Stop using the bdev_type and sysfs_block_type SELinux attributes by Bart Van Assche · 4 years ago
- e3cfa9e Revert "Remove the bdev_type and sysfs_block_type SELinux attributes" by Bart Van Assche · 3 years, 10 months ago
- 63930d3 Remove the bdev_type and sysfs_block_type SELinux attributes by Bart Van Assche · 4 years ago
- e8739ba Revert "Remove the bdev_type and sysfs_block_type SELinux attributes" by Michał Brzeziński · 3 years, 11 months ago
- c50f669 Remove the bdev_type and sysfs_block_type SELinux attributes by Bart Van Assche · 4 years ago
- 6988677 Allow init to execute extra_free_kbytes.sh script by Suren Baghdasaryan · 4 years, 1 month ago
- ec50aa5 Allow the init and apexd processes to read all block device properties by Bart Van Assche · 4 years, 1 month ago
- b31ec34 Move vendor_sched to common sepolicy by Rick Yiu · 4 years, 1 month ago
- 4db56b0 allow init to access watermark_boost_factor by Martin Liu · 4 years, 2 months ago
- 633f7ca [sepolicy] allow system server to read incfs metrics from sysfs by Songchun Fan · 4 years, 4 months ago
- 0c03281 Grant access to cpuhp_pause trace point by Wei Wang · 4 years, 6 months ago
- 3d52817 Selinux policy for bootreceiver tracing instance by Alexander Potapenko · 4 years, 6 months ago
- 08a25e6 Revert "Selinux policy for bootreceiver tracing instance" by Wonsik Kim · 4 years, 6 months ago
- 31251aa Selinux policy for bootreceiver tracing instance by Alexander Potapenko · 4 years, 6 months ago
- 840d4f3 Add sepolicy for /proc/bootconfig by Devin Moore · 4 years, 7 months ago
- b088e4b tracing: allow select tracepoints on release builds by Ryan Savitski · 4 years, 7 months ago
- d68cb48 apply 'fs_bpf_tethering' label to /sys/fs/bpf/tethering by Maciej Żenczykowski · 4 years, 7 months ago
- 2c3ef29 Allow dumpsys to read total DMA-BUF heap pool size by Hridya Valsaraju · 4 years, 7 months ago
- 6217b66 Allow dumpstate to read DMA-BUF sysfs stats by Hridya Valsaraju · 4 years, 8 months ago
- d37f2e9 Merge "Sepolicy for mm events trace instance" by Kalesh Singh · 4 years, 7 months ago
- aab7a73 Sepolicy for mm events trace instance by Kalesh Singh · 4 years, 8 months ago
- bab989d Merge "Add SePolicy for system_server accessing sysfs uhid." by Linzhao Ye · 4 years, 8 months ago
- c0e7206 Add SePolicy for system_server accessing sysfs uhid. by Chris Ye · 4 years, 10 months ago
- 80dfa06 IncFS: update SE policies for the new API by Yurii Zubrytskyi · 4 years, 8 months ago
- 3eabc1d sepolicy: allow system_server to read /proc/locks by Marco Ballesio · 4 years, 8 months ago
- 0e90a98 sepolicy: Add uclamp file nodes to proc_sched by Rick Yiu · 4 years, 8 months ago
- c2d6e7e Add sched_process_free to debugfs_tracing label by Dmitri Plotnikov · 4 years, 9 months ago
- 1237616 New type for printk_formats, allow traced_probes. by Florian Mayer · 4 years, 10 months ago
- cd45230 Allow tracing service to access kallsyms on userdebug by Primiano Tucci · 5 years ago
- 550f926 sepolicy: allow tracing access to irq/ipi by Marco Ballesio · 5 years ago
- cdacc62 Add file context type for /sys/devices/cs_etm by Yi Kong · 5 years ago
- 8f280b0 sepolicy support for cgroup v2 by Marco Ballesio · 5 years ago
- bbc3cc3 label cpuhp trace points by Wei Wang · 5 years ago
- 9261451 Allow thermal tracing in user build by Wei Wang · 5 years ago
- f44b20a GPU Memory: allow tracing gpu_mem/gpu_mem_total on user build by Yiwei Zhang · 5 years ago
- b45b42a Merge "Label kprobes and restrict access" by Jeffrey Vander Stoep · 5 years ago
- bd3fd0e Label kprobes and restrict access by Jeff Vander Stoep · 5 years ago
- 63ff32d Merge "Add sepolicy for FUSE control filesystem." by Treehugger Robot · 5 years ago
- aa2cb51 Add sepolicy for FUSE control filesystem. by Martijn Coenen · 5 years ago
- 8759915 Merge "GPU Memory: add sepolicy rules around bpf for gpuservice" by Treehugger Robot · 5 years ago
- 4b63ce9 GPU Memory: add sepolicy rules around bpf for gpuservice by Yiwei Zhang · 6 years ago