- a37d0d6 Remove unused vmlauncher apps by Jaewan Kim · 8 months ago
- 335e354 Terminal app's package name is com.android.virtualization.terminal by Jiyong Park · 9 months ago
- aff35ea VmTerminalApp: Merge with LinuxInstaller by Jaewan Kim · 11 months ago
- fd12807 Terminal app as vmlauncher_app domain by Jeongik Cha · 12 months ago
- 7322047 set proper selinux context for LinuxInstallerApp by Jeongik Cha · 1 year ago
- e96a52c Define sepolicy for ferrocrhome app by Jeongik Cha · 1 year, 2 months ago
- 556c191 Delete levelFromUid by Nick Kralevich · 1 year, 2 months ago
- f256b80 add internal vmlauncher into seapp_contexts by Jeongik Cha · 1 year, 4 months ago
- 5752116 Merge "Introduce vmlauncher_app domain" into main by Treehugger Robot · 1 year, 5 months ago
- 77a3ca6 Introduce vmlauncher_app domain by Jeongik Cha · 1 year, 5 months ago
- 3315a90 Fix docs in seapp_contexts to point to right file by Ellen Arteca · 1 year, 5 months ago
- 23a929d sepolicy(nfc): Changing selinux policy for signed NFC APK by Roshan Pius · 1 year, 10 months ago
- 5d6b66c Revert^2 "Allow system_server to communicate with virtual_camera" by Ján Sebechlebský · 1 year, 10 months ago
- 1deccbb Merge "Revert^2 "Introduce sdk_sandbox_audit SELinux domain"" into android14-tests-dev am: 2f98237c4d by Thiébaud Weksteen · 1 year, 10 months ago
- 1e9eb36 Revert^2 "Introduce sdk_sandbox_audit SELinux domain" by Sandro Montanari · 1 year, 10 months ago
- 76a62df Revert "Allow system_server to communicate with virtual_camera" by Matt Stokes · 1 year, 10 months ago
- 45f1ece Allow system_server to communicate with virtual_camera by Vadim Caen · 1 year, 10 months ago
- a41bfab Revert "Introduce sdk_sandbox_audit SELinux domain" by Sandro Montanari · 1 year, 10 months ago
- 5eb6189 Introduce sdk_sandbox_audit SELinux domain by Sandro Montanari · 1 year, 11 months ago
- 4db0e27 Introduce sdk_sandbox_audit SELinux domain by Sandro Montanari · 1 year, 11 months ago
- bb59231 Merge "Policy for virtual_camera" into main by Vadim Caen · 2 years, 1 month ago
- 7bb1b5d Update seapp_contexts precedence documentation by Inseob Kim · 2 years, 2 months ago
- d64cf75 Policy for virtual_camera by Vadim Caen · 2 years, 10 months ago
- 9d6ce19 Fix seapp_contexts documentation by Inseob Kim · 2 years, 2 months ago
- 12de184 Switch rkpd to levelFrom=all by Alan Stokes · 2 years, 3 months ago
- d44c51e Add canary restrictions for sdk_sandbox by Mugdha Lakhani · 2 years, 4 months ago
- 49075f9 Add canary restrictions for sdk_sandbox by Mugdha Lakhani · 2 years, 4 months ago
- 50ad933 Introduce sdk_sandbox_next by Mugdha Lakhani · 2 years, 4 months ago
- 9304b8a Create sdk_sandbox_all. by Mugdha Lakhani · 2 years, 4 months ago
- 2ae45c5 Create sdk_sandbox_all. by Mugdha Lakhani · 2 years, 4 months ago
- 87143bd Revert "Introduce a new sdk_sandbox domain" by Martin Stjernholm · 2 years, 5 months ago
- 3049624 Introduce a new sdk_sandbox domain by Mugdha Lakhani · 2 years, 6 months ago
- 4bb2d30 Remove RemoteProvisioner and remoteprovisioning services by Tri Vo · 2 years, 6 months ago
- caf7984 Update SE policy for all media provider processes by Krishang Garodia · 2 years, 7 months ago
- e092924 Add selinux permissions for DeviceAsWebcam Service by Avichal Rakesh · 2 years, 8 months ago
- 3d629cd Merge "Creates mapping from isolated apps to isolated_compute_app" by Charles Chen · 2 years, 7 months ago
- bc965c9 Creates mapping from isolated apps to isolated_compute_app by Charles Chen · 2 years, 7 months ago
- eb1290f Merge "Update seapp_contexts with isIsolatedComputeApp selector" by Charles Chen · 2 years, 7 months ago
- 3070492 Update seapp_contexts with isIsolatedComputeApp selector by Charles Chen · 2 years, 8 months ago
- cfdea5f Blocks untrusted apps to access /dev/socket/mdnsd from U by Yuyang Huang · 2 years, 8 months ago
- d7a1aaf Add Google specific module for RKPD for sepolicy. by Vikram Gaur · 2 years, 9 months ago
- 71fa94e Add new appdomain for RKPD mainline app by Seth Moore · 2 years, 10 months ago
- f227d0d Changing selinux policy for privapps for new certs. by Roopa Sattiraju · 3 years, 5 months ago
- e2da633 Rename SupplementalProcess to SdkSandbox by Nikita Ioffe · 3 years, 7 months ago
- 76935bd Add new label for supplemental data by Samiul Islam · 3 years, 7 months ago
- 4241e00 Make Traceur seapp_context reflect platform status by Kevin Jeon · 3 years, 7 months ago
- bae084a Merge changes from topic "supplemental_process_sepolicy" by Rafay Kamran · 3 years, 9 months ago
- 665c295 Restrict system_server_startup domain by Alan Stokes · 3 years, 10 months ago
- f3bdc0b Enable supplemental_process context for com.android.supplemental.process by RafayKamran · 3 years, 10 months ago
- ea5460a untrusted_app_30: add new targetSdk domain by Bram Bonné · 4 years, 4 months ago
- 35779f0 seapp_contexts: Remove unused selectors by Jeff Vander Stoep · 4 years, 2 months ago
- 538e0d6 Revert "priv_app: use per-app selinux contexts" by Jeff Vander Stoep · 4 years, 3 months ago
- 23f0f3b SEPolicy for RemoteProvisioning App by Max Bires · 4 years, 9 months ago
- 48c600f Allow network_stack to update eBPF map by markchien · 4 years, 10 months ago
- f8ad339 Introduce app_data_file_type attribute. by Alan Stokes · 4 years, 11 months ago
- b01e1d9 Revert "Introduce app_data_file_type attribute." by Alan Stokes · 4 years, 10 months ago
- 27e0c74 Introduce app_data_file_type attribute. by Alan Stokes · 4 years, 11 months ago
- c7229c7 Make shared_relro levelFrom=all. by Alan Stokes · 5 years ago
- 71af2b4 Merge "Make traceur seapp_context reflect privapp status" by Collin Fijalkovich · 5 years ago
- 057c7d6 Make traceur seapp_context reflect privapp status by Collin Fijalkovich · 5 years ago
- 706aa4b Actually route PermissionController to the right domain am: b3bffe88ab am: a8ac523363 by Ashwini Oruganti · 5 years ago
- b3bffe8 Actually route PermissionController to the right domain by Ashwini Oruganti · 5 years ago
- d40dfdc Don't give uid-based categories to app_zygote and isolated processes. by Martijn Coenen · 5 years ago
- 4e7769e priv_app: use per-app selinux contexts by Jeff Vander Stoep · 5 years ago
- fcf12fd mediaprovider: fixed sharedUserId bug by Jeff Vander Stoep · 5 years ago
- 7bf9669 Merge "Revert "mediaprovider: fixed sharedUserId bug"" by Jeffrey Vander Stoep · 5 years ago
- 3b9683f Revert "mediaprovider: fixed sharedUserId bug" by Jeffrey Vander Stoep · 5 years ago
- 1705c1e Merge "mediaprovider: fixed sharedUserId bug" by Jeffrey Vander Stoep · 5 years ago
- efc3bdb Fix typo: s/com.google.android.gfs/com.google.android.gsf by Ashwini Oruganti · 5 years ago
- 2498d1c mediaprovider: fixed sharedUserId bug by Jeff Vander Stoep · 5 years ago
- 4a16301 Route com.google.android.gsf to gmscore_app by Ashwini Oruganti · 5 years ago
- e3f1d5a Create new mediaprovider_app domain. by Martijn Coenen · 6 years ago
- 1f7ae8e reland: untrusted_app_29: add new targetSdk domain by Jeff Vander Stoep · 6 years ago
- 1d241db Revert "untrusted_app_29: add new targetSdk domain" by Santiago Seifert · 6 years ago
- a1aa221 untrusted_app_29: add new targetSdk domain by Jeff Vander Stoep · 6 years ago
- d16a396 Merge changes Ifa33dae9,I69ccc6af,Ibb4db9d9 by Treehugger Robot · 6 years ago
- 8f079fb Merge "Create a separate SELinux domain for gmscore" by Ashwini Oruganti · 6 years ago
- c46a7bc Create a separate SELinux domain for gmscore by Ashwini Oruganti · 6 years ago
- d804a76 Revert "sepolicy: Permission changes for new wifi mainline module" by Roshan Pius · 6 years ago
- a483b5d Revert "wifi_stack: Move to network_stack process" by Roshan Pius · 6 years ago
- 288c14f PermissionController goes to the permissioncontroller_app domain by Ashwini Oruganti · 6 years ago
- c77ff37 Create a separate domain for VzwOmaTrigger by Ashwini Oruganti · 6 years ago
- 04f771d Don't require seinfo for priv-apps by Ashwini Oruganti · 6 years ago
- 9bc8112 Create a separate domain for permissioncontroller by Ashwini Oruganti · 6 years ago
- 1086c7d wifi_stack: Move to network_stack process by Roshan Pius · 6 years ago
- 3aa1c17 sepolicy: Permission changes for new wifi mainline module by Roshan Pius · 6 years ago
- 795add5 Remove isV2App by Nick Kralevich · 6 years ago
- c06f0f6 Allow the netowrk stack to access its own data files. by Xiao Ma · 7 years ago
- 3b006d9 sepolicy change for NetworkStack signature by Remi NGUYEN VAN · 7 years ago
- 6b576bd Update seapp_contexts documentation comments. by Alan Stokes · 7 years ago
- 1bbda7e Initial sepolicy for app_zygote. by Martijn Coenen · 7 years ago
- 770a4f6 Add permissions in runas_app domain to debug/profile debuggable apps. by Yabin Cui · 7 years ago
- aed7180 Change package name for NetworkStack by Remi NGUYEN VAN · 7 years ago
- 5f3ba92 sepolicy changes for network stack app by Remi NGUYEN VAN · 7 years ago
- ffa2b61 Add runas_app domain to allow running app data file via run-as. by Yabin Cui · 7 years ago
- 5dc2c8c Revert "Revert "Enforce execve() restrictions for API > 28"" by Yabin Cui · 7 years ago
- caf42d6 Transient SELinux domain for system_server JIT by Nick Kralevich · 7 years ago
- 15d1a12 Revert "Enforce execve() restrictions for API > 28" by Nick Kralevich · 7 years ago
- 0dd738d Enforce execve() restrictions for API > 28 by Nick Kralevich · 7 years ago
- 5d17551 Change priv-apps /data/data labels to privapp_data_file by Nick Kralevich · 7 years ago