1. 439563f Add basic sepolicy for the IVmCapabilities HAL by Nikita Ioffe · 9 months ago
  2. f5ff3eb SePolicy rules for initial media quality HAL service by Haofan Wang · 11 months ago
  3. 75806ef Minimize public policy by Inseob Kim · 1 year, 5 months ago
  4. 98b3e4b Allow permissive MTE to be set by non-root users by Mitch Phillips · 1 year, 6 months ago
  5. 8b4d612 Allow su to access virtualization by Alan Stokes · 1 year, 9 months ago
  6. 55d808c Start using virtmgr for running VMs by David Brazdil · 2 years, 9 months ago
  7. 56af9a2 Add property for MTE permissive mode. by Florian Mayer · 3 years, 4 months ago
  8. 8f75f76 Permissions for odrefresh and /data/misc/apexdata/com.android.art by Orion Hodson · 5 years ago
  9. d3451f8 Add `su_key`, a keystore2_key namespace for `su`. by Janis Danisevskis · 5 years ago
  10. 1a9f4f7 SELinux policies for Perfetto cmdline client (/system/bin/perfetto) by Primiano Tucci · 8 years ago
  11. 35e9239 whitespace fix. by Nick Kralevich · 8 years ago
  12. 6b558dc su and perfprofd are coredomain too by Alex Klyubin · 8 years ago
  13. 41f93db Add incident command and incidentd daemon se policy. by Joe Onorato · 9 years ago
  14. 3e8dbf0 Restore app_domain macro and move to private use. by dcashman · 9 years ago
  15. 2e00e63 sepolicy: add version_policy tool and version non-platform policy. by dcashman · 9 years ago
  16. cc39f63 Split general policy into public and private components. by dcashman · 9 years ago[Renamed from su.te]
  17. fc9e8e2 Allow manual /postinstall loopback mounting on debug builds. by Alex Deymo · 9 years ago
  18. 0af2aa0 su.te: drop domain_deprecated and app auditallow rules. by Nick Kralevich · 10 years ago
  19. 1638208 su.te: dontaudit su property_type:file by Nick Kralevich · 10 years ago
  20. d22987b Create attribute for moving perms out of domain by Jeff Vander Stoep · 10 years ago
  21. aa0d8fe dontaudit su servicemanager:service_manager list by Nick Kralevich · 10 years ago
  22. eab26fa Remove service_manager_local_audit_domain. by dcashman · 10 years ago
  23. 85416e0 su.te: add filesystem dontaudit rule by Nick Kralevich · 10 years ago
  24. 28ddd10 su: don't auditallow service_manager for su by Nick Kralevich · 11 years ago
  25. 5ec38c4 Dumpstate runs the same from shell as service. by Christopher Ferris · 11 years ago
  26. bf254b4 su.te: suppress service_manager related denials. by Nick Kralevich · 11 years ago
  27. b54f92b make su an mlstrustedsubject by Nick Kralevich · 11 years ago
  28. 213bb45 Tweak rules for su domain. by Nick Kralevich · 11 years ago
  29. af7deff dontaudit su by Nick Kralevich · 11 years ago
  30. bc32018 Make su a net domain. by Sreeram Ramachandran · 11 years ago
  31. b3cb969 Clarify init_shell, shell, and su domain usage. by Stephen Smalley · 12 years ago
  32. 116a20f debuggerd: Allow "debug.db.uid" usage by Nick Kralevich · 12 years ago
  33. 7d0f955 Support running adbd in the su domain. by Nick Kralevich · 12 years ago
  34. 88ce951 Create new conditional userdebug_or_eng by Nick Kralevich · 12 years ago
  35. 09e6abd initial dumpstate domain by Nick Kralevich · 12 years ago
  36. d99e6d5 Restrict the ability to set SELinux enforcing mode to init. by Stephen Smalley · 12 years ago
  37. 353c72e Move unconfined domains out of permissive mode. by Nick Kralevich · 12 years ago
  38. 0130154 Make sure exec_type is assigned to all entrypoint types. by Stephen Smalley · 12 years ago
  39. 50e37b9 Move domains into per-domain permissive mode. by repo sync · 12 years ago
  40. 9ceb47b Revert "Include su.te only for userdebug/eng builds." by Kenny Root · 13 years ago[Renamed from conditional/su.te]
  41. af56ac1 Include su.te only for userdebug/eng builds. by Matt Finifter · 13 years ago[Renamed from su.te]
  42. 2dd4e51 SE Android policy. by Stephen Smalley · 14 years ago