1. c81ebe5 Delete external/sepolicy files. by Nick Kralevich · 3 years ago master
  2. 6937aa9 refine /data/misc/logd rules by Nick Kralevich · 3 years ago
  3. 4d19f98 Add mlstrustedobject to appfuse object type. by Daichi Hirono · 3 years ago
  4. 0144eed Merge "init: logpersist access on debug" by Mark Salyzyn · 3 years ago
  5. 8ae52a0 Merge "dumpstate: access to /data/misc/recovery" by Mark Salyzyn · 3 years ago
  6. 4bf9a47 dumpstate: access to /data/misc/recovery by Mark Salyzyn · 3 years ago
  7. 121f5bf init: logpersist access on debug by Mark Salyzyn · 3 years ago
  8. 369cf8c neverallow /data/anr access for isolated/untrusted apps by Nick Kralevich · 3 years ago
  9. f2d0790 sysfs_uio: declare type in core policy by Jeff Vander Stoep · 3 years ago
  10. df72abb Move sysfs_thermal to global policy and grant access. by dcashman · 3 years ago
  11. 16fe52c Add recovery_persist & recovery_refresh by Mark Salyzyn · 3 years ago
  12. af3ca33 global_macros: Allow directory locking by Nick Kralevich · 3 years ago
  13. 0792d8a system_server.te: expand app_data_file neverallow rule by Nick Kralevich · 3 years ago
  14. 610f461 Add rules to allow dumpstate to run systrace. by Felipe Leme · 3 years ago
  15. dda5590 Add /data/lib64, /data/vendor/lib64 to ASan sepolicy. by Evgenii Stepanov · 3 years ago
  16. 9ed71ef Mark batteryproperties service as app_api_service. by dcashman · 3 years ago
  17. f100b2c Create sysfs_hwrandom type. by dcashman · 3 years ago
  18. 1c98332 Leftovers of SELinux policy reload mechanism by Janis Danisevskis · 3 years ago
  19. f4c403d Allow domains to getattr proc lnk_file. by dcashman · 3 years ago
  20. 07e6b04 Merge "Allow debuggerd to send SIGKILL." by Josh Gao · 3 years ago
  21. a57cff0 Merge "Remove procfs file read perm from untrusted_app." by Daniel Cashman · 3 years ago
  22. 48141c3 Allow debuggerd to send SIGKILL. by Josh Gao · 3 years ago
  23. b64ea38 Remove procfs file read perm from untrusted_app. by dcashman · 3 years ago
  24. 3c47d5a Merge "New postinstall domain and rules to run post-install program." by Alex Deymo · 3 years ago
  25. edd86a6 Merge "New postinstall domain and rules to run post-install program." by Alex Deymo · 3 years ago
  26. d27df96 Update netlink socket classes. am: 01d95c23ab by Stephen Smalley · 3 years, 1 month ago
  27. 01d95c2 Update netlink socket classes. by Stephen Smalley · 3 years, 10 months ago
  28. 6cb2c89 New postinstall domain and rules to run post-install program. by Alex Deymo · 3 years, 1 month ago
  29. 1274aa1 suppress unnecessary makefile output am: 6ef10bd48b by Nick Kralevich · 3 years, 1 month ago
  30. 6ef10bd suppress unnecessary makefile output by Nick Kralevich · 3 years, 1 month ago
  31. 087601e Allow bluetooth access to the tun device. am: 9a1347eee6 by Nick Kralevich · 3 years, 1 month ago
  32. 9a1347e Allow bluetooth access to the tun device. by Nick Kralevich · 3 years, 1 month ago
  33. 0551e9e Don\'t allow permissive SELinux domains on user builds. am: bca98efa57 by Nick Kralevich · 3 years, 1 month ago
  34. bca98ef Don't allow permissive SELinux domains on user builds. by Nick Kralevich · 3 years, 1 month ago
  35. fff4bf7 Label /proc/meminfo. am: f25ea5f9c0 by dcashman · 3 years, 1 month ago
  36. f25ea5f Label /proc/meminfo. by dcashman · 3 years, 1 month ago
  37. 9b7d419 Allow access to the daydream ("dreams") service. am: 7905d6819e by Dan Sandler · 3 years, 1 month ago
  38. 7905d68 Allow access to the daydream ("dreams") service. by Dan Sandler · 3 years, 1 month ago
  39. fe06f87 Add recovery service. am: 65b5fde912 by Tao Bao · 3 years, 1 month ago
  40. 65b5fde Add recovery service. by Tao Bao · 3 years, 1 month ago brillo-m10-dev brillo-m10-release
  41. ead74ee Enable recovery to read batteryinfo. am: 6b843bcff0 by Yabin Cui · 3 years, 1 month ago
  42. 6b843bc Enable recovery to read batteryinfo. by Yabin Cui · 3 years, 1 month ago
  43. a2c93a4 Merge commit '563b2bfc73740720af9f9048ad164e6f5a9f9128' into HEAD by Bill Yi · 3 years, 1 month ago
  44. 9bb93fa Merge "Allow logd.auditd to reboot to safe mode" by Sami Tolvanen · 3 years, 1 month ago
  45. b38e279 Allow netd to use NETLINK_SOCK_DIAG. by Lorenzo Colitti · 3 years, 1 month ago
  46. 9c16871 Allow logd.auditd to reboot to safe mode by Sami Tolvanen · 3 years, 1 month ago
  47. c1e4883 Merge "Remove appdomain sysfs auditallow." by Daniel Cashman · 3 years, 1 month ago
  48. 0b80f4d Remove appdomain sysfs auditallow. by dcashman · 3 years, 1 month ago
  49. e931bdd Merge changes from topic 'checkseapp-fixups' by Jeffrey Vander Stoep · 3 years, 1 month ago
  50. eb43e65 uncrypt: drop generic block_device allow rules by Nick Kralevich · 3 years, 1 month ago
  51. 3ec34ce update_engine: Allow to access bootctrl_block_device. by Tao Bao · 3 years, 1 month ago
  52. bd0768c untrusted_app: confine filesystem creation to sandbox by William Roberts · 3 years, 1 month ago
  53. eebdb47 Allow system apps (Settings) to configure Bluetooth properties by Andre Eisenbach · 3 years, 1 month ago
  54. e3965aa Merge "Add SELinux label for app fuse." by Daichi Hirono · 3 years, 1 month ago
  55. abf31ac Allow domain to read proc dirs. by dcashman · 3 years, 1 month ago
  56. 35a1451 Replace "neverallow domain" by "neverallow *" by Nick Kralevich · 3 years, 1 month ago
  57. e178ac5 Add SELinux label for app fuse. by Daichi Hirono · 3 years, 2 months ago
  58. d143560 persist.mmc.* only set in init by Mark Salyzyn · 3 years, 1 month ago
  59. 4c42a0d Merge "Fix SELinux warning when passing fuse FD from system server." by Daichi Hirono · 3 years, 1 month ago
  60. 59e3d7b Fix SELinux warning when passing fuse FD from system server. by Daichi Hirono · 3 years, 2 months ago
  61. 84fbd53 Merge "init: allow to access console-ramoops with newer kernels" by Jeffrey Vander Stoep · 3 years, 2 months ago
  62. 29adea5 checkseapp: remove .data = NULL assignments by William Roberts · 3 years, 2 months ago
  63. c92dae9 checkseapp: remove data types form static map by William Roberts · 3 years, 2 months ago
  64. 696a66b checkseapp: generalize input validation by William Roberts · 3 years, 2 months ago
  65. efebf97 checkseapp: update error message output by William Roberts · 3 years, 2 months ago
  66. 25528cf checkseapp: declare internal function as static by William Roberts · 3 years, 2 months ago
  67. 3d8391e Merge "mediaserver: grant perms from domain_deprecated" by Jeffrey Vander Stoep · 3 years, 2 months ago
  68. 61e9386 Merge "logd: grant perms from domain_deprecated" by Jeffrey Vander Stoep · 3 years, 2 months ago
  69. e48ab78 Merge "kernel: grant perms from domain_deprecated" by Jeffrey Vander Stoep · 3 years, 2 months ago
  70. 72e78bf mediaserver: grant perms from domain_deprecated by Jeff Vander Stoep · 3 years, 2 months ago
  71. 2f3979a logd: grant perms from domain_deprecated by Jeff Vander Stoep · 3 years, 2 months ago
  72. bc2b76b kernel: grant perms from domain_deprecated by Jeff Vander Stoep · 3 years, 2 months ago
  73. 0e591bd Allow apps to check attrs of /cache by dcashman · 3 years, 2 months ago
  74. 1cf9321 Merge "vold: grant perms from domain_deprecated" by Jeffrey Vander Stoep · 3 years, 2 months ago
  75. f33507d Merge "healthd: grant perms from domain_deprecated" by Jeffrey Vander Stoep · 3 years, 2 months ago
  76. fea9ad7 Merge "remove access_kmsg macro, because it to be more explicit." by Daniel Cashman · 3 years, 2 months ago
  77. eecaa0b Merge "zygote: grant perms from domain_deprecated" by Jeffrey Vander Stoep · 3 years, 2 months ago
  78. 9306072 vold: grant perms from domain_deprecated by Jeff Vander Stoep · 3 years, 2 months ago
  79. 12401b8 healthd: grant perms from domain_deprecated by Jeff Vander Stoep · 3 years, 2 months ago
  80. cee6a0e zygote: grant perms from domain_deprecated by Jeff Vander Stoep · 3 years, 2 months ago
  81. db559a3 Allow sdcardd tmpfs read access. by dcashman · 3 years, 2 months ago
  82. 98f60e5 Merge "Revert "zygote: grant perms from domain_deprecated"" by Jeffrey Vander Stoep · 3 years, 2 months ago
  83. b898360 Revert "zygote: grant perms from domain_deprecated" by Jeffrey Vander Stoep · 3 years, 2 months ago
  84. 4115bea Merge "zygote: grant perms from domain_deprecated" by Jeffrey Vander Stoep · 3 years, 2 months ago
  85. e52fff8 zygote: grant perms from domain_deprecated by Jeff Vander Stoep · 3 years, 2 months ago
  86. 9a28f90 init: allow to access console-ramoops with newer kernels by Sylvain Chouleur · 3 years, 2 months ago
  87. c4121ad Merge "Revert "Remove domain_deprecated from sdcard domains"" by Narayan Kamath · 3 years, 2 months ago
  88. f4d7eef Revert "Remove domain_deprecated from sdcard domains" by Narayan Kamath · 3 years, 2 months ago
  89. be0616b domain: grant write perms to cgroups by Jeff Vander Stoep · 3 years, 2 months ago
  90. 5833e3f Restore untrusted_app proc_net access. by dcashman · 3 years, 2 months ago
  91. 001b10b remove access_kmsg macro, because it to be more explicit. by SimHyunYong · 3 years, 2 months ago
  92. 093ea6f Using r_dir_file macro in domain.te by SimHyunYong · 3 years, 2 months ago
  93. cdae042 Merge "Remove domain_deprecated from sdcard domains" by Jeffrey Vander Stoep · 3 years, 2 months ago
  94. ae29dea Merge "bootstat: Fix the SELinux policy after removing domain_deprecated." by James Hawkins · 3 years, 2 months ago
  95. 2e8d71c bootstat: Fix the SELinux policy after removing domain_deprecated. by James Hawkins · 3 years, 2 months ago
  96. 7171232 Delete policy it is alread included in binder_call macros. by SimHyunYong · 3 years, 2 months ago
  97. 0220b34 Merge "Delete duplicated policy, it is already include in app.te." by Jeffrey Vander Stoep · 3 years, 2 months ago
  98. 6899e0a Merge "Allow update_engine to use Binder IPC." by Tao Bao · 3 years, 2 months ago
  99. 5ba9af2 Delete duplicated policy, it is already include in app.te. by SimHyunYong · 3 years, 2 months ago
  100. dce317c Allow update_engine to use Binder IPC. by Tao Bao · 3 years, 2 months ago