Sign in
android
/
platform
/
system
/
sepolicy
/
HEAD
db85fd1
Merge "Bluetooth: Added sepolicy for Snoop Logger filtering"
by Jakub Rotkiewicz
· 16 hours ago
master
93f5788
Allow virtualizationmanager to read AVF debug policy
by Jaewan Kim
· 35 hours ago
15d5e5f
Merge "One-click fix script for isolated_app_all replacement"
by Charles Chen
· 3 days ago
36c4d51
Merge "Prevent non-system apps from read ro.usb.uvc.enabled"
by Avichal Rakesh
· 4 days ago
e8b651b
One-click fix script for isolated_app_all replacement
by Charles Chen
· 8 days ago
ce23038
Merge "Allow dex2oat access to relevant properties"
by Treehugger Robot
· 5 days ago
870b368
Merge "Add selinux permissions for DeviceAsWebcam Service"
by Treehugger Robot
· 5 days ago
1f17059
Merge "Add EGL blobcache multifile properties"
by Cody Northrop
· 5 days ago
e2cb0f2
Prevent non-system apps from read ro.usb.uvc.enabled
by Avichal Rakesh
· 6 days ago
e092924
Add selinux permissions for DeviceAsWebcam Service
by Avichal Rakesh
· 2 weeks ago
7602d0f
Non app processes shouldn't be able to peek checkin data
by Sumit Bhagwani
· 6 days ago
e79c506
Merge changes from topic "fix_missing_set_denials"
by Alex Hong
· 6 days ago
8b40e90
Allow dex2oat access to relevant properties
by Alan Stokes
· 7 days ago
4c23abb
Add build properties for attestation feature
by Alex Hong
· 7 days ago
4fd7614
Merge "Add sepolicy for ODP system server service."
by Karthik Mahesh
· 6 days ago
52e5914
Add sepolicy for ODP system server service.
by Karthik Mahesh
· 13 days ago
3d629cd
Merge "Creates mapping from isolated apps to isolated_compute_app"
by Charles Chen
· 6 days ago
f9ef01a
Allow communication between mediaserver & statsd
by Girish
· 2 weeks ago
cbeec8f
Merge "[MTE] Add memory_safety_native_boot namespace"
by Florian Mayer
· 6 days ago
bc965c9
Creates mapping from isolated apps to isolated_compute_app
by Charles Chen
· 10 days ago
eb1290f
Merge "Update seapp_contexts with isIsolatedComputeApp selector"
by Charles Chen
· 6 days ago
b36ecf6
Merge changes from topic "iso_compute"
by Charles Chen
· 6 days ago
2d91b6f
Merge "Allow MM to open/syncfs/close encryptedstore dir"
by Shikha Panwar
· 7 days ago
1abf80e
Allow vendor_init to set properties for recovery/fastbootd USB IDs
by Alex Hong
· 4 weeks ago
11eb002
Merge "Add selinux permissions for ro.usb.uvc.enabled"
by Treehugger Robot
· 7 days ago
35820e6
Merge "Modify canhalconfigurator file context"
by Treehugger Robot
· 7 days ago
94926f5
[MTE] Add memory_safety_native_boot namespace
by Florian Mayer
· 7 days ago
f4979ad
Merge "Allow platform_app:systemui to write protolog file"
by Hongwei Wang
· 7 days ago
a12d310
Add selinux permissions for ro.usb.uvc.enabled
by Avichal Rakesh
· 2 weeks ago
3d4a6b7
Add isolated_compute_app domain
by Charles Chen
· 3 weeks ago
ccf8014
Share isolated properties across islolated apps
by Charles Chen
· 3 weeks ago
beee884
Merge "Add comments on compat files"
by Inseob Kim
· 8 days ago
07cec2b
Merge "dontaudit dexoptanalyzer's DM file check on secondary dex files."
by Jiakai Zhang
· 8 days ago
338f81b
Add comments on compat files
by Inseob Kim
· 9 days ago
107af48
Merge "Add sysprop for LeGetVendorCapabilities"
by Abhishek Pandit-Subedi
· 8 days ago
fab49d0
Merge "Add SELinux Policy For io_uring"
by Gil Cukierman
· 9 days ago
a7774c2
Allow installd to kill profman.
by Jiakai Zhang
· 9 days ago
dbfa7d5
dontaudit dexoptanalyzer's DM file check on secondary dex files.
by Jiakai Zhang
· 9 days ago
44785c2
[automerger skipped] Hide ro.debuggable and ro.secure from ephemeral and isolated applications am: 09effc0d78 -s ours
by Alessandra Loro
· 11 days ago
214294c
Add SELinux Policy For io_uring
by Gil Cukierman
· 3 months ago
3070492
Update seapp_contexts with isIsolatedComputeApp selector
by Charles Chen
· 3 weeks ago
1784fea
Bluetooth: Added sepolicy for Snoop Logger filtering
by Jakub Rotkiewicz
· 7 weeks ago
7e754a1
Remove references to asan_extract
by Alan Stokes
· 12 days ago
f9c5ae3
Merge "microdroid: Add prop to wait for /data/tombstones"
by Inseob Kim
· 12 days ago
859037f
Add sysprop for LeGetVendorCapabilities
by Abhishek Pandit-Subedi
· 12 days ago
09effc0
Hide ro.debuggable and ro.secure from ephemeral and isolated applications
by Alessandra Loro
· 8 weeks ago
android13-tests-dev
ebc4742
microdroid: Add prop to wait for /data/tombstones
by Inseob Kim
· 13 days ago
13fcd73
Add EGL blobcache multifile properties
by Cody Northrop
· 13 days ago
59a30a8
credstore: Switch to new RKPD build flag.
by Tri Vo
· 13 days ago
80ea9f1
[automerger skipped] Drop back-compatibility for hiding ro.debuggable and ro.secure am: c6aec92b7c -s ours
by Alessandra Loro
· 14 days ago
3d8ae78
[automerger skipped] Disallow untrusted apps to read ro.debuggable and ro.secure am: 0d68fc3525 -s ours
by Alessandra Loro
· 14 days ago
9372026
Allow platform_app:systemui to write protolog file
by Hongwei Wang
· 3 weeks ago
0afe97a
Add build flag indicating that rkpd is enabled.
by Seth Moore
· 2 weeks ago
870af1f
Modify canhalconfigurator file context
by Philip Chen
· 2 weeks ago
c6aec92
Drop back-compatibility for hiding ro.debuggable and ro.secure
by Alessandra Loro
· 6 months ago
0d68fc3
Disallow untrusted apps to read ro.debuggable and ro.secure
by Alessandra Loro
· 7 months ago
eff7d75
Merge "runas_app: allow sigkill of untrusted_app"
by Jeffrey Vander Stoep
· 3 weeks ago
main-16k-with-phones
fa7661b
Merge "Add tombstone_transmit init property to microdroid"
by Inseob Kim
· 3 weeks ago
ef0328c
Add tombstone_transmit init property to microdroid
by Inseob Kim
· 3 weeks ago
5a6c0a7
runas_app: allow sigkill of untrusted_app
by Jeff Vander Stoep
· 3 weeks ago
cfdea5f
Blocks untrusted apps to access /dev/socket/mdnsd from U
by Yuyang Huang
· 3 weeks ago
e6945d0
Merge "Add remote_provisioning.hostname property"
by Seth Moore
· 3 weeks ago
7fc3a5f
Merge "credstore: Add missing permissions"
by Tri Vo
· 3 weeks ago
4836d9c
Merge "Allow remote provisioner to read rkpd enablement property"
by Seth Moore
· 3 weeks ago
9a3d794
Merge "Grant surfaceflinger and graphics allocator access to the secure heap"
by Jörg Wagner
· 3 weeks ago
213e1d8
Grant surfaceflinger and graphics allocator access to the secure heap
by Jörg Wagner
· 3 weeks ago
9bbc1c0
Explicitly list "pm.dexopt." sysprops.
by Jiakai Zhang
· 3 weeks ago
02ff4b0
Allow remote provisioner to read rkpd enablement property
by Seth Moore
· 3 weeks ago
347a7d5
Merge "Modify the automotive display service file context"
by Treehugger Robot
· 3 weeks ago
e7fc603
Merge "Add missing permissions for default bluetooth hal"
by Alistair Delva
· 3 weeks ago
7ed4c00
Add remote_provisioning.hostname property
by Seth Moore
· 3 weeks ago
9b69f0d
Merge "Allow mkfs/fsck for zoned block device"
by Treehugger Robot
· 3 weeks ago
2ff660e
Merge "Additional sepolicy rules for dex2oat"
by Orion Hodson
· 3 weeks ago
b5f16b2
Allow mkfs/fsck for zoned block device
by Jaegeuk Kim
· 3 weeks ago
99f8884
credstore: Add missing permissions
by Tri Vo
· 3 weeks ago
b8194ca
Merge "Update SEPolicy for Tetheroffload AIDL"
by Lorenzo Colitti
· 3 weeks ago
7789460
Allow artd to create dirs and files for artifacts before restorecon.
by Jiakai Zhang
· 3 weeks ago
c09e7e4
Additional sepolicy rules for dex2oat
by Orion Hodson
· 3 weeks ago
cc39bf7
Merge "Allow all system properties with the "pm.dexopt." prefix."
by Treehugger Robot
· 3 weeks ago
cda1366
Allow all system properties with the "pm.dexopt." prefix.
by Jiakai Zhang
· 3 weeks ago
edf5420
Modify the automotive display service file context
by Changyeon Jo
· 4 weeks ago
fa767b0
Merge "dontaudit crosvm reading VM's pipe"
by Treehugger Robot
· 4 weeks ago
9a63dcb
Merge "Add rkpdapp access to remote_prov_prop"
by Tri Vo
· 4 weeks ago
28e9b97
Merge "virtualizationservice: Allow checking permissions"
by David Brazdil
· 4 weeks ago
c8882d3
Merge "refactor: get_prop(bpfdomain, bpf_progs_loaded_prop)"
by Treehugger Robot
· 4 weeks ago
bae423e
Merge "Allow files to be created /metadata/ota"
by Akilesh Kailash
· 4 weeks ago
42798af
dontaudit crosvm reading VM's pipe
by Inseob Kim
· 4 weeks ago
ccf9164
virtualizationservice: Allow checking permissions
by David Brazdil
· 4 weeks ago
9ff3423
Add missing permissions for default bluetooth hal
by Henri Chataing
· 5 weeks ago
7b9b6a0
Add rkpdapp access to remote_prov_prop
by Tri Vo
· 4 weeks ago
3445819
Add IRadioSatellite context
by Thomas Nguyen
· 9 weeks ago
98e20da
Merge "HDMI: Refactor HDMI packages"
by Nathalie Le Clair
· 4 weeks ago
460c2ac
Merge "suspend: Allow access to /sys/power/wake_[un]lock"
by Kalesh Singh
· 4 weeks ago
c5b9146
Suppress harmless denial
by Alan Stokes
· 5 weeks ago
d03656b
Merge "Grant SIGTERM and SIGKILL to dumpstate on incident"
by Thiébaud Weksteen
· 4 weeks ago
8c544a4
Merge "Merge TQ1A.230105.002 to aosp-master - DO NOT MERGE"
by Bill Yi
· 5 weeks ago
2cfd7d5
Merge "Start using virtmgr for running VMs"
by David Brazdil
· 5 weeks ago
15ee6d1
Merge TQ1A.230105.002 to aosp-master - DO NOT MERGE
by Bill Yi
· 5 weeks ago
60f4a34
refactor: get_prop(bpfdomain, bpf_progs_loaded_prop)
by Maciej Żenczykowski
· 5 weeks ago
992245d
Allow MM to open/syncfs/close encryptedstore dir
by Shikha Panwar
· 5 weeks ago
Next »