1. 0ead839 lineage: Assign bash the same label as the default shell by Bruno Martins · 5 years ago
  2. a771885 sepolicy: recovery: fix neverallows by Alessandro · 4 years, 9 months ago
  3. 177e4ad sepolicy: recovery: allow reading fbe key version by Alessandro · 4 years, 9 months ago
  4. b9f79b3 sepolicy: recovery: allow mounting of internal storage by Alessandro · 4 years, 9 months ago
  5. fb92a02 sepolicy: recovery: allow mounting of usb storage by Alessandro Astone · 6 years ago
  6. 4368f9b sepolicy: recovery: Allow volume manager write to /sys/*/uevent by Michael Bestas · 6 years ago
  7. 31b9bc5 sepolicy: recovery: Add policy for /dev/block/volmgr by Michael Bestas · 6 years ago
  8. e89d910 sepolicy: recovery: Fix the volume manager blkid.tab denial by Adrian DC · 8 years ago
  9. 2b04642 sepolicy: recovery: Allow reading proc_filesystems by Michael Bestas · 6 years ago
  10. f51b60c sepolicy: recovery: Add policy for volume manager by Alessandro Astone · 6 years ago
  11. 158f077 sepolicy: New type sdcard_posix for labeled filesystems by Tom Marshall · 10 years ago
  12. bd85ca1 lineage: Introduce a new flag to exclude fuseblk sepolicy by theimpulson · 4 years, 9 months ago
  13. 9a42ed5 exynos: Allow livedisplay to write to /data/vendor/display by Danny Wood · 4 years, 10 months ago
  14. 6d42fe1 exynos: Add hal_lineage_livedisplay policy by Andreas Schneider · 4 years, 10 months ago
  15. ff91532 legacy-common: Simplify legacy camera HAL1 rules by Alessandro Astone · 4 years, 10 months ago
  16. b542aee sepolicy: Add rules required for TARGET_HAS_LEGACY_CAMERA_HAL1 by Bruno Martins · 4 years, 10 months ago
  17. 0a1291e sepolicy: Nuke sdfat from genfs by Erfan Abdi · 4 years, 10 months ago
  18. 02de8d7 gallery_app: Allow binder call with gpuservice by PIPIPIG233666 · 4 years, 10 months ago
  19. 8e2091f snap_app: Allow binder call with gpuservice by PIPIPIG233666 · 5 years ago
  20. 6f988f2 sepolicy: Label ro.telephony.use_old_mnc_mcc_format by LuK1337 · 5 years ago
  21. e4b006b Move lineage framework service declarations to private by dianlujitao · 5 years ago
  22. 070e37e sepolicy: vendor: Label CryptfsHW HIDL HAL by Artem Borisov · 5 years ago
  23. 1f11b66 Remove Style API related rules by Bruno Martins · 5 years ago
  24. ccc533f sepolicy: Label and address Trust's system variant denials by theimpulson · 5 years ago
  25. cfac4c9 sepolicy: Label and address denials of livedisplay's system variant by theimpulson · 5 years ago
  26. 8ca697b sepolicy: Move hal_lineage_livedisplay_sysfs rule to proper location by Rashed Abdel-Tawab · 5 years ago
  27. 521a64f sepolicy: allow sysfs livedisplay hal read privs to sysfs_graphics dirs by Dan Pasanen · 5 years ago
  28. 09ce66f sepolicy: Allow Snap to execute bcc by LuK1337 · 5 years ago
  29. 4ab5398 Add adb_root rules by Luca Stefani · 5 years ago
  30. a3f0aa1 Kill su and sudaemon by Luca Stefani · 5 years ago
  31. 5ec4de4 sepolicy: qcom: RIP legacy by LuK1337 · 5 years ago
  32. b4506f9 Kill sysinit by Luca Stefani · 5 years ago
  33. 6357883 sepolicy: Make recovery permissive by Luca Stefani · 5 years ago
  34. 67b6293 sepolicy: vendor: Migrate to power 1.2 by Davide Garberi · 5 years ago
  35. aad9035 sepolicy: Allow uncrypt to open OTA package as rw by Luca Stefani · 6 years ago
  36. fbb21ce lineage: Label our legacy Wi-Fi service by Bruno Martins · 5 years ago
  37. 85711a4 sepolicy: Drop fsck.exfat label by LuK1337 · 5 years ago
  38. 2312169 sepolicy: Mark mkfs and sysinit as system_file_type by LuK1337 · 5 years ago
  39. 0320541 sepolicy: Actually remove sepolicy for lineagehw by Bruno Martins · 5 years ago
  40. e54e2dd sepolicy: Remove sepolicy for lineagehw by Paul Keith · 6 years ago
  41. a09f4a8 sepolicy: Add hal_lineage_fod domain by LuK1337 · 6 years ago
  42. 7125675 lineage: Guard neverallowed policy for system_file with userdebug/eng by Nolen Johnson · 5 years ago
  43. ac26bd2 sepolicy: Add hal_lineage_camera_motor domain by LuK1337 · 5 years ago
  44. 00b3ad1 sepolicy: qcom: Label /d/rpmh by LuK1337 · 5 years ago
  45. f3ffbac sepolicy: Dontaudit sysinit by Jan Altensen · 5 years ago
  46. 4015af6 sepolicy: Break livedisplay hal policy into impl independent ones by dianlujitao · 6 years ago
  47. 6fd87ce sepolicy: qcom: Rename common to vendor to avoid confusion by dianlujitao · 6 years ago
  48. 5fa3bba sepolicy: Move power hal service label to dynamic by dianlujitao · 6 years ago
  49. cd8e8d2 sepolicy: Move touch hal policy to dynamic by dianlujitao · 6 years ago
  50. 627e634 sepolicy: Move livedisplay hal policy to dynamic by dianlujitao · 6 years ago
  51. 370b40b sepolicy: Dynamically build trust policy into system/vendor by dianlujitao · 6 years ago
  52. 71566b5 Revert "sepol: Label vendor.qcom.bluetooth.soc" by Atman · 6 years ago
  53. c249d09 sepol: Label vendor.qcom.bluetooth.soc by Rashed Abdel-Tawab · 6 years ago
  54. 1e69dc3 qcom: Extend untrusted_app access to battery/power supply sysfs by Michael Bestas · 6 years ago
  55. 0a5dfb2 sepolicy: allow recovery to setenforce by Alessandro Astone · 6 years ago
  56. 4cd1a2f sepolicy: recovery: allow reading fbe key version by Alessandro Astone · 6 years ago
  57. b0b4727 sepolicy: recovery: allow mounting of usb storage by Alessandro Astone · 6 years ago
  58. cc71484 sepolicy: recovery: allow recovery to read battery info by Alessandro Astone · 6 years ago
  59. d3941b0 sepolicy: recovery: Allow setting sys.usb.config by Michael Bestas · 6 years ago
  60. 7c07f0e sepolicy: recovery: Allow volume manager write to /sys/*/uevent by Michael Bestas · 6 years ago
  61. 340f8b9 sepolicy: recovery: Add policy for /dev/block/volmgr by Michael Bestas · 6 years ago
  62. 5e9a260 sepolicy: recovery: Fix the volume manager blkid.tab denial by Adrian DC · 8 years ago
  63. 6b14545 sepolicy: recovery: Allow reading proc_filesystems by Michael Bestas · 6 years ago
  64. a816a39 sepolicy: recovery: Add policy for volume manager by Alessandro Astone · 6 years ago
  65. b05e6a9 Allow Gallery to access system_app_data_file by dianlujitao · 6 years ago
  66. 351eedd sepolicy: Move superuser policy to private by dianlujitao · 6 years ago
  67. 72c407d common: Restrict HAL permissions to server side by dianlujitao · 6 years ago
  68. 78fce70 common: Mark platform_app as hal_lineage_livedisplay client by dianlujitao · 6 years ago
  69. a21eabf common: Label livedisplay 2.0 sysfs service by Paul Keith · 6 years ago
  70. 16c5b62 Remove minivold rules by Michael Bestas · 6 years ago
  71. f982155 Move snap/gallery definitions back to private by Michael Bestas · 6 years ago
  72. 6c19eed Clean-up recovery rules a bit by Luca Stefani · 6 years ago
  73. 7e67a4b Label adb.network.port as system_prop by Michael Bestas · 6 years ago
  74. 3937322 Make backuptool permissive only in non user builds by Luca Stefani · 6 years ago
  75. 3f58c82 Make sysinit permissive by Luca Stefani · 6 years ago
  76. c0eb879 lineage: Use set_prop() macro for setting adb tcp property by LuK1337 · 6 years ago
  77. ff9271d Snap and gallery require to run vendor code by Luca Stefani · 6 years ago
  78. da24d05 Remove not allowed rule by Luca Stefani · 6 years ago
  79. de42705 Revert "common: Add sf_lcd_density_prop type and labelled props" by dianlujitao · 6 years ago
  80. b986852 qcom: Remove power HAL 1.0 label by Michael Bestas · 6 years ago
  81. c8ceb6f sepolicies: add Trust hal by Joey · 6 years ago
  82. 701b30d common: Migrate to livedisplay 2.0 by Bruno Martins · 6 years ago
  83. 1c44e50 common: Add vendor.lineage.touch rules by Michael Bestas · 6 years ago
  84. c72a806 lineage: Rewrite Lineage Power HAL rules by Bruno Martins · 6 years ago
  85. 87d305d lineage: Properly write rules for Lineage LiveDisplay as a HAL by Bruno Martins · 6 years ago
  86. e6c3ce0 sepolicy: Allow recovery update_engine to setexec backuptool by Rashed Abdel-Tawab · 6 years ago
  87. 0211a9c sepolicy: Allow Settings to read ro.vendor.build.security_patch by Rashed Abdel-Tawab · 6 years ago
  88. 80e3105 common: Improve label of I/O sched tuning nodes by Nico · 6 years ago
  89. 8df8725 lineage: Address perf HAL denial with boost enabled by dianlujitao · 6 years ago
  90. aaad39f Allow LiveDisplay to access vendor display property by dianlujitao · 6 years ago
  91. 17ee363 common: Allow init to relabel I/O sched tuning nodes by dianlujitao · 6 years ago
  92. dd4ff84 common: Label and allow access over LiveDisplay sysfs nodes by Bruno Martins · 6 years ago
  93. 55699af common: Expand labeling of sysfs_vibrator nodes using genfscon by Kevin F. Haggerty · 6 years ago
  94. 618adbf Make A/B backuptool permissive by Luca Stefani · 6 years ago
  95. 75ac3aa selinux: add domain for Gallery by codeworkx · 6 years ago
  96. 8857acd move snap_app type definition to public by jrior001 · 6 years ago
  97. 037f27a selinux: add domain for snap by codeworkx · 7 years ago
  98. 837e029 common: Label and allow init to write to I/O sched tuning nodes by Kevin F. Haggerty · 6 years ago
  99. 75c6cf9 common: Allow adbd to set a system_prop by Kevin F. Haggerty · 6 years ago
  100. a60a7e7 Label lineage.service.adb.root as system prop by Luca Stefani · 6 years ago