1. e89d910 sepolicy: recovery: Fix the volume manager blkid.tab denial by Adrian DC · 8 years ago
  2. 2b04642 sepolicy: recovery: Allow reading proc_filesystems by Michael Bestas · 6 years ago
  3. f51b60c sepolicy: recovery: Add policy for volume manager by Alessandro Astone · 6 years ago
  4. 158f077 sepolicy: New type sdcard_posix for labeled filesystems by Tom Marshall · 10 years ago
  5. bd85ca1 lineage: Introduce a new flag to exclude fuseblk sepolicy by theimpulson · 4 years, 9 months ago
  6. 9a42ed5 exynos: Allow livedisplay to write to /data/vendor/display by Danny Wood · 4 years, 9 months ago
  7. 6d42fe1 exynos: Add hal_lineage_livedisplay policy by Andreas Schneider · 4 years, 10 months ago
  8. ff91532 legacy-common: Simplify legacy camera HAL1 rules by Alessandro Astone · 4 years, 10 months ago
  9. b542aee sepolicy: Add rules required for TARGET_HAS_LEGACY_CAMERA_HAL1 by Bruno Martins · 4 years, 10 months ago
  10. 0a1291e sepolicy: Nuke sdfat from genfs by Erfan Abdi · 4 years, 10 months ago
  11. 02de8d7 gallery_app: Allow binder call with gpuservice by PIPIPIG233666 · 4 years, 10 months ago
  12. 8e2091f snap_app: Allow binder call with gpuservice by PIPIPIG233666 · 5 years ago
  13. 6f988f2 sepolicy: Label ro.telephony.use_old_mnc_mcc_format by LuK1337 · 5 years ago
  14. e4b006b Move lineage framework service declarations to private by dianlujitao · 5 years ago
  15. 070e37e sepolicy: vendor: Label CryptfsHW HIDL HAL by Artem Borisov · 5 years ago
  16. 1f11b66 Remove Style API related rules by Bruno Martins · 5 years ago
  17. ccc533f sepolicy: Label and address Trust's system variant denials by theimpulson · 5 years ago
  18. cfac4c9 sepolicy: Label and address denials of livedisplay's system variant by theimpulson · 5 years ago
  19. 8ca697b sepolicy: Move hal_lineage_livedisplay_sysfs rule to proper location by Rashed Abdel-Tawab · 5 years ago
  20. 521a64f sepolicy: allow sysfs livedisplay hal read privs to sysfs_graphics dirs by Dan Pasanen · 5 years ago
  21. 09ce66f sepolicy: Allow Snap to execute bcc by LuK1337 · 5 years ago
  22. 4ab5398 Add adb_root rules by Luca Stefani · 5 years ago
  23. a3f0aa1 Kill su and sudaemon by Luca Stefani · 5 years ago
  24. 5ec4de4 sepolicy: qcom: RIP legacy by LuK1337 · 5 years ago
  25. b4506f9 Kill sysinit by Luca Stefani · 5 years ago
  26. 6357883 sepolicy: Make recovery permissive by Luca Stefani · 5 years ago
  27. 67b6293 sepolicy: vendor: Migrate to power 1.2 by Davide Garberi · 5 years ago
  28. aad9035 sepolicy: Allow uncrypt to open OTA package as rw by Luca Stefani · 6 years ago
  29. fbb21ce lineage: Label our legacy Wi-Fi service by Bruno Martins · 5 years ago
  30. 85711a4 sepolicy: Drop fsck.exfat label by LuK1337 · 5 years ago
  31. 2312169 sepolicy: Mark mkfs and sysinit as system_file_type by LuK1337 · 5 years ago
  32. 0320541 sepolicy: Actually remove sepolicy for lineagehw by Bruno Martins · 5 years ago
  33. e54e2dd sepolicy: Remove sepolicy for lineagehw by Paul Keith · 6 years ago
  34. a09f4a8 sepolicy: Add hal_lineage_fod domain by LuK1337 · 6 years ago
  35. 7125675 lineage: Guard neverallowed policy for system_file with userdebug/eng by Nolen Johnson · 5 years ago
  36. ac26bd2 sepolicy: Add hal_lineage_camera_motor domain by LuK1337 · 5 years ago
  37. 00b3ad1 sepolicy: qcom: Label /d/rpmh by LuK1337 · 5 years ago
  38. f3ffbac sepolicy: Dontaudit sysinit by Jan Altensen · 5 years ago
  39. 4015af6 sepolicy: Break livedisplay hal policy into impl independent ones by dianlujitao · 6 years ago
  40. 6fd87ce sepolicy: qcom: Rename common to vendor to avoid confusion by dianlujitao · 6 years ago
  41. 5fa3bba sepolicy: Move power hal service label to dynamic by dianlujitao · 6 years ago
  42. cd8e8d2 sepolicy: Move touch hal policy to dynamic by dianlujitao · 6 years ago
  43. 627e634 sepolicy: Move livedisplay hal policy to dynamic by dianlujitao · 6 years ago
  44. 370b40b sepolicy: Dynamically build trust policy into system/vendor by dianlujitao · 6 years ago
  45. 71566b5 Revert "sepol: Label vendor.qcom.bluetooth.soc" by Atman · 6 years ago
  46. c249d09 sepol: Label vendor.qcom.bluetooth.soc by Rashed Abdel-Tawab · 6 years ago
  47. 1e69dc3 qcom: Extend untrusted_app access to battery/power supply sysfs by Michael Bestas · 6 years ago
  48. 0a5dfb2 sepolicy: allow recovery to setenforce by Alessandro Astone · 6 years ago
  49. 4cd1a2f sepolicy: recovery: allow reading fbe key version by Alessandro Astone · 6 years ago
  50. b0b4727 sepolicy: recovery: allow mounting of usb storage by Alessandro Astone · 6 years ago
  51. cc71484 sepolicy: recovery: allow recovery to read battery info by Alessandro Astone · 6 years ago
  52. d3941b0 sepolicy: recovery: Allow setting sys.usb.config by Michael Bestas · 6 years ago
  53. 7c07f0e sepolicy: recovery: Allow volume manager write to /sys/*/uevent by Michael Bestas · 6 years ago
  54. 340f8b9 sepolicy: recovery: Add policy for /dev/block/volmgr by Michael Bestas · 6 years ago
  55. 5e9a260 sepolicy: recovery: Fix the volume manager blkid.tab denial by Adrian DC · 8 years ago
  56. 6b14545 sepolicy: recovery: Allow reading proc_filesystems by Michael Bestas · 6 years ago
  57. a816a39 sepolicy: recovery: Add policy for volume manager by Alessandro Astone · 6 years ago
  58. b05e6a9 Allow Gallery to access system_app_data_file by dianlujitao · 6 years ago
  59. 351eedd sepolicy: Move superuser policy to private by dianlujitao · 6 years ago
  60. 72c407d common: Restrict HAL permissions to server side by dianlujitao · 6 years ago
  61. 78fce70 common: Mark platform_app as hal_lineage_livedisplay client by dianlujitao · 6 years ago
  62. a21eabf common: Label livedisplay 2.0 sysfs service by Paul Keith · 6 years ago
  63. 16c5b62 Remove minivold rules by Michael Bestas · 6 years ago
  64. f982155 Move snap/gallery definitions back to private by Michael Bestas · 6 years ago
  65. 6c19eed Clean-up recovery rules a bit by Luca Stefani · 6 years ago
  66. 7e67a4b Label adb.network.port as system_prop by Michael Bestas · 6 years ago
  67. 3937322 Make backuptool permissive only in non user builds by Luca Stefani · 6 years ago
  68. 3f58c82 Make sysinit permissive by Luca Stefani · 6 years ago
  69. c0eb879 lineage: Use set_prop() macro for setting adb tcp property by LuK1337 · 6 years ago
  70. ff9271d Snap and gallery require to run vendor code by Luca Stefani · 6 years ago
  71. da24d05 Remove not allowed rule by Luca Stefani · 6 years ago
  72. de42705 Revert "common: Add sf_lcd_density_prop type and labelled props" by dianlujitao · 6 years ago
  73. b986852 qcom: Remove power HAL 1.0 label by Michael Bestas · 6 years ago
  74. c8ceb6f sepolicies: add Trust hal by Joey · 6 years ago
  75. 701b30d common: Migrate to livedisplay 2.0 by Bruno Martins · 6 years ago
  76. 1c44e50 common: Add vendor.lineage.touch rules by Michael Bestas · 6 years ago
  77. c72a806 lineage: Rewrite Lineage Power HAL rules by Bruno Martins · 6 years ago
  78. 87d305d lineage: Properly write rules for Lineage LiveDisplay as a HAL by Bruno Martins · 6 years ago
  79. e6c3ce0 sepolicy: Allow recovery update_engine to setexec backuptool by Rashed Abdel-Tawab · 6 years ago
  80. 0211a9c sepolicy: Allow Settings to read ro.vendor.build.security_patch by Rashed Abdel-Tawab · 6 years ago
  81. 80e3105 common: Improve label of I/O sched tuning nodes by Nico · 6 years ago
  82. 8df8725 lineage: Address perf HAL denial with boost enabled by dianlujitao · 6 years ago
  83. aaad39f Allow LiveDisplay to access vendor display property by dianlujitao · 6 years ago
  84. 17ee363 common: Allow init to relabel I/O sched tuning nodes by dianlujitao · 6 years ago
  85. dd4ff84 common: Label and allow access over LiveDisplay sysfs nodes by Bruno Martins · 6 years ago
  86. 55699af common: Expand labeling of sysfs_vibrator nodes using genfscon by Kevin F. Haggerty · 6 years ago
  87. 618adbf Make A/B backuptool permissive by Luca Stefani · 6 years ago
  88. 75ac3aa selinux: add domain for Gallery by codeworkx · 6 years ago
  89. 8857acd move snap_app type definition to public by jrior001 · 6 years ago
  90. 037f27a selinux: add domain for snap by codeworkx · 7 years ago
  91. 837e029 common: Label and allow init to write to I/O sched tuning nodes by Kevin F. Haggerty · 6 years ago
  92. 75c6cf9 common: Allow adbd to set a system_prop by Kevin F. Haggerty · 6 years ago
  93. a60a7e7 Label lineage.service.adb.root as system prop by Luca Stefani · 6 years ago
  94. 0c74f7b common: Label common basic USB HAL by Bruno Martins · 6 years ago
  95. a85377e sepolicy: Update to match new qcom sepolicy by Rashed Abdel-Tawab · 6 years ago
  96. 31b0919 sepol: Remove recovery access to vold_socket by Rashed Abdel-Tawab · 6 years ago
  97. aafd2bf sepol: Remove exfat context and set sdFAT to exFAT by Rashed Abdel-Tawab · 6 years ago
  98. f1ad321 sepolicy: recovery: Allow (re)mounting system by Paul Keith · 6 years ago
  99. f126e29 Make fuseblk use vfat context by Luca Stefani · 6 years ago
  100. 65ae242 Revert "sepolicy: qcom: Allow nfc to read and execute files in /vendor on full treble" by LuK1337 · 7 years ago