1. 07e27d3 Let Updater set persist.vendor.recovery_update prop by Bruno Martins · 4 years ago
  2. 4355a20 Updater: Allow binder calls to gpu service by Bruno Martins · 4 years ago
  3. 5569732 common: Remove deprecated init policy by Han Wang · 4 years, 1 month ago
  4. fe0dad6 sepolicy: Switch to BOARD_VENDOR_SEPOLICY_DIRS by Aayush Gupta · 4 years, 1 month ago
  5. 9c84679 Remove adb.network.port label by Bruno Martins · 4 years, 1 month ago
  6. 1043bfd updater_app: Allow updater_app domain to access the network by Eamon Powell · 4 years, 2 months ago
  7. 2fe3cf3 common: Switch Updater app to its own SELinux domain by LuK1337 · 4 years, 2 months ago
  8. 1b7f792 qcom: Label new AIDL power HAL by Michael Bestas · 4 years, 2 months ago
  9. 7936c51 qcom: Align types with QCOM upstream using BOARD_SEPOLICY_M4DEFS by LuK1337 · 4 years, 2 months ago
  10. e97903e common: Make it compile by LuK1337 · 4 years, 2 months ago
  11. ef0b09b common: Remove mediacodec_service related rules by LuK1337 · 4 years, 2 months ago
  12. ebfe47b common: Remove no longer needed uncrypt rule by LuK1337 · 4 years, 5 months ago
  13. 27e54f2 common: Move aux camera whitelist prop to vendor by dianlujitao · 4 years, 6 months ago
  14. c7e9df9 lineage: sepolicy: Label legacy GNSS service by Arne Coucheron · 4 years, 6 months ago
  15. f96e6b6 common: Expose aux camera {black,white}list props by dianlujitao · 4 years, 7 months ago
  16. e2d01a8 Revert "Label lineage.service.adb.root as system prop" by Bruno Martins · 4 years, 6 months ago
  17. c546045 qcom: Add legacymm livedisplay sepolicy by Danny Baumann · 5 years ago
  18. 8f5528a sepolicy: add hal_lineage_powershare by Linux4 · 4 years, 7 months ago
  19. 98820fe sepolicy: qcom: Label custom FM Radio property by Michael Bestas · 4 years, 7 months ago
  20. 48c5fae sepolicy: allow adbroot service to change adb root status by Alessandro Astone · 4 years, 8 months ago
  21. 3abf91f Revert "common: Allow adbd to set a system_prop" by Alessandro Astone · 4 years, 8 months ago
  22. 0ead839 lineage: Assign bash the same label as the default shell by Bruno Martins · 5 years ago
  23. a771885 sepolicy: recovery: fix neverallows by Alessandro · 4 years, 7 months ago
  24. 177e4ad sepolicy: recovery: allow reading fbe key version by Alessandro · 4 years, 7 months ago
  25. b9f79b3 sepolicy: recovery: allow mounting of internal storage by Alessandro · 4 years, 7 months ago
  26. fb92a02 sepolicy: recovery: allow mounting of usb storage by Alessandro Astone · 6 years ago
  27. 4368f9b sepolicy: recovery: Allow volume manager write to /sys/*/uevent by Michael Bestas · 6 years ago
  28. 31b9bc5 sepolicy: recovery: Add policy for /dev/block/volmgr by Michael Bestas · 6 years ago
  29. e89d910 sepolicy: recovery: Fix the volume manager blkid.tab denial by Adrian DC · 8 years ago
  30. 2b04642 sepolicy: recovery: Allow reading proc_filesystems by Michael Bestas · 6 years ago
  31. f51b60c sepolicy: recovery: Add policy for volume manager by Alessandro Astone · 6 years ago
  32. 158f077 sepolicy: New type sdcard_posix for labeled filesystems by Tom Marshall · 10 years ago
  33. bd85ca1 lineage: Introduce a new flag to exclude fuseblk sepolicy by theimpulson · 4 years, 8 months ago
  34. 9a42ed5 exynos: Allow livedisplay to write to /data/vendor/display by Danny Wood · 4 years, 8 months ago
  35. 6d42fe1 exynos: Add hal_lineage_livedisplay policy by Andreas Schneider · 4 years, 9 months ago
  36. ff91532 legacy-common: Simplify legacy camera HAL1 rules by Alessandro Astone · 4 years, 9 months ago
  37. b542aee sepolicy: Add rules required for TARGET_HAS_LEGACY_CAMERA_HAL1 by Bruno Martins · 4 years, 9 months ago
  38. 0a1291e sepolicy: Nuke sdfat from genfs by Erfan Abdi · 4 years, 9 months ago
  39. 02de8d7 gallery_app: Allow binder call with gpuservice by PIPIPIG233666 · 4 years, 9 months ago
  40. 8e2091f snap_app: Allow binder call with gpuservice by PIPIPIG233666 · 5 years ago
  41. 6f988f2 sepolicy: Label ro.telephony.use_old_mnc_mcc_format by LuK1337 · 4 years, 10 months ago
  42. e4b006b Move lineage framework service declarations to private by dianlujitao · 5 years ago
  43. 070e37e sepolicy: vendor: Label CryptfsHW HIDL HAL by Artem Borisov · 5 years ago
  44. 1f11b66 Remove Style API related rules by Bruno Martins · 5 years ago
  45. ccc533f sepolicy: Label and address Trust's system variant denials by theimpulson · 5 years ago
  46. cfac4c9 sepolicy: Label and address denials of livedisplay's system variant by theimpulson · 5 years ago
  47. 8ca697b sepolicy: Move hal_lineage_livedisplay_sysfs rule to proper location by Rashed Abdel-Tawab · 5 years ago
  48. 521a64f sepolicy: allow sysfs livedisplay hal read privs to sysfs_graphics dirs by Dan Pasanen · 5 years ago
  49. 09ce66f sepolicy: Allow Snap to execute bcc by LuK1337 · 5 years ago
  50. 4ab5398 Add adb_root rules by Luca Stefani · 5 years ago
  51. a3f0aa1 Kill su and sudaemon by Luca Stefani · 5 years ago
  52. 5ec4de4 sepolicy: qcom: RIP legacy by LuK1337 · 5 years ago
  53. b4506f9 Kill sysinit by Luca Stefani · 5 years ago
  54. 6357883 sepolicy: Make recovery permissive by Luca Stefani · 5 years ago
  55. 67b6293 sepolicy: vendor: Migrate to power 1.2 by Davide Garberi · 5 years ago
  56. aad9035 sepolicy: Allow uncrypt to open OTA package as rw by Luca Stefani · 6 years ago
  57. fbb21ce lineage: Label our legacy Wi-Fi service by Bruno Martins · 5 years ago
  58. 85711a4 sepolicy: Drop fsck.exfat label by LuK1337 · 5 years ago
  59. 2312169 sepolicy: Mark mkfs and sysinit as system_file_type by LuK1337 · 5 years ago
  60. 0320541 sepolicy: Actually remove sepolicy for lineagehw by Bruno Martins · 5 years ago
  61. e54e2dd sepolicy: Remove sepolicy for lineagehw by Paul Keith · 6 years ago
  62. a09f4a8 sepolicy: Add hal_lineage_fod domain by LuK1337 · 5 years ago
  63. 7125675 lineage: Guard neverallowed policy for system_file with userdebug/eng by Nolen Johnson · 5 years ago
  64. ac26bd2 sepolicy: Add hal_lineage_camera_motor domain by LuK1337 · 5 years ago
  65. 00b3ad1 sepolicy: qcom: Label /d/rpmh by LuK1337 · 5 years ago
  66. f3ffbac sepolicy: Dontaudit sysinit by Jan Altensen · 5 years ago
  67. 4015af6 sepolicy: Break livedisplay hal policy into impl independent ones by dianlujitao · 6 years ago
  68. 6fd87ce sepolicy: qcom: Rename common to vendor to avoid confusion by dianlujitao · 6 years ago
  69. 5fa3bba sepolicy: Move power hal service label to dynamic by dianlujitao · 6 years ago
  70. cd8e8d2 sepolicy: Move touch hal policy to dynamic by dianlujitao · 6 years ago
  71. 627e634 sepolicy: Move livedisplay hal policy to dynamic by dianlujitao · 6 years ago
  72. 370b40b sepolicy: Dynamically build trust policy into system/vendor by dianlujitao · 6 years ago
  73. 71566b5 Revert "sepol: Label vendor.qcom.bluetooth.soc" by Atman · 5 years ago
  74. c249d09 sepol: Label vendor.qcom.bluetooth.soc by Rashed Abdel-Tawab · 5 years ago
  75. 1e69dc3 qcom: Extend untrusted_app access to battery/power supply sysfs by Michael Bestas · 6 years ago
  76. 0a5dfb2 sepolicy: allow recovery to setenforce by Alessandro Astone · 6 years ago
  77. 4cd1a2f sepolicy: recovery: allow reading fbe key version by Alessandro Astone · 6 years ago
  78. b0b4727 sepolicy: recovery: allow mounting of usb storage by Alessandro Astone · 6 years ago
  79. cc71484 sepolicy: recovery: allow recovery to read battery info by Alessandro Astone · 6 years ago
  80. d3941b0 sepolicy: recovery: Allow setting sys.usb.config by Michael Bestas · 6 years ago
  81. 7c07f0e sepolicy: recovery: Allow volume manager write to /sys/*/uevent by Michael Bestas · 6 years ago
  82. 340f8b9 sepolicy: recovery: Add policy for /dev/block/volmgr by Michael Bestas · 6 years ago
  83. 5e9a260 sepolicy: recovery: Fix the volume manager blkid.tab denial by Adrian DC · 8 years ago
  84. 6b14545 sepolicy: recovery: Allow reading proc_filesystems by Michael Bestas · 6 years ago
  85. a816a39 sepolicy: recovery: Add policy for volume manager by Alessandro Astone · 6 years ago
  86. b05e6a9 Allow Gallery to access system_app_data_file by dianlujitao · 6 years ago
  87. 351eedd sepolicy: Move superuser policy to private by dianlujitao · 6 years ago
  88. 72c407d common: Restrict HAL permissions to server side by dianlujitao · 6 years ago
  89. 78fce70 common: Mark platform_app as hal_lineage_livedisplay client by dianlujitao · 6 years ago
  90. a21eabf common: Label livedisplay 2.0 sysfs service by Paul Keith · 6 years ago
  91. 16c5b62 Remove minivold rules by Michael Bestas · 6 years ago
  92. f982155 Move snap/gallery definitions back to private by Michael Bestas · 6 years ago
  93. 6c19eed Clean-up recovery rules a bit by Luca Stefani · 6 years ago
  94. 7e67a4b Label adb.network.port as system_prop by Michael Bestas · 6 years ago
  95. 3937322 Make backuptool permissive only in non user builds by Luca Stefani · 6 years ago
  96. 3f58c82 Make sysinit permissive by Luca Stefani · 6 years ago
  97. c0eb879 lineage: Use set_prop() macro for setting adb tcp property by LuK1337 · 6 years ago
  98. ff9271d Snap and gallery require to run vendor code by Luca Stefani · 6 years ago
  99. da24d05 Remove not allowed rule by Luca Stefani · 6 years ago
  100. de42705 Revert "common: Add sf_lcd_density_prop type and labelled props" by dianlujitao · 6 years ago