allow uncrypt media_rw_data_file:dir r_dir_perms; allow uncrypt media_rw_data_file:file rw_file_perms; allow uncrypt self:capability { fowner sys_admin }; allow uncrypt ota_package_file:file rw_file_perms; allow uncrypt metadata_file:dir r_dir_perms;