Hi everyone,
-
We created a set of custom screens under a new workspace/folder (
SA*screens). -
In our development tenant, we configured Access Rights by Screen (SM201020) such that only our dedicated custom roles have access (
Delete), and all other roles are set toRevoked -
In the Customization Project, the screens were included under Access Rights.
The Issue:
-
When deploying and publishing the package to existing test instances (where previous versions had been published earlier), the permissions work as expected—only our custom roles have access.
-
However, when installing this package on a fresh, virgin instance/tenant for a customer, all roles in the system end up with full (
Delete) access to our custom screens instead of having them revoked.

Any guidance or best practices would be greatly appreciated!
Thank you