Hi there
if we set super user to all permissions except "only edit own"
and registered user to say "only edit own" but nothing else.
If a super user logs into the back end and clicks records - they will see all records
BUT if that person happens to be superuser AND registered then they can no longer view all records
so when you log in as a joomla user - it's the lowest permission/access level that dictates your access not the highest - which is going to be a problem for us when users are in more than one group.
I am experiencing the exact same issue. In addition, I have user whose joomla user account keeps adding her to the "registered" user group in addition to the "administrator" group that she is already a part of. I have never seen someone added to a user group without explicit action being taken through user manager or a component. These two items are conspiring to having to require her to remove herself from the registered user group so that she can see records within DT. Any info on resolution of this issue is greatly appreciated.
I can provide site access to devs if that is helpful.
I think the whole user permissions situation needs a really good check by Admin.
I can confirm the behavior as stated (reversed hierarchy) and confirm that this is not consistent with other extensions we use on our site.
I have also noticed that for us the permissions just dont work. E.G. you can set up a specific user or a Group to ONLY have the right to manage records or download a CSV. Yet they end up with full rights to add/delete/manage events plus others (setup pay options etc)!