Clients need to know who can do what in an application. When someone leaves a company or joins it or roles change, application permissions get lost in the shuffle.
They aren't visible, so they aren't noticed.
How can we best represent this to our users so they can see and take action on bad permissions or ACLs?
Is it better to show "Who can do What" or "What, and Who can do it"?