Users and roles are extremely confusing in NXT. The way they overlap with roles in DB View and their vague descriptions and categories makes most of the job of securing our database a shot in the dark. Even if it had the same permissions as DB View but with the NXT specific stuff added on that would be sufficient.
I'm having a difficult time discerning what Roles to assign. For instance, in database view, I have users who can modify an Appeal description, but were not able to in NXT. It took me over an hour to figure it out (that was yesterday, and I couldn't figure out how I came up with the answer that it's in Fundraising Role). The Roles are confusing and vague.
If someone has "view" only rights should be just that "view only" and not have other rights. Also, if someone has rights to view lists, they should be able to view the list regardless of how it was created.
There a lot of rights that are connected to each other when they really shouldn't be (same is true in database view).