Following on the previous idea about data actions hierarchical management, here is another idea for securing the data actions using roles i.e. business user with different roles see data actions as per there roles when secured. This could be something like if not configured will mean the data action is open and available to all. Only apply security when configured for the data action.