Currently, using the dynamic permissions feature, self-service actions will still appear in the UI. In case the user is not permitted, the run will be rejected only after sending the self-service action form.
As part of this item, we would like to support hiding/displaying self-service actions using the dynamic permissions policies.