1) User's should be given whatever permissions they need in Dataverse to work with the data in the app. If they will be editing data then they need both Read and Write permissions. If they will only be viewing data then they only need Read.
2) Power Apps isn't a Security layer. User's will have whatever permission to the data that they are given in Dataverse, no more and no less. You can hide certain screens from users which may simulate security but the user's will still need permission to the data source.
Was this reply helpful?YesNo
Under review
Thank you for your reply! To ensure a great experience for everyone, your content is awaiting approval by our Community Managers. Please check back later.