"Own vs. any" is enforced server-side, not just hidden in the UI
Roles and permissions are resolved from real records. Whether someone can edit their own task versus anyone's is checked on the server, every time, not assumed from what buttons happen to render.
- Every record-level scope re-derived from real data
- Hiding a button is never the actual security boundary