Each route group now requires view_any_{resource} permission. Without the permission, Spatie returns 403 Forbidden. VIKON updates and integration-credentials remain unprotected.