How do you think the permission function in the workflow process?

Like people have different role in a group. Do you think it is important to make sure only the right people can see your workflows, and require approvals at any point in the process?
