Hi,
Currently, we use 2 types of goups:
- security-role: should be used for security. The "user" security-role enables users to login into the apps (explorer etc)
- assignment: Groups that should be used when a certain task can be claimed by a user from a candidate-group. These groups are also used in explorer webapp and REST-API when getting task-overview for a certain person.
This is indeed not documented explicitly anywhere, thanks for reporting, I'll look into it.