That is one of the first things my boss asked me too, can i include a group? The code is very simple; as in it doesn't do anything fancy. It doesn't verify users or check them against anything. All it does is verifies that the username Hudson has for logged in matches up to one of the comma separated usernames in each promotion entity.
I may do some research on including more security options as I know my company would use it as well. I may check to see if I can include my code into the promoted builds plugin as well.
As for now, I've attached the HPI to this comment. If you have any questions, you can contact me directly using farcrats at gmail
I would like this to do something like the mock attached; whomever is given security access to this project utilizing the Run | Update project security, those persons are then options to have access to manually promote an individual promotion.
The users list would not be necessary when not manual.