I’m guessing that you forgot to attach the resource group to a user group that the current user is not a member of, by creating another Resource Group Access ACL entry. That’s what “protects” the resources. Just putting them in a resource group does not protect them at all.