I do not disagree with that and it is a perfectly valid stance. The intention was to attempt at more fine grained RBAC for service accounts rather than just granting them all Admin access. However as you point out such a model may not have received enough scrutiny as it is currently not implemented that way in the reference implementation.
I am perfectly fine with granting the service accounts the Admin role for now and saving fine grained RBAC for service accounts for later.
I do not disagree with that and it is a perfectly valid stance. The intention was to attempt at more fine grained RBAC for service accounts rather than just granting them all Admin access. However as you point out such a model may not have received enough scrutiny as it is currently not implemented that way in the reference implementation.
I am perfectly fine with granting the service accounts the Admin role for now and saving fine grained RBAC for service accounts for later.