Create non-superuser role

We need to perform all RLS interactions through a non-superuser role so that RLS filters data.

We need to confirm the roles of access used in all environments. Development environment appears to use superuser.

SaaS is not a superuser.

Edited by Alex Pooley