For example, super admins who can see the secret keys, whereas others cannot.

Ideally, this would be possible via a "permission schema" where individual permissions could be selected for different roles.