User Groups are passed through both release and rollout brick. Please refer to my previous update which actually covers this topic:
https://help.gooddata.com/doc/growth/en/workspace-and-user-administration/managing-workspaces-via-life-cycle-management/bricks/release-brick/#R[…]ds
In a segment’s master workspace, dashboards can be private or shared with all or some
users/
user groups.
The sharing permissions are propagated from the master workspace to the client workspaces in the following way:
• Dashboards set as private in the master workspace remain private in the client workspaces.
• Dashboards shared with all users in the master workspace become dashboards shared with all users in the client workspaces.
• Dashboards shared with some users/user groups in the master workspace become dashboards shared with some user groups in the client workspaces.
Only user group permissions on the master workspace are preserved during rollout. Because the permission sharing a dashboard in the master workspace with some users is not preserved during rollout, we recommend that the master workspace contain only the dashboards that can be safely shared with all users in the client workspaces. If access is given to a user directly on the client workspace, the LCM will not remove that permission.