As described here, the "policy" key for entity permissions is currently supported for the "read" permission type. As part of this item, we would like to add support for create, update, and delete operations as well.