--- og_access_roles.module	Sun Jan 17 17:19:06 2010
+++ og_access_roles.module.new	Mon Jul 12 09:28:16 2010
@@ -43,6 +43,13 @@ function og_access_roles_settings() {
 }
 
 /**
+ * Implementation of hook_perm().
+ */
+function og_access_roles_perm() {
+  return array('Access og access roles');
+  }
+
+/**
  * Implementation of hook_form_alter().
  */
 function og_access_roles_form_alter(&$form, &$form_state, $form_id) {
@@ -59,7 +66,7 @@ function og_access_roles_form_alter(&$fo
       $roles = user_roles();
       $role_choices = array_intersect_key($roles, array_filter(variable_get('og_access_roles_choices', array())));
 
-      if (!empty($role_choices)) {
+      if ((!empty($role_choices)) && (user_access('Access og access roles'))) {
         $form['og_nodeapi']['og_access_roles'] = array(
           '#type' => 'checkboxes',
           '#title' => t('Make visible to all users in the following roles'),
