Maybe there is a way to restrict some of the functions while allowing the others in the SELECT permission for the bucket?
I need SELECT permission for my 'avatars' bucket, to allow the users to upload and display their avatars, however, I would like to restrict the storage.from.list function, so that a random user would not be able to list all files in the bucket