Understanding the keycloak authorization over a Resource with negative logic

Scenario 3:
In this scenario we have 2 users and 1 resource Flow1. We have created one positive logic policy for one of the user and negative logic policy for another user. All the 3 permissions are granted for positive logic policy and only read permission/scope is added for the negative logic policy. The result for evaluating the negative policy is denied for all the permissions.

Scenario 3 Evaluation results