Self-hosted, single-org & OIDC: default permissions?

I have a self-hosted setup with OIDC that’s configured with GRIST_SINGLE_ORG.

How can i give all users who authenticate themselves a default permission/role?

Right now, when they authenticate they cannot even see the home page.