Does anybody know how user can restore his access rights after they were granted to another person?
It sounds strange. Imagine such situation - one malicious application received access to the user’s POD and modify all access rights of folder (root folder) to another webId. After that the owner can not restore his access rights to the POD folder.
It look likes a weakness because the Control access rights does not guaranted to the POD’s owner.
I have prepared screencast of that incedent

I have a similar concern.
Owner should not be changeable by an app.