Hello,
The supported way to delete Change Log Entry records is the Retention Policy, not a configuration package; the permission error is expected because RapidStart does not have the required indirect delete permission for this protected Base Application table, so adding another user permission set normally will not solve it. Enable the policy and let its automatically created job queue run outside working hours, confirm that the job queue user has SUPER or the required read/delete permissions, and review Retention Policy Log Entries for errors; the protected entries shown with NEVER DELETE will remain by design. Deleting one record per minute is not normal, so if the background job behaves the same, update the sandbox to the latest available version and raise a Microsoft support case with the retention-policy logs and telemetry; meanwhile, reduce Change Log growth by tracking only necessary tables/fields rather than All Fields.
Regards,
Oussama Sabbouh