My bad, didn’t notice that it’s posted under swos…
I don’t use swos myself, so won’t be of much help.
The documentation https://wiki.mikrotik.com/wiki/SwOS/CSS106 doesn’t mention any order or flow diagram (@Mikrotik that’s a must! It’s available for ROS).
The doc does mention what Access Control List is/provides:
Ingress ACL tables
Up to 32 ACL rules (limited by SwOS)
Classification based on ports, L2, L3, L4 protocol header fields
ACL actions include filtering, forwarding and modifying of the protocol header fields
So it could be that ACL is taking precedence over forwarding config