In the [Polkit policy](https://github.com/USBGuard/usbguard/blob/master/src/DBus/org.usbguard1.policy) the read-only operations are guarded by `auth_self_keep` authorization requirements. Is this adding any security / was this a conscious decision or would it be also okay to grant `yes` for locally logged in sessions?