Can you elaborate a bit on the authentication scheme used for the keychain prompts? For example, I can edit my `/etc/pam.d/sudo` file to use Touch ID for sudo. Would be great to do so for this.