Comment on security add-trusted-cert asks password twice in some cases: The authorization was denied since no user interaction was possible I assume it is just a matter of configuring a proper rule in the authorization db by exporting/importing plist. Allowing all users to access keychain works for my CI use case. Code Signing Entitlements Nov ’21