Numerous programs access protected certificate-related reg keys

I’ve noticed that many programs (e.g. TweetDeck) attempt to ‘modify a protected registry key’, that being keys such as:
\HKLM\Software\Policies\Microsoft\SystemCertificates\Root
\HKUS\S-1-5…\Software\Policies\SystemCertificates\TrustedPeople
\HKLM\Software\Policies\Microsoft\SystemCertificates\TrustedPeople
\HKLM\Software\Policies\Microsoft\SystemCertificates\trust
\HKLM\Software\Policies\Microsoft\SystemCertificates\CA
\HKLM\Software\Policies\Microsoft\SystemCertificates\Disallowed

I’m not quite sure what to do about this… I feel a bit cautious about allowing these. Thoughts?

Cheers.