Running podman as an unprivileged user (rootless), you want to allow users to run any container image on any container registry as non-root if the user chooses. Normal users don't usually get to have free reign over system resources the way containers demand, so by default, root or sudo permissions...
