I think it would be helpful to create multiple API tokens and to be able to revoke them individual. In the current situation you need to regenerate the api token and change them on every active system.