Authentication to Aurora’s API is granted through API keys (also known as “bearer tokens”). An Admin user for your tenant can create, retrieve, and delete the tokens using the API tokens screen in Aurora. For more details, see the Authentication section in Aurora API docs.
If necessary, you can also rotate your API token by creating a new token and setting an expiration period for the original one.