Trying to design basic authentication/authorisation system for API

Thank you a lot for that feedback! Glad you grasped it!