Also add , generate seperate api toeken for user to call you backend API workflow.
you can generate a API token specificly for each user by usisng login action in backend api , this will return a token whcih is specific for that user.