I think I found the answer from themattharris:

> How do we know what the access level of a user token is?

This is a great idea and one the team has discussed. What we are
to do is add a new header to authentication requests that will tell
you the access level of the token you authenticated with. We’re
working on this now and hope to have it released in the next few

