A token lets Home Assistant or another system read the mirror's status and sensors, turn the screen on and off and set the brightness. It can't change anything else, and it isn't your admin password.
{% if new_token %}A token was created on {{ created }}. Home Assistant sends it as Authorization: Bearer <token>.
No token yet. Create one to connect Home Assistant.
{% endif %}
The status is at http://mirrordash.local/api/v1/status. The user guide has a ready Home Assistant setup.