Bower registry authentication token scope and expiration handling
Bower registry authentication is configured via credentials stored in netrc for private registries. Under current Bower releases the design goal is to use least-privilege tokens for install-only workflows while keeping credential lifetimes manageable in automated environments. Current documentation indicates the client stores a single credential per registry