we need to add an additional authorization that can be added to a token that allows the user to run a backup. We will also need to migrate all master tokens to have this authorization.