Regenerate a token
The regenerate button on the Machines tab gives a token a new value and a new expiry. It stays the same token, with its name, scope and history, and it keeps acting for the person who made it.
The old value keeps working for the grace period you pick, none, a day or seven days, but never past the expiry it had, so CI keeps running while you update it. The Machines tab shows when and from which IP the old value was last used, so you can tell whether anything still sends it, and Stop ends it early. Deleting the token ends both. An old value used after its grace gets 401 API token expired: it was regenerated, use the new value.
The token's creator or an org admin regenerates it, with their passkey once they have one; a machine token takes an admin with their passkey, as creating one does, and lasts 90 days at most. A token whose creator can no longer use it can't be regenerated: make a new one.