Very often authorization in APIs is done via request headers and if user adds some headers they are very likely needed for all requests in that API. Requiring user to add the headers again after a page refresh adds a lot of friction. The headers should be cached in local storage or any other available place.