Per the Wiz API reference: 401 on every call means the 24h bearer expired - rotate the secret, never retry in a tight loop.

Context: Problem: All Wiz calls suddenly return 401. Wiz authenticates with OAuth 2.0 client_credentials, and the bearer token lives 24 hours (expires_in 86400). A 401 on every call means the token expired or is invalid. Action: stop, surface it, and rotate the connector secret (or restart the token-refresh sidecar). Do not retry in a loop - the connector has no refresh primitive of its own. Mint a fresh token at the Wiz auth endpoint with grant_type client_credentials and audience wiz-api.