That really needs clarification, llms do get that wrong.
https://dynip.dev/docs#authentication
TSIG Keys: Used strictly for updating DNS records (/update). These are 44-character Base64 encoded strings generated per-zone.
JWT Bearer Tokens: Used for account management and programmatic zone registration (/register). Generated upon user login.
Hope this helps to clear it up, I might link the documentation from the pricing section so that at least there is clarification on it.