Nevermind the below, only applies to user access tokens.
The token will correspond to the account that authorized the application:
You can check whose token it is by requesting the root endpoint with the token: