What they mean
401 normally means the provider did not accept the credential. 403 normally means the credential is recognised but lacks permission, or the provider blocks that authentication method.
Fix it
- Confirm the service URL and username.
- Create a fresh API token.
- Grant only the required read permissions.
- Test the token directly in the provider when possible.
- Save it again in HomeStart.