Exactly. You can use the normal access token, but you need to manage that either by paying for a "deployment" seat, or accepting that your deployments will have one person's access token associated with it. You just have to manage the minor risk of that person leaving the org and you'd have to do a token rotation.
But since you're rotating tokens every 90 days anyway, that won't be too big a problem, eh? 😉