When we consider a token object itself, most of the information it stores is static, so we are free to cache it. On Windows 7 the changeable part includes the following information classes: Groups, Privileges, Owner, PrimaryGroup, DefaultDacl, Statistics, SessionId, GroupsAndPrivileges, AuditPolicy,...