Acces Tokens: Security risk, No option to limit scope

For getting data from vrm I use access tokens for several sites. But when I add an access token, this token allows access to all sites in my vrm.

This is a security risk, because I use this access token to interact with VRM in nodered on several sites.

Imo an access token should provide limited access instead of full acces.

Is it possible to add functionality to access tokens to limit the scope, for example the possibility to select sites where the access token has access to?

1 Like