It would be great if it was possible to limit an Access Token to GET requests only essentially giving it Read Only access.
The reason for this is that we want to start allowing our internal AI to see all of the data on our platform without the danger of it being able to change or interact with it and at the moment we can't do that - it's all or nothing.
I see this working the same as the IP Restriction where you could simply toggle the Role to Read Only.