Add domain name restriction to API token?

Is there a way to add restrictions to the API token? (i.e. domain name)

Also, if the API token in the WebIDE the only token available? I noticed it says it it “can’t be used with products” but I’m not finding an API token within the products console.

You can use CLI particle token to list, create and revoke tokens.
But there is no way to create a token that can only be used from/by a particular domain name.

And for products you’d have to distinguish between product owner access and as a customer (which would need a customer access token).

