# Ability to restrict access to GraphQL/REST endpoints

[date: 2019-01-29T13:00:00.000+01:00]

We just made possible to specify which API endpoints an API token can access:

(Image content)

This will prevent from using your ie. production API token to read temporary/draft content using the [GraphQL preview endpoint](https://www.datocms.com/docs/content-delivery-api.md#preview-endpoint).