We have users able to make Jira API calls off our network using API tokens (we're on a cloud instance) ... this has been raised as a security issue within the organization. I would like to understand what technical options can be shared to prevent or at least mitigate this in the short term ... thanks in advance