ok so after waiting a while I see that APIs are pre-defined based on your activities you have programmed. Is there no option for individual devices? I also noticed that once I enabled the API it spun up an AWS Compute Cloud stack and that it was not secured by SLL and there are no API keys. I also noticed that when I disabled the API, the AWS CC stack remained and I was still able to send requests to it. The scenario here that really bothers me the most is that if you ever use this API on a public network, someone could very easily see your requests and just start turning all your stuff on and off any time they want, even if you have the API disabled. How was this even approved of for production??? This is insane and highly insecure!