First of all using, privacy rules for your database is very important. Second you could create many types of security features in between your API calls by using cloudflare workers.