token is on clear text https://github.com/KaplanOpenSource/argos/blob/main/server.py#L39 this is not a security issue for prod, but dev server might be exposed