Currently Token creation uses plaintext authentication, but it would be good to also allow use of HMAC (or default to it).
Currently Token creation uses plaintext authentication, but it would be good to also allow use of HMAC (or default to it).