Just an idea for API validation exclusive to Hive stakers:
All requests must be signed by the posting key of a valid Hive account possessing a minimum of "X" HP at the time of requests, otherwise gives an HTTP 4XX error.
The API can use a "mana" system, limiting requests/time.