There should be an Advanced server option to disable admin remote access.
Right now, Remote Access needs to be enabled for friends to watch movies.
However, when logging in to Plex Web with the admin account from outside the LAN, you can edit the libraries and settings. This is dangerous if someone steals your admin account credentials.
With this new option, Admin access to the server would only be possible from localhost or from the LAN.