This more closely resembles a RPC (Remote Procedure Call) API, rather than adhering to REST principles. For example, making GET requests should only retrieve data and not mutate state, whereas in this API, there's GET requests to honk the horn, unlock and lock doors, setting AC temperature, etc. Query parameters in the URL are also misused to pass information to be saved on the server.
Stop labelling every API that operates over HTTP as a REST API, this one clearly isn't.