I am wondering that how your data is safe when an admin can change the latest state in Couchdb using Fauxton or cURL provided by
Couchdb
Fauxton
cURL
You need to understand 2 things here
Although the data of a couchdb of a peer maybe tampered, you should setup your endorsement policy in such a way that it must be endorsed by all the peers.
You cannot expose your couchdb to be altered, I recommend to see Cilium