Secure MCP access for private infrastructure over Tailscale — 48 tools across 9 domains
Secure MCP access for private infrastructure over Tailscale AI agents need access to internal tools, services, and infrastructure — but exposing private systems to the internet creates unacceptable security risks. VPNs are complex, SSH tunnels are fragile, and API gateways add latency and maintenance overhead. mcp-tailscale bridges this gap: a lightweight MCP server that gives AI agents secure,…
Inferred from the transports this listing declares (stdio). A client not listed here hasn’t been ruled out — it just isn’t something Forge can confirm.
Verification confirms publisher identity (repo ownership), not code safety. The security scan covers known CVEs and suspicious install scripts.
Read out of the source npm actually ships, at scan time. The package was never executed. Tools registered dynamically at runtime, or hidden inside bundled or minified code, can be missed — so this is a floor on the tool surface, not a complete census of it.
tailscale_acl_getNo description publishedThis tool published no description. Forge does not invent one.
tailscale_acl_setNo description publishedThis tool published no description. Forge does not invent one.
tailscale_acl_previewNo description publishedThis tool published no description. Forge does not invent one.
tailscale_acl_validateNo description publishedThis tool published no description. Forge does not invent one.
tailscale_acl_testNo description publishedThis tool published no description. Forge does not invent one.
tailscale_device_listNo description publishedThis tool published no description. Forge does not invent one.
tailscale_device_getNo description publishedThis tool published no description. Forge does not invent one.
tailscale_device_deleteprivilegedNo description publishedThis tool published no description. Forge does not invent one.
tailscale_device_authorizeNo description publishedThis tool published no description. Forge does not invent one.
tailscale_device_routes_getNo description publishedThis tool published no description. Forge does not invent one.
tailscale_device_routes_setNo description publishedThis tool published no description. Forge does not invent one.
tailscale_device_tags_setNo description publishedThis tool published no description. Forge does not invent one.
tailscale_device_posture_getNo description publishedThis tool published no description. Forge does not invent one.
tailscale_device_posture_setNo description publishedThis tool published no description. Forge does not invent one.
tailscale_device_expireNo description publishedThis tool published no description. Forge does not invent one.
tailscale_device_renameNo description publishedThis tool published no description. Forge does not invent one.
tailscale_statusNo description publishedThis tool published no description. Forge does not invent one.
tailscale_api_verifyNo description publishedThis tool published no description. Forge does not invent one.
tailscale_log_stream_getNo description publishedThis tool published no description. Forge does not invent one.
tailscale_log_stream_setNo description publishedThis tool published no description. Forge does not invent one.
tailscale_derp_mapNo description publishedThis tool published no description. Forge does not invent one.
tailscale_derp_map_setNo description publishedThis tool published no description. Forge does not invent one.
tailscale_dns_nameservers_getNo description publishedThis tool published no description. Forge does not invent one.
tailscale_dns_nameservers_setNo description publishedThis tool published no description. Forge does not invent one.
tailscale_dns_searchpaths_getNo description publishedThis tool published no description. Forge does not invent one.
tailscale_dns_searchpaths_setNo description publishedThis tool published no description. Forge does not invent one.
tailscale_dns_splitdns_getNo description publishedThis tool published no description. Forge does not invent one.
tailscale_dns_splitdns_setNo description publishedThis tool published no description. Forge does not invent one.
tailscale_dns_preferences_getNo description publishedThis tool published no description. Forge does not invent one.
tailscale_dns_preferences_setNo description publishedThis tool published no description. Forge does not invent one.
tailscale_key_listNo description publishedThis tool published no description. Forge does not invent one.
tailscale_key_getNo description publishedThis tool published no description. Forge does not invent one.
tailscale_key_createNo description publishedThis tool published no description. Forge does not invent one.
tailscale_key_deleteprivilegedNo description publishedThis tool published no description. Forge does not invent one.
tailscale_posture_integration_listNo description publishedThis tool published no description. Forge does not invent one.
tailscale_posture_integration_getNo description publishedThis tool published no description. Forge does not invent one.
tailscale_posture_integration_createNo description publishedThis tool published no description. Forge does not invent one.
tailscale_posture_integration_deleteprivilegedNo description publishedThis tool published no description. Forge does not invent one.
tailscale_tailnet_settings_getNo description publishedThis tool published no description. Forge does not invent one.
tailscale_tailnet_contacts_getNo description publishedThis tool published no description. Forge does not invent one.
0 of 40 tools published a description.
Tool names and descriptions are written by the publisher and shown verbatim as inert text. They are the strings an MCP client passes to a model, so Forge scans them for prompt-injection patterns — any finding appears with the security scan above. “Privileged” is a keyword match on the tool name, not an audit of what the tool does: a benign-sounding name can still do anything.
Secure MCP access for private infrastructure over Tailscale AI agents need access to internal tools, services, and infrastructure — but exposing private systems to the internet creates unacceptable security risks. VPNs are complex, SSH tunnels are fragile, and API gateways add latency and maintenance overhead. mcp-tailscale bridges this gap: a lightweight MCP server that gives AI agents secure, authenticated access to your Tailscale-connected infrastructure — without exposing anything to the…
Linked names open Forge’s index of every entry observed exposing that tool. Browse all indexed tools.
This package was last scanned before Forge began storing the resolved tree. The next scan will record it.