Adversis/tailsnitch
A security auditor for Tailscale configurations. Scans your tailnet for misconfigurations, overly permissive access controls, and security best practice violations. observed · 2026-09-03
Health v2 · maintenance only
74/100
- Activity 100
- Release rhythm 74
- Longevity 18
How is this computed?
round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-03. Adoption (stars, forks) is never an input.
- gap_med: 0.5
- age_days: 252
- days_rel: 172
- days_push: 0
- n_releases_24m: 7
Adoption not part of the score
1121 stars · 28 forks observed · 2026-09-03
What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded
Tailsnitch is a Go-based CLI security auditor for Tailscale configurations that scans a tailnet for 50+ misconfigurations, overly permissive access controls, and best-practice violations. It supports read-only audits and interactive remediation via the Tailscale API, with filtering by severity, category, and specific checks.
Use cases
- audit my tailscale tailnet for security misconfigurations
- find overly permissive ACL rules in tailscale
- detect stale devices and unused auth keys in tailnet
- check if tailnet lock is enabled
- export tailscale security audit results as json
- automatically fix tailscale security issues
- verify tailscale ssh rules are not too permissive
When to choose
- you run a Tailscale tailnet and want automated security auditing
- you need actionable, categorized findings with severity levels
- you want interactive or automated remediation of common misconfigurations
When to avoid
- you use a different VPN or mesh networking solution
- you need continuous runtime monitoring rather than point-in-time audits
- you cannot grant API/OAuth access to your tailnet
Facets
cli-tool · maturity active
security vulnerability-scanning cli configuration-management security networking developer-tools windows go cli tailscale tailnet security-audit misconfiguration-detection acl-analysis vpn-security command-line linux macos
1 source
- readme: https://github.com/Adversis/tailsnitch · fetched 2026-09-03 · e4aee515e393
Member repositories
| Repository | Role | Health v2 |
|---|---|---|
| Adversis/tailsnitch | main | 74 |
For agents
markdown · JSON · MCP: product_card(name="Adversis/tailsnitch")
Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem