Documents and knowledge
tailscale
tailscale was answering at the last check. Checked on 2026-10-05 (daily check).
Read devices, users, keys, ACLs and DNS for a tailnet; manage devices, routes and auth keys.
Agents use servers like this to find, read and write documents and notes.
14 read-only0 change data8 high risk
https://tailscale.usefulapi.io/mcp
Follow (RSS): status changes, tool-list changes, new advisories and owner verification, in any feed reader.
Status
Newest check: answered with tools, from the daily check, 2026-10-05, 799 ms.
From one check a day over the last 1 day. Servers whose owner verified them are checked every 5 minutes. Sign-in and payment answers count as up.
Last 30 days
2026-09-062026-10-05
answered with toolssign-in or payment askednot answeringnot checked
Compare: the most reliable servers in Documents and knowledge, ranked by days answering.
Tools
22 tools: 14 read-only, 0 change data, 8 high risk (delete, pay, send or run code).
- read-only
- Only reads or looks things up. Safe for an agent to call on its own.
- changes data
- Creates, edits or sends something. Worth a person's approval the first time.
- high risk
- Can delete, pay, send on your behalf or run code. Hard or impossible to undo.
Connecting costs an agent about 2,793 tokens of tool definitions and a 799 ms handshake.
- high risk
tailscale_authorize_deviceAuthorize or de-authorize a device (only relevant when device approval is enabled for the tailnet). Tailscale REST: POST /device/{deviceId}/authorized. - high risk
tailscale_set_device_nameSet (rename) a device's name. Tailscale REST: POST /device/{deviceId}/name. - high risk
tailscale_set_device_tagsSet a device's ACL tags. REPLACES the device's existing tags. Tailscale REST: POST /device/{deviceId}/tags. - high risk
tailscale_expire_device_keyExpire a device's node key, forcing it to re-authenticate - a security response to a compromised or lost device. Tailscale REST: POST /device/{deviceId}/expire. - high risk
tailscale_set_device_routesSet the subnet routes ENABLED for a device (from the routes it advertises). REPLACES the enabled set. Tailscale REST: POST /device/{deviceId}/routes. - high risk
tailscale_create_auth_keyCreate a new auth key for the tailnet (used to register new devices). Tailscale REST: POST /tailnet/{tailnet}/keys. - high risk
tailscale_delete_keyDelete (revoke) an auth key or API access token by id - a security response. Tailscale REST: DELETE /tailnet/{tailnet}/keys/{keyId}. - high risk
tailscale_delete_deviceDelete a device, removing it from the tailnet. Tailscale REST: DELETE /device/{deviceId}. - read-only
tailscale_list_devicesList all devices in the tailnet (name, addresses, OS, last seen, tags, etc.). Tailscale REST: GET /tailnet/{tailnet}/devices. - read-only
tailscale_get_deviceGet a single device by id. Tailscale REST: GET /device/{deviceId}. - read-only
tailscale_list_device_routesList the subnet routes a device advertises and which are enabled. Tailscale REST: GET /device/{deviceId}/routes. - read-only
tailscale_list_keysList auth keys and API access tokens for the tailnet. Tailscale REST: GET /tailnet/{tailnet}/keys. - read-only
tailscale_get_keyGet details of a single auth key / API access token by id (capabilities, expiry, usage). Tailscale REST: GET /tailnet/{tailnet}/keys/{keyId}. - read-only
tailscale_get_policy_fileGet the tailnet's ACL / policy file (returned as JSON via the Accept header, not HuJSON). Tailscale REST: GET /tailnet/{tailnet}/acl. - read-only
tailscale_list_dns_nameserversList the global DNS nameservers configured for the tailnet. Tailscale REST: GET /tailnet/{tailnet}/dns/nameservers. - read-only
tailscale_get_dns_preferencesGet the tailnet's DNS preferences (e.g. whether MagicDNS is enabled). Tailscale REST: GET /tailnet/{tailnet}/dns/preferences. - read-only
tailscale_list_dns_searchpathsList the DNS search paths (search domains) configured for the tailnet. Tailscale REST: GET /tailnet/{tailnet}/dns/searchpaths. - read-only
tailscale_get_split_dnsGet the tailnet's split-DNS configuration - a map of domain → nameservers. Tailscale REST: GET /tailnet/{tailnet}/dns/split-dns. - read-only
tailscale_list_usersList users of the tailnet, optionally filtered by type, role or status. Tailscale REST: GET /tailnet/{tailnet}/users. - read-only
tailscale_get_userGet a single user by id. Tailscale REST: GET /users/{userId}. - read-only
tailscale_list_webhooksList the webhook endpoints configured for the tailnet. Tailscale REST: GET /tailnet/{tailnet}/webhooks. - read-only
tailscale_get_tailnet_settingsGet the tailnet's settings (device approval, key expiry, posture, etc.). Tailscale REST: GET /tailnet/{tailnet}/settings.
Levels are automated estimates from each tool's public name, description and annotations, and can be wrong. Descriptions as the server publishes them.
Trust and supply chain
No owner has verified this server yet.
No tool change since tracking began on 2026-10-05.
What agents looked for
This week agents asked 7Maps for documents and knowledge servers 1 time; this server was shown 0 times and picked 0 times.
Owners see the keywords, the servers picked instead, failure reasons and a comparison with similar servers in Owner Insights.
Badge
Live: status, days reachable, the tokens its tool list costs an agent. For a README:
[](https://7it.co.il/7maps/s/tailscale.usefulapi.io/mcp)
Other styles: add ?style=uptime (30-day uptime), ?style=stars (agents’ rating) or ?style=verified (owner mark) to the image address, or ?style=top (shows "top 10%" when the server ranks in the top tenth of its category by days answering; otherwise the standard badge).
Is this badge genuine? Anyone can check what a genuine badge for this server says right now: /7maps/verify/badge?server=tailscale.usefulapi.io%2Fmcp (add the same &style= for another style).
Own this server? Verify that it is yours.
Status widget
A live status card for a status page, docs or a dashboard: current status, the 30-day strip, uptime and handshake time.
Script (renders where it is placed, in its own shadow DOM):
<script src="https://7it.co.il/7maps/widget/tailscale.usefulapi.io/mcp.js" async></script>
Or an iframe:
<iframe src="https://7it.co.il/7maps/widget/tailscale.usefulapi.io/mcp" title="7Maps status" width="360" height="176" style="border:0;max-width:100%" loading="lazy"></iframe>
The widget is drawn only from 7it.co.il. Is a status shown elsewhere genuine? Check it: /7maps/verify/badge?server=tailscale.usefulapi.io%2Fmcp.
Add ?theme=light or ?theme=dark to either address (default: follows the visitor's setting). Refreshed every 5 minutes. Open the card · script.
For AI agents
Before connecting, an agent can ask 7Maps for this server's full condition, every tool's risk level and what changed since a person approved it: the road_conditions, watch and route tools on https://7it.co.il/7maps/mcp, paid per call in USDC via x402. About 7Maps.
7Maps by 7IT maps the MCP servers AI agents use, from public listings. Observations with a date, not a judgement. Methodology · How we collect, and opting out.