Recued
Menu
← Back to packs

Organization and Automation - Tailscale API

by recued-core v1 app_pack 16 views

Tailscale audit and flow logs, log streaming, users, contacts, webhooks, tailnet settings, and user-delegated OAuth apps. Generated from Tailscale's byte- and hash-locked official OpenAPI 3.1.0 document (95fa0cb9d3be…) at https://api.tailscale.com/api/v2?outputOpenapiSchema=true. This leaf carries 32 of 95 callable capabilities derived from all 90 official operations. Runtime uses the origin-only https://api.tailscale.com base plus explicit /api/v2 wire paths, with path_alias.wire_prefix preserving documentary proof. Every operation inherits the global bearerAuth contract, and encrypted API access or OAuth access tokens never become arguments. All documented request bodies are required bounded body_raw payloads; JSON and HuJSON media remain distinct. JSON responses preserve unsafe integers, HuJSON responses remain text, and empty successes claim no body. The provider explicitly declares no pagination. Every mutation requires approval, reads are uncached, and provider failures receive no hidden retry. One-time keys, invitation URLs, webhook secrets, and OAuth app client secrets are labeled and excluded from bundled workflows. The local tailscale CLI is a separate binary/daemon capability family, and no network resource is misrepresented as a task, note, or user-work project Source.

What this pack installs

  • tailscale-api-organization-automation Ingredient

Trust & control

What installing this whole pack would let it do. Recued grants these permissions at install — review them there before approving.

What it's allowed to do

Destructive Web APIs tailscale-api-organization-automation external change
Read: logging.list_configuration_audit_logs · No approvalRead: logging.list_network_flow_logs · No approvalRead: logging.get_log_streaming_status · No approvalRead: logging.get_log_streaming_configuration · No approvalAdmin: logging.set_log_streaming_configuration · Always asksDestructive: logging.disable_log_streaming · Always asksAdmin: logging.get_aws_external_id · Always asksRead: logging.validate_aws_external_id · No approvalRead: users.list_users · No approvalRead: users.get_user · No approvalAdmin: users.update_user_role · Always asksAdmin: users.approve_user · Always asksDestructive: users.suspend_user · Always asksAdmin: users.restore_user · Always asksDestructive: users.delete_user · Always asksRead: contacts.get_contacts · No approvalAdmin: contacts.update_contact · Always asksWrite: contacts.resend_contact_verification_email · Always asksRead: webhooks.list_webhooks · No approvalAdmin: webhooks.create_webhook · Always asksRead: webhooks.get_webhook · No approvalAdmin: webhooks.update_webhook · Always asksDestructive: webhooks.delete_webhook · Always asksWrite: webhooks.test_webhook · Always asksDestructive: webhooks.rotate_webhook_secret · Always asksRead: tailnet_settings.get_tailnet_settings · No approvalAdmin: tailnet_settings.update_tailnet_settings · Always asksRead: oauth_apps.list_oauth_apps · No approvalAdmin: oauth_apps.create_oauth_app · Always asksRead: oauth_apps.get_oauth_app · No approvalAdmin: oauth_apps.update_oauth_app · Always asksDestructive: oauth_apps.delete_oauth_app · Always asks

Data it touches

SurfacesWeb APIs

About

Tags

pack:tailscale-apitailscaletailscale-apiorganizationlogginguserswebhookssettingsoauth-appsapicomposition