Skip to main content
Glama
YawLabs

@yawlabs/tailscale-mcp

by YawLabs

Get network flow logs

tailscale_get_network_flow_logs
Read-onlyIdempotent

Retrieve network flow logs to inspect device connections, source/destination nodes, and timestamps for security monitoring and connectivity debugging.

Instructions

Get network traffic flow logs showing connections between devices. Shows source/destination nodes, timestamps, and traffic metadata — useful for security monitoring and debugging connectivity.

Input Schema

TableJSON Schema
NameRequiredDescriptionDefault
endNoEnd time in RFC3339 format. Optional: when omitted the tool sends the current time, which Tailscale's API requires.
startYesStart time in RFC3339 format (e.g. '2026-04-01T00:00:00Z'). Required.

Schema Changelog

Changes observed during successful MCP inspections.

  1. Changed1 schema field changedv0.21.0
    • changedInput schema / properties / end / description
      Previous value: -"End time in RFC3339 format. Defaults to now."New value: +"End time in RFC3339 format. Optional: when omitted the tool sends the current time, which Tailscale's API requires."
  2. First observedv0.13.3

TDQS

A3.9/5.0
Behavior3/5

Does the description disclose side effects, auth requirements, rate limits, or destructive behavior?

Annotations already declare readOnlyHint=true, idempotentHint=true, and destructiveHint=false, so the safety profile is covered. The description adds context about the content of the logs but does not disclose additional behavioral traits such as pagination limits, auth requirements, or scope of data returned.

Agents need to know what a tool does to the world before calling it. Descriptions should go beyond structured annotations to explain consequences.

Conciseness4/5

Is the description appropriately sized, front-loaded, and free of redundancy?

The description is two sentences, front-loaded with the primary verb and resource, and adds relevant content and use cases without fluff. It is concise but not overly terse.

Shorter descriptions cost fewer tokens and are easier for agents to parse. Every sentence should earn its place.

Completeness4/5

Given the tool's complexity, does the description cover enough for an agent to succeed on first attempt?

For a simple read-only tool with two well-documented parameters and strong annotations, the description adequately covers the data returned (source/destination nodes, timestamps, traffic metadata) and the use cases. It does not mention pagination or output schema, but that is acceptable given the tool's simplicity.

Complex tools with many parameters or behaviors need more documentation. Simple tools need less. This dimension scales expectations accordingly.

Parameters3/5

Does the description clarify parameter syntax, constraints, interactions, or defaults beyond what the schema provides?

The input schema already describes both parameters fully (100% coverage) with RFC3339 format and the behavior of the optional end parameter. The description does not add additional meaning about how to choose start/end beyond what the schema provides, so the baseline of 3 is appropriate.

Input schemas describe structure but not intent. Descriptions should explain non-obvious parameter relationships and valid value ranges.

Purpose5/5

Does the description clearly state what the tool does and how it differs from similar tools?

The description uses a specific verb and resource ('Get network traffic flow logs') and elaborates with content ('source/destination nodes, timestamps, and traffic metadata') and use cases ('security monitoring and debugging connectivity'), clearly distinguishing it from sibling tools like audit logs or log stream configs.

Agents choose between tools based on descriptions. A clear purpose with a specific verb and resource helps agents select the right tool.

Usage Guidelines4/5

Does the description explain when to use this tool, when not to, or what alternatives exist?

The description provides usage context ('useful for security monitoring and debugging connectivity') which implies when to use the tool, but it does not explicitly name alternatives or state when not to use it. This is clear context without exclusions.

Agents often have multiple tools that could apply. Explicit usage guidance like "use X instead of Y when Z" prevents misuse.

Deploy Server

Other Tools