Read your tailnet in full, then change device approval, routes, and tags with review.
Connect Tailscale and your agent can see the whole tailnet: every device with its addresses, tags, and authorization state, the subnet routes each node advertises, DNS and tailnet-wide settings, users, and configuration audit events for a given window. Changes to device approval, enabled routes, and ACL tags are previewed and go through approval first.
10 tools: 7 read, 3 write. Reads answer instantly. Writes require approval by default. Everything is logged.
What a governed Tailscale run looks like inside Luumen.
Authorize once with API token. Luumen lists the scopes each action needs before you approve the connection, and credentials never appear in the chat.
Read actions answer immediately. Anything that writes — set device authorization, set device routes, set device tags — is shown as a plan and requires approval by default. Administrators configure that per tool, so you decide exactly which actions can ever run unattended.
You decide. Actions are granted per agent, skill, and team, and per environment — production is not staging. Read access can be broad while writes stay narrow.
Every call to Tailscale — read or write, approved or declined — is recorded with the actor, the input, and the result, and can be linked to the ticket or change record.
Connect in minutes. Every action scoped, approved, and audited from day one.