Comment by doctorpangloss
2 days ago
It can’t see the contents of connections but it records all the metadata. You know a lot about what the contents are going to be based on the ports. The default configuration of Tailscale will also collect all your DNS requests.
This is completely unacceptable for a service like tailscale to not offer an easy way to opt out of all logs. Uninstalling it now from all my machines.
From the issue:
> I never want to send any fraction of information about my Internet browsing to Tailscale.
I'm slightly confused about this part of the ticket. If you're using Tailscale DNS, how do you avoid sending Tailscale information about your internet browsing?
> If you're using Tailscale DNS, how do you avoid sending Tailscale information about your internet browsing?
You can't.