How Tailscale’s scores are calculated
The full audit trail, recomputed from the verdict data at build time through the same code that produced the leaderboard: verdict × quality × story weight per cell, cells sum to dimension scores, dimensions blend into the PA Score. Every number on the product page is reproducible from this page alone; for why the formula looks like this, see the methodology.
verdict factors: full ×1.0 · partial ×0.6 · disputed ×0.3 · none ×0.0 · n/a excluded from both sides · cell points = weight × quality × factor · cell max = weight × 10
PA Score10/100
Agent-ready 15.6 × 0.30 = 4.68
API quality 0.0 × 0.20 = 0.00
Openness 5.1 × 0.20 = 1.02
Built-in AI 9.0 × 0.15 = 1.35
Automation 18.0 × 0.15 = 2.70
(4.68 + 0.00 + 1.02 + 1.35 + 2.70) ÷ (0.30 + 0.20 + 0.20 + 0.15 + 0.15) = 9.75 ÷ 1.00 = 9.7
Scores are stored to 1 decimal; the product page’s pills round to whole numbers for display. Each dimension below shows the stories, verdicts, and cited evidence behind its number.
Agent-ready15.6/100×0.30 of the PA blend
Outside-in: can YOUR agent reach and drive this product — API, MCP, CLI, headless runs, agent docs.
Point an agent at llms.txt or agent-oriented docsweight 2
2 (weight) × 0 (quality) × 0.0 (none) = 0.0 of 20 max
- [probe] https://tailscale.com/llms.txt“PROBE llms.txt: HTTP 404 at https://tailscale.com/llms.txt”
Run the product headlessly / in CI for automationweight 2
2 (weight) × 5 (quality) × 0.6 (partial) = 6.0 of 20 max
- [claimed-docs] https://tailscale.com/kb“Explore how to use Tailscale inside Docker containers.”
- [claimed-docs] https://tailscale.com/kb“Automate your tailnet using infrastructure-as-code providers, webhooks, and other integrations.”
- [probe] https://tailscale.com/docs/reference/tailscale-cli“official CLI documented at https://tailscale.com/docs/reference/tailscale-cli”
- [community] https://news.ycombinator.com/item?id=31837115“our pricing ties number of servers to number of users... I don't see how this can ever work within the limits in their pricing plans... their API keys are only valid for 60 days? I don't want infrastructure that requires manually logging in every 60 days.”
Plug MCP servers into this product so it can use their toolsweight 3
n/a — not applicable to this product: excluded from numerator and denominator
no evidence cited — the verdict rests on absence of evidence, re-checked on refresh
Connect an agent via an official MCP serverweight 3
n/a — not applicable to this product: excluded from numerator and denominator
no evidence cited — the verdict rests on absence of evidence, re-checked on refresh
Use an official CLIweight 2
2 (weight) × 5 (quality) × 0.6 (partial) = 6.0 of 20 max
- [probe] https://tailscale.com/docs/reference/tailscale-cli“official CLI documented at https://tailscale.com/docs/reference/tailscale-cli”
Drive the product through a documented public APIweight 3
3 (weight) × 3 (quality) × 0.6 (partial) = 5.4 of 30 max
- [claimed-docs] https://tailscale.com/kb“Automate your tailnet using infrastructure-as-code providers, webhooks, and other integrations.”
- [probe] https://tailscale.com/openapi.json“PROBE openapi: all candidate paths 404 (https://tailscale.com/openapi.json, https://tailscale.com/swagger.json, https://tailscale.com/api/openapi.json, https://tailscale.com/.well-known/openapi.json)”
- [probe] https://tailscale.com/docs/reference/tailscale-cli“official CLI documented at https://tailscale.com/docs/reference/tailscale-cli”
Issue scoped/least-privilege API credentials for an agentweight 2
2 (weight) × 0 (quality) × 0.0 (none) = 0.0 of 20 max
- [claimed-docs] https://tailscale.com/kb“Automate your tailnet using infrastructure-as-code providers, webhooks, and other integrations.”
- [community] https://news.ycombinator.com/item?id=31837115“our pricing ties number of servers to number of users... I don't see how this can ever work within the limits in their pricing plans... their API keys are only valid for 60 days? I don't want infrastructure that requires manually logging in every 60 days.”
Build against official SDKsweight 2
2 (weight) × 0 (quality) × 0.0 (none) = 0.0 of 20 max
- [claimed-docs] https://tailscale.com/kb“Automate your tailnet using infrastructure-as-code providers, webhooks, and other integrations.”
- [probe] https://tailscale.com/llms.txt“PROBE llms.txt: HTTP 404 at https://tailscale.com/llms.txt”
- [probe] https://tailscale.com/openapi.json“PROBE openapi: all candidate paths 404 (https://tailscale.com/openapi.json, https://tailscale.com/swagger.json, https://tailscale.com/api/openapi.json, https://tailscale.com/.well-known/openapi.json)”
- [probe] https://tailscale.com/docs/reference/tailscale-cli“official CLI documented at https://tailscale.com/docs/reference/tailscale-cli”
Subscribe to events via webhooksweight 2
2 (weight) × 5 (quality) × 0.6 (partial) = 6.0 of 20 max
- [claimed-docs] https://tailscale.com/kb“Automate your tailnet using infrastructure-as-code providers, webhooks, and other integrations.”
Agent-ready = 23.4 ÷ 150 × 100 = 15.6
API quality0.0/100×0.20 of the PA blend
The programmable surface once an agent is there — machine-readable spec, interactive docs, sandbox, versioning discipline.
Explore an interactive API reference with runnable examplesweight 2
2 (weight) × 0 (quality) × 0.0 (none) = 0.0 of 20 max
- [probe] https://tailscale.com/openapi.json“PROBE openapi: all candidate paths 404 (https://tailscale.com/openapi.json, https://tailscale.com/swagger.json, https://tailscale.com/api/openapi.json, https://tailscale.com/.well-known/openapi.json)”
Download a machine-readable API spec (OpenAPI or equivalent)weight 2
2 (weight) × 0 (quality) × 0.0 (none) = 0.0 of 20 max
- [probe] https://tailscale.com/openapi.json“PROBE openapi: all candidate paths 404 (https://tailscale.com/openapi.json, https://tailscale.com/swagger.json, https://tailscale.com/api/openapi.json, https://tailscale.com/.well-known/openapi.json)”
- [probe] https://tailscale.com/llms.txt“PROBE llms.txt: HTTP 404 at https://tailscale.com/llms.txt”
Test against a sandbox environment without touching production dataweight 1
n/a — not applicable to this product: excluded from numerator and denominator
no evidence cited — the verdict rests on absence of evidence, re-checked on refresh
Rely on versioned APIs with a documented deprecation policyweight 2
2 (weight) × 0 (quality) × 0.0 (none) = 0.0 of 20 max
- [probe] https://tailscale.com/openapi.json“PROBE openapi: all candidate paths 404 (https://tailscale.com/openapi.json, https://tailscale.com/swagger.json, https://tailscale.com/api/openapi.json, https://tailscale.com/.well-known/openapi.json)”
API quality = 0.0 ÷ 60 × 100 = 0.0
Openness5.1/100×0.20 of the PA blend
Can you leave, inspect, or self-host — data export, open source, portability.
Do everything through the API that I can do in the UIweight 2
2 (weight) × 3 (quality) × 0.6 (partial) = 3.6 of 20 max
- [claimed-docs] https://tailscale.com/kb“Automate your tailnet using infrastructure-as-code providers, webhooks, and other integrations.”
- [claimed-docs] https://tailscale.com/kb“See how to invite users, assign or change user roles, remove users, and quickly switch between accounts.”
- [probe] https://tailscale.com/openapi.json“PROBE openapi: all candidate paths 404 (https://tailscale.com/openapi.json, https://tailscale.com/swagger.json, https://tailscale.com/api/openapi.json, https://tailscale.com/.well-known/openapi.json)”
- [probe] https://tailscale.com/docs/reference/tailscale-cli“official CLI documented at https://tailscale.com/docs/reference/tailscale-cli”
Export all of my data in open formats and leaveweight 3
n/a — not applicable to this product: excluded from numerator and denominator
no evidence cited — the verdict rests on absence of evidence, re-checked on refresh
Read the product's source under an open licenseweight 2
2 (weight) × 0 (quality) × 0.0 (none) = 0.0 of 20 max
- [community] https://news.ycombinator.com/item?id=33648341“we're all meant to be happy giving full control of our entire network to a commercial company running a closed source command and control server?”
Self-host the core productweight 3
3 (weight) × 0 (quality) × 0.0 (none) = 0.0 of 30 max
- [community] https://news.ycombinator.com/item?id=31259950“Am I the only one that has an issue with a VPN that I can't self host? Presumably if Tailscale get's PWN'd or subpoenaed then your network is breached no?”
- [community] https://news.ycombinator.com/item?id=33648341“we're all meant to be happy giving full control of our entire network to a commercial company running a closed source command and control server?”
- [community] https://news.ycombinator.com/item?id=33648341“As soon as Tailscale provides option for Wireguard preshared keys, I will use it. I need Tailscale out of my network... Self hosting Tailscale will then not be needed, since users don't need to trust Tailscale anymore.”
Openness = 3.6 ÷ 70 × 100 = 5.1
Built-in AI9.0/100×0.15 of the PA blend
Inside-out: how agentic the product itself is for its users — built-in assistants, autonomous features.
Get AI-generated insights and suggestions from my data inside the productweight 2
n/a — not applicable to this product: excluded from numerator and denominator
no evidence cited — the verdict rests on absence of evidence, re-checked on refresh
Set up automations that run autonomously in the backgroundweight 2
2 (weight) × 3 (quality) × 0.6 (partial) = 3.6 of 20 max
- [claimed-docs] https://tailscale.com/kb“Automate your tailnet using infrastructure-as-code providers, webhooks, and other integrations.”
Delegate tasks to a built-in AI assistant inside the productweight 3
n/a — not applicable to this product: excluded from numerator and denominator
no evidence cited — the verdict rests on absence of evidence, re-checked on refresh
Operate the product with natural-language commandsweight 2
2 (weight) × 0 (quality) × 0.0 (none) = 0.0 of 20 max
- [probe] https://tailscale.com/llms.txt“PROBE llms.txt: HTTP 404 at https://tailscale.com/llms.txt”
- [probe] https://tailscale.com/openapi.json“PROBE openapi: all candidate paths 404 (https://tailscale.com/openapi.json, https://tailscale.com/swagger.json, https://tailscale.com/api/openapi.json, https://tailscale.com/.well-known/openapi.json)”
- [probe] https://tailscale.com/docs/reference/tailscale-cli“official CLI documented at https://tailscale.com/docs/reference/tailscale-cli”
Built-in AI = 3.6 ÷ 40 × 100 = 9.0
Automation18.0/100×0.15 of the PA blend
Depth of automation primitives — rules, scheduling, bulk operations, webhooks.
Perform bulk operations across many items at onceweight 2
2 (weight) × 3 (quality) × 0.6 (partial) = 3.6 of 20 max
- [claimed-docs] https://tailscale.com/kb“Automate your tailnet using infrastructure-as-code providers, webhooks, and other integrations.”
- [probe] https://tailscale.com/docs/reference/tailscale-cli“official CLI documented at https://tailscale.com/docs/reference/tailscale-cli”
Define rules that trigger actions automatically on eventsweight 3
3 (weight) × 3 (quality) × 0.6 (partial) = 5.4 of 30 max
- [claimed-docs] https://tailscale.com/kb“Automate your tailnet using infrastructure-as-code providers, webhooks, and other integrations.”
Schedule recurring jobs or workflowsweight 2
n/a — not applicable to this product: excluded from numerator and denominator
no evidence cited — the verdict rests on absence of evidence, re-checked on refresh
Version, review, and roll back my automationsweight 1
n/a — not applicable to this product: excluded from numerator and denominator
no evidence cited — the verdict rests on absence of evidence, re-checked on refresh
Automation = 9.0 ÷ 50 × 100 = 18.0