Tailscale
Tailscale is a Toronto-based software company that provides a managed, zero-configuration mesh VPN built on the WireGuard protocol.
Last updated August 22, 2026
Overview
Tailscale is a Canadian software company headquartered in Toronto, Ontario, whose product combines open-source networking software with a web-based management service. Its central offering is a software-defined mesh virtual private network designed to connect devices, servers, users, and private networks without requiring organizations to build and maintain a conventional hub-and-spoke VPN infrastructure. The company presents the service as a low-complexity way to create secure private connectivity across cloud environments, office networks, personal devices, and embedded systems. The company was founded in 2019 by Google engineers Avery Pennarun, David Crawshaw, David Carney, and Brad Fitzpatrick. Its name was inspired by the 2013 Google research paper “The Tail at Scale,” which examined the effect of high-latency outliers on distributed systems. Tailscale emerged during a period when remote work, cloud infrastructure, developer operations, and distributed engineering teams were increasing demand for identity-aware access to private resources. Tailscale’s architecture uses the WireGuard protocol for encrypted communication between clients. Where network conditions permit, clients attempt to establish direct peer-to-peer connections through techniques such as STUN and network port-mapping protocols including UPnP IGD, NAT-PMP, and PCP. If a direct path cannot be created, traffic can be carried through the company’s DERP, or Designated Encrypted Relay for Packets, infrastructure. This combination allows users to connect devices across restrictive or changing networks while reducing the need for manual firewall and router configuration. Client addresses are assigned from a carrier-grade NAT address range intended to reduce conflicts with existing local networks. The service supports major desktop and mobile operating systems, including Windows, macOS, Linux, iOS, tvOS, and Android. It also supports selected network-attached storage platforms such as Synology and QNAP, together with Docker images and a Kubernetes operator. These integrations extend Tailscale beyond individual device connectivity into infrastructure management, containerized workloads, home laboratories, development environments, and enterprise networks. Additional capabilities include Taildrop, an encrypted peer-to-peer file-transfer feature, and Exit Nodes, which allow a device to route its broader internet traffic through another Tailscale-connected device. Tailscale has also offered a paid exit-node option using Mullvad servers. Its product scope therefore spans private access, remote administration, secure file sharing, network routing, and connectivity for distributed applications. Tailscale operates as a venture-backed private company. It raised a US$12 million Series A in November 2020, a US$100 million Series B in May 2022, and a US$160 million Series C in April 2025. The investment rounds involved Accel, CRV, Insight Partners, Heavybit, and Uncork Capital. The company remains active and competes conceptually with products and services such as LogMeIn Hamachi and ZeroTier, while differentiating through WireGuard-based networking, automatic peer discovery, identity integration, and a developer-oriented operating model.
History
Tailscale was founded in 2019 by Avery Pennarun, David Crawshaw, David Carney, and Brad Fitzpatrick, a group of engineers associated with Google. The founders developed a networking model intended to make secure connectivity between machines substantially easier than configuring traditional VPN appliances, static routes, firewall rules, and public endpoints. The company’s name refers to the idea of a long-tail performance problem described in Google’s 2013 research paper “The Tail at Scale.” The resulting product combined an open-source client with a hosted control and management service. Rather than sending all traffic through a central VPN gateway by default, Tailscale attempts to create encrypted connections directly between participating devices. It uses WireGuard for the network tunnel and employs NAT traversal methods to discover viable paths through home, office, cloud, and mobile networks. When direct communication is unavailable, the system can use company-operated DERP relays. This design gives users a private network overlay while limiting the amount of manual network administration required. Tailscale’s early development coincided with the expansion of remote work, cloud-native infrastructure, distributed software teams, and increasingly heterogeneous device fleets. Its service could connect laptops to development servers, allow administrators to reach private infrastructure, link devices in separate locations, and provide access to resources that were not directly exposed to the public internet. The company’s product model also appealed to individual developers and technical users who needed secure access to home laboratories, self-hosted applications, and personal machines. In November 2020, Tailscale raised US$12 million in Series A financing led by Accel. Heavybit and Uncork Capital, which had participated at the seed stage, also took part. The investment provided capital for product development, infrastructure, and expansion of the company’s managed networking service. Tailscale broadened its supported environment over time. Its clients became available for Windows, macOS, Linux, iOS, tvOS, and Android, while integrations extended to Synology and QNAP network-attached storage systems. The company also provided Docker images and a Kubernetes operator, allowing its networking model to be used with containerized applications and orchestration environments. These integrations helped position the service as infrastructure software rather than solely as a remote-access utility. The product family expanded beyond basic device connectivity. Taildrop introduced encrypted peer-to-peer file transfers between connected devices. Exit Nodes allowed users to direct internet-bound traffic through a selected Tailscale node, and the company later offered a paid option using Mullvad servers. Tailscale also supported routing to networks behind a connected device, including configurations in which source network addresses could be preserved rather than translated. In May 2022, Tailscale announced a US$100 million Series B round led by CRV and Insight Partners, with existing investors participating. The financing reflected continued investor interest in secure access, developer tooling, and cloud networking. In April 2025, the company announced a further US$160 million Series C led by Accel, with CRV, Insight Partners, Heavybit, and Uncork Capital participating. Tailscale remains a private, active software company based in Toronto and operates internationally through its internet-delivered service.
- 2025Series C financing
Tailscale raised US$160 million in Series C financing led by Accel, with participation from CRV, Insight Partners, Heavybit, and Uncork Capital.
- 2022Series B financing
The company raised US$100 million in Series B financing led by CRV and Insight Partners, alongside existing investors.
- 2020Series A financing
Tailscale raised US$12 million in a Series A round led by Accel, with Heavybit and Uncork Capital participating.
- 2019Company founded
Avery Pennarun, David Crawshaw, David Carney, and Brad Fitzpatrick founded Tailscale as a company focused on simpler secure networking between distributed devices.
Products and positioning
A developer-friendly, identity-aware alternative to conventional VPNs and manually configured private networks, emphasizing simple deployment, encrypted peer-to-peer connections, and connectivity across cloud, enterprise, and personal devices.
Tailscale VPNManaged mesh VPN
Tailscale’s principal product is a managed mesh VPN that connects authorized devices into a private virtual network. Its open-source client uses WireGuard for encrypted tunnels, while the hosted service manages device identity, access policies, coordination, and network configuration. Clients attempt peer-to-peer connectivity through NAT traversal and can fall back to encrypted relay infrastructure when a direct path is unavailable. The service supports desktop, mobile, server, container, and selected NAS environments.
TaildropEncrypted file sharing
Taildrop is an encrypted peer-to-peer file-transfer feature for devices connected through Tailscale. It is designed for moving files between trusted devices without requiring a separate public file-sharing service. The feature has been described as being available across Tailscale plans after activation through the administration console, with user-facing behavior comparable to device-to-device sharing tools such as AirDrop or Quick Share.
Exit NodesInternet traffic routing
Exit Nodes allow a Tailscale-connected device to route its general internet traffic through another device on the private network. This can support remote access to a familiar network, centralized egress, or travel and connectivity scenarios. Tailscale has also offered a paid add-on based on exit locations supplied through a partnership with Mullvad.
Kubernetes operator and Docker integrationsCloud-native networking
Tailscale provides deployment options for containerized and orchestrated environments, including Docker images and a Kubernetes operator. These tools allow teams to bring Tailscale connectivity into workloads and clusters, helping connect services, administrators, and infrastructure without exposing every component directly to the public internet.
Flagship businesses
- Tailscale VPN
- Taildrop
- Exit Nodes
- DERP relay infrastructure
- Kubernetes operator
Brand decisions
- 2022Expansion into infrastructure and cloud-native environmentsStrategy
Demand for private connectivity increasingly included Kubernetes clusters, containerized services, network-attached storage, and distributed cloud infrastructure.
What changed. Tailscale extended support across operating systems and infrastructure environments, including Synology, QNAP, Docker, and Kubernetes deployments.
Aftermath. The company’s addressable use cases expanded from personal and remote-access networking toward broader infrastructure connectivity and operations.
- 2020Pursuit of a managed zero-configuration VPN modelStrategy
Traditional VPN deployments commonly require gateway provisioning, firewall changes, routing configuration, and ongoing network administration. Tailscale was built around reducing those operational requirements for distributed devices and teams.
What changed. The company combined an open-source WireGuard-based client with a hosted coordination and management service, enabling encrypted mesh connectivity and automatic path selection.
Aftermath. The approach became the foundation of Tailscale’s product family and supported expansion into cloud, developer, personal, mobile, container, and enterprise use cases.
- ZeroTier — ZeroTier is a comparable software-defined networking service; no specific competitor response is identified in the supplied sources.
- LogMeIn Hamachi — LogMeIn Hamachi is a comparable virtual networking product; no specific competitor response is identified in the supplied sources.
Leadership
| Name | Title | Tenure |
|---|---|---|
| Avery Pennarun | Co-founder | 2019– |
| Brad Fitzpatrick | Co-founder | 2019– |
| David Carney | Co-founder | 2019– |
| David Crawshaw | Co-founder | 2019– |
Recent events
- 2025Tailscale raises US$160 million Series C
Tailscale secured a Series C financing round led by Accel, with CRV, Insight Partners, Heavybit, and Uncork Capital also participating.
Other - 2022Tailscale raises US$100 million Series B
The company announced a Series B round led by CRV and Insight Partners, joined by existing investors.
Other - 2020Tailscale raises US$12 million Series A
Tailscale raised a Series A financing round led by Accel, with participation from seed investors Heavybit and Uncork Capital.
Other
Sources
Cite this profile: Cite the canonical profile. /brand-wiki/tailscale-inc · Editorial policy · How profiles are compiled