Fixed
- Id params on the posture, invite and user tools now reject whitespace-only values at the schema (
.trim().min(1), the guard the irreversible deletes already had). A whitespace-only id used to reach the API URL-encoded as%20and come back as a 404 that read like the resource was already gone -- on the irreversible deletes that is the wrong shape for "not found": it hides a caller mistake. tailscale_statusno longer drops the settings error when both the devices and settings fetches fail. The fast-fail envelope now names the settings failure alongside the devices one whenever the two differ.- The README's valid
TAILSCALE_TOOLSgroup list now includesorg-tailnets.
Changed
- Local-CLI failure envelopes carry a machine-readable
kind("output-limit"/"timeout"), and thetailscale_local_statusretry advice branches on it instead of matching the message text -- rewording an error can no longer silently drop the hint.