EnerBrain Agency· Documentation
Deploy › Deployment

Tailscale Private Access

Run EnerBrain Agency with Tailscale-friendly bind presets and connect from other devices

Use this when you want to access EnerBrain Agency over Tailscale (or a private LAN/VPN) instead of only localhost.

1. Start EnerBrain Agency in private authenticated mode

pnpm dev --bind tailnet

Recommended behavior:

If you want the old broad private-network behavior instead, use:

pnpm dev --bind lan

Legacy aliases still map to authenticated/private + bind=lan:

pnpm dev --authenticated-private pnpm dev --tailscale-auth


## 2. Find your reachable Tailscale address

From the machine running EnerBrain Agency:

```sh
tailscale ip -4

You can also use your Tailscale MagicDNS hostname (for example my-macbook.tailnet.ts.net).

3. Open EnerBrain Agency from another device

Use the Tailscale IP or MagicDNS host with the EnerBrain Agency port:

http://<tailscale-host-or-ip>:3100

Example:

http://my-macbook.tailnet.ts.net:3100

4. Allow custom private hostnames when needed

If you access EnerBrain Agency with a custom private hostname, add it to the allowlist:

npx paperclipai allowed-hostname my-macbook.tailnet.ts.net

5. Verify the server is reachable

From a remote Tailscale-connected device:

curl http://<tailscale-host-or-ip>:3100/api/health

Expected result:

{"status":"ok"}

Troubleshooting