This VPN Company's Response Went Viral
Why It Matters
The episode shows how swift, candid leadership and technical fixes can defuse security crises and strengthen brand trust more effectively than polished PR; for security-dependent businesses, transparent community engagement is now a critical risk-management and marketing asset.
Summary
In May 2025 a Reddit user exposed a real security flaw in Tailscale that allowed strangers to join private networks when they shared an email domain. Instead of issuing a guarded corporate reply, co-founder Brad Fitzpatrick personally acknowledged the issue, explained the legacy identity model that caused it, and pledged an immediate fix—enabling user approvals for all new networks by default. His direct, transparent post quelled community alarm, generated supportive engagement, and demonstrated rapid, accountable incident response. The thread turned into a public trust-building moment for Tailscale rather than a reputational setback.
Comments
Want to join the conversation?
Loading comments...