Service Chaining

I want to try Tailscale, however, my organization requires all traffic to go through a DLP service (healthcare requirements).

Is it possible to have a DLP service (or any other service for that matter) to be inserted? (Anti-Virus etc…)
I understand that this breaks the peer-to-peer encryption, but the benefits I belive we get from using something like Tailscale seems to be worth it

Any MITM will break the connection. I don’t believe there’s a way to allow that.