Subnet router as EC2 instance or Container

New to Tailscale and trying to find my feet. I’ve been tasked with setting up a connection to an AWS RDS database secured on a VPC. We have a K8S cluster running a variety of containers in the same VPC.

Should i be setting up an EC2 linux instance with a tailscaled running or can i utilise the existing K8S cluster and just deploy a container with tailscaled?

I can certainly do either, though the container would be simplest to deploy and maintain. Just looking for advice on what’s considered best practice.

PS. if its an EC2 instance… and you have <10 users how small can you go?