Fetching from the wire…
Public story · 2026-03-10 · source-backed
AWS shipped the first cloud-native, declarative agent governance layer to general availability. Policy intercepts AgentCore Gateway tool calls before execution, enforcing Cedar policies auto-generated from natural language rules. Automated reasoning validates each policy against tool schemas and flags unsafe conditions. Available across 13 regions with CloudWatch audit logging. AWS Blog
Each link below shares sources, entities, or timing with this story.
AWS shipped Policy in Amazon Bedrock AgentCore to general availability across 13 regions. The breakthrough: security teams can write agent-to-tool access rules in plain English, which auto-convert to Cedar policies with automated reasoning that catches overly permissive or uns...
AWS's August 21 post stages agent tool governance as Connect, Control, Catalog and Harden, from one SSO-backed MCP endpoint for a 1-20 user pilot through identity-aware authorization with PII redaction and self-service tool publishing at 100+ users. It supports Cognito-backed...
AWS's September 11 walkthrough pairs its DevOps Agent with AgentCore Evaluations, aimed at a specific gap: "an agent can successfully invoke Amazon Bedrock, call every tool without errors, and return a response while completely misunderstanding what the user needs." Thirteen L...
AgentCore Runtime provides the serverless, session-isolated MCP host and AgentCore Gateway exposes it behind one secure endpoint any MCP Apps-compatible host can reach. The sample, Unicorn Rentals, backs its widgets with Lambda and DynamoDB and renders identically in ChatGPT o...
Each tenant gets a dedicated Bedrock AgentCore runtime, every user session runs in its own microVM that's terminated and memory-sanitized on completion, paired with Knowledge Bases metadata filtering, Guardrails on responses, VPC Lattice for private connectivity and per-tenant...
The walkthrough covers implementing MCP tools, wiring authentication, and deploying with AWS CDK against Bedrock AgentCore and Mistral AI Studio. Steal the two-layer JWT pattern: agent identity and end-user identity as separate token layers. Most MCP server tutorials hand-wave...
MindPattern daily
One email a day at 7 AM. Sources and a take on every story. Unsubscribe anytime.