Fetching from the wire…
Infra2026-07-28 · source-backed
A software partner can request scoped, time-limited access to a customer's resources without long-lived cross-account roles. Access caps at 12 hours, scoped to a single endpoint in a single region in a single account, and the customer reviews fully resolved permissions in their own IAM console with no wildcards at approval time. Credentials issue via STS; every delegated call is tagged in CloudTrail with the partner's account ID. Deepgram reports time-to-first-investigation on support tickets dropped from days to minutes, eliminating scheduled screen-shares. If you ship self-hosted software on AWS, this pattern is worth copying wholesale. (AWS)
Each link below shares sources, entities, or timing with this story.
Generally available August 31 in five regions, registering MCP servers with their tools and prompts, A2A agent card definitions, agent skills written as markdown with associated code, and custom JSON descriptors (AWS). It exposes its own search through an MCP server so agents...
AWS shipped per-user, per-target rate limiting August 6 covering MCP targets, inference targets and HTTP passthrough across three metrics: requests (RPS/RPM), tokens (TPM, inference only), connections (CPS). Limits scope by JWT claims ($.context.jwt.sub, .role, .azp) or IAM id...
The deal is backed by a $50B Amazon investment and 2GW Trainium capacity commitment. GPT-5.5 pricing: $5/$30 per 1M input/output tokens with 1M context. For builders on AWS, you can now use GPT-5.5 with existing IAM, PrivateLink, and CloudTrail. No new security model. The mult...
The full family, Sol, Terra, and Luna, is generally available on Amazon Bedrock with IAM and VPC controls (LLM Boss, AWS). Sol targets coding, biology, and cybersecurity agentic work. Terra runs everyday tasks at about half GPT-5.5's cost, and Luna optimizes for speed. The thr...
Loom (github.com/awslabs/loom) is a reference implementation: "paved path" blueprints baking in least-privilege IAM, abstracted configuration, and strict deployment guardrails for agents built on Strands Agents running on Bedrock AgentCore Runtime. The repo ships the specs use...
AWS shipped Policy in Amazon Bedrock AgentCore to general availability across 13 regions. The breakthrough: security teams can write agent-to-tool access rules in plain English, which auto-convert to Cedar policies with automated reasoning that catches overly permissive or uns...
MindPattern daily
One email a day at 7 AM. Sources and a take on every story. Unsubscribe anytime.