Bedrock AgentCore

eventNameDescriptionSampleRule
anyCatch-all entry for Bedrock AgentCore rules that match the service but not a specific eventName.NN
BatchCreateMemoryRecordsCreates multiple memory records in a single batch operation for the specified memory with custom content. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
BatchDeleteMemoryRecordsDeletes multiple memory records in a single batch operation from the specified memory. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
BatchUpdateMemoryRecordsUpdates multiple memory records with custom content in a single batch operation within the specified memory. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
CompleteResourceTokenAuthConfirms the user authentication session for obtaining OAuth2.0 tokens for a resource. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
CreateABTestCreates an A/B test for comparing agent configurations. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
CreateEventCreates an event in an AgentCore Memory resource. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
CreatePaymentInstrumentCreate a new payment instrument for a connector. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
CreatePaymentSessionCreate a new payment session. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DeleteABTestDeletes an A/B test and its associated gateway rules. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DeleteBatchEvaluationDeletes a batch evaluation and its associated results. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DeleteEventDeletes an event from an AgentCore Memory resource. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DeleteMemoryRecordDeletes a memory record from an AgentCore Memory resource. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DeletePaymentInstrumentDeletes a payment instrument. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DeletePaymentSessionDeletes a payment session. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DeleteRecommendationDeletes a recommendation and its associated results. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
EvaluatePerforms on-demand evaluation of agent traces using a specified evaluator. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetABTestRetrieves detailed information about an A/B test, including its configuration, status, and statistical results. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetAgentCardRetrieves the A2A agent card associated with an AgentCore Runtime agent. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetBatchEvaluationRetrieves detailed information about a batch evaluation, including its status, configuration, results, and any error details. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetBrowserSessionRetrieves detailed information about a specific browser session in Amazon Bedrock AgentCore. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetCodeInterpreterSessionRetrieves detailed information about a specific code interpreter session in Amazon Bedrock AgentCore. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetEventRetrieves information about a specific event in an AgentCore Memory resource. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetMemoryRecordRetrieves a specific memory record from an AgentCore Memory resource. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetPaymentInstrumentGet a payment instrument by ID. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetPaymentInstrumentBalanceGet the balance of a payment instrument. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetPaymentSessionGet a payment session. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetRecommendationRetrieves detailed information about a recommendation, including its configuration, status, and results. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetResourceApiKeyRetrieves the API key associated with an API key credential provider. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
GetResourceOauth2TokenReturns the OAuth 2.0 token of the provided resource. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
GetResourcePaymentTokenGenerates authentication tokens for payment providers that use vendor-specific authentication mechanisms. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetWorkloadAccessTokenObtains a workload access token for agentic workloads not acting on behalf of a user. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
GetWorkloadAccessTokenForJWTObtains a workload access token for agentic workloads acting on behalf of a user, using a JWT token. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
GetWorkloadAccessTokenForUserIdObtains a workload access token for agentic workloads acting on behalf of a user, using the user's ID. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
InvokeAgentRuntimeSends a request to an agent or tool hosted in an Amazon Bedrock AgentCore Runtime and receives responses in real-time. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
InvokeAgentRuntimeCommandExecutes a command in a runtime session container and streams the output back to the caller. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
InvokeBrowserInvokes an operating system-level action on a browser session in Amazon Bedrock AgentCore. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
InvokeCodeInterpreterExecutes code within an active code interpreter session in Amazon Bedrock AgentCore. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
InvokeHarnessOperation to invoke a Harness. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListABTestsLists all A/B tests in the account. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListActorsLists all actors in an AgentCore Memory resource. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListBatchEvaluationsLists all batch evaluations in the account, providing summary information about each evaluation's status and configuration. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListBrowserSessionsRetrieves a list of browser sessions in Amazon Bedrock AgentCore that match the specified criteria. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListCodeInterpreterSessionsRetrieves a list of code interpreter sessions in Amazon Bedrock AgentCore that match the specified criteria. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListEventsLists events in an AgentCore Memory resource based on specified criteria. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListMemoryExtractionJobsLists all long-term memory extraction jobs that are eligible to be started with optional filtering. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListMemoryRecordsLists memory records in an AgentCore Memory resource based on specified criteria. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListPaymentInstrumentsList payment instruments for a manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListPaymentSessionsList payment sessions. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListRecommendationsLists all recommendations in the account, with optional filtering by status. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListSessionsLists sessions in an AgentCore Memory resource based on specified criteria. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ProcessPaymentProcesses a payment using a payment instrument within a payment session. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
RetrieveMemoryRecordsSearches for and retrieves memory records from an AgentCore Memory resource based on specified search criteria. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
SaveBrowserSessionProfileSaves the current state of a browser session as a reusable profile in Amazon Bedrock AgentCore. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
SearchRegistryRecordsSearches for registry records using semantic, lexical, or hybrid queries. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
StartBatchEvaluationStarts a batch evaluation job that evaluates agent performance across multiple sessions. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
StartBrowserSessionCreates and initializes a browser session in Amazon Bedrock AgentCore. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
StartCodeInterpreterSessionCreates and initializes a code interpreter session in Amazon Bedrock AgentCore. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
StartMemoryExtractionJobStarts a memory extraction job that processes events that failed extraction previously in an AgentCore Memory resource and produces structured memory records. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
StartRecommendationStarts a recommendation job that analyzes agent traces and generates optimization suggestions for system prompts or tool descriptions to improve agent performance. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
StopBatchEvaluationStops a running batch evaluation. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
StopBrowserSessionTerminates an active browser session in Amazon Bedrock AgentCore. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
StopCodeInterpreterSessionTerminates an active code interpreter session in Amazon Bedrock AgentCore. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
StopRuntimeSessionStops a session that is running in an running AgentCore Runtime agent. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
UpdateABTestUpdates an A/B test's configuration, including variants, traffic allocation, evaluation settings, or execution status. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
UpdateBrowserStreamUpdates a browser stream. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
CreateAgentRuntimeCreateAgentRuntime recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
CreateAgentRuntimeEndpointCreateAgentRuntimeEndpoint recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
CreateMemoryCreateMemory recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
CreateWorkloadIdentityCreateWorkloadIdentity recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
DeleteAgentRuntimeDeleteAgentRuntime recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
DeleteAgentRuntimeEndpointDeleteAgentRuntimeEndpoint recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
DeleteMemoryDeleteMemory recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
DeleteWorkloadIdentityDeleteWorkloadIdentity recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
GetAgentRuntimeGetAgentRuntime recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
GetAgentRuntimeEndpointGetAgentRuntimeEndpoint recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
GetBrowserGetBrowser recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
GetGatewayGetGateway recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
GetGatewayTargetGetGatewayTarget recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
GetMemoryGetMemory recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
GetOnlineEvaluationConfigGetOnlineEvaluationConfig recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
GetPolicyEngineGetPolicyEngine recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
GetWorkloadIdentityGetWorkloadIdentity recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
ListAgentRuntimeEndpointsListAgentRuntimeEndpoints recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
ListAgentRuntimesListAgentRuntimes recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
ListAgentRuntimeVersionsListAgentRuntimeVersions recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
ListBrowsersListBrowsers recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
ListCodeInterpretersListCodeInterpreters recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
ListEvaluatorsListEvaluators recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
ListGatewayTargetsListGatewayTargets recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
ListHarnessesListHarnesses recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
ListMemoriesListMemories recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
ListOnlineEvaluationConfigsListOnlineEvaluationConfigs recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
ListPolicyEnginesListPolicyEngines recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
ListWorkloadIdentitiesListWorkloadIdentities recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
UpdateAgentRuntimeUpdateAgentRuntime recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
UpdateAgentRuntimeEndpointUpdateAgentRuntimeEndpoint recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
DeleteCapacityProviderSessionDeletes a session associated with a capacity provider in Amazon Bedrock AgentCore and makes the session unavailable for further use. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN

any: Bedrock AgentCore (catch-all)

#
Service
bedrock-agentcore

Description

Catch-all entry for Bedrock AgentCore rules that match the service but not a specific eventName.

BatchCreateMemoryRecords

#
Service
bedrock-agentcore

Description

Creates multiple memory records in a single batch operation for the specified memory with custom content. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

BatchDeleteMemoryRecords

#
Service
bedrock-agentcore

Description

Deletes multiple memory records in a single batch operation from the specified memory. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

BatchUpdateMemoryRecords

#
Service
bedrock-agentcore

Description

Updates multiple memory records with custom content in a single batch operation within the specified memory. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

CompleteResourceTokenAuth

#
Service
bedrock-agentcore

Description

Confirms the user authentication session for obtaining OAuth2.0 tokens for a resource. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

CreateABTest

#
Service
bedrock-agentcore

Description

Creates an A/B test for comparing agent configurations. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

CreateEvent

#
Service
bedrock-agentcore

Description

Creates an event in an AgentCore Memory resource. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

CreatePaymentInstrument

#
Service
bedrock-agentcore

Description

Create a new payment instrument for a connector. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

CreatePaymentSession

#
Service
bedrock-agentcore

Description

Create a new payment session. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DeleteABTest

#
Service
bedrock-agentcore

Description

Deletes an A/B test and its associated gateway rules. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DeleteBatchEvaluation

#
Service
bedrock-agentcore

Description

Deletes a batch evaluation and its associated results. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DeleteEvent

#
Service
bedrock-agentcore

Description

Deletes an event from an AgentCore Memory resource. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DeleteMemoryRecord

#
Service
bedrock-agentcore

Description

Deletes a memory record from an AgentCore Memory resource. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DeletePaymentInstrument

#
Service
bedrock-agentcore

Description

Deletes a payment instrument. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DeletePaymentSession

#
Service
bedrock-agentcore

Description

Deletes a payment session. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DeleteRecommendation

#
Service
bedrock-agentcore

Description

Deletes a recommendation and its associated results. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

Evaluate

#
Service
bedrock-agentcore

Description

Performs on-demand evaluation of agent traces using a specified evaluator. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetABTest

#
Service
bedrock-agentcore

Description

Retrieves detailed information about an A/B test, including its configuration, status, and statistical results. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetAgentCard

#
Service
bedrock-agentcore

Description

Retrieves the A2A agent card associated with an AgentCore Runtime agent. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetBatchEvaluation

#
Service
bedrock-agentcore

Description

Retrieves detailed information about a batch evaluation, including its status, configuration, results, and any error details. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetBrowserSession

#
Service
bedrock-agentcore

Description

Retrieves detailed information about a specific browser session in Amazon Bedrock AgentCore. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetCodeInterpreterSession

#
Service
bedrock-agentcore

Description

Retrieves detailed information about a specific code interpreter session in Amazon Bedrock AgentCore. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetEvent

#
Service
bedrock-agentcore

Description

Retrieves information about a specific event in an AgentCore Memory resource. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetMemoryRecord

#
Service
bedrock-agentcore

Description

Retrieves a specific memory record from an AgentCore Memory resource. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetPaymentInstrument

#
Service
bedrock-agentcore

Description

Get a payment instrument by ID. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetPaymentInstrumentBalance

#
Service
bedrock-agentcore

Description

Get the balance of a payment instrument. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetPaymentSession

#
Service
bedrock-agentcore

Description

Get a payment session. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetRecommendation

#
Service
bedrock-agentcore

Description

Retrieves detailed information about a recommendation, including its configuration, status, and results. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetResourceApiKey

#
Service
bedrock-agentcore

Description

Retrieves the API key associated with an API key credential provider. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "f39c0211-0af1-42b3-995f-613e2509bb05",
  "eventSource": "bedrock-agentcore.amazonaws.com",
  "eventName": "GetResourceApiKey",
  "awsRegion": "us-east-1",
  "eventType": "AwsApiCall",
  "readOnly": false,
  "managementEvent": true,
  "requestID": "025f8831-b364-4bb4-9ba2-45cfccfca7f7",
  "userAgent": "bedrock-agentcore.amazonaws.com",
  "resources": [
    {
      "accountId": "123456789012",
      "type": "AWS::BedrockAgentCore::APIKeyCredentialProvider",
      "ARN": "arn:aws:bedrock-agentcore:us-east-1:123456789012:token-vault/EXAMPLE"
    }
  ]
}

GetResourceOauth2Token

#
Service
bedrock-agentcore

Description

Returns the OAuth 2.0 token of the provided resource. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "b9526cf2-38fe-446a-b512-a4ac7d787bc2",
  "eventSource": "bedrock-agentcore.amazonaws.com",
  "eventName": "GetResourceOauth2Token",
  "awsRegion": "us-east-1",
  "eventType": "AwsApiCall",
  "readOnly": false,
  "managementEvent": true,
  "requestID": "20a48a16-04a0-456d-9f18-f35b2fec7c64",
  "userAgent": "bedrock-agentcore.amazonaws.com"
}

GetResourcePaymentToken

#
Service
bedrock-agentcore

Description

Generates authentication tokens for payment providers that use vendor-specific authentication mechanisms. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetWorkloadAccessToken

#
Service
bedrock-agentcore

Description

Obtains a workload access token for agentic workloads not acting on behalf of a user. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "382d7d4e-56df-4559-ad85-e261caa28f79",
  "eventSource": "bedrock-agentcore.amazonaws.com",
  "eventName": "GetWorkloadAccessToken",
  "awsRegion": "us-east-1",
  "eventType": "AwsApiCall",
  "readOnly": false,
  "managementEvent": true,
  "requestID": "a63af226-6d72-47bb-824d-53f87c3688e0",
  "userAgent": "bedrock-agentcore.amazonaws.com",
  "resources": [
    {
      "accountId": "123456789012",
      "type": "AWS::BedrockAgentCore::WorkloadIdentity",
      "ARN": "arn:aws:bedrock-agentcore:us-east-1:123456789012:workload-identity-directory/EXAMPLE"
    }
  ]
}

GetWorkloadAccessTokenForJWT

#
Service
bedrock-agentcore

Description

Obtains a workload access token for agentic workloads acting on behalf of a user, using a JWT token. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "9cf5ed2f-c819-42d8-814d-639cd19b4820",
  "eventSource": "bedrock-agentcore.amazonaws.com",
  "eventName": "GetWorkloadAccessTokenForJWT",
  "awsRegion": "us-east-1",
  "eventType": "AwsApiCall",
  "readOnly": false,
  "managementEvent": true,
  "requestID": "fefe6d8e-62a6-4bd7-8c2a-1e712029177f",
  "userAgent": "bedrock-agentcore.amazonaws.com",
  "resources": [
    {
      "accountId": "123456789012",
      "type": "AWS::BedrockAgentCore::WorkloadIdentity",
      "ARN": "arn:aws:bedrock-agentcore:us-east-1:123456789012:workload-identity-directory/EXAMPLE"
    }
  ]
}

GetWorkloadAccessTokenForUserId

#
Service
bedrock-agentcore

Description

Obtains a workload access token for agentic workloads acting on behalf of a user, using the user's ID. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

InvokeAgentRuntime

#
Service
bedrock-agentcore

Description

Sends a request to an agent or tool hosted in an Amazon Bedrock AgentCore Runtime and receives responses in real-time. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

InvokeAgentRuntimeCommand

#
Service
bedrock-agentcore

Description

Executes a command in a runtime session container and streams the output back to the caller. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

InvokeBrowser

#
Service
bedrock-agentcore

Description

Invokes an operating system-level action on a browser session in Amazon Bedrock AgentCore. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

InvokeCodeInterpreter

#
Service
bedrock-agentcore

Description

Executes code within an active code interpreter session in Amazon Bedrock AgentCore. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

InvokeHarness

#
Service
bedrock-agentcore

Description

Operation to invoke a Harness. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListABTests

#
Service
bedrock-agentcore

Description

Lists all A/B tests in the account. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListActors

#
Service
bedrock-agentcore

Description

Lists all actors in an AgentCore Memory resource. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListBatchEvaluations

#
Service
bedrock-agentcore

Description

Lists all batch evaluations in the account, providing summary information about each evaluation's status and configuration. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListBrowserSessions

#
Service
bedrock-agentcore

Description

Retrieves a list of browser sessions in Amazon Bedrock AgentCore that match the specified criteria. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListCodeInterpreterSessions

#
Service
bedrock-agentcore

Description

Retrieves a list of code interpreter sessions in Amazon Bedrock AgentCore that match the specified criteria. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListEvents

#
Service
bedrock-agentcore

Description

Lists events in an AgentCore Memory resource based on specified criteria. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListMemoryExtractionJobs

#
Service
bedrock-agentcore

Description

Lists all long-term memory extraction jobs that are eligible to be started with optional filtering. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListMemoryRecords

#
Service
bedrock-agentcore

Description

Lists memory records in an AgentCore Memory resource based on specified criteria. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListPaymentInstruments

#
Service
bedrock-agentcore

Description

List payment instruments for a manager. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListPaymentSessions

#
Service
bedrock-agentcore

Description

List payment sessions. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListRecommendations

#
Service
bedrock-agentcore

Description

Lists all recommendations in the account, with optional filtering by status. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListSessions

#
Service
bedrock-agentcore

Description

Lists sessions in an AgentCore Memory resource based on specified criteria. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ProcessPayment

#
Service
bedrock-agentcore

Description

Processes a payment using a payment instrument within a payment session. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

RetrieveMemoryRecords

#
Service
bedrock-agentcore

Description

Searches for and retrieves memory records from an AgentCore Memory resource based on specified search criteria. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

SaveBrowserSessionProfile

#
Service
bedrock-agentcore

Description

Saves the current state of a browser session as a reusable profile in Amazon Bedrock AgentCore. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

SearchRegistryRecords

#
Service
bedrock-agentcore

Description

Searches for registry records using semantic, lexical, or hybrid queries. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

StartBatchEvaluation

#
Service
bedrock-agentcore

Description

Starts a batch evaluation job that evaluates agent performance across multiple sessions. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

StartBrowserSession

#
Service
bedrock-agentcore

Description

Creates and initializes a browser session in Amazon Bedrock AgentCore. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

StartCodeInterpreterSession

#
Service
bedrock-agentcore

Description

Creates and initializes a code interpreter session in Amazon Bedrock AgentCore. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

StartMemoryExtractionJob

#
Service
bedrock-agentcore

Description

Starts a memory extraction job that processes events that failed extraction previously in an AgentCore Memory resource and produces structured memory records. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

StartRecommendation

#
Service
bedrock-agentcore

Description

Starts a recommendation job that analyzes agent traces and generates optimization suggestions for system prompts or tool descriptions to improve agent performance. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

StopBatchEvaluation

#
Service
bedrock-agentcore

Description

Stops a running batch evaluation. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

StopBrowserSession

#
Service
bedrock-agentcore

Description

Terminates an active browser session in Amazon Bedrock AgentCore. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

StopCodeInterpreterSession

#
Service
bedrock-agentcore

Description

Terminates an active code interpreter session in Amazon Bedrock AgentCore. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

StopRuntimeSession

#
Service
bedrock-agentcore

Description

Stops a session that is running in an running AgentCore Runtime agent. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

UpdateABTest

#
Service
bedrock-agentcore

Description

Updates an A/B test's configuration, including variants, traffic allocation, evaluation settings, or execution status. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

UpdateBrowserStream

#
Service
bedrock-agentcore

Description

Updates a browser stream. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

CreateAgentRuntime

#
Service
bedrock-agentcore

Description

CreateAgentRuntime recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "539431a6-8d10-4b92-a530-5a24596ac7ca",
  "eventSource": "bedrock-agentcore.amazonaws.com",
  "eventName": "CreateAgentRuntime",
  "awsRegion": "us-east-1",
  "eventType": "AwsApiCall",
  "readOnly": false,
  "managementEvent": true,
  "requestID": "2a40960b-da53-4422-9741-92e712ac98ee",
  "userAgent": "APN/1.0 HashiCorp/1.0 Terraform/1.15.5 (+https://www.terraform.io) terraform-provider-aws/6.49.0 (+https://registry.terraform.io/providers/hashicorp/aws) aws-sdk-go-v2/1.41.12 ua/2.1 os/linux lang/go#1.26.3 md/GOOS#linux md/GOARCH#arm64 api/bedrockagentcorecontrol#1.42.3 m/g",
  "resources": [
    {
      "accountId": "123456789012",
      "type": "AWS::BedrockAgentCore::Runtime",
      "ARN": "arn:aws:bedrock-agentcore:us-east-1:123456789012:runtime/EXAMPLE"
    }
  ]
}

CreateAgentRuntimeEndpoint

#
Service
bedrock-agentcore

Description

CreateAgentRuntimeEndpoint recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "716fdf5d-ea3b-4e64-bb39-d43329b7d0a1",
  "eventSource": "bedrock-agentcore.amazonaws.com",
  "eventName": "CreateAgentRuntimeEndpoint",
  "awsRegion": "us-east-1",
  "eventType": "AwsApiCall",
  "readOnly": false,
  "managementEvent": true,
  "requestID": "4b8b9880-d1e5-49cc-a58e-6157a84fc18c",
  "userAgent": "APN/1.0 HashiCorp/1.0 Terraform/1.15.5 (+https://www.terraform.io) terraform-provider-aws/6.49.0 (+https://registry.terraform.io/providers/hashicorp/aws) aws-sdk-go-v2/1.41.12 ua/2.1 os/linux lang/go#1.26.3 md/GOOS#linux md/GOARCH#arm64 api/bedrockagentcorecontrol#1.42.3 m/g",
  "resources": [
    {
      "accountId": "123456789012",
      "type": "AWS::BedrockAgentCore::RuntimeEndpoint",
      "ARN": "arn:aws:bedrock-agentcore:us-east-1:123456789012:runtime/EXAMPLE"
    },
    {
      "accountId": "123456789012",
      "type": "AWS::BedrockAgentCore::Runtime",
      "ARN": "arn:aws:bedrock-agentcore:us-east-1:123456789012:runtime/EXAMPLE"
    }
  ]
}

CreateMemory

#
Service
bedrock-agentcore

Description

CreateMemory recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "66024e64-606b-46d7-91ae-8c5a7107d8a5",
  "eventSource": "bedrock-agentcore.amazonaws.com",
  "eventName": "CreateMemory",
  "awsRegion": "us-east-1",
  "eventType": "AwsApiCall",
  "readOnly": false,
  "managementEvent": true,
  "requestID": "8e5c9906-a439-4e00-9943-aec54cfdf5cd",
  "userAgent": "APN/1.0 HashiCorp/1.0 Terraform/1.15.5 (+https://www.terraform.io) terraform-provider-aws/6.49.0 (+https://registry.terraform.io/providers/hashicorp/aws) aws-sdk-go-v2/1.41.12 ua/2.1 os/linux lang/go#1.26.3 md/GOOS#linux md/GOARCH#arm64 api/bedrockagentcorecontrol#1.42.3 m/g",
  "resources": [
    {
      "accountId": "123456789012",
      "type": "AWS::BedrockAgentCore::Memory",
      "ARN": "arn:aws:bedrock-agentcore:us-east-1:123456789012:memory/EXAMPLE"
    }
  ]
}

CreateWorkloadIdentity

#
Service
bedrock-agentcore

Description

CreateWorkloadIdentity recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "e843af11-6948-49d1-92e9-c7c5c10727da",
  "eventSource": "bedrock-agentcore.amazonaws.com",
  "eventName": "CreateWorkloadIdentity",
  "awsRegion": "us-east-1",
  "eventType": "AwsApiCall",
  "readOnly": false,
  "managementEvent": true,
  "requestID": "d83e8aba-533b-4db7-96b5-21640e65a76c",
  "userAgent": "bedrock-agentcore.amazonaws.com",
  "resources": [
    {
      "accountId": "123456789012",
      "type": "AWS::BedrockAgentCore::WorkloadIdentity",
      "ARN": "arn:aws:bedrock-agentcore:us-east-1:123456789012:workload-identity-directory/EXAMPLE"
    }
  ]
}

DeleteAgentRuntime

#
Service
bedrock-agentcore

Description

DeleteAgentRuntime recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "ae4d2dc7-4fa9-4f42-9b88-e2858c6ccff6",
  "eventSource": "bedrock-agentcore.amazonaws.com",
  "eventName": "DeleteAgentRuntime",
  "awsRegion": "us-east-1",
  "eventType": "AwsApiCall",
  "readOnly": false,
  "managementEvent": true,
  "requestID": "192853a1-0530-49dc-86cc-85b4f7d10b97",
  "userAgent": "APN/1.0 HashiCorp/1.0 Terraform/1.15.5 (+https://www.terraform.io) terraform-provider-aws/6.49.0 (+https://registry.terraform.io/providers/hashicorp/aws) aws-sdk-go-v2/1.41.12 ua/2.1 os/linux lang/go#1.26.3 md/GOOS#linux md/GOARCH#arm64 api/bedrockagentcorecontrol#1.42.3 m/g",
  "resources": [
    {
      "accountId": "123456789012",
      "type": "AWS::BedrockAgentCore::Runtime",
      "ARN": "arn:aws:bedrock-agentcore:us-east-1:123456789012:runtime/EXAMPLE"
    }
  ]
}

DeleteAgentRuntimeEndpoint

#
Service
bedrock-agentcore

Description

DeleteAgentRuntimeEndpoint recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "50e85a2f-e3db-48d3-8fa3-6dace5e9cb70",
  "eventSource": "bedrock-agentcore.amazonaws.com",
  "eventName": "DeleteAgentRuntimeEndpoint",
  "awsRegion": "us-east-1",
  "eventType": "AwsApiCall",
  "readOnly": false,
  "managementEvent": true,
  "requestID": "45a5bc9b-bf11-4ff8-a51b-9fd21d8ab79d",
  "userAgent": "APN/1.0 HashiCorp/1.0 Terraform/1.15.5 (+https://www.terraform.io) terraform-provider-aws/6.49.0 (+https://registry.terraform.io/providers/hashicorp/aws) aws-sdk-go-v2/1.41.12 ua/2.1 os/linux lang/go#1.26.3 md/GOOS#linux md/GOARCH#arm64 api/bedrockagentcorecontrol#1.42.3 m/g",
  "resources": [
    {
      "accountId": "123456789012",
      "type": "AWS::BedrockAgentCore::Runtime",
      "ARN": "arn:aws:bedrock-agentcore:us-east-1:123456789012:runtime/EXAMPLE"
    },
    {
      "accountId": "123456789012",
      "type": "AWS::BedrockAgentCore::RuntimeEndpoint",
      "ARN": "arn:aws:bedrock-agentcore:us-east-1:123456789012:runtime/EXAMPLE"
    }
  ]
}

DeleteMemory

#
Service
bedrock-agentcore

Description

DeleteMemory recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "d70bacd7-ad88-46f3-b880-7037bbaa8e12",
  "eventSource": "bedrock-agentcore.amazonaws.com",
  "eventName": "DeleteMemory",
  "awsRegion": "us-east-1",
  "eventType": "AwsApiCall",
  "readOnly": false,
  "managementEvent": true,
  "requestID": "e8a09f58-6b18-4258-b9e4-0c4803356b6d",
  "userAgent": "APN/1.0 HashiCorp/1.0 Terraform/1.15.5 (+https://www.terraform.io) terraform-provider-aws/6.49.0 (+https://registry.terraform.io/providers/hashicorp/aws) aws-sdk-go-v2/1.41.12 ua/2.1 os/linux lang/go#1.26.3 md/GOOS#linux md/GOARCH#arm64 api/bedrockagentcorecontrol#1.42.3 m/g",
  "resources": [
    {
      "accountId": "123456789012",
      "type": "AWS::BedrockAgentCore::Memory",
      "ARN": "arn:aws:bedrockagentcore:us-east-1:123456789012:EXAMPLE"
    }
  ]
}

DeleteWorkloadIdentity

#
Service
bedrock-agentcore

Description

DeleteWorkloadIdentity recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "18ef4377-7e4f-42cd-a9f8-f33cb28d92d4",
  "eventSource": "bedrock-agentcore.amazonaws.com",
  "eventName": "DeleteWorkloadIdentity",
  "awsRegion": "us-east-1",
  "eventType": "AwsApiCall",
  "readOnly": false,
  "managementEvent": true,
  "requestID": "710fce2c-546a-4e6e-9256-b846747c7ddb",
  "userAgent": "bedrock-agentcore.amazonaws.com"
}

GetAgentRuntime

#
Service
bedrock-agentcore

Description

GetAgentRuntime recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "01b27580-009f-4f87-aa65-06a4ba1edf43",
  "eventSource": "bedrock-agentcore.amazonaws.com",
  "eventName": "GetAgentRuntime",
  "awsRegion": "us-east-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "c514091f-a6ec-4004-8d6f-ccfcc538929a",
  "userAgent": "APN/1.0 HashiCorp/1.0 Terraform/1.15.5 (+https://www.terraform.io) terraform-provider-aws/6.49.0 (+https://registry.terraform.io/providers/hashicorp/aws) aws-sdk-go-v2/1.41.12 ua/2.1 os/linux lang/go#1.26.3 md/GOOS#linux md/GOARCH#arm64 api/bedrockagentcorecontrol#1.42.3 m/g",
  "resources": [
    {
      "accountId": "123456789012",
      "type": "AWS::BedrockAgentCore::Runtime",
      "ARN": "arn:aws:bedrock-agentcore:us-east-1:123456789012:runtime/EXAMPLE"
    }
  ]
}

GetAgentRuntimeEndpoint

#
Service
bedrock-agentcore

Description

GetAgentRuntimeEndpoint recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "cf54b22a-c9f3-4b07-aeab-5a7406f4cf51",
  "eventSource": "bedrock-agentcore.amazonaws.com",
  "eventName": "GetAgentRuntimeEndpoint",
  "awsRegion": "eu-west-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "9d586673-4d1f-43ce-8b73-5d4cd3e5cea1",
  "userAgent": "APN/1.0 HashiCorp/1.0 Terraform/1.15.5 (+https://www.terraform.io) terraform-provider-aws/6.49.0 (+https://registry.terraform.io/providers/hashicorp/aws) aws-sdk-go-v2/1.41.12 ua/2.1 os/linux lang/go#1.26.3 md/GOOS#linux md/GOARCH#arm64 api/bedrockagentcorecontrol#1.42.3 m/g",
  "resources": [
    {
      "accountId": "123456789012",
      "type": "AWS::BedrockAgentCore::Runtime",
      "ARN": "arn:aws:bedrock-agentcore:eu-west-1:123456789012:runtime/EXAMPLE"
    },
    {
      "accountId": "123456789012",
      "type": "AWS::BedrockAgentCore::RuntimeEndpoint",
      "ARN": "arn:aws:bedrock-agentcore:eu-west-1:123456789012:runtime/EXAMPLE"
    }
  ]
}

GetBrowser

#
Service
bedrock-agentcore

Description

GetBrowser recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "222ebc85-efd0-4c34-a849-89d03643b6e9",
  "eventSource": "bedrock-agentcore.amazonaws.com",
  "eventName": "GetBrowser",
  "awsRegion": "eu-west-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "aa554907-3b96-469c-b1f7-4972c12e389f",
  "userAgent": "APN/1.0 HashiCorp/1.0 Terraform/1.15.5 (+https://www.terraform.io) terraform-provider-aws/6.49.0 (+https://registry.terraform.io/providers/hashicorp/aws) aws-sdk-go-v2/1.41.12 ua/2.1 os/linux lang/go#1.26.3 md/GOOS#linux md/GOARCH#arm64 api/bedrockagentcorecontrol#1.42.3 m/g",
  "resources": [
    {
      "accountId": "123456789012",
      "type": "AWS::BedrockAgentCore::BrowserCustom",
      "ARN": "arn:aws:bedrock-agentcore:eu-west-1:123456789012:browser-custom/EXAMPLE"
    }
  ]
}

GetGateway

#
Service
bedrock-agentcore

Description

GetGateway recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "4316e536-2828-4ac5-9ab3-2fe793f36a9a",
  "eventSource": "bedrock-agentcore.amazonaws.com",
  "eventName": "GetGateway",
  "awsRegion": "us-east-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "04957104-b9db-477b-9234-bb5f1d8dc1bd",
  "userAgent": "config.amazonaws.com"
}

GetGatewayTarget

#
Service
bedrock-agentcore

Description

GetGatewayTarget recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "c8059604-06e3-44ed-824f-1e7c763136ed",
  "eventSource": "bedrock-agentcore.amazonaws.com",
  "eventName": "GetGatewayTarget",
  "awsRegion": "us-east-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "03655fcd-42c5-420b-8aba-302d6b90ed79",
  "userAgent": "aws-sdk-go-v2/1.43.0 ua/2.1 os/linux lang/go#1.26.5 md/GOOS#linux md/GOARCH#arm64 api/bedrockagentcorecontrol#1.28.1 m/E,i"
}

GetMemory

#
Service
bedrock-agentcore

Description

GetMemory recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "b2efd395-997b-4536-a537-6cea0802ef24",
  "eventSource": "bedrock-agentcore.amazonaws.com",
  "eventName": "GetMemory",
  "awsRegion": "us-east-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "cb2c8d0a-336b-446c-9d88-5e557a570c93",
  "userAgent": "APN/1.0 HashiCorp/1.0 Terraform/1.15.5 (+https://www.terraform.io) terraform-provider-aws/6.49.0 (+https://registry.terraform.io/providers/hashicorp/aws) aws-sdk-go-v2/1.41.12 ua/2.1 os/linux lang/go#1.26.3 md/GOOS#linux md/GOARCH#arm64 api/bedrockagentcorecontrol#1.42.3 m/g"
}

GetOnlineEvaluationConfig

#
Service
bedrock-agentcore

Description

GetOnlineEvaluationConfig recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "929fefb4-9b90-4116-b635-f5ec7f7a4e32",
  "eventSource": "bedrock-agentcore.amazonaws.com",
  "eventName": "GetOnlineEvaluationConfig",
  "awsRegion": "us-east-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "4111f7ac-824c-421d-8e53-8e82d017cf35",
  "userAgent": "config.amazonaws.com"
}

GetPolicyEngine

#
Service
bedrock-agentcore

Description

GetPolicyEngine recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "98d2384e-f6b1-4ad7-bef8-23d5a9654bc6",
  "eventSource": "bedrock-agentcore.amazonaws.com",
  "eventName": "GetPolicyEngine",
  "awsRegion": "us-east-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "a55de681-db3f-4f9b-b01f-6944cfe0f345",
  "userAgent": "aws-sdk-go-v2/1.43.0 ua/2.1 os/linux lang/go#1.26.5 md/GOOS#linux md/GOARCH#arm64 api/bedrockagentcorecontrol#1.28.1 m/E,i"
}

GetWorkloadIdentity

#
Service
bedrock-agentcore

Description

GetWorkloadIdentity recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "dccd2bea-1cf3-4f82-a3ec-4a534fb2aae4",
  "eventSource": "bedrock-agentcore.amazonaws.com",
  "eventName": "GetWorkloadIdentity",
  "awsRegion": "us-east-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "dd39f3cf-a5f2-4915-a5c9-0c800d747a62",
  "userAgent": "config.amazonaws.com"
}

ListAgentRuntimeEndpoints

#
Service
bedrock-agentcore

Description

ListAgentRuntimeEndpoints recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "aebc6f0b-c8ef-4eb9-bef1-ac328b3bbfc5",
  "eventSource": "bedrock-agentcore.amazonaws.com",
  "eventName": "ListAgentRuntimeEndpoints",
  "awsRegion": "us-east-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "ffaf6c1e-0fe8-4f11-9955-43dd5309e5da",
  "userAgent": "config.amazonaws.com",
  "resources": [
    {
      "accountId": "123456789012",
      "type": "AWS::BedrockAgentCore::Runtime",
      "ARN": "arn:aws:bedrock-agentcore:us-east-1:123456789012:runtime/EXAMPLE"
    }
  ]
}

ListAgentRuntimes

#
Service
bedrock-agentcore

Description

ListAgentRuntimes recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "7a82b5b1-c4cb-485b-88a2-2a6e333a1d8d",
  "eventSource": "bedrock-agentcore.amazonaws.com",
  "eventName": "ListAgentRuntimes",
  "awsRegion": "ap-northeast-2",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "b4c1234f-3ce2-488c-b5b6-5b5e1a66c608",
  "userAgent": "config.amazonaws.com"
}

ListAgentRuntimeVersions

#
Service
bedrock-agentcore

Description

ListAgentRuntimeVersions recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "ed19517d-2c8d-47ae-9a4d-fbeaeb845666",
  "eventSource": "bedrock-agentcore.amazonaws.com",
  "eventName": "ListAgentRuntimeVersions",
  "awsRegion": "us-east-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "5dd07ef4-592c-4741-a0db-9181726c1d19",
  "userAgent": "aws-sdk-go-v2/1.43.0 ua/2.1 os/linux lang/go#1.26.5 md/GOOS#linux md/GOARCH#arm64 api/bedrockagentcorecontrol#1.28.1 m/C,E,i",
  "resources": [
    {
      "accountId": "123456789012",
      "type": "AWS::BedrockAgentCore::Runtime",
      "ARN": "arn:aws:bedrock-agentcore:us-east-1:123456789012:runtime/EXAMPLE"
    }
  ]
}

ListBrowsers

#
Service
bedrock-agentcore

Description

ListBrowsers recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "e820d17f-5b58-4441-8664-386ec8db01b3",
  "eventSource": "bedrock-agentcore.amazonaws.com",
  "eventName": "ListBrowsers",
  "awsRegion": "eu-west-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "48caf330-91da-4d6b-a88a-7190b5d3f979",
  "userAgent": "aws-sdk-go-v2/1.43.0 ua/2.1 os/linux lang/go#1.26.5 md/GOOS#linux md/GOARCH#arm64 api/bedrockagentcorecontrol#1.28.1 m/C,E,i"
}

ListCodeInterpreters

#
Service
bedrock-agentcore

Description

ListCodeInterpreters recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "88c96b9b-ac3e-46ed-8e71-7adba4d8f0f6",
  "eventSource": "bedrock-agentcore.amazonaws.com",
  "eventName": "ListCodeInterpreters",
  "awsRegion": "eu-west-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "fd417a11-6834-427a-bdc1-81d4312b8c34",
  "userAgent": "aws-sdk-go-v2/1.43.0 ua/2.1 os/linux lang/go#1.26.5 md/GOOS#linux md/GOARCH#arm64 api/bedrockagentcorecontrol#1.28.1 m/C,E,i"
}

ListEvaluators

#
Service
bedrock-agentcore

Description

ListEvaluators recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "b6222999-be54-4517-b0c9-11a84cc03fa7",
  "eventSource": "bedrock-agentcore.amazonaws.com",
  "eventName": "ListEvaluators",
  "awsRegion": "eu-west-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "75b35e29-9f15-4fdd-a62c-994c774a0e99",
  "userAgent": "config.amazonaws.com"
}

ListGatewayTargets

#
Service
bedrock-agentcore

Description

ListGatewayTargets recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "ae1c4d47-c48e-4304-b8ef-2f4447bbbdf8",
  "eventSource": "bedrock-agentcore.amazonaws.com",
  "eventName": "ListGatewayTargets",
  "awsRegion": "us-east-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "59feba78-71f5-48b5-9d4c-115f3ded92fb",
  "userAgent": "aws-sdk-go-v2/1.43.0 ua/2.1 os/linux lang/go#1.26.5 md/GOOS#linux md/GOARCH#arm64 api/bedrockagentcorecontrol#1.28.1 m/C,E,i"
}

ListHarnesses

#
Service
bedrock-agentcore

Description

ListHarnesses recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "be90873a-10c0-4835-88b7-0cc1cee4fd7a",
  "eventSource": "bedrock-agentcore.amazonaws.com",
  "eventName": "ListHarnesses",
  "awsRegion": "us-east-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "75d7ab2d-175f-4f83-8969-cab830c7ee0d",
  "userAgent": "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/148.0.0.0 Safari/537.36",
  "resources": [
    {
      "accountId": "123456789012",
      "type": "AWS::BedrockAgentCore::Runtime",
      "ARN": "arn:aws:bedrock-agentcore:us-east-1:123456789012:harness/EXAMPLE"
    }
  ]
}

ListMemories

#
Service
bedrock-agentcore

Description

ListMemories recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "89f13eaa-295b-4f09-a1d1-fff18935b07a",
  "eventSource": "bedrock-agentcore.amazonaws.com",
  "eventName": "ListMemories",
  "awsRegion": "eu-west-2",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "ded8787c-0ca2-419f-bea5-bbff1c02ca70",
  "userAgent": "config.amazonaws.com"
}

ListOnlineEvaluationConfigs

#
Service
bedrock-agentcore

Description

ListOnlineEvaluationConfigs recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "d809ddef-ab64-4a6d-8b12-f3f230aab944",
  "eventSource": "bedrock-agentcore.amazonaws.com",
  "eventName": "ListOnlineEvaluationConfigs",
  "awsRegion": "eu-central-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "f75d699e-81df-407a-9b88-ed4cd948f54b",
  "userAgent": "config.amazonaws.com"
}

ListPolicyEngines

#
Service
bedrock-agentcore

Description

ListPolicyEngines recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "2e498f93-d077-4f7b-8207-09f599442be7",
  "eventSource": "bedrock-agentcore.amazonaws.com",
  "eventName": "ListPolicyEngines",
  "awsRegion": "ap-southeast-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "70a8c725-f36e-4c48-97aa-6e4af0e75ead",
  "userAgent": "aws-sdk-go-v2/1.43.0 ua/2.1 os/linux lang/go#1.26.5 md/GOOS#linux md/GOARCH#arm64 api/bedrockagentcorecontrol#1.28.1 m/C,E,i"
}

ListWorkloadIdentities

#
Service
bedrock-agentcore

Description

ListWorkloadIdentities recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "efc3205b-d0cf-48d5-85f8-72048b76814b",
  "eventSource": "bedrock-agentcore.amazonaws.com",
  "eventName": "ListWorkloadIdentities",
  "awsRegion": "sa-east-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "818e3df1-9acb-4540-a031-a16bf64b13ee",
  "userAgent": "config.amazonaws.com"
}

UpdateAgentRuntime

#
Service
bedrock-agentcore

Description

UpdateAgentRuntime recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "a44bf6b0-d3cd-4fbf-884d-215d41311ced",
  "eventSource": "bedrock-agentcore.amazonaws.com",
  "eventName": "UpdateAgentRuntime",
  "awsRegion": "eu-west-1",
  "eventType": "AwsApiCall",
  "readOnly": false,
  "managementEvent": true,
  "requestID": "9f5626ab-558c-41c9-870d-820a12264b3a",
  "userAgent": "APN/1.0 HashiCorp/1.0 Terraform/1.15.5 (+https://www.terraform.io) terraform-provider-aws/6.49.0 (+https://registry.terraform.io/providers/hashicorp/aws) aws-sdk-go-v2/1.41.12 ua/2.1 os/linux lang/go#1.26.3 md/GOOS#linux md/GOARCH#arm64 api/bedrockagentcorecontrol#1.42.3 m/g",
  "resources": [
    {
      "accountId": "123456789012",
      "type": "AWS::BedrockAgentCore::Runtime",
      "ARN": "arn:aws:bedrock-agentcore:eu-west-1:123456789012:runtime/EXAMPLE"
    }
  ]
}

UpdateAgentRuntimeEndpoint

#
Service
bedrock-agentcore

Description

UpdateAgentRuntimeEndpoint recorded by CloudTrail for Amazon Bedrock AgentCore. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "69944afe-9d43-4ee8-9e8f-da98c619a6a4",
  "eventSource": "bedrock-agentcore.amazonaws.com",
  "eventName": "UpdateAgentRuntimeEndpoint",
  "awsRegion": "eu-west-1",
  "eventType": "AwsApiCall",
  "readOnly": false,
  "managementEvent": true,
  "requestID": "5584e1a2-d60d-4aaa-aa1f-687c1b64c51a",
  "userAgent": "APN/1.0 HashiCorp/1.0 Terraform/1.15.5 (+https://www.terraform.io) terraform-provider-aws/6.49.0 (+https://registry.terraform.io/providers/hashicorp/aws) aws-sdk-go-v2/1.41.12 ua/2.1 os/linux lang/go#1.26.3 md/GOOS#linux md/GOARCH#arm64 api/bedrockagentcorecontrol#1.42.3 m/g",
  "resources": [
    {
      "accountId": "123456789012",
      "type": "AWS::BedrockAgentCore::Runtime",
      "ARN": "arn:aws:bedrock-agentcore:eu-west-1:123456789012:runtime/EXAMPLE"
    },
    {
      "accountId": "123456789012",
      "type": "AWS::BedrockAgentCore::RuntimeEndpoint",
      "ARN": "arn:aws:bedrock-agentcore:eu-west-1:123456789012:runtime/EXAMPLE"
    }
  ]
}

DeleteCapacityProviderSession

#
Service
bedrock-agentcore

Description

Deletes a session associated with a capacity provider in Amazon Bedrock AgentCore and makes the session unavailable for further use. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.