Skip to content

SYSTEM Cited by 3 sources

Amazon Bedrock Guardrails

What it is

Amazon Bedrock Guardrails is a configurable safety layer that wraps foundation-model invocations and agent behavior, filtering both inputs and outputs against declarative policies. In agentic architectures it sits in front of every agent so that unsafe or out-of-scope behavior is blocked at the runtime boundary rather than left to prompt-level instructions.

Enforced controls

In the clinical-trial screening architecture, all three agents operate behind Bedrock Guardrails, which enforce (Source: sources/2026-08-19-aws-ai-powered-clinical-trial-eligibility-and-safety-using-amazon-bedrock-agentcore):

  1. PII/PHI filtering — protect patient health information.
  2. Content-safety controls — help prevent clinically inappropriate outputs.
  3. Grounding checks — keep responses anchored in retrieved evidence rather than model parametric knowledge (a direct mitigation for hallucination).
  4. Denied-topic boundaries — keep agents within their screening scope.

Grounding checks and denied-topic boundaries make the guardrail a scope-limiter, not just an output scrubber: they constrain what the agent may reason about, complementing audit and evaluation layers in the system's defense-in-depth posture.

Relation to other Bedrock safety surfaces

Guardrails filter content probabilistically; the neurosymbolic Bedrock Guardrails automated reasoning checks surface verifies factual claims against a formal policy. Both differ from AgentCore capability enforcement, which restricts what an agent can do rather than what it can say.

Embedding in AgentCore Policy (2026-08-21)

Beyond wrapping model invocations directly, Guardrails can be embedded inside AgentCore Policy so that Cedar policies invoke guardrail safeguards — prompt-attack detection, content filtering, and sensitive-information blocking — at the gateway boundary during tool execution rather than only at the model I/O boundary (Source: sources/2026-08-21-aws-how-agentflo-built-ai-sales-agents-with-amazon-bedrock-agentcore-part-2). In AgentFlo this makes Guardrails the content-safety element of a broader three-layer guardrail posture (pre-turn Fargate checks → Gateway/Policy + Guardrails during tool execution → post-turn output filters).

Seen in

Last updated · 766 distilled / 2,225 read