SYSTEM Cited by 1 source
AWS CodePipeline¶
What it is¶
AWS CodePipeline is AWS's managed continuous-delivery service for modeling and automating release pipelines — a sequence of stages (build, test, deploy) that a change flows through, with each stage able to gate promotion to the next.
Role in graduated autonomy¶
In AWS's graduated autonomy reference architecture, CodePipeline is the delivery gate that keeps degraded agent versions out of production (Source: sources/2026-08-26-aws-closing-the-ai-agent-trust-gap-with-graduated-autonomy):
- Each change to the agent's prompt, configuration, or tool definitions triggers a CodePipeline run.
- The run deploys the candidate to staging and evaluates it against ground-truth fixtures using AgentCore Evaluations.
- Fixtures include adversarial cases (prompt injection, data-exfiltration); one unauthorized tool call in any adversarial case fails the gate (delivery-gate-blocks-degraded-agent-version).
- The version that passes becomes the last known stable version — the artifact the runtime redeploys during automatic recovery.
CodePipeline here gates on evaluation results, not just build/test success — the pipeline's promotion criterion is an agent-behavior verdict.
Relation to other CI/CD systems¶
Functionally comparable to GitHub Actions as a pipeline orchestrator; the distinctive element in this architecture is what the gate checks (adversarial agent-behavior fixtures) rather than CodePipeline itself. It composes with staged progressive deployment thinking — validate in staging before production.
Caveats¶
- Architecture-level mention. The source names CodePipeline's role as the delivery-gate orchestrator but not its stage configuration, environments, or how staging fixtures are managed in detail.
Seen in¶
- sources/2026-08-26-aws-closing-the-ai-agent-trust-gap-with-graduated-autonomy — delivery gate that runs each agent prompt/config/tool change against adversarial fixtures via AgentCore Evaluations in staging; a single unauthorized tool call fails the release.
Related¶
- systems/amazon-bedrock-agentcore-evaluations
- systems/bedrock-agentcore
- delivery-gate-blocks-degraded-agent-version
- graduated-autonomy
- systems/github-actions
- patterns/staged-rollout