AWS CLI

Developer Tools

One tool to manage every AWS service from the command line, and script them.

Latest 2.36.24 · by Amazon Web ServicesWebsite

Release activity

Release activity — 19 releases across 13 days since Jul 29, 2026. Each cell is one day; darker means more releases that day. Nothing is recorded before Jul 29, 2026. Older weeks are hidden at this screen width.
MayJunJulAug
SundayNo releases on Aug 2, 2026No releases on Aug 9, 2026No releases on Aug 16, 2026
Monday2 releases on Aug 3, 20261 release on Aug 10, 2026No releases on Aug 17, 2026
Tuesday2 releases on Aug 4, 20261 release on Aug 11, 2026
Wednesday1 release on Jul 29, 20261 release on Aug 5, 20261 release on Aug 12, 2026
Thursday2 releases on Jul 30, 20261 release on Aug 6, 20261 release on Aug 13, 2026
Friday4 releases on Jul 31, 20261 release on Aug 7, 20261 release on Aug 14, 2026
SaturdayNo releases on Aug 1, 2026No releases on Aug 8, 2026No releases on Aug 15, 2026

19 releases since Jul 29, 2026, busiest day 4

Changelog

2.36.24

Latest
Added 9
  • Added support for associating glossary terms with iterable form items, such as table columns in Glue
  • Added support for g7.2xlarge, g7.4xlarge, g7.8xlarge, g7.12xlarge, g7.24xlarge, and g7.48xlarge instance types for SageMaker HyperPod
  • CloudWatch Logs centralization rules now support tag propagation with configurable conflict resolution strategies
  • Added AgentCore Payments support for CMK, Marketplace Subscriptions and QuickCreate
  • Amazon Redshift now unlocks a locked admin user account and resets the failed-login counter when updating the admin password using the ModifyCluster API when account lockout security is enabled
  • Added support for Consuming code for MWAA Serverless
  • api-change:glue: Added support for associating glossary terms with iterable form items, such as table columns.
  • api-change:sagemaker: Release support for g7.2xlarge, g7.4xlarge, g7.8xlarge, g7.12xlarge, g7.24xlarge, and g7.48xlarge instance types for SageMaker HyperPod
  • api-change:observabilityadmin: CloudWatch Logs centralization rules now support tag propagation. You can configure a TagPropagationConfiguration on your centralization rule to automatically sync resource tags from source to destination log groups, with configurable conflict resolution strategies.
  • api-change:bedrock-agentcore-control: Adds AgentCore Payments support for CMK, Marketplace Subscriptions and QuickCreate
  • api-change:redshift: Amazon Redshift now unlocks a locked admin user account and resets the failed-login counter when you update the admin password using the ModifyCluster API. This option is available only when account lockout security is enabled.
  • api-change:mwaa-serverless: Adds support for Consuming code for MWAA Serverless
  • api-change:redshift-serverless: Amazon Redshift now unlocks a locked admin user account and resets the failed-login counter when you update the admin password using the UpdateNamespace API. This option is available only when account lockout security is enabled.
  • api-change:bedrock-agentcore: Add support for the Machine Payments Protocol (MPP) and x402 upto scheme payments protocol in Amazon Bedrock AgentCore Payments. Customers can now pay for MPP-gated resources and also pay services which requires upto scheme in x402
  • api-change:bedrock-agent-runtime: Adds CheckIngestedDocumentAcl and GetIngestedDocumentAcl APIs to Amazon Bedrock Knowledge Bases. Customers can verify user access to documents based on ingested ACLs and retrieve full ACL details including allow and deny entries, enabling validation of ACL ingestion without test retrievals.
View originalPermalink
How 2.36.24 went

2.36.23

Added 9
  • Added the GetBlobDifferences API operation to codecommit, which returns line-level diffs between two blob versions without requiring a local clone with support for pagination
  • Added InstanceIds parameter to TerminateInstanceInAutoScalingGroup in autoscaling to terminate multiple instances in a single call and return an Activities list
  • Added LaunchInstances response in autoscaling to return IdempotentCallInProgressFault for duplicate client tokens
  • Added support in securityagent for setting a maximum task-hour budget cap on penetration tests and code reviews
  • Added REVALIDATION job type to securityagent for revalidating previously reported findings
  • Added support in acm to update existing email-validated certificates to use the DNS validation method
Changed 1
  • SSM SessionManager now displays a warning message for outdated SessionManagerPlugin version
Fixed 1
  • Fixed StartWebRTCContact in connect to correctly return AccessDeniedException instead of an internal server error
  • api-change:codecommit: Added the GetBlobDifferences API operation, which returns line-level diffs between two blob versions without requiring a local clone. Returns structured hunks with context, additions, and deletions. Supports pagination for large diffs.
  • api-change:autoscaling: Amazon EC2 Auto Scaling now supports terminating multiple instances in a single TerminateInstanceInAutoScalingGroup call via the new InstanceIds parameter, returning an Activities list. LaunchInstances now returns IdempotentCallInProgressFault for duplicate client tokens.
  • api-change:securityagent: Add support for setting a maximum task-hour budget cap on penetration tests and code reviews, and for revalidating previously reported findings via a new REVALIDATION job type.
  • api-change:acm: This change allows customers to update their existing email-validated certificates to use the DNS validation method.
  • api-change:cleanrooms: This release adds support for minimum aggregation thresholds and comparison controls to the Custom analysis rule type.
  • enhancement:SSM SessionManager: Add warning message for outdated SessionManagerPlugin version
  • api-change:connect: Adds the StartAssistantContact API to start chat contacts handled by an AI agent. Adds SegmentAttributes to StartWebRTCContact, and corrects its error response to now receive AccessDeniedException (previously returned as an internal server error due to a missing error declaration).
View originalPermalink
How 2.36.23 went

2.36.22

Added 6
  • Introduced role manager for IAM, an automated capability that sets up IAM roles your AWS services need
  • Added Well-Architected Agent, a generative AI service that analyzes AWS environments and delivers personalized recommendations across cost, security, performance, and resilience
  • Added APIs for DLP with Microsoft Purview to manage configs with label enforcement across Spaces, Chat, and Knowledge Bases
  • Added Approval Workflows APIs for CRUD operations on policies for asset sharing for Agents, Knowledge Bases, and Spaces
  • Added Limits Management APIs for limit profiles for index storage and agent hours per user
  • Added support for Oracle Exadata on Exascale Infrastructure (ExaDB-XS) resources including storage vaults and VM clusters
Changed 4
  • Improved validation of Kinesis stream ARN format in DSQL to ensure only valid ARN characters are accepted
  • Updated documentation for materialized views APIs in Glue
  • AWS MediaConnect now supports tuning internal recovery latency between Router Inputs and Outputs to prioritize stream quality versus end-to-end latency
  • Update awscrt to version 0.36.2
  • api-change:iam: Introduced role manager, an IAM capability that automatically sets up the IAM roles your AWS services need. When you set up a supported service in the console, role manager creates a role for you or reuses an existing one from an AWS-managed template.
  • api-change:wellarchitected: This change releases the Well-Architected Agent, a generative AI service that analyzes a customer's AWS environment and delivers personalized, prioritized recommendations across cost, security, performance, and resilience.
  • api-change:quicksight: Added APIs for DLP with Microsoft Purview (manage configs with label enforcement across Spaces, Chat, Knowledge Bases), Approval Workflows (CRUD for policies on asset sharing for Agents, Knowledge Bases, Spaces), and Limits Management (limit profiles for index storage and agent hours per user).
  • api-change:dsql: Improved validation of Kinesis stream ARN format to ensure only valid ARN characters are accepted
  • api-change:glue: Documentation updates for materialized views APIs.
  • api-change:mediaconnect: AWS MediaConnect now supports tuning the internal recovery latency between Router Inputs and Outputs to prioritize stream quality versus end-to-end latency.
  • api-change:odb: Adds support for Oracle Exadata on Exascale Infrastructure (ExaDB-XS) resources including storage vaults and VM clusters.
  • enhancement:awscrt: Update awscrt to version 0.36.2
View originalPermalink
How 2.36.22 went

2.36.21

Added 6
  • GetSubscriptionGrant now returns materialized asset scope name for mapping Lake Formation data cell filters or Redshift views to subscription grants in datazone
  • Add support for exporting redacted query execution logs in AWS Clean Rooms
  • Add online eval arn as input for recommendation API in bedrock-agentcore
  • Add seven new APIs for managing custom metrics in connect, including create, describe, update, and delete operations to tailor analytics dashboards
  • Add SDK support for AWS IAM account access manager in account-access, enabling mapping of IAM roles to users and groups in AWS IAM Identity Center
  • Give customers the ability to selectively tune certain configurations of Kubernetes control plane components in an Amazon EKS cluster
Changed 3
  • Amazon A2I in textract entered maintenance mode and now rejects StartHumanLoop requests from accounts that it does not recognize as existing customers
  • Clarify valid input values for the HandshakePartyType parameter in InviteAccountToOrganization in organizations, with API ORGANIZATION valid only in responses and ACCOUNT and EMAIL as valid input values
  • Add end-of-support notice to Amazon Cloud Directory public CLI reference documentation
Fixed 1
  • Reset PSModulePath before launching new PowerShell console to avoid inheriting an incompatible PSModulePath
  • api-change:datazone: GetSubscriptionGrant now returns materialized asset scope name for mapping Lake Formation data cell filters or Redshift views to subscription grants.
  • api-change:textract: Amazon A2I entered maintenance mode in July 2026 and now rejects StartHumanLoop requests from accounts that it does not recognize as existing customers. This update adds a corresponding note to the HumanLoopConfig parameter documentation so that the API Reference and SDK docs explain this behavior.
  • api-change:cleanrooms: Adds support for exporting redacted query execution logs in AWS Clean Rooms
  • api-change:organizations: Documentation update for AWS Organizations that clarifies valid input values for the HandshakePartyType parameter in the InviteAccountToOrganization. API ORGANIZATION is valid in responses only. valid input values are ACCOUNT and EMAIL
  • api-change:bedrock-agentcore: Adding online eval arn as input for recommendation API
  • api-change:connect: Seven new APIs for managing custom metrics, including create, describe, update, and delete. Using Custom Metrics, customers of Amazon Connect Customer can tailor analytics dashboards to their needs by applying custom thresholds, filters, and calculations to one or more out of the box measurements.
  • api-change:clouddirectory: Added an end-of-support notice to Amazon Cloud Directory public CLI reference documentation.
  • api-change:account-access: Adds SDK support for AWS IAM account access manager, a feature that enables mapping of IAM roles to the users and groups in AWS IAM Identity Center.
  • bugfix:update: Reset PSModulePath before launching new PowerShell console to avoid inheriting an incompatible PSModulePath
  • api-change:eks: This feature would give customers the ability to selectively tune certain configurations of Kubernetes control plane components in an Amazon EKS cluster.
View originalPermalink
How 2.36.21 went

2.36.20

Added 5
  • Added PREFIX AWARE routing strategy and PrefixAwareRoutingConfig to SageMaker CreateEndpointConfig with PrefixLength and ConcurrencyThreshold configuration
  • Added support for the SearchFixtures API and DataSourceConfiguration in ElementalInference to map fixture event data onto clipping outputs
  • Added the PrefixAwareId header to SageMaker Runtime InvokeEndpoint and InvokeEndpointWithResponseStream as a routing hint for prefix-aware routing
  • Added Malay language option to Connect for AI-powered automatic evaluation form filling
  • Added VirtualSourceAddress to MediaLive multicast output destinations for specifying source IP address for outbound multicast packets
  • api-change:sagemaker: Added PREFIX AWARE routing strategy and PrefixAwareRoutingConfig to CreateEndpointConfig. Configure PrefixLength and ConcurrencyThreshold to route requests that share the same prompt prefix to the same instance.
  • api-change:elementalinference: Added support for the SearchFixtures API and DataSourceConfiguration, enabling customers to map fixture event data onto clipping outputs for improved feature accuracy.
  • api-change:sagemaker-runtime: Added the PrefixAwareId header to InvokeEndpoint and InvokeEndpointWithResponseStream. This optional parameter serves as a routing hint for endpoints configured with prefix-aware routing, differentiating routing decisions for requests that share the same prompt prefix.
  • api-change:connect: Added Malay language option to use AI to automatically fill evaluation forms in Malay
  • api-change:medialive: Added VirtualSourceAddress to multicast output destinations for MediaLive Anywhere channels. Specifies the source IP address for outbound multicast packets when downstream networks enforce source-IP filtering.
View originalPermalink
How 2.36.20 went

2.36.19

Added 7
  • Amazon SageMaker adds maintenance lifecycle statuses for Notebook Instances
  • Support for updating the task template associated with in-progress task contacts using the new UpdateContactTaskTemplate API in Amazon Connect
  • Support for inserting ads via the VAST Ad Buffet standard in MediaTailor with AdSequencingMode setting for sequential ad insertion
  • Support for BGP route protection in Amazon VPC IP Address Manager including route discovery, RPKI route protection findings, and delegated RPKI for BYOIP prefixes
  • provenanceEnabled parameter added to StartFHIRImportJob in HealthLake
  • enableEmailMfa input field on Actor to enable email-based MFA during penetration tests in Security Agent, with mfaForwardingAddress returned when enabled
  • StreamNameOutputMode field on MediaPackageV2 OriginEndpoints to choose whether egress manifests use numeric stream indices or encoder-assigned stream names
Changed 1
  • Increased the maximum allowed length of the oauthToken parameter in the Amplify CreateApp and UpdateApp APIs
  • api-change:sagemaker: Amazon SageMaker adds maintenance lifecycle statuses for Notebook Instances
  • api-change:connect: Supports updating the task template associated with in-progress task contacts using the new UpdateContactTaskTemplate API. This enables supervisors and developers to dynamically reassign task templates without creating a new task.
  • api-change:mediatailor: Added support for inserting ads via the VAST Ad Buffet standard. You can now configure MediaTailor to insert ads in sequence order using the AdSequencingMode setting in your playback configuration. Standalone ads are used as fallbacks when a sequenced ad is unavailable.
  • api-change:ec2: This release adds support for BGP route protection in Amazon VPC IP Address Manager (IPAM), including route discovery, RPKI route protection findings, and delegated RPKI (Internet Registry Associations, routing policy registrations, and ROA management) for BYOIP prefixes.
  • api-change:amplify: Increased the maximum allowed length of the oauthToken parameter in the CreateApp and UpdateApp APIs to support longer OAuth tokens issued by third-party Git providers.
  • api-change:healthlake: Adds provenanceEnabled to StartFHIRImportJob
  • api-change:securityagent: Added enableEmailMfa input field on Actor to enable email-based MFA during penetration tests. When enabled, a server-generated mfaForwardingAddress is returned. Set up a forwarding rule in your email provider to forward MFA emails to this address so the agent can complete email-based MFA login flows
  • api-change:mediapackagev2: StreamNameOutputMode - a new optional field on MediaPackageV2 OriginEndpoints that lets customers choose whether egress manifests use numeric stream indices (default) or encoder-assigned stream names from the input
View originalPermalink
How 2.36.19 went

2.36.18

Added 16
  • Add support for WhatsApp Conversions APIs in socialmessaging
  • Add support for capacity provider sessions in Amazon Bedrock AgentCore, allowing deletion of active sessions on runtime instances
  • Add support for C8a, C8i, C9g, M8a, M8i, and M9g EC2 instance type families for GameLift managed EC2 and container fleets
  • Add support for service generated insights across runs, jobs, and tests in Device Farm
  • Agent Registry Public Preview release
  • AWS Backup now lets you create read-only access points for Amazon S3 recovery points
Changed 1
  • Updated CodeArtifact npm login to write configuration directly to .npmrc
  • api-change:socialmessaging: Add support for WhatsApp Conversions APIs.
  • api-change:bedrock-agentcore: Add support for capacity provider sessions in Amazon Bedrock AgentCore. Customers can now delete an active session running on a runtime instance launched through their capacity provider.
  • api-change:gamelift: Adds support for C8a, C8i, C9g, M8a, M8i, and M9g EC2 instance type families for managed EC2 and container fleets. Also adds explicit anchors on most string regexes.
  • api-change:devicefarm: Adds support for service generated insights across runs, jobs, and tests.
  • api-change:agent-registry-control: Agent Registry's Public Preview release
  • api-change:s3: AWS Backup now lets you create read-only access points for Amazon S3 recovery points, enabling you to access backup data using S3 APIs without initiating a restore.
  • api-change:kafka: MSK Clusters can now deliver authorizer logs alongside broker logs to the destinations defined by you
  • api-change:logs: This release adds index category support to the CloudWatch Logs DescribeFieldIndexes API. Customers can filter and identify DEFAULT, CUSTOM, AUTO, and INACTIVE field indexes.
  • api-change:securityhub: Security Hub is adding a new public API, ListFreeTrialStatusesV2 to describe the free trial statuses of the Security Hub service and its opt-in features.
  • enhancement:CodeArtifact: Updated npm login to write configuration directly to .npmrc, consistent with how other package manager integrations handle their config files.
  • api-change:mediatailor: AWS Elemental MediaTailor now supports concurrent function execution. The new Concurrent Executor function type runs multiple independent child functions in parallel within a single lifecycle hook, reducing pipeline latency to the duration of the slowest call instead of the sum of all calls.
  • api-change:ec2: Adds a new optional IncludeLocalZones parameter to the Spot Placement Score API that defaults to false. When set to true, the Spot Placement Score API will consider the relevant Local Zones with Spot capacity when computing the Spot Placement Score.
  • api-change:sagemaker: Releases new Model Customization SequenceLength parameter for Training and g7 instance types for Training and Processing.
  • api-change:autoscaling: EC2 Auto Scaling now supports being managed by other AWS services via the operator field.
  • api-change:marketplace-agreement: GetAgreementTerms now returns a new term variant in AcceptedTerm, netPaymentTerm, with a paymentDuePeriod field (example "P30D").
  • api-change:bedrock-agentcore-control: Add support for Gateway rate limits and Runtime instances in Amazon Bedrock AgentCore. Customers can now configure rate limits scoped to control request rates, token consumption rates, and active connection rates. Customers can now create capacity providers to launch runtimes on their EC2 instances.
  • api-change:agent-registry: Agent Registry's Public Preview release
  • api-change:marketplace-discovery: GetOfferTerms now returns netPaymentTerm in offerTerms, specifying payment due period after invoice date. The paymentDuePeriod field uses ISO 8601 duration format (e.g., "P30D" for net 30 days). This is a backward-compatible addition. See API documentation for full structure and examples.
  • api-change:backup: AWS Backup now lets you create read-only access points for Amazon S3 recovery points, enabling you to access backup data using S3 APIs without initiating a restore.
View originalPermalink
How 2.36.18 went

2.36.17

Added 5
  • New enum values added for Agent Connectivity issues in ecs
  • PutDataCatalogExportConfiguration API to export Glue Data Catalog metadata to systems tables stored in S3 Tables in glue
  • RSASSA-PSS signing algorithm support in acm-pca
  • Persistent volume cost reporting in deadline service alongside compute and license costs
  • Fine-grained access control for AgentCore Memory through managed AgentCore Gateway HTTP Connectors in bedrock-agentcore-control
  • api-change:ecs: New enum values added for Agent Connectivity issues
  • api-change:glue: Added the PutDataCatalogExportConfiguration to export Glue Data Catalog metadata to systems tables stored in S3 Tables.
  • api-change:acm-pca: Private Certificate Authority service now supports RSASSA-PSS signing algorithm.
  • api-change:deadline: AWS Deadline Cloud now reports persistent volume costs alongside compute and license costs. Customers can view per-fleet storage costs in Usage Explorer by selecting the Usage Type grouping, helping them better understand the costs of their infrastructure.
  • api-change:bedrock-agentcore-control: Adding support for fine-grained access control for AgentCore Memory through managed AgentCore Gateway HTTP Connectors.
View originalPermalink
How 2.36.17 went

2.36.16

Added 6
  • Add Azure SBOM export capability to Inspector2
  • AWS IAM Identity Center now lets you create organization-level instances without enabling multi-account permissions, with the ability to enable multi-account permissions during instance creation or later
  • Add ClientExperiencePolicy to ClientProperties object for ModifyClientProperties and DescribeClientProperties APIs in WorkSpaces
  • Add Vector indexes to Amazon DynamoDB for similarity search on vector embeddings using approximate nearest neighbor search
  • Amazon EC2 now supports Application Status Checks to monitor your application's health through configurable HTTP(S) paths and ports
  • Partners can now create leads in Partner Central Selling with only 5 required fields and free-text values for all other fields
Changed 5
  • Update endpoint generation logic for IAM
  • UpdateCluster in DSQL now checks the RemovePeerCluster permission on the specific cluster being removed instead of a wildcard, and documentation now clarifies how to set kmsEncryptionKey so the cluster uses the AWS-owned key
  • Improve accuracy of CloudTrail event documentation for AWS Organizations membership operations
  • Engagement invitations in Partner Central Selling now include enrichment data such as propensity scores and lead readiness directly in the response
  • Amazon Connect Customer now supports up to 50 attachments per email, increased from 10, with individual maximum attachment size limit of 20 MB and total email size limit of 25 MB
  • api-change:iam: Updating endpoint generation logic
  • api-change:inspector2: Adding Azure SBOM export capability.
  • api-change:dsql: UpdateCluster now checks the RemovePeerCluster permission on the specific cluster being removed, not a wildcard and docs now clarify how to set kmsEncryptionKey so the cluster uses the AWS-owned key.
  • api-change:sso-admin: AWS IAM Identity Center now lets you create organization-level instances without enabling multi-account permissions. You can enable multi-account permissions during instance creation or later via console or API, which then provisions the necessary service-linked roles.
  • api-change:workspaces: Added ClientExperiencePolicy to ClientProperties object for ModifyClientProperties and DescribeClientProperties APIs.
  • api-change:dynamodb: Vector indexes are a type of index in Amazon DynamoDB that enable similarity search on vector embedding stored in your table items. Vector indexes use approximate nearest neighbor search to find items whose vectors are most similar to a query vector that you provide.
  • api-change:ec2: Amazon EC2 now supports Application Status Checks, a new status check that monitors your application's health through configurable HTTP(S) paths and ports, so you can detect and automatically respond to application-level impairments.
  • api-change:organizations: Improved accuracy of CloudTrail event documentation for AWS Organizations membership operations.
  • api-change:partnercentral-selling: Partners can now create leads with only 5 required fields and free-text values for all other fields, reducing import friction. Engagement invitations now include enrichment data (propensity scores, lead readiness) directly in the response.
  • api-change:connect: Amazon Connect Customer now supports up to 50 attachments per email, increased from the previous limit of 10. The individual maximum attachment size limit of 20 MB and the total email size limit of 25 MB still hold true.
View originalPermalink
How 2.36.16 went

2.36.15

Added 7
  • Added eksNodeName, instanceId, and zone optional parameters to the AssumeRoleForPodIdentity API in eks-auth
  • Added ability to use Network Firewall as an explicit Proxy to protect workloads against data exfiltration
  • Added support for mediaconvert output to S3 Glacier Instant Retrieval
  • Added route visibility support for AWS Direct Connect with ListVirtualInterfaceRoutes to view BGP routes including AS path and BGP communities
  • Added support for customer-managed backup restore in timestream-influxdb
  • Added encryption of new DbInstances and DbClusters using customer-managed KMS keys in timestream-influxdb
  • Added CMK support for Telemetry Enablement Organization and Account Rules in observabilityadmin
Changed 2
  • Updated Kantar server URL validation in mediaconvert to accept Fifty5Blue domain
  • Updated descriptions for number of PreParseTextTransformations allowed per rule statement in wafv2
  • api-change:eks-auth: Added eksNodeName, instanceId, and zone optional parameters to the AssumeRoleForPodIdentity API.
  • api-change:network-firewall: This launch allows customers to use Network Firewall as an explicit Proxy and protect their workloads against threat of data exfiltration.
  • api-change:mediaconvert: Updates Kantar server URL validation to accept Fifty5Blue domain. Adds support for output to S3 Glacier Instant Retrieval.
  • api-change:directconnect: Added route visibility support for AWS Direct Connect, allowing customers to call ListVirtualInterfaceRoutes to view the BGP routes including AS path and BGP communities advertised over their virtual interfaces.
  • api-change:wafv2: Updated descriptions for number of PreParseTextTransformations allowed per rule statement
  • api-change:timestream-influxdb: This release adds support for customer-managed backup restore, and encryption of new DbInstances and DbClusters using customer-managed KMS keys.
  • api-change:observabilityadmin: Launch CMK support for Telemetry Enablement Organization and Account Rules.
View originalPermalink
How 2.36.15 went

2.36.14

Added 14
  • Add StorageOperationStatus and StorageOperationPercentProgress to RDS DescribeDBInstances to monitor storage initialization and optimization progress
  • Add support for enhanced Git experience in Sagemaker Unified Studio in DataZone
  • Add ability to create and update CloudWatch Logs lookup tables directly from query results and configure lookup tables as scheduled query destinations
  • Add enum for sensitive property to CloudFormation DriftIgnoredReason
  • Add EKS value to Outposts AWSServiceName enum and mark Address field as sensitive
  • Add TargetAgreementId, TargetAgreementIntent, and CreatedBySource filters to Marketplace Catalog ListEntities API for Offer entity type
  • api-change:rds: Adds StorageOperationStatus and StorageOperationPercentProgress to DescribeDBInstances, letting you monitor RDS storage initialization and optimization progress.
  • api-change:datazone: Adding support for enhanced Git experience in Sagemaker Unified Studio.
  • api-change:logs: Amazon CloudWatch Logs now lets you create and update lookup tables directly from CloudWatch Logs query results by passing a queryId, and configure a lookup table as a scheduled query destination so it refreshes automatically with the latest query results on each run.
  • api-change:cloudformation: Adding enum for sensitive property to DriftIgnoredReason
  • api-change:outposts: Adds the "EKS" value to the AWSServiceName enum and marks the Address field as sensitive.
  • api-change:marketplace-catalog: This release enhances the ListEntities API to support TargetAgreementId, TargetAgreementIntent, and CreatedBySource filters for the Offer entity type.
  • api-change:connectcampaignsv2: Launching feature for abandonment rate pacing control for outbound campaigns.
  • api-change:bedrock-runtime: Added support for mid-conversation tool changes in the Amazon Bedrock Converse and ConverseStream APIs
  • api-change:network-firewall: Doc Updates for Container Attributes
  • api-change:elementalinference: AWS Elemental Inference now supports graphic composition on cropped video outputs, enabling branded graphics and other visual elements to be overlaid as part of the inference workflow.
  • api-change:amp: Amazon Managed Service for Prometheus adds support for an Amazon OpenSearch Service exporter for managed collectors.
  • api-change:billing: Adds GetEnterpriseSupportChargeSummary, GetEnterpriseSupportContractDetails, and ListEnterpriseSupportLinkedAccountCharges. These APIs provide first-time programmatic access to billing data for Enterprise Support usage previously only available upon request through AWS Concierge or Support.
  • api-change:resiliencehubv2: Adding support for new testing capability in AWS Resilience Hub.
  • api-change:quicksight: Adding TopicV2 management APIs, adding possibility to use Topics in Analysis
  • enhancement:telemetry: Add the AWS_CLI_SESSION_ID_DISABLED environment variable to opt out of session id collection.
View originalPermalink
How 2.36.14 went

2.36.13

Removed 2
  • Removed Smithy RPC v2 CBOR support from bcm-recommended-actions service
  • Removed Smithy RPC v2 CBOR support from bcm-pricing-calculator service
  • api-change:bcm-recommended-actions: Removing Smithy RPC v2 CBOR support that was added in previous SDK release.
  • api-change:bcm-pricing-calculator: Removing Smithy RPC v2 CBOR support that was added in previous SDK release.
View originalPermalink
How 2.36.13 went

2.36.12

Added 8
  • Add support for providing a branch override when configured integrated repositories in securityagent
  • Add support for streaming tables for Apache Iceberg on Amazon MSK Express brokers, continuously materializing Apache Kafka topics as Iceberg tables in Amazon S3 Tables
  • Add support for data delivery to Amazon S3 general purpose buckets on Amazon MSK Express brokers
  • Add support for g7 family instance types for SageMaker Studio JupyterLab and CodeEditor apps in us-east-1, us-west-2, and us-east-2
  • Add UPDATING field to Container Association Status in network-firewall
  • Add Python3.15 and NodeJS 26 runtime support to AWS Lambda
  • Add support for configuring models through the OpenResponses API for custom evaluators in bedrock-agentcore-control
  • Add support for Public PricingPlanManager SDK
Changed 1
  • Improve IAM Policy Simulator accuracy to evaluate SCP conditions and resource scoping, return explicitDeny for explicit SCP denials, and report accurate cross-account decisions
  • api-change:securityagent: Adds support for providing a branch override when configured integrated repositories
  • api-change:iam: Improved IAM Policy Simulator accuracy. Simulator now evaluates SCP conditions and resource scoping, returns explicitDeny for explicit SCP denials, and reports accurate cross-account decisions.
  • api-change:kafka: Amazon MSK Express brokers now support streaming tables for Apache Iceberg, continuously materializing Apache Kafka topics as Iceberg tables in Amazon S3 Tables. Express brokers also now support data delivery to Amazon S3 general purpose buckets.
  • api-change:sagemaker: Adds support for g7 family instance types for SageMaker Studio JupyterLab and CodeEditor apps for IAD (us-east-1), PDX (us-west-2), CMH (us-east-2).
  • api-change:network-firewall: Adds UPDATING field to Container Association Status
  • api-change:lambda: Add Python3.15 (python3.15) and NodeJs 26 (nodejs26.x) support to AWS Lambda
  • api-change:bedrock-agentcore-control: Adds support for configuring models through the OpenResponses API for custom evaluators. CreateEvaluator and UpdateEvaluator now accept an OpenResponses model configuration for LLM-as-a-Judge evaluations.
  • api-change:pricing-plan-manager: Adds support for Public PricingPlanManager SDK
View originalPermalink
How 2.36.12 went

2.36.11

Added 8
  • Add support for policy-based routing on AWS Transit Gateway with new policy table entry APIs to route traffic based on 5-tuple matching
  • Add pre-parse text transformations in AWS WAF to normalize raw query strings before parsing for SingleQueryArgument and AllQueryArguments
  • Add 10 new text transformations to AWS WAF including ModSecurity v3 parity options
  • Add Scenario Discover APIs to AWS IoT SiteWise
  • Add filtering, partitioning, and VPC support to AWS Glue REST API connector
  • Add ListApplicationShaderCaches API to retrieve shader cache metadata for applications in GameLift Streams
  • Add stream URLs to GameLift Streams for temporary unauthenticated access to stream sessions in browser
  • Add CreateStreamUrl, GetStreamUrl, ListStreamUrls, and RevokeStreamUrl operations to GameLift Streams
  • api-change:ec2: This release adds support for policy-based routing on AWS Transit Gateway, enabling you to route traffic based on 5-tuple matching (source IP, destination IP, source port, destination port, and protocol) using new policy table entry APIs that direct matching traffic to a target route table.
  • api-change:wafv2: AWS WAF now supports pre-parse text transformations, letting you normalize raw query strings before parsing, available on rule statements that use SingleQueryArgument or AllQueryArguments as the FieldToMatch. AWS WAF also added 10 new text transformations, including ModSecurity v3 parity options.
  • api-change:iotsitewise: We have released a new set of APIs in support of a major new feature within AWS IoT SiteWise called Scenario Discover. Please see user guide about the feature and the API guide in public documentation for new APIs.
  • api-change:dms: Updated documentation for various DMS Schema Conversion operations
  • api-change:glue: Adding filtering, partitioning, and VPC support to AWS Glue REST API connector
  • api-change:gameliftstreams: Adds ListApplicationShaderCaches API to retrieve shader cache metadata for applications and adds stream URLs, which give end users temporary, unauthenticated access to a stream session in their browser. Includes CreateStreamUrl, GetStreamUrl, ListStreamUrls, and RevokeStreamUrl operations.
View originalPermalink
How 2.36.11 went
View all

Discussion