What's Changed
New Contributors
- @valeryan made their first contribution in #1826
- @BoLaMN made their first contribution in #1832
- @yosriady made their first contribution in #1837
- @pingedbrain made their first contribution in #1839
[1.5.18] — 2026-09-28
Added
- Bedrock AgentCore —
InvokeAgentRuntimeruns the runtime's container — with Docker available (full image), the runtime'scontainerConfiguration.containerUriimage is started, checked on/ping, and invocations are forwarded to its/invocationson port 8080; container failures answerRuntimeClientError(424). The container is removed on update, delete or reset. Without Docker, or for a code artifact, the deterministic echo remains. Contributed by @pingedbrain. - CloudWatch Logs — delivery destination policy —
PutDeliveryDestinationPolicy,GetDeliveryDestinationPolicyandDeleteDeliveryDestinationPolicy, so a delivery that needs a destination policy can be created. Contributed by @fabio-andre-rodrigues. - Cognito — OIDC discovery through the real issuer host (
USE_SSL=1) — the generated certificate coverscognito-idp.<region>.amazonaws.comfor every region and Lambda containers resolve those hosts to MiniStack and trust it. With an/etc/hostsentry and the certificate trusted, an unmodified client follows the token'sissto MiniStack whileissstays exactly as AWS issues it. Reported by @epcap90. - KMS —
ListGrants— it answeredInvalidAction. It now lists the key's grants (empty, since grants are not modelled) and answersNotFoundExceptionfor an unknown key. Reported by @DaviReisVieira. - S3 — object annotations —
PutObjectAnnotation,GetObjectAnnotation,ListObjectAnnotationsandDeleteObjectAnnotation: up to 1,000 UTF-8 payloads per object version, carried byCopyObjectunless the directive isEXCLUDE, removed with their version, and announced withs3:ObjectAnnotation:*events. UnderAUTH=true, Object Lock refuses annotation writes with 403AccessDenied. Previously aPUT ?annotationreplaced the object with the payload. Contributed by @BoLaMN. - SNS —
AddPermissionandRemovePermission— they add and remove labelled statements in the topic'sPolicy; a duplicate label answersInvalidParameter. Contributed by @AdrianAcala.
Fixed
- API Gateway v1 — REQUEST authorizer events carry
requestContext.identity— an authorizer readingsourceIporuserAgentcrashed; both are now present, as in theAWS_PROXYevent. Contributed by @yosriady. - DynamoDB — a table ARN is accepted wherever
TableNameis — item, query, scan, batch, transaction and table operations answeredValidationExceptionorResourceNotFoundExceptionfor the table's ARN. Batch responses keep the key form the request used. Contributed by @valeryan. - Gateway — the soft open-file limit is raised to the hard limit at startup — a burst of about a thousand client connections exhausted the default 1024 descriptors. Reported by @fabio-andre-rodrigues.
- KMS —
ListAliasesentries carryCreationDateandLastUpdatedDate— both were missing;UpdateAliasmovesLastUpdatedDateand keepsCreationDate. Reported by @DaviReisVieira. - Lambda —
ReservedConcurrentExecutionsis shared across versions —$LATESTand published versions each counted separately and could exceed the reservation together. Contributed by @jgrumboe. - S3 — event notification records match S3's — the key is URL-encoded,
versionIdand a growingsequencerare set,eventVersionis2.6, a delete marker isObjectRemoved:DeleteMarkerCreated, andDeleteObjectssends one event per object it removes. Contributed by @BoLaMN. - S3 — notification destinations are validated at PUT time — under
AUTH=true,PutBucketNotificationConfigurationfails withInvalidArgumentwhen an SQS/SNS destination's policy does not let S3 publish; cross-account destinations are accepted. Contributed by @AdrianAcala. - SQS/SNS — queue and topic policies are enforced under
AUTH=true— they were stored but never evaluated. Cross-account calls need an explicit Allow (AccessDeniedfor SQS,AuthorizationErrorfor SNS), and S3 and SNS deliveries need the destination policy to allow them. WithAUTH=falsenothing changes. Contributed by @AdrianAcala. - STS —
GetCallerIdentityresolves IAM-user callers — keys fromCreateAccessKeyreportedroot; they now return the user's ARN and ID. Contributed by @AdrianAcala. - STS — an unknown access key answers
InvalidClientTokenId— underAUTH=true, STS answeredUnrecognizedClientException.