Back to Home
build-failure icon

amazon-bedrock-agentcore-mcp-gateway-cdk-stack

by build-failure

Overview

Deploys an Amazon Bedrock AgentCore MCP gateway with IAM/JWT authentication, supporting multiple integration targets like JIRA and Snowflake.

Installation

Run Command
npx cdk deploy

Environment Variables

  • CDK_CONFIG
  • CDK_DEFAULT_ACCOUNT
  • CDK_DEFAULT_REGION

Security Notes

The IAM policies for the Bedrock AgentCore Gateway's execution role and custom resources utilize `*` for `bedrock-agentcore:*` and `secretsmanager:*` resources. This grants overly broad permissions that violate the principle of least privilege. While API keys are stored in Secrets Manager, such extensive access poses a significant security risk if the gateway or associated custom resources are compromised, making it unsuitable for production environments without substantial hardening of IAM policies.

Similar Servers

Stats

Interest Score0
Security Score4
Cost ClassMedium
Avg Tokens500
Stars0
Forks1
Last Update2025-11-19

Tags

AWSBedrockAgentCoreCDKGatewayIntegrations