AWS Bedrock AgentCore adds persistent filesystem storage and shell command execution
Amazon Bedrock AgentCore Runtime now offers managed session storage to persist agent filesystem state across stop/resume cycles and InvokeAgentRuntimeCommand for executing shell commands directly within agent microVMs. The features address two core challenges in production agent workflows: ephemeral filesystems that reset between sessions and the inability to execute deterministic operations without routing them through LLMs.
AWS Bedrock AgentCore Adds Persistent Filesystem Storage and Shell Command Execution
Amazon Web Services has released two capabilities for Bedrock AgentCore Runtime that address core limitations in production agentic workflows: managed session storage (public preview) for persistent filesystem state and InvokeAgentRuntimeCommand for executing shell commands directly within agent sessions.
The Problem: Ephemeral Agent Filesystems
Bedrock AgentCore Runtime isolates each session in a dedicated microVM with its own kernel, memory, and filesystem. This architecture provides strong security boundaries but creates a critical limitation: when a microVM terminates—either explicitly or through idle timeout—all agent-created artifacts disappear. Agents that spend 20 minutes scaffolding projects, installing dependencies, and generating code must repeat this work entirely when resumed.
AWS identified two specific friction points teams encounter in production:
- Ephemeral filesystem state: Agent sessions lose all generated files, installed packages, git history, and configuration when stopped
- Deterministic operation routing: Running tests or executing git commands forces teams to either route them through the LLM as tool calls (adding latency and non-determinism) or build custom orchestration logic outside the runtime
Managed Session Storage: Persistent Agent Filesystem State
Managed session storage provides agents with a persistent directory that survives stop/resume cycles. Data persists at the runtime level—when a microVM terminates and is replaced, the filesystem remains intact.
Configuration requires adding sessionStorage to the agent runtime's filesystem configuration:
aws bedrock-agentcore create-agent-runtime \
--filesystem-configurations '[{ "sessionStorage": { "mountPath": "/mnt/workspace" } }]'
Alternatively, using AWS SDK for Python:
control_client.create_agent_runtime(
filesystemConfigurations=[{
'sessionStorage': {
'mountPath': '/mnt/workspace'
}
}]
)
Once configured, any files written to the mount path are automatically persisted. Agents require no code changes—no special APIs, serialization, or save/restore logic. Files written to /mnt/workspace on Day 1 remain accessible when the same runtime-session-id is invoked on Day 2.
By default, session storage data is retained for 14 days of idle time. When an agent endpoint is updated to a different version and the same session ID is invoked, session data is refreshed, providing a clean context for the new version.
Execute Command: Direct Shell Access Within Sessions
The InvokeAgentRuntimeCommand capability enables agents to execute shell commands directly within their dedicated microVM, bypassing the LLM entirely. This eliminates token costs, latency, and non-determinism from predictable operations like npm test or git push.
Practical Workflow: Multi-Day Development
AWS demonstrates a realistic scenario:
Day 1: Agent downloads a codebase to /mnt/workspace, extracts files, and sets up the development environment. When the session is stopped, the entire workspace persists.
Day 2: Same runtime-session-id is invoked. A new microVM boots and mounts the identical storage. The agent finds all files, dependencies, and build artifacts exactly as left—resuming work immediately without reinitializing.
Architecture Details
Bedrock AgentCore uses two Boto3 service clients:
- Control plane client (
bedrock-agentcore-control): Runtime lifecycle operations - Data plane client (
bedrock-agentcore): Session operations like InvokeAgentRuntime and InvokeAgentRuntimeCommand
The mount path must follow the pattern /mnt/[folder-name] (e.g., /mnt/workspace or /mnt/data).
What This Means
These features fundamentally change how production agents handle state and deterministic operations. Previously, agents operating over multiple sessions faced a choice: implement complex checkpoint logic with S3 uploads/downloads, keep sessions perpetually alive, or accept repeated initialization overhead. Now, filesystem persistence is built into the runtime—agents naturally maintain state across sessions. Combined with direct shell command execution, teams can build workflows that previously required significant orchestration infrastructure outside the agent runtime. For coding agents specifically, the ability to preserve installed dependencies, git history, and build artifacts across sessions eliminates a major class of wasted compute.
Related Articles
AWS adds managed Web Search to Claude Desktop via Bedrock AgentCore Gateway in three Regions
AWS published a walkthrough for connecting Claude Desktop on Amazon Bedrock to a managed, MCP-compatible Web Search capability through Amazon Bedrock AgentCore Gateway. According to AWS, the search is backed by an Amazon web index spanning tens of billions of documents, and query traffic stays within AWS infrastructure. Web Search is available in three AWS Regions; pricing is not disclosed in the post.
Suno adds Speech beta: spoken text and matching background music generated as a single audio track
Suno has added Speech, a beta feature that generates spoken text and matching background music together as a single audio track. Suno says it tested the feature with a small group for a month. The company has not disclosed how the underlying model was trained.
ChatGPT adds virtual try-on and Favorites in global shopping update built on Images 2.5
OpenAI launched two shopping features in ChatGPT globally on Thursday: a virtual try-on tool for clothing and accessories, and a Favorites function for saving products. OpenAI says both use its newly launched ChatGPT Images 2.5 model. Pricing and plan availability were not disclosed in the source reporting.
Amazon open-sources Strands Decider 2B, a small decision model built on a Qwen3.5-2B base
Amazon Web Services has released Strands Decider 2B, an open-source model that chooses among pre-decided options and returns a confidence score instead of generating text. It is inspired by TypeSafe's Jev and is small enough to run locally. Amazon says it briefly topped the Jevbench ranking for models of its size.
Comments
Loading...