Change record
CA-C-002570
AWS Service Terms | AWS Bedrock
Entity
Date detected
June 2, 2026
Effective date
June 2, 2026
Severity
Direction
Neutral
Taxonomy
Retention change
Changes
6 sentences modified

Impact Summary

Medium Neutral for users
Affected users
All users Aws bedrock customers Developers using generative AI services

AWS Bedrock updated its abuse detection and monitoring practices on June 2, 2026. The revised terms clarify that abuse detection mechanisms may now store service inputs and outputs for up to 30 days to detect policy violations, and specify that if child sexual abuse material is detected, AWS may review flagged content before reporting it to authorities. The prior language described automated detection without explicitly stating the 30-day retention period or the review step.

1 obligation expanded

Consumers: Your data sent to Bedrock services may be stored for up to 30 days while AWS runs automated checks for policy violations and safety issues.

Stay ahead of the changes
Track AWS Bedrock and get the diff the day its terms change.
Share 𝕏 Share in Share 🔒 PDF

What this means for you

The updated terms establish that AWS Bedrock may retain service inputs and outputs for up to 30 days solely to detect policy violations and harmful content, including potential child sexual abuse material. The revised language also specifies that if such material is detected, AWS may review the flagged content to confirm it before reporting to the National Center for Missing and Exploited Children or other authorities. These terms apply to 23 AWS services that incorporate Bedrock generative AI features.

Historical Context

ConductAtlas has recorded 6 material changes to this document (since May 2026). An additional minor or cosmetic changes were excluded.

2 of AWS Bedrock's significant changes have been classified as negative for consumers.

Key Clauses Affected

Bedrock data retention for abuse detection (Section 50.12.2)

Updated language explicitly authorizes 30-day retention of inputs and outputs for detection of policy violations.

CSAM reporting procedure (Section 50.12.2)

Clarified that AWS may review flagged content before reporting apparent child sexual abuse material to authorities.

Generative AI service scope (Section 1.24.1)

Minor wording change from 'automated' to unqualified 'abuse detection mechanisms' applying to 23 enumerated AWS services.

Full clause-by-clause analysis available with Insight.

This change record describes what was added, removed, or modified in the document. Analysis reflects what the updated agreement states or permits. It does not constitute a legal determination about enforceability. Applicability may vary by jurisdiction. Methodology

Evidence Verification

✓ Verified
Previous Version
d60e9a71487307f8b041f5d0a466d87958df3404718291d4cb2b49f6b2cdec81
May 30, 2026 01:19 UTC
✓ Verified
Current Version
fe2ad8e475c7223be304443c27fca9f43ce70ae337fb8c79c8f36229294fb926
June 2, 2026 01:09 UTC
✓ Verified
Change Detected
June 2, 2026 01:09 UTC
Analysis Methodology
✓ Verified
Source Document
https://aws.amazon.com/service-terms/
Citation Record
Entity: AWS Bedrock
Document: AWS Service Terms
Record ID: CA-C-002570
Captured: 2026-06-02 01:09:30 UTC
URL: https://conductatlas.com/change/2026-06-02-aws-bedrock-aws-service-terms-2570/
Accessed: Sept. 5, 2026
Permanent archival reference. Stable identifier suitable for legal filings, compliance documentation, and research citation.
For legal and compliance teams

Institutional Analysis

Assessment

AWS clarified its abuse detection and data retention practices on June 2, 2026. The updated Service Terms now explicitly authorize 30-day retention of inputs and outputs for abuse detection and establish a two-step process for …

🔒 Full institutional analysis

Regulatory exposure, obligation change, escalation trigger, board-ready language, and recommended action for legal and compliance teams.

Unlock the full institutional analysis — Insight

ConductAtlas provides verified policy intelligence sourced directly from platform documents. All analysis is intended to support, not replace, legal and compliance review. Record CA-C-002570.

Full Changes

View complete diff →

Document Context

Version history → Policy drift analysis → Document page →
Document
AWS Service Terms
Entity
AWS Bedrock
Captured
June 2, 2026
Source URL
https://aws.amazon.com/service-terms/
Other changes to AWS Service Terms
Previous change May 30, 2026
AWS Bedrock updated its Amazon RDS service terms on May 30, 2026, adding new provisions governing Trusted Language Extensions, engine …
Medium Negative
Next change Jun 10, 2026
AWS updated its Service Terms on June 10, 2026 to add AWS FinOps Agent (Preview) to the list of AI …
Medium Negative
View full version history →
More from AWS Bedrock
Sep 2, 2026 Medium
AWS Service Terms

AWS Bedrock removed language requiring explicit consent to transfer customer content and metadata to Anthropic for abuse detection, and removed …

Aug 21, 2026 Low
AWS Service Terms

AWS expanded the list of services classified as 'Indemnified Generative AI Services' in its AWS Service Terms, adding three additional …

Aug 18, 2026 High
AWS Service Terms

AWS Bedrock updated its Service Terms to introduce a new AWS (new) program and restructured billing and project management terms. …

Get the research letter

Companies change their terms quietly. We read every version and catch what actually changed. One email a week on the changes that matter and what they mean.

Stay ahead of the changes

Track AWS Bedrock policy changes

Get alerted when this policy changes again, including what changed and why it matters.

All AWS Bedrock changes →