There are rules about what you can and cannot build with Bedrock; prohibited uses include generating illegal content, harmful content, or content that infringes on other people's rights.
This analysis describes what AWS Bedrock's agreement states, permits, or reserves. It does not constitute a legal determination about enforceability. Regulatory applicability and practical outcomes may vary by jurisdiction, enforcement context, and individual circumstances. Read our methodology
The provision anchors service usage rights to a separate policy framework, meaning the scope of permitted uses is defined by reference to the Acceptable Use Policy rather than stated directly in the service terms. This structure allows AWS to modify content restrictions through policy updates without amending the primary service agreement.
Interpretive note: The scope of terms such as 'harmful' and 'violates third-party rights' in the context of AI-generated content involves interpretive uncertainty given evolving legal standards around AI-generated content copyright and liability.
The updated terms remove the explicit reference to a Data Processing Addendum governing Anthropic data transfers, though the requirement to obtain opt-in consent for Anthropic model use remains in place. For Kiro users, the revised language now explicitly states that abuse detection includes retention and potential human review of inputs and outputs when selecting certain models. Users of Anthropic models on Bedrock should verify opt-in consent mechanisms in service documentation to understand data handling practices.
View change record →The updated terms establish a new project-based service structure for AWS (new) users, effective August 17, 2026, with new rules governing team member access and content ownership. Users who enable spend limits agree that AWS may suspend their account or project access upon reaching their limit, and may permanently close the account or project if not reactivated within an unspecified timeframe. Contributed content by team members becomes the project owner's property and is subject to a nonexclusive irrevocable license granted to all project members. You can configure AI services opt-out policies through AWS Settings; project owners can manage team member permissions and access controls.
View change record →The updated terms now explicitly state that AWS IoT SiteWise Scenario Discovery is not designed for real-time vehicle control and cannot be used as the sole basis for determining vehicle safety or regulatory compliance. Organizations deploying this service must implement independent human monitoring and safety validation before using its outputs to support vehicle system decisions. The terms make clear that AWS assumes no responsibility for uses that violate these constraints.
View change record →Customers building AI applications on Bedrock must ensure their use cases and generated content comply with AWS's acceptable use policy; violations could result in service suspension affecting any dependent applications or infrastructure.
How other platforms handle this
Use our Services in relation to any political campaign financing or for the purpose of influencing any election, other than sharing your own personal political opinions;
Host Content on our servers for any purpose other than for your use of the Service.
use TikTok Content...another user's content or generative AI-enabled features for commercial purposes unless permitted by TikTok USDS Joint Venture or the user, respectively...
"You must not use Amazon Bedrock in a manner that violates the AWS Acceptable Use Policy. This includes restrictions on using the service to generate content that is illegal, harmful, or that violates third-party rights.Excerpt from AWS Bedrock's AWS Service Terms
REGULATORY LANDSCAPE: The acceptable use restrictions interact with platform liability frameworks under Section 230 of the Communications Decency Act in the US, though Section 230 protections are less clearly applicable to AI-generated content than to …
Enforcement risk, jurisdiction flags, contract triggers, and due diligence action items.
Get the research letter
Companies change their terms quietly. We read every version and catch what actually changed. One email a week on the changes that matter and what they mean.
The provision anchors service usage rights to a separate policy framework, meaning the scope of permitted uses is defined by reference to the Acceptable Use Policy rather than stated directly in the service terms. This structure allows AWS to modify content restrictions through policy updates without amending the primary service agreement.
Customers building AI applications on Bedrock must ensure their use cases and generated content comply with AWS's acceptable use policy; violations could result in service suspension affecting any dependent applications or infrastructure.
ConductAtlas has identified this type of provision across 282 platforms. See the full comparison.
No. ConductAtlas is an independent monitoring service. We are not affiliated with, endorsed by, or sponsored by AWS Bedrock.