AWS and 🤫 hussh
Private at home. Certified in the cloud.
🤫 Private Agent One lives on the hardware a person owns. When a task needs more, it reaches our partner AWS, only with the person's consent: a frontier model through Bedrock, where Claude runs at scale on Trainium, or a certified sovereign boundary in GovCloud. Edge by default, cloud on demand, a receipt for every call.
What AWS and 🤫 make possible.
Bedrock offers frontier models, including Claude, the model behind our agent's reasoning, on your own Trainium silicon.
A person's Agent One calls a frontier model through Bedrock with their consent, while private data stays on the device.
Consented Bedrock and Trainium demand from millions of private agents.
GovCloud, Secret and Top Secret are accredited for regulated work, and Bedrock Claude and Llama run there at FedRAMP High and IL5.
We deliver a consent-first agent to government, military and veterans, reaching into your accredited boundary.
A consent-first path into the public sector on your certified cloud, from day one.
Matt Garman's bet is agentic AI: "everything is going to be remade," with agents that do the work.
🤫 Agent One is the private, owner-run agent that reaches AWS only when the person says yes.
Edge by default and cloud on demand, a model that grows AgentCore and Bedrock together.
The broadest cloud, its own silicon and a certified boundary.
AWS is about 20% of Amazon's revenue and 50 to 60% of its operating income. It is the profit engine behind Amazon's AI build-out, and a cloud that designs its own silicon.
Up 28% year over year, AWS's fastest growth in 15 quarters. About a $150B annual run-rate.
About 59% of Amazon's total operating income.
Up about 19 to 20% year over year. The broadest cloud, at scale.
Over 1M Trainium chips in production, bending the cost curve of inference.
FedRAMP High and DoD IL2 to IL6 (Secret), plus a Top Secret region. Accredited from Unclassified to Top Secret.
Amazon's total potential commitment to Anthropic, whose Claude our agent reasons with.
Breadth, silicon economics and government trust: exactly what a private agent wants on the other end of a consented call.
The broadest cloud
The widest catalog of services and the largest global footprint. The default enterprise cloud, and the natural place to reach for more.
Custom silicon
Graviton Arm CPUs and Trainium and Inferentia accelerators. AWS designs its own chips to lower the cost of AI.
Bedrock
Managed access to Claude, Amazon Nova, Meta Llama and open-weight models. The frontier intelligence a person's agent can reach with consent.
Claude on Trainium
Claude, the model behind Agent One's reasoning, runs at massive scale on AWS Trainium in Project Rainier. A direct line from our stack to AWS silicon.
AgentCore and Kiro
The enterprise platform to build, govern and operate agents, plus agentic developer tools.
Government trust
FedRAMP High, DoD IL2 to IL6 and a Top Secret region. The certified boundary a regulated agent needs.
Where AWS is going.
Every one of these priorities has room for a private agent the person owns.
Agentic AI
Matt Garman calls agentic AI a "huge business opportunity": agents that do work, not just summarize it.
Silicon economics
The right model for each task, run efficiently on Trainium. Cost discipline as AI strategy.
Bedrock breadth
Wide model choice with governance through AgentCore, the enterprise moat.
Sovereign and government cloud
More classified and sovereign regions, with security as "job zero."
Inference as a primitive
Inference as a core building block for developers. The workload private agents create at scale.
Trainium3, AgentCore and Bedrock in GovCloud.
What AWS shipped most recently, and where Agent One plugs in.
Trainium3 and Trn3 UltraServers
Generally available at re:Invent 2025. AWS's first 3nm AI chip, and the cost curve behind consented inference.
Amazon Bedrock AgentCore
Generally available, with some features in preview. The enterprise platform to build, govern and operate agents, and where Agent One reaches with consent.
Bedrock models in GovCloud
AWS was first to bring Anthropic Claude and Meta Llama to FedRAMP High and DoD IL4 and IL5 in GovCloud.
Project Rainier
One of the world's largest AI clusters, about 500,000 Trainium2 accelerators, where Anthropic trains and serves Claude.
Buy together. Build together. Sell together. Take risk together.
Agent One lives on the person's own compute and reaches AWS with their consent. Edge and cloud, each doing what it does best.
Build: Claude with consent through Bedrock
Bedrock offers Claude, Nova and open-weight models, and AgentCore governs agents.
Agent One is a first-class Bedrock and AgentCore customer: model access gated by consent, with a PCHP receipt for every cloud call.
High-intent Bedrock and Trainium demand, while the person keeps ownership on the device.
Sell: edge by default, cloud on demand
AWS serves enterprises and governments that want scale.
🤫 Puppy One edge nodes and Agent One fleet management form the edge tier that pairs with AWS.
Together we sell data that stays local by default, with compliant cloud capacity when it is needed.
Buy: Trainium for overflow
Trainium's cost curve powers Claude and lowers the cost of inference.
We buy Trainium-backed Bedrock inference when a workload outgrows local capacity.
AWS gains metered demand. We gain lower-cost inference per watt.
Take risk: a sovereign, consent-first foundation
AWS GovCloud, Secret and Top Secret are accredited across the full classification range.
Agent One's consent and identity layer on the device, with AWS GovCloud as the certified cloud tier for regulated customers.
Regulated customers served now, consent-first, on a boundary that is already accredited.
The people building AWS.
Andy Jassy
President and CEO, Amazon
Leads the AI and efficiency agenda across Amazon. He built AWS, and frames AI as a generational bet.
Matt Garman
CEO, AWS
Leads agentic AI, inference as a core primitive, the silicon cost advantage and enterprise trust as "job zero."
Dave Brown
VP, Compute and Networking, AWS
Leads Graviton, Trainium and Inferentia, the silicon behind consented inference.
Trust, for the people who need it most.
AWS GovCloud, Secret and Top Secret are the compliant, sovereign cloud tier for 🤫 products serving government, military and veteran customers, to whom Agent One is free for life. Our own posture is FedRAMP High in pursuit. Running the cloud tier inside AWS's accredited boundary lets us serve regulated customers today, while the agent on the device stays owner-controlled and consent-first.