{"name":"AWS_USE_FIPS_ENDPOINT","slug":"aws-use-fips-endpoint","family":"env","title":"Environment variables","noun":"environment variable","description":"The Claude Apps gateway can now take on an AWS role separately for each user, naming each session after that user's identity","description_source":"entry","described_by":{"version":"2.1.281","anchor":"claude-apps-gateway-per-user-aws-assume-role-sessions"},"presence":{"first_seen":"2.1.281","removed_in":null,"in_current_build":true,"newest_mined":"2.1.283","builds":3,"mined_builds":126,"first_cited":null},"aliases":[],"entries":[{"version":"2.1.281","anchor":"claude-apps-gateway-per-user-aws-assume-role-sessions","heading":"Claude Apps gateway: per-user AWS assume-role sessions","line":"The Claude Apps gateway can now take on an AWS role separately for each user, naming each session after that user's identity","released_at":"2026-09-23 17:01:17","reason":"found in this entry's text"}],"entries_total":1,"docs":[],"docs_total":0,"gates":[],"related":[{"name":"AWS_ACCESS_KEY_ID","slug":"aws-access-key-id","description":"gh, aws, gcloud, bq and gsutil get placeholder credentials so they authenticate through the proxy instead of failing."},{"name":"AWS_BEARER_TOKEN_BEDROCK","slug":"aws-bearer-token-bedrock","description":"Amazon Bedrock API key for authentication (see [Amazon Bedrock API keys](https:\/\/aws.amazon.com\/blogs\/machine-learning\/accelerate-ai-development-with-amazon-bedrock-api-keys\/))"},{"name":"AWS_CA_BUNDLE","slug":"aws-ca-bundle","description":"SSL certificate error message now lists the specific env var to check per tool"},{"name":"AWS_CONFIG_FILE","slug":"aws-config-file","description":"AWS SSO profile logins resolve faster via a direct fast path, falling back if anything unusual is configured."},{"name":"AWS_CONTAINER_CREDENTIALS_FULL_URI","slug":"aws-container-credentials-full-uri","description":null},{"name":"AWS_CONTAINER_CREDENTIALS_RELATIVE_URI","slug":"aws-container-credentials-relative-uri","description":"Stand-in credential values for gh, AWS and gcloud are defined, with substitution rules unsettled."},{"name":"AWS_DEFAULT_REGION","slug":"aws-default-region","description":"Bedrock no longer refuses to start when no region or base URL is configured."},{"name":"AWS_ENDPOINT_URL","slug":"aws-endpoint-url","description":"AWS and Google custom endpoint variables are now forwarded and scrubbed deliberately."},{"name":"AWS_ENDPOINT_URL_STS","slug":"aws-endpoint-url-sts","description":"AWS and Google custom endpoint variables are now forwarded and scrubbed deliberately."},{"name":"AWS_EXECUTION_ENV","slug":"aws-execution-env","description":null}],"url":"https:\/\/changelogs.core-directive.com\/reference\/env\/aws-use-fips-endpoint","family_url":"https:\/\/changelogs.core-directive.com\/reference\/env.json"}