# Benchling Runs AI-Generated Science Code in AWS Isolation

> AWS says Benchling uses Bedrock AgentCore Code Interpreter in VPC mode, with DNS firewalled to approved endpoints, to run agent-written code for 250+ tenants a week with zero security incidents.

- **Topic**: Models
- **Published**: 2026-10-01T11:43:46.453Z
- **Canonical URL**: https://highsignal.sh/stories/benchling-runs-ai-generated-science-code-in-aws-isolation-9ac0fa49

## Why It Matters

A concrete template for the hardest part of enterprise agents: executing untrusted code per tenant without one IAM role per customer. The claim of zero incidents is Benchling and AWS's own, not independent.

## Primary Sources & Citations

- [How Benchling secured multi-tenant AI agents with Amazon Bedrock AgentCore](https://aws.amazon.com/blogs/machine-learning/how-benchling-secured-multi-tenant-ai-agents-with-amazon-bedrock-agentcore/) — *AWS Machine Learning Blog* (Primary source)

---

[← Back to Headlines](https://highsignal.sh/)
