You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Fix the Kiro allow-list before touching anything else — it's the confirmed cause
audit-diff between a failed and a passing Kiro run proves the firewall is denying two domains kiro-cli calls on every run; the auth harness also has no fallback for the AWF entrypoint's secret-renaming behavior. Both are one-sentence, low-risk config fixes.
Even the passing run had 42+36 denied calls to these two domains — kiro-cli tolerates some of this, but it's plausible the auth-relevant call among them is what fails intermittently.
No secret-rename fallback. The AWF firewall entrypoint logs Unsetting sensitive tokens from parent shell environment... and renames KIRO_API_KEY→SECRET_KIRO_API_KEY, CURSOR_API_KEY→SECRET_CURSOR_API_KEY before the harness-script runs. Neither shared/kiro.md nor shared/cursor.md's harness-script reads the SECRET_-prefixed fallback name — both use process.env.KIRO_API_KEY / process.env.CURSOR_API_KEY directly (shared/kiro.md line ~138, shared/cursor.md equivalent). When the primary auth path fails (e.g. due to rejig docs #1), kiro-cli falls back to interactive device-flow login and fails with error: Failed to open URL; cursor-agent fails with Error: Authentication required... or set CURSOR_API_KEY environment variable.
Proposed remediation
Add q.us-east-1.amazonaws.com and client-telemetry.us-east-1.amazonaws.com to network.defaults in shared/kiro.md.
In shared/kiro.md's harness-script, change the model/auth read to fall back: process.env.KIRO_API_KEY || process.env.SECRET_KIRO_API_KEY. Apply the equivalent fallback for CURSOR_API_KEY/SECRET_CURSOR_API_KEY in shared/cursor.md.
Re-run gh aw compile to regenerate smoke-kiro.lock.yml / smoke-cursor.lock.yml.
Success criteria / verification
10 consecutive Smoke Kiro and Smoke Cursor runs with zero Execute {Kiro,Cursor} CLI failures.
Fix the Kiro allow-list before touching anything else — it's the confirmed cause
audit-diffbetween a failed and a passing Kiro run proves the firewall is denying two domains kiro-cli calls on every run; the auth harness also has no fallback for the AWF entrypoint's secret-renaming behavior. Both are one-sentence, low-risk config fixes.Affected workflows / runs
Execute Kiro CLI: 30975982770, 30974811087 (failed) vs 30977137021 (passed, but with the same domains denied)Execute Cursor Agent CLI: 30974539538, 30969707220 (failed) vs 30975573886 (passed)Probable root cause
shared/kiro.md'snetwork.defaultslistscodewhisperer.us-east-1.amazonaws.com,cognito-identity.us-east-1.amazonaws.com,prod.us-east-1.telemetry.kiro.aws.dev,prod.assets.shortbread.aws.dev, and wildcard*.kiro.dev. It's missingq.us-east-1.amazonaws.comandclient-telemetry.us-east-1.amazonaws.com.audit-diff(base=30974811087, compare=30977137021) shows:{"domain":"q.us-east-1.amazonaws.com:443","status":"new","is_anomaly":true,"run2_blocked":42,"run2_status":"denied"} {"domain":"client-telemetry.us-east-1.amazonaws.com:443","status":"volume_changed","run1_blocked":2,"run2_blocked":36,"volume_change":"+1700%"}Unsetting sensitive tokens from parent shell environment...and renamesKIRO_API_KEY→SECRET_KIRO_API_KEY,CURSOR_API_KEY→SECRET_CURSOR_API_KEYbefore the harness-script runs. Neithershared/kiro.mdnorshared/cursor.md's harness-script reads theSECRET_-prefixed fallback name — both useprocess.env.KIRO_API_KEY/process.env.CURSOR_API_KEYdirectly (shared/kiro.mdline ~138,shared/cursor.mdequivalent). When the primary auth path fails (e.g. due to rejig docs #1), kiro-cli falls back to interactive device-flow login and fails witherror: Failed to open URL; cursor-agent fails withError: Authentication required... or set CURSOR_API_KEY environment variable.Proposed remediation
q.us-east-1.amazonaws.comandclient-telemetry.us-east-1.amazonaws.comtonetwork.defaultsinshared/kiro.md.shared/kiro.md's harness-script, change the model/auth read to fall back:process.env.KIRO_API_KEY || process.env.SECRET_KIRO_API_KEY. Apply the equivalent fallback forCURSOR_API_KEY/SECRET_CURSOR_API_KEYinshared/cursor.md.gh aw compileto regeneratesmoke-kiro.lock.yml/smoke-cursor.lock.yml.Success criteria / verification
Execute {Kiro,Cursor} CLIfailures.audit-diffagainst a fresh run shows zerodeniedentries forq.us-east-1.amazonaws.comandclient-telemetry.us-east-1.amazonaws.com.Related to [aw-failures] [aw] Failure Investigator Report — 2026-08-05 (6h) #50518