METAL for iPhone

Read AI news in the METAL app.

Download METAL and discover fresh AI stories every day.

Download on the App Store

For iPhone · Free download

Search for METAL AI Magazine in the App Store on your iPhone.

METAL

AWS unveils bridge letting cloud agents use local MCP tools

AgentCore-hosted agents call MCP servers on users' laptops without VPNs or open ports

AWS unveils bridge letting cloud agents use local MCP tools

Summary

  • The AWS ML Blog has published a method for building a bridge that lets AI agents running on Bedrock AgentCore access MCP servers on a user's local computer
  • It tunnels signed messages over an existing WebSocket connection via a browser extension and Chrome native messaging, requiring no additional open ports or VPN
  • An internally built AI assistant for a finance team reportedly handled more than 41,000 conversations in the year since its launch

AWS has disclosed how it built a bridge that allows AI agents running in the cloud to access MCP (Model Context Protocol) servers located on a user's local computer. The approach addresses the problem of agents deployed on Amazon Bedrock AgentCore needing access to files—such as spreadsheets—that exist only on the local machine.

The architecture consists of four components: the AgentCore runtime, a browser extension, an MCP bridge, and the MCP server. A Strands agent running in the cloud acts as the MCP client and sends tool call requests, while the browser extension relays messages bidirectionally between WebSocket and native messaging. The MCP bridge, which runs on the local machine, is a FastMCP proxy that converts between the native messaging format and raw MCP JSON-RPC messages, communicating with the MCP server via stdio.

A key feature of this approach is that it maintains security by tunneling signed messages over an existing connection, without requiring any additional open ports or VPN configuration. AWS said the pattern is similar in structure to what products like Claude Cowork use, but noted that its version differs in being fully self-hosted on AWS, using its own models and custom tool servers.

Internally, AWS said it built a production-grade AI assistant for finance staff based on this architecture, which has handled more than 41,000 conversations in the year since its launch. What was disclosed in the blog post is a simplified version of that internal system, and the full source code has reportedly been published on GitHub.

Comments