Live data from Hacker News

OpenAI frontier models and Codex are now available on AWS

openai.com

151–158 of 158 posts

Re: OpenAI frontier models and Codex are now available on AWS

#151
post #32

Earlier quoted context omitted.

To go a step further, the reason it's often impossible to add a new vendor if that you've signed a bunch of contracts with your customers saying you're not going to send their data to other vendors in all sorts of various flavors.

And the pain of the procurement process, specially when you follow a certification such as iso27001, soc2 or similar.

soc2 is stupidly viral but generally not a blocker since its pretty straightforward to get.

It's really the per-customer contractual agreements you had to sign to grow that make things horrible.

Re: OpenAI frontier models and Codex are now available on AWS

#153
post #30

Earlier quoted context omitted.

To take an easy example that has actually had lawsuits I can link to, you must be unfamiliar with the lawsuits against Amazon for misusing sellers' data in order to undercut them with their own products... https://www.reuters.com/sustainability/13-bln-uk-lawsuit-acc... There's zero reason to "trust" Amazon about anything. (And yes, I know the retail and AWS sides of the company are different, but it's still the same…

The retail side is completely different from AWS.

Wow there must be an echo in here because I swear I said just that... And then pointed out that it's the same crap being recycled back and forth across the company. There is no real separation.

Re: OpenAI frontier models and Codex are now available on AWS

#154

Earlier quoted context omitted.

Have you considered checking the actual AWS contract and the limited liability they explicitly stipulate in contracts and even linked docs from marketing materials? If you read the fine print, you'll notice something funny. You are largely responsible for data loss, SLA claims require you to present concrete evidence, and the remediation you accepted is usually credits for future spend on specifically the same produc…

They didn't mention anything about SLAs. This is about all the time, effort, paperwork and risk it takes to add yet another vendor. Having fewer vendors does actually reduce risk, as long as your chosen vendors are reasonably good. Though the bigger reason is certainly avoiding the additional bureaucracy, which is partly self-inflicted in larger companies but also not without merit.

> This is about all the time, effort, paperwork and risk it takes to add yet another vendor.

This is stupid. This protects you from having a risk to have to do small things (very small things), and updates, by increasing the risk you have to redo everything all at once. It's eliminating a tiny effort by massively increasing systemic risk.

It would, by the way, be a very good business and SRE exercise to actually trip those small risks from time to time and fix it.

Otherwise: ask Iranians what happened to their AWS accounts when Trump decided to sanction them. Ask ICC judges what happened to their email and visa cards. Everything just stopped and died. Is that what you want for your company?

Re: OpenAI frontier models and Codex are now available on AWS

#155

Every time somebody questions why you might "trust" AWS (or Azure or GCP or whatever), or why you'd pay this premium, I realize they are not accustomed to working in enterprise environments. In my case, I work at a large enterprise with strict data governance built into customer contracts, and (partly related, partly not) our own governance concerns. Using vendors where you not only have infosec permission, but they…

while true, everyone signed this same data privacy agreement with anthropic / openai a long tiem ago

There are differences. Vertex / Bedrock have zero prompt logging for Opus 4.8. Anthropic logs prompts for 30 days. source: https://openrouter.ai/anthropic/claude-opus-4.8/providers

Re: OpenAI frontier models and Codex are now available on AWS

#156

Earlier quoted context omitted.

> We do not work in the US and have strong requirements for the data to stay in our country, which Bedrock gives us control over. It doesn't actually. The US can request data from whatever country US companies store it, and companies must comply. So if you have strong requirements for data to stay in your country, using a US provider, whatever it is, is out of question no matter what the company's marketing claims (t…

Ah yes, there is a gap between what our regulator wants and what the reality is. I have no qualms that they'll hover out the data if they want to, we know that since Snowden. But I have to comply with the regulator, not with reality.

The definition of malicious compliance…

Re: OpenAI frontier models and Codex are now available on AWS

#157

Every time somebody questions why you might "trust" AWS (or Azure or GCP or whatever), or why you'd pay this premium, I realize they are not accustomed to working in enterprise environments. In my case, I work at a large enterprise with strict data governance built into customer contracts, and (partly related, partly not) our own governance concerns. Using vendors where you not only have infosec permission, but they…

I think I would trust Amazon more than Antrophic, since they have no models of their own, they have no business collecting your data for training, while Antrophic most certainly does.
Post reply on HN