Multi-tenant isolation and security for Amazon Bedrock agents, knowledge bases, and model access. Use when designing or debugging tenant separation (one tenant must never see another's data, sessions, KB content, or quota), passing/enforcing tenantId, scoping IAM least-privilege, filtering KB retrieval by tenant, applying guardrails/PII controls, encrypting with KMS, and auditing. Trigger on anything involving tenantId, "multi-tenant", "tenant isolation", "cross-tenant", session attributes, per-tenant KB/guardrail, IAM scoping, or securing a Bedrock backend.