Databricks releases, every cloud
| Release | Date | ||||
|---|---|---|---|---|---|
| Customer-managed keys now support model serving Encrypts model serving container images and model artifacts in Databricks managed registry. Applies to endpoint artifacts created after April 16, 2026. | On AWS, read it on their docs | On Azure, read it on their docs | On GCP, read it on their docs | Not on SAP | Apr 16, 2026 |
| C5, TISAX, and K-FSI compliance controls are now generally available Available on Azure, providing enhancements for workspace compliance requirements. | Not on AWS | On Azure, read it on their docs | Not on GCP | Not on SAP | Apr 10, 2026 |
| Upcoming breaking change: default behavior when deleting a Unity Catalog pipeline Coming soon Deletes now retain associated tables by default, set cascade=true to remove them. | On AWS, read it on their docs | On Azure, read it on their docs | On GCP, read it on their docs | Not on SAP | Apr 9, 2026 |
| Scoped personal access tokens are now generally available Restrict tokens to specific API operations with specified permissions. Coming soon to compliance security profile workspaces. | On AWS, read it on their docs | On Azure, read it on their docs | On GCP, read it on their docs | Not on SAP | Apr 8, 2026 |
| Databricks Marketplace listing creation wizard Guides setup of general info, data assets, and attributes in separate steps. | On AWS, read it on their docs | On Azure, read it on their docs | On GCP, read it on their docs | Not on SAP | Apr 6, 2026 |
| Customer-managed keys for Unity Catalog are generally available Encrypts data in Unity Catalog catalogs using cloud KMS keys. Requires default storage. | On AWS, read it on their docs | Not on Azure | On GCP, read it on their docs | Not on SAP | Apr 1, 2026 |
| Run the change, do not just read it. Hands-on labs in your own Databricks workspace, graded when you submit. Browse labs | |||||
| Databricks Documentation site table of contents tabs Replaces static sidebar with tabbed navigation, includes 6 context tabs. | On AWS, read it on their docs | Not on Azure | On GCP, read it on their docs | Not on SAP | Mar 31, 2026 |
| New SQL editor default enablement and legacy SQL editor retirement Coming soon New SQL editor becomes default in May, legacy editor retires in July. | On AWS, read it on their docs | On Azure, read it on their docs | On GCP, read it on their docs | Not on SAP | Mar 30, 2026 |
| Databricks SQL version 2026.10 is now available in Preview Fixes observation metric errors, optimizes Unity Catalog writes, and uses session timezone for timestamp partitions. | On AWS, read it on their docs | On Azure, read it on their docs | On GCP, read it on their docs | Not on SAP | Mar 26, 2026 |
| Search in metric views fix Now returns correct results across paginated results and supports filtering by display name. | On AWS, read it on their docs | On Azure, read it on their docs | On GCP, read it on their docs | On SAP, read it on their docs | Mar 17, 2026 |
| 5X-Large SQL warehouse size (Beta) Available in all supported regions, controlled from Previews page. | On AWS, read it on their docs | On Azure, read it on their docs | On GCP, read it on their docs | Not on SAP | Mar 13, 2026 |
| Serverless compute is enabled by default Eligible Google Cloud workspaces are affected, account admins no longer need to manually enable it. | Not on AWS | Not on Azure | On GCP, read it on their docs | Not on SAP | Mar 12, 2026 |
| Inbound Private Link for performance-intensive services (Public Preview) Enables private connectivity for Zerobus Ingest and Lakebase Autoscaling. | On AWS, read it on their docs | On Azure, read it on their docs | Not on GCP | Not on SAP | Mar 9, 2026 |
| Serverless compute now available for IRAP and Canada Protected B workloads on Azure Databricks Requires environment version 5 to be enabled. | Not on AWS | On Azure, read it on their docs | Not on GCP | Not on SAP | Mar 6, 2026 |
| Customer-managed keys for Unity Catalog Uses own encryption keys for Unity Catalog data. Replaces automatic encryption. | Not on AWS | On Azure, read it on their docs | Not on GCP | Not on SAP | Mar 2, 2026 |
| Customer-managed keys for Unity Catalog (Beta) Uses own encryption keys for Unity Catalog catalogs. Replaces automatic encryption. | Not on AWS | Not on Azure | On GCP, read it on their docs | Not on SAP | Mar 2, 2026 |
| Customer-managed keys for Unity Catalog (Public Preview) Protects data with user-owned encryption keys, replacing automatic encryption. | On AWS, read it on their docs | Not on Azure | Not on GCP | Not on SAP | Mar 2, 2026 |
| Update workspace network configuration to VNet injection is now GA Migrates from Databricks-managed VNet to customer-owned VNet. | Not on AWS | On Azure, read it on their docs | Not on GCP | Not on SAP | Mar 2, 2026 |
| Get this table by email. One Monday mail covering the week, filtered to the clouds and products you run. Weekly digest | |||||
| HITRUST compliance controls (Public Preview) Manages risk and demonstrates security and privacy compliance. Requires enabling in settings. | On AWS, read it on their docs | Not on Azure | On GCP, read it on their docs | Unknown on SAP | Feb 26, 2026 |
| ISMAP compliance support Supports Japanese government cloud certification, requires configuration changes. | On AWS, read it on their docs | On Azure, read it on their docs | Not on GCP | Unknown on SAP | Feb 26, 2026 |
| Serverless outbound IPs available through public JSON endpoint (Public Preview) Replaces existing stable IPs, requires Public Preview enrollment. | On AWS, read it on their docs | Not on Azure | Not on GCP | Unknown on SAP | Feb 25, 2026 |
| Change to use_case field in VPC endpoint API responses Coming soon Changes from WORKSPACE_ACCESS to GENERAL_ACCESS, see API docs for details. | On AWS, read it on their docs | Not on Azure | On GCP, read it on their docs | Unknown on SAP | Feb 24, 2026 |
| Azure virtual network service endpoint policies are now generally available Apply to classic compute for outbound storage access filtering. Requires configuration. | Not on AWS | On Azure, read it on their docs | Not on GCP | Unknown on SAP | Feb 23, 2026 |
| Databricks SQL version 2025.40 is rolling out in Current Replaces version 2025.39, requires no setup changes. | On AWS, read it on their docs | On Azure, read it on their docs | On GCP, read it on their docs | Unknown on SAP | Feb 23, 2026 |
| Personal access tokens preserved when CAN USE permission is revoked Tokens become unusable but not deleted when permission is revoked, and reactivate if restored. | On AWS, read it on their docs | On Azure, read it on their docs | On GCP, read it on their docs | Unknown on SAP | Feb 23, 2026 |
| Enhanced Security and Compliance add-on is now generally available includes compliance security profile and enhanced security monitoring. | Not on AWS | Not on Azure | On GCP, read it on their docs | Unknown on SAP | Feb 19, 2026 |
| Inbound Private Link for performance-intensive services (Beta) Enables private connectivity to Zerobus Ingest and Lakebase Autoscaling. | Not on AWS | On Azure, read it on their docs | Not on GCP | Unknown on SAP | Feb 18, 2026 |
| Scoped personal access tokens (Beta) Limits permissions by selecting token type and API scopes, replacing legacy tokens. | On AWS, read it on their docs | On Azure, read it on their docs | On GCP, read it on their docs | Unknown on SAP | Feb 18, 2026 |
| Automatic identity management deactivates deleted Entra ID users Replaces "Active: Removed From EntraID" status with Deactivated. | Not on AWS | On Azure, read it on their docs | Not on GCP | Unknown on SAP | Feb 16, 2026 |
| Databricks SQL version 2025.40 is now available in Preview Adds SQL scripting with procedural logic and expands parameter markers and IDENTIFIER clause support. | On AWS, read it on their docs | On Azure, read it on their docs | On GCP, read it on their docs | Unknown on SAP | Feb 11, 2026 |
| Serverless egress control is now generally available Manages outbound connections with restricted access and FQDN filtering. | Not on AWS | Not on Azure | On GCP, read it on their docs | Unknown on SAP | Feb 9, 2026 |
| Automatically provision users (JIT) GA Creates accounts during SSO login if none exist. Requires single sign-on setup. | Not on AWS | Not on Azure | On GCP, read it on their docs | Unknown on SAP | Feb 2, 2026 |
| Improved group sharing for automatic identity management Shares account-level assets with Microsoft Entra ID groups. Requires automatic identity management. | Not on AWS | On Azure, read it on their docs | Not on GCP | Unknown on SAP | Jan 24, 2026 |
| Front-end PrivateLink for performance-intensive services (Beta) Supports private connectivity to Zerobus Ingest and Lakebase Autoscaling. | On AWS, read it on their docs | Not on Azure | Not on GCP | Unknown on SAP | Jan 22, 2026 |
| Simplified serverless network security with Azure Network Security Perimeter Uses AzureDatabricksServerless service tag, replacing subnet-based rules. | Not on AWS | On Azure, read it on their docs | Not on GCP | Unknown on SAP | Jan 7, 2026 |
| Automatic email notifications for expiring personal access tokens (GA) Sends emails 14 days before token expiration, requires token lifetime to be set. | On AWS, read it on their docs | On Azure, read it on their docs | On GCP, read it on their docs | Unknown on SAP | Jan 6, 2026 |
| Context based ingress control is now in Public Preview Enables account admins to set allow and deny rules based on identity, request type, and network source. | On AWS, read it on their docs | On Azure, read it on their docs | On GCP, read it on their docs | Unknown on SAP | Dec 17, 2025 |
| Flexible node types are now generally available Falls back to alternative instance types when specified type is unavailable, improving launch reliability. | On AWS, read it on their docs | On Azure, read it on their docs | On GCP, read it on their docs | Unknown on SAP | Dec 17, 2025 |
| Expanded regional availability for C5 and TISAX compliance Now available in all regions and with serverless compute. | On AWS, read it on their docs | Not on Azure | On GCP, read it on their docs | Unknown on SAP | Dec 8, 2025 |
| Automatic email notifications for expiring personal access tokens (Public Preview) Sends emails 7 days before token expiration. | On AWS, read it on their docs | On Azure, read it on their docs | On GCP, read it on their docs | Unknown on SAP | Nov 20, 2025 |
- Customer-managed keys now support model serving
Encrypts model serving container images and model artifacts in Databricks managed registry. Applies to endpoint artifacts created after April 16, 2026.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - C5, TISAX, and K-FSI compliance controls are now generally available
Available on Azure, providing enhancements for workspace compliance requirements.
- Upcoming breaking change: default behavior when deleting a Unity Catalog pipeline Coming soon
Deletes now retain associated tables by default, set cascade=true to remove them.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Scoped personal access tokens are now generally available
Restrict tokens to specific API operations with specified permissions. Coming soon to compliance security profile workspaces.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Databricks Marketplace listing creation wizard
Guides setup of general info, data assets, and attributes in separate steps.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Customer-managed keys for Unity Catalog are generally available
Encrypts data in Unity Catalog catalogs using cloud KMS keys. Requires default storage.
- Run the change, do not just read it. Hands-on labs in your own Databricks workspace, graded when you submit. Browse labs
- Databricks Documentation site table of contents tabs
Replaces static sidebar with tabbed navigation, includes 6 context tabs.
- New SQL editor default enablement and legacy SQL editor retirement Coming soon
New SQL editor becomes default in May, legacy editor retires in July.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Databricks SQL version 2026.10 is now available in Preview
Fixes observation metric errors, optimizes Unity Catalog writes, and uses session timezone for timestamp partitions.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Search in metric views fix
Now returns correct results across paginated results and supports filtering by display name.
- 5X-Large SQL warehouse size (Beta)
Available in all supported regions, controlled from Previews page.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Serverless compute is enabled by default
Eligible Google Cloud workspaces are affected, account admins no longer need to manually enable it.
- Inbound Private Link for performance-intensive services (Public Preview)
Enables private connectivity for Zerobus Ingest and Lakebase Autoscaling.
- Serverless compute now available for IRAP and Canada Protected B workloads on Azure Databricks
Requires environment version 5 to be enabled.
- Customer-managed keys for Unity Catalog
Uses own encryption keys for Unity Catalog data. Replaces automatic encryption.
- Customer-managed keys for Unity Catalog (Beta)
Uses own encryption keys for Unity Catalog catalogs. Replaces automatic encryption.
- Customer-managed keys for Unity Catalog (Public Preview)
Protects data with user-owned encryption keys, replacing automatic encryption.
- Update workspace network configuration to VNet injection is now GA
Migrates from Databricks-managed VNet to customer-owned VNet.
- Get this table by email. One Monday mail covering the week, filtered to the clouds and products you run. Weekly digest
- HITRUST compliance controls (Public Preview)
Manages risk and demonstrates security and privacy compliance. Requires enabling in settings.
- ISMAP compliance support
Supports Japanese government cloud certification, requires configuration changes.
- Serverless outbound IPs available through public JSON endpoint (Public Preview)
Replaces existing stable IPs, requires Public Preview enrollment.
- Change to use_case field in VPC endpoint API responses Coming soon
Changes from WORKSPACE_ACCESS to GENERAL_ACCESS, see API docs for details.
- Azure virtual network service endpoint policies are now generally available
Apply to classic compute for outbound storage access filtering. Requires configuration.
- Databricks SQL version 2025.40 is rolling out in Current
Replaces version 2025.39, requires no setup changes.
- Personal access tokens preserved when CAN USE permission is revoked
Tokens become unusable but not deleted when permission is revoked, and reactivate if restored.
- Enhanced Security and Compliance add-on is now generally available
includes compliance security profile and enhanced security monitoring.
- Inbound Private Link for performance-intensive services (Beta)
Enables private connectivity to Zerobus Ingest and Lakebase Autoscaling.
- Scoped personal access tokens (Beta)
Limits permissions by selecting token type and API scopes, replacing legacy tokens.
- Automatic identity management deactivates deleted Entra ID users
Replaces "Active: Removed From EntraID" status with Deactivated.
- Databricks SQL version 2025.40 is now available in Preview
Adds SQL scripting with procedural logic and expands parameter markers and IDENTIFIER clause support.
- Serverless egress control is now generally available
Manages outbound connections with restricted access and FQDN filtering.
- Automatically provision users (JIT) GA
Creates accounts during SSO login if none exist. Requires single sign-on setup.
- Improved group sharing for automatic identity management
Shares account-level assets with Microsoft Entra ID groups. Requires automatic identity management.
- Front-end PrivateLink for performance-intensive services (Beta)
Supports private connectivity to Zerobus Ingest and Lakebase Autoscaling.
- Simplified serverless network security with Azure Network Security Perimeter
Uses AzureDatabricksServerless service tag, replacing subnet-based rules.
- Automatic email notifications for expiring personal access tokens (GA)
Sends emails 14 days before token expiration, requires token lifetime to be set.
- Context based ingress control is now in Public Preview
Enables account admins to set allow and deny rules based on identity, request type, and network source.
- Flexible node types are now generally available
Falls back to alternative instance types when specified type is unavailable, improving launch reliability.
- Expanded regional availability for C5 and TISAX compliance
Now available in all regions and with serverless compute.
- Automatic email notifications for expiring personal access tokens (Public Preview)
Sends emails 7 days before token expiration.
Headlines, dates and product areas are Databricks' own, and every item links to the note it came from. The one-line summaries are ours.