Databricks releases, every cloud
| Release | Date | ||||
|---|---|---|---|---|---|
| Customer-managed keys for Unity Catalog Uses own encryption keys for Unity Catalog data. Replaces automatic encryption. | Not on AWS | On Azure, read it on their docs | Not on GCP | Not on SAP | Mar 2, 2026 |
| Customer-managed keys for Unity Catalog (Beta) Uses own encryption keys for Unity Catalog catalogs. Replaces automatic encryption. | Not on AWS | Not on Azure | On GCP, read it on their docs | Not on SAP | Mar 2, 2026 |
| ISMAP compliance support Supports Japanese government cloud certification, requires configuration changes. | On AWS, read it on their docs | On Azure, read it on their docs | Not on GCP | Unknown on SAP | Feb 26, 2026 |
| Change to use_case field in VPC endpoint API responses Coming soon Changes from WORKSPACE_ACCESS to GENERAL_ACCESS, see API docs for details. | On AWS, read it on their docs | Not on Azure | On GCP, read it on their docs | Unknown on SAP | Feb 24, 2026 |
| Personal access tokens preserved when CAN USE permission is revoked Tokens become unusable but not deleted when permission is revoked, and reactivate if restored. | On AWS, read it on their docs | On Azure, read it on their docs | On GCP, read it on their docs | Unknown on SAP | Feb 23, 2026 |
| Inbound Private Link for performance-intensive services (Beta) Enables private connectivity to Zerobus Ingest and Lakebase Autoscaling. | Not on AWS | On Azure, read it on their docs | Not on GCP | Unknown on SAP | Feb 18, 2026 |
| Run the change, do not just read it. Hands-on labs in your own Databricks workspace, graded when you submit. Browse labs | |||||
| Scoped personal access tokens (Beta) Limits permissions by selecting token type and API scopes, replacing legacy tokens. | On AWS, read it on their docs | On Azure, read it on their docs | On GCP, read it on their docs | Unknown on SAP | Feb 18, 2026 |
| Automatic identity management deactivates deleted Entra ID users Replaces "Active: Removed From EntraID" status with Deactivated. | Not on AWS | On Azure, read it on their docs | Not on GCP | Unknown on SAP | Feb 16, 2026 |
| Automatically provision users (JIT) GA Creates accounts during SSO login if none exist. Requires single sign-on setup. | Not on AWS | Not on Azure | On GCP, read it on their docs | Unknown on SAP | Feb 2, 2026 |
| Improved group sharing for automatic identity management Shares account-level assets with Microsoft Entra ID groups. Requires automatic identity management. | Not on AWS | On Azure, read it on their docs | Not on GCP | Unknown on SAP | Jan 24, 2026 |
| Front-end PrivateLink for performance-intensive services (Beta) Supports private connectivity to Zerobus Ingest and Lakebase Autoscaling. | On AWS, read it on their docs | Not on Azure | Not on GCP | Unknown on SAP | Jan 22, 2026 |
| Simplified serverless network security with Azure Network Security Perimeter Uses AzureDatabricksServerless service tag, replacing subnet-based rules. | Not on AWS | On Azure, read it on their docs | Not on GCP | Unknown on SAP | Jan 7, 2026 |
| Automatic email notifications for expiring personal access tokens (GA) Sends emails 14 days before token expiration, requires token lifetime to be set. | On AWS, read it on their docs | On Azure, read it on their docs | On GCP, read it on their docs | Unknown on SAP | Jan 6, 2026 |
| Expanded regional availability for C5 and TISAX compliance Now available in all regions and with serverless compute. | On AWS, read it on their docs | Not on Azure | On GCP, read it on their docs | Unknown on SAP | Dec 8, 2025 |
| Delta Sharing views automatically permitted in serverless network policies Permitted regardless of storage location alignment between shared tables and view dependencies. Simplifies network policy configuration. | On AWS, read it on their docs | On Azure, read it on their docs | On GCP, read it on their docs | Unknown on SAP | Nov 17, 2025 |
| TISAX compliance controls Enhances workspace compliance based on ISO/IEC 27001 and VDA ISA. | On AWS, read it on their docs | Not on Azure | On GCP, read it on their docs | Unknown on SAP | Nov 3, 2025 |
- Customer-managed keys for Unity Catalog
Uses own encryption keys for Unity Catalog data. Replaces automatic encryption.
- Customer-managed keys for Unity Catalog (Beta)
Uses own encryption keys for Unity Catalog catalogs. Replaces automatic encryption.
- ISMAP compliance support
Supports Japanese government cloud certification, requires configuration changes.
- Change to use_case field in VPC endpoint API responses Coming soon
Changes from WORKSPACE_ACCESS to GENERAL_ACCESS, see API docs for details.
- Personal access tokens preserved when CAN USE permission is revoked
Tokens become unusable but not deleted when permission is revoked, and reactivate if restored.
- Inbound Private Link for performance-intensive services (Beta)
Enables private connectivity to Zerobus Ingest and Lakebase Autoscaling.
- Run the change, do not just read it. Hands-on labs in your own Databricks workspace, graded when you submit. Browse labs
- Scoped personal access tokens (Beta)
Limits permissions by selecting token type and API scopes, replacing legacy tokens.
- Automatic identity management deactivates deleted Entra ID users
Replaces "Active: Removed From EntraID" status with Deactivated.
- Automatically provision users (JIT) GA
Creates accounts during SSO login if none exist. Requires single sign-on setup.
- Improved group sharing for automatic identity management
Shares account-level assets with Microsoft Entra ID groups. Requires automatic identity management.
- Front-end PrivateLink for performance-intensive services (Beta)
Supports private connectivity to Zerobus Ingest and Lakebase Autoscaling.
- Simplified serverless network security with Azure Network Security Perimeter
Uses AzureDatabricksServerless service tag, replacing subnet-based rules.
- Automatic email notifications for expiring personal access tokens (GA)
Sends emails 14 days before token expiration, requires token lifetime to be set.
- Expanded regional availability for C5 and TISAX compliance
Now available in all regions and with serverless compute.
- Delta Sharing views automatically permitted in serverless network policies
Permitted regardless of storage location alignment between shared tables and view dependencies. Simplifies network policy configuration.
- TISAX compliance controls
Enhances workspace compliance based on ISO/IEC 27001 and VDA ISA.
Headlines, dates and product areas are Databricks' own, and every item links to the note it came from. The one-line summaries are ours.