Databricks releases, every cloud
- REPLACE USING flows for standalone streaming tables (Beta)
Replaces rows matching specified key columns, requires SEQUENCE BY column.
- Unity Catalog ABAC GRANT policies support more securable types in Beta
Now supports model services, model provider services, MCP services, and agent services, in addition to models.
- Alert system tables are in Public Preview
Contains alerts and alert_evaluation_history tables for auditing and monitoring.
- READ METADATA privilege is GA
Provides read-only visibility into security-sensitive metadata, including privilege grants and ABAC policies.
- Change data feed on materialized views (Beta)
Requires Databricks Runtime 18 LTS or above. Enables replication to external destinations.
- Tag automations (Beta)
Assigns or removes governed tags on Unity Catalog tables or volumes based on defined conditions.
- Run the change, do not just read it. Hands-on labs in your own Databricks workspace, graded when you submit. Browse labs
- JAR tasks on serverless compute are now generally available
Requires matching Scala, Java Development Kit, and Databricks Connect versions.
- Serverless outbound Private Service Connect to customer-managed resources (Public Preview)
Keeps traffic off the public internet, adding network-layer defense against data exfiltration through customer-managed Google Cloud service attachment.
- Zerobus Ingest is now enabled by default for workspaces with the compliance security profile
Replaces manual connector setup for compliant workspaces.
- Schema-level HTTP connections in Unity Catalog are now generally available
Creates connections inside a schema, inheriting its privileges, instead of only at metastore level.
- Automatic cost attribution for materialized views and streaming tables in Databricks SQL
Inherits custom tags from enclosing SQL warehouse environment for billing.
- MANAGE no longer requires USE CATALOG or USE SCHEMA on the same object
No longer requires USE CATALOG or USE SCHEMA on the same object, but still needs them on parent containers.
- Refresh materialized views and streaming tables without exempting the pipeline owner from ABAC policies
Pipeline owners are now subject to ABAC policies when refreshing views and tables. Policies are evaluated using the pipeline owner's identity.
- Secrets in Unity Catalog is GA
Stores secrets as securable objects with Unity Catalog privileges. Uses catalog.schema.secret namespace.
- Serverless compute access control is now generally available
Governs access to notebooks, jobs, and pipelines through Default Interactive and Automated Compute objects. Existing workloads run unchanged.
- Upcoming general availability of Unity Gateway Coming soon
Extends Unity Catalog governance to runtime interactions, controls AI service usage, and monitors traffic. Available by default for workspaces with compliance security profile in mid-September.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Python UDTFs in Unity Catalog are now generally available
Runs on serverless compute, classic compute, and SQL warehouses. Requires Databricks Runtime 18.
- Create a least-privilege Databricks workspace
Grants Databricks a narrow set of custom IAM roles instead of broad permissions on Google Cloud.
- Get this table by email. One Monday mail covering the week, filtered to the clouds and products you run. Weekly digest
- Dedicated group clusters will soon be available by default for workspaces with the compliance security profile enabled Coming soon
Enables shared compute for groups with compliance security profile, supporting Databricks Runtime for ML and RDD APIs.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Governed tags system table is in Beta
Contains records for each governed tag key, including customer-created and system-generated tags.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Automated setup for S3 external locations
Uses AWS IAM temporary delegation to configure external locations and provision required resources.
- Databricks-hosted sample datasets available in the samples catalog
Available in Unity Catalog-enabled workspaces through OpenSharing as samples.databricks.datasets.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Email notifications for expiring service principal tokens are now generally available
Sends emails to workspace admins 7 days before token expiration for used tokens with lifetime over 7 days. No configuration is required.
- Role-based access control (RBAC) is in Public Preview
Lets users assume a role with limited permissions. Requires account and workspace admin setup.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Variant will soon be available by default for workspaces with the compliance security profile enabled Coming soon
Ingests semi-structured data from sources like Kinesis and REST APIs. Available in July 2026.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Context-based ingress control for workspaces public access is now generally available
Uses allow and deny rules to control access based on identities, network sources, and request types.
- Warehouse-level statement timeouts (Beta)
Set via statement_timeout field in Create or Update warehouse APIs.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - MLflow trace storage in Unity Catalog is now generally available
Stores traces in OpenTelemetry format with unlimited storage and SQL query access.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - AI Search high QPS will soon be available by default for workspaces with the compliance security profile enabled Coming soon
Replaces manual configuration for high-throughput workloads, existing endpoints unchanged.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Custom URLs for your Azure Databricks account (Public Preview)
Replaces default Azure Databricks URL with a custom domain.
- Custom URLs for your Databricks account (Public Preview)
Replaces default URL, requires claim and enable process.
- Data Classification is now available by default for additional compliance standards
Requires compliance security profile with C5, TISAX, or IRAP controls.
- Allowlist partner platform IPs in context-based ingress control (Beta)
Supports Power BI, Tableau Cloud, and dbt platform, with automatic IP list updates.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Query-based connectors in Lakeflow Connect will soon be available by default for workspaces with the compliance security profile enabled Coming soon
Replaces CDC configuration, supports Oracle, Teradata, and others.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Request for Access will soon be enabled by default for all workspaces Coming soon
Routes requests to Unity Catalog object owners via email, replacing workspace-level settings.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Secrets in Unity Catalog (Public Preview)
Uses three-level namespace and Unity Catalog privileges for access control.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Change to default pipeline editor for workspaces with the compliance security profile enabled Coming soon
Replaces legacy editor, removing it in August.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Databricks SQL alerts are now available by default for workspaces with the compliance security profile enabled
Supports all compliance security profile standards, monitors data and KPIs via scheduled queries.
- Restrict access to AI Functions with Unity Catalog permissions (Public Preview)
Requires account team enablement, restricts access to task-specific AI Functions.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Configure serverless egress control in Azure China
Available in China North 3 region, requires workspace in same region.
Headlines, dates and product areas are Databricks' own, from the release notes published for each cloud, and every item links to the note it came from. The one-line summaries are ours. Not a Databricks product and not affiliated with Databricks, Inc.