Skip to content

Databricks releases, every cloud

16 releases of 1321

Last updated

  1. Metastore-level ABAC policies are in Beta

    Applies across every catalog in the metastore. Replaces per-catalog policy setup.

  2. ABAC DENY policies are in Beta

    Explicitly deny MANAGE ACCESS CONTROL privilege, taking precedence over grants.

  3. Private network gateway is in Private Preview

    Connects serverless compute to VPC and on-premises systems through a managed gateway, reusing existing network connectivity configuration.

    AWS, read it on their docsAzure, read it on their docsGCP(not on this cloud)SAP(unknown)
  4. The INSERT, UPDATE, and DELETE privileges are in Beta

    Require Databricks Runtime 18.1 or above, alternative to MODIFY privilege.

  5. Serverless outbound Private Service Connect to customer-managed resources (Public Preview)

    Keeps traffic off the public internet, adding network-layer defense against data exfiltration through customer-managed Google Cloud service attachment.

    AWS(not on this cloud)Azure(not on this cloud)GCP, read it on their docsSAP(unknown)
  6. Role-based access control (RBAC) is in Public Preview

    Lets users assume a role with limited permissions. Requires account and workspace admin setup.

  7. Run the change, do not just read it. Hands-on labs in your own Databricks workspace, graded when you submit. Browse labs
  8. Custom URLs for your Databricks account (Public Preview)

    Replaces default URL, requires claim and enable process.

    AWS, read it on their docsAzure(not on this cloud)GCP, read it on their docsSAP(not on this cloud)
  9. Block specific internet destinations in network policies (Public Preview)

    Blocks destinations regardless of network access mode, enforced through REST API.

  10. Configure Microsoft Entra ID SSO for Power BI (Public Preview)

    Uses account-level federation policy, replacing manual config.

    AWS, read it on their docsAzure(not on this cloud)GCP(not on this cloud)SAP(not on this cloud)
  11. Inbound Private Link for performance-intensive services (Public Preview)

    Enables private connectivity for Zerobus Ingest and Lakebase Autoscaling.

    AWS, read it on their docsAzure, read it on their docsGCP(not on this cloud)SAP(not on this cloud)
  12. Customer-managed keys for Unity Catalog (Public Preview)

    Protects data with user-owned encryption keys, replacing automatic encryption.

    AWS, read it on their docsAzure(not on this cloud)GCP(not on this cloud)SAP(not on this cloud)
  13. HITRUST compliance controls (Public Preview)

    Manages risk and demonstrates security and privacy compliance. Requires enabling in settings.

    AWS, read it on their docsAzure(not on this cloud)GCP, read it on their docsSAP(unknown)
  14. Serverless outbound IPs available through public JSON endpoint (Public Preview)

    Replaces existing stable IPs, requires Public Preview enrollment.

    AWS, read it on their docsAzure(not on this cloud)GCP(not on this cloud)SAP(unknown)
  15. Context based ingress control is now in Public Preview

    Enables account admins to set allow and deny rules based on identity, request type, and network source.

  16. Automatic email notifications for expiring personal access tokens (Public Preview)

    Sends emails 7 days before token expiration.

  17. List MCP servers in Databricks Marketplace (Public Preview)

    Lets users install MCP servers to connect AI agents to external data sources.

    AWS, read it on their docsAzure(not on this cloud)GCP, read it on their docsSAP(unknown)

Headlines, dates and product areas are Databricks' own, from the release notes published for each cloud, and every item links to the note it came from. The one-line summaries are ours. Not a Databricks product and not affiliated with Databricks, Inc.