Databricks releases, every cloud
- Databricks Apps is now on by default for workspaces with the compliance security profile enabled
Requires compliance security profile.
- The READ METADATA privilege will soon be available by default for workspaces with the compliance security profile enabled Coming soon
Grants read-only visibility into object metadata, including security-sensitive information.
- Partner-powered AI features can no longer be disabled in the settings UI
Settings API still allows enable or disable until November 1, 2026.
- Genie Code scheduled tasks will soon be available by default for workspaces with the compliance security profile enabled Coming soon
Replaces manual runs of recurring analysis tasks. Available in October 2026.
- Query text is now masked by default in system tables and APIs
Masking applies to system.query.history, Query History API, and List Queries API. Account admins can grant access to unmasked text via databricks_pii_access group.
- Secrets in Unity Catalog will soon be available by default for workspaces with the compliance security profile enabled Coming soon
Replaces manual enablement, uses catalog.schema.secret namespace.
- Run the change, do not just read it. Hands-on labs in your own Databricks workspace, graded when you submit. Browse labs
- Role-based access control (RBAC) will soon be available by default for workspaces with the compliance security profile enabled Coming soon
Lets users assume a role with exclusive permissions, replacing accumulated permissions.
- OpenSharing SecureConnect will be available by default for all accounts Coming soon
Available by default for Premium plan accounts, rolling out to Enterprise plan accounts by early 2027.
- Sharing tables backed by default storage will be enabled by default for all accounts Coming soon
Automatically enabled for most Enterprise or Premium tier accounts in mid-September 2026.
- SQL alert task in Lakeflow Jobs is now available by default for workspaces with the compliance security profile enabled
Supports all Databricks compliance security profile standards, returns evaluation state as output.
- Zerobus Ingest is now enabled by default for workspaces with the compliance security profile
Replaces manual connector setup for compliant workspaces.
- Lakebase is enabled by default in compliance security profile workspaces
Replaces manual Lakebase enablement in HIPAA, C5, or TISAX workspaces.
- MANAGE no longer requires USE CATALOG or USE SCHEMA on the same object
No longer requires USE CATALOG or USE SCHEMA on the same object, but still needs them on parent containers.
- Dedicated group clusters will soon be available by default for workspaces with the compliance security profile enabled Coming soon
Enables shared compute for groups with compliance security profile, supporting Databricks Runtime for ML and RDD APIs.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Variant will soon be available by default for workspaces with the compliance security profile enabled Coming soon
Ingests semi-structured data from sources like Kinesis and REST APIs. Available in July 2026.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - MLflow trace storage in Unity Catalog will soon be available by default for workspaces with the compliance security profile enabled Coming soon
Stores MLflow traces in Unity Catalog tables with unlimited storage and OTel format. Requires compliance security profile.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - AI Search high QPS will soon be available by default for workspaces with the compliance security profile enabled Coming soon
Replaces manual configuration for high-throughput workloads, existing endpoints unchanged.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - ai_extract and ai_classify are now available by default for workspaces with the compliance security profile enabled
Replaces manual text extraction and classification workflows, requires compliance security profile.
- Get this table by email. One Monday mail covering the week, filtered to the clouds and products you run. Weekly digest
- Data Classification is now available by default for additional compliance standards
Requires compliance security profile with C5, TISAX, or IRAP controls.
- Query-based connectors in Lakeflow Connect will soon be available by default for workspaces with the compliance security profile enabled Coming soon
Replaces CDC configuration, supports Oracle, Teradata, and others.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Request for Access will soon be enabled by default for all workspaces Coming soon
Routes requests to Unity Catalog object owners via email, replacing workspace-level settings.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Databricks SQL alerts are now available by default for workspaces with the compliance security profile enabled
Supports all compliance security profile standards, monitors data and KPIs via scheduled queries.
- Behavior changes for continuous jobs and pipelines Coming soon
Configures continuous schedule from pipeline page, wrapping pipeline in a continuous job. Replaces pipeline's built-in continuous setting for new pipelines.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Excel file format support is now available by default
Supports .xls, .xlsx, and .xlsm files without external libraries.
- Data Classification is now available by default for some workspaces with the compliance security profile enabled
Requires compliance security profile and specific controls like HIPAA or HITRUST.
- Lakeflow Designer will soon be available by default for workspaces with the compliance security profile enabled Coming soon
Replaces manual coding for data preparation and transformation. Available late July 2026.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Identity federation enabled by default for all new workspaces
Does not affect existing workspaces.
- Upcoming behavior change: Choose entitlements when adding principals to workspaces Coming soon
Grants entitlements explicitly when adding principals, replacing inheritance from users system group.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Genie Code Agent mode is now available by default for workspaces with the compliance security profile enabled
Requires HIPAA, PCI-DSS, and FedRAMP Moderate controls. Automates code generation and error fixing.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Postgres password authentication is now disabled by default for new Lakebase projects
Existing projects are unaffected, enable in project settings to allow.
- ai_parse_document is now available by default for workspaces with the compliance security profile enabled
Requires compliance security profile and specific controls like HIPAA and PCI-DSS. Parses structured content from unstructured documents.
- New Lakebase instances now scale to zero by default
New instances scale to zero after 24 hours of inactivity, reducing compute costs. Existing projects are unaffected.
- Upcoming breaking change: default behavior when deleting a Unity Catalog pipeline Coming soon
Deletes now retain associated tables by default, set cascade=true to remove them.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Supervisor Agent is now available by default for Enhanced Security and Compliance customers
Requires compliance security profile and specific controls like HIPAA or PCI-DSS.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Empty vector search endpoints no longer incur charges
Charges stop 24 hours after last index is deleted.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - New Lakebase instances are created as Autoscaling projects by default
Applies to UI, API, Terraform, and SDK creations. Existing Provisioned instances remain unchanged.
- New Lakebase instances include autoscaling by default
Autoscaling is on by default for new instances, applies to UI, API, Terraform, and SDK creations.
- Serverless compute is enabled by default
Eligible Google Cloud workspaces are affected, account admins no longer need to manually enable it.
- Knowledge Assistant is now available by default for Enhanced Security and Compliance customers
Requires compliance security profile and HIPAA controls.
- File events enabled by default on new external locations
Enabled on new locations, detects file changes for storage jobs and pipelines, can be disabled after creation.
Headlines, dates and product areas are Databricks' own, from the release notes published for each cloud, and every item links to the note it came from. The one-line summaries are ours. Not a Databricks product and not affiliated with Databricks, Inc.