Databricks releases, every cloud
- Databricks Apps is now on by default for workspaces with the compliance security profile enabled
Requires compliance security profile.
- The READ METADATA privilege will soon be available by default for workspaces with the compliance security profile enabled Coming soon
Grants read-only visibility into object metadata, including security-sensitive information.
- Genie Code scheduled tasks will soon be available by default for workspaces with the compliance security profile enabled Coming soon
Replaces manual runs of recurring analysis tasks. Available in October 2026.
- Query text is now masked by default in system tables and APIs
Masking applies to system.query.history, Query History API, and List Queries API. Account admins can grant access to unmasked text via databricks_pii_access group.
- Secrets in Unity Catalog will soon be available by default for workspaces with the compliance security profile enabled Coming soon
Replaces manual enablement, uses catalog.schema.secret namespace.
- Role-based access control (RBAC) will soon be available by default for workspaces with the compliance security profile enabled Coming soon
Lets users assume a role with exclusive permissions, replacing accumulated permissions.
- Run the change, do not just read it. Hands-on labs in your own Databricks workspace, graded when you submit. Browse labs
- SQL alert task in Lakeflow Jobs is now available by default for workspaces with the compliance security profile enabled
Supports all Databricks compliance security profile standards, returns evaluation state as output.
- Zerobus Ingest is now enabled by default for workspaces with the compliance security profile
Replaces manual connector setup for compliant workspaces.
- Lakebase is enabled by default in compliance security profile workspaces
Replaces manual Lakebase enablement in HIPAA, C5, or TISAX workspaces.
- MANAGE no longer requires USE CATALOG or USE SCHEMA on the same object
No longer requires USE CATALOG or USE SCHEMA on the same object, but still needs them on parent containers.
- Dedicated group clusters will soon be available by default for workspaces with the compliance security profile enabled Coming soon
Enables shared compute for groups with compliance security profile, supporting Databricks Runtime for ML and RDD APIs.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Variant will soon be available by default for workspaces with the compliance security profile enabled Coming soon
Ingests semi-structured data from sources like Kinesis and REST APIs. Available in July 2026.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - AI Search high QPS will soon be available by default for workspaces with the compliance security profile enabled Coming soon
Replaces manual configuration for high-throughput workloads, existing endpoints unchanged.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Data Classification is now available by default for additional compliance standards
Requires compliance security profile with C5, TISAX, or IRAP controls.
- Query-based connectors in Lakeflow Connect will soon be available by default for workspaces with the compliance security profile enabled Coming soon
Replaces CDC configuration, supports Oracle, Teradata, and others.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Databricks SQL alerts are now available by default for workspaces with the compliance security profile enabled
Supports all compliance security profile standards, monitors data and KPIs via scheduled queries.
- Data Classification is now available by default for some workspaces with the compliance security profile enabled
Requires compliance security profile and specific controls like HIPAA or HITRUST.
- Lakeflow Designer will soon be available by default for workspaces with the compliance security profile enabled Coming soon
Replaces manual coding for data preparation and transformation. Available late July 2026.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Get this table by email. One Monday mail covering the week, filtered to the clouds and products you run. Weekly digest
- Identity federation enabled by default for all new workspaces
Does not affect existing workspaces.
- Upcoming behavior change: Choose entitlements when adding principals to workspaces Coming soon
Grants entitlements explicitly when adding principals, replacing inheritance from users system group.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Postgres password authentication is now disabled by default for new Lakebase projects
Existing projects are unaffected, enable in project settings to allow.
- New Lakebase instances now scale to zero by default
New instances scale to zero after 24 hours of inactivity, reducing compute costs. Existing projects are unaffected.
- New Lakebase instances include autoscaling by default
Autoscaling is on by default for new instances, applies to UI, API, Terraform, and SDK creations.
Headlines, dates and product areas are Databricks' own, and every item links to the note it came from. The one-line summaries are ours.