Databricks releases, every cloud
- Metastore-level ABAC policies are in Beta
Applies across every catalog in the metastore. Replaces per-catalog policy setup.
- ABAC DENY policies are in Beta
Explicitly deny MANAGE ACCESS CONTROL privilege, taking precedence over grants.
- The INSERT, UPDATE, and DELETE privileges are in Beta
Require Databricks Runtime 18.1 or above, alternative to MODIFY privilege.
- Unity Catalog ABAC GRANT policies support more securable types in Beta
Now supports model services, model provider services, MCP services, and agent services, in addition to models.
- Governed tags system table is in Beta
Contains records for each governed tag key, including customer-created and system-generated tags.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Role-based access control (RBAC) is in Public Preview
Lets users assume a role with limited permissions. Requires account and workspace admin setup.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Run the change, do not just read it. Hands-on labs in your own Databricks workspace, graded when you submit. Browse labs
- Secrets in Unity Catalog (Public Preview)
Uses three-level namespace and Unity Catalog privileges for access control.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Restrict access to AI Functions with Unity Catalog permissions (Public Preview)
Requires account team enablement, restricts access to task-specific AI Functions.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Enable access requests across your Unity Catalog metastore (Public Preview)
Enables requests at metastore level, inherited by all catalogs and schemas.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - The Discover page is now in Public Preview
Helps find Unity Catalog data assets without requiring catalog hierarchy knowledge. Organizes tables and dashboards by business area.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Configure the recovery period for dropped managed tables (Public Preview)
Sets recovery period to 0 hours or 7-30 days, requires Databricks Runtime 17.3.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Databricks-to-Databricks Delta Sharing across regulatory domains is now available (Public Preview)
Supports sharing with AWS GovCloud, AWS GovCloud DoD, and Azure China.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - MLflow trace storage in Unity Catalog is now in Public Preview
Stores OpenTelemetry traces, governed by Unity Catalog permissions, queryable from Databricks SQL or MLflow Python SDK.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Health indicators for tables in Catalog Explorer (Public Preview)
Shows freshness and completeness status based on anomaly detection.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Customer-managed keys for Unity Catalog (Public Preview)
Protects data with user-owned encryption keys, replacing automatic encryption.
- Tag Databricks Apps (Public Preview)
Organize and categorize apps, but search is not supported.
- ABAC-secured assets shared using Delta Sharing is in Public Preview
Applies to tables and schemas, but not streaming tables or materialized views.
- Convert foreign tables to Unity Catalog managed or external tables (Public Preview)
Requires Databricks Runtime 17.0 LTS or above. Uses ALTER TABLE SET MANAGED or SET EXTERNAL.
- Get this table by email. One Monday mail covering the week, filtered to the clouds and products you run. Weekly digest
- JDBC Unity Catalog connection in Beta
Requires Databricks Runtime 17.3 or above. Available on standard, dedicated, or serverless compute.
- Attribute-based access control (ABAC) now in Public Preview
Enforces access control across all workspaces in an account. Requires Unity Catalog.
- Dashboard and Genie Agents tagging (Public Preview)
Adds organization and automation via API, replaces manual tracking.
Headlines, dates and product areas are Databricks' own, from the release notes published for each cloud, and every item links to the note it came from. The one-line summaries are ours. Not a Databricks product and not affiliated with Databricks, Inc.