Databricks releases, every cloud
| Release | Date | ||||
|---|---|---|---|---|---|
| Inbound Private Service Connect for performance-intensive services (Beta) Enables private connectivity to services like Zerobus Ingest and Lakebase Autoscaling on Google Cloud. | Not on AWS | Not on Azure | On GCP, read it on their docs | Unknown on SAP | Aug 22, 2026 |
| Serverless outbound Private Service Connect to customer-managed resources (Public Preview) Keeps traffic off the public internet, adding network-layer defense against data exfiltration through customer-managed Google Cloud service attachment. | Not on AWS | Not on Azure | On GCP, read it on their docs | Unknown on SAP | Aug 6, 2026 |
| Automated setup for S3 external locations Uses AWS IAM temporary delegation to configure external locations and provision required resources. | On AWS, read it on their docs | Not on Azure | Not on GCP | On SAP, read it on their docs | Jul 22, 2026 |
| Inbound Private Link for performance-intensive services is now generally available Supports Lakebase Autoscaling and Zerobus Ingest. | On AWS, read it on their docs | Not on Azure | Not on GCP | On SAP, read it on their docs | Jun 8, 2026 |
| Connect Databricks to on-premises resources using an SSH reverse tunnel Uses proxy VMs in AWS, replacing inbound firewall access. | On AWS, read it on their docs | Not on Azure | On GCP, read it on their docs | Not on SAP | Apr 28, 2026 |
| Customer-managed keys for Unity Catalog are generally available Encrypts data in Unity Catalog catalogs using cloud KMS keys. Requires default storage. | On AWS, read it on their docs | Not on Azure | On GCP, read it on their docs | Not on SAP | Apr 1, 2026 |
| Run the change, do not just read it. Hands-on labs in your own Databricks workspace, graded when you submit. Browse labs | |||||
| Customer-managed keys for Unity Catalog (Beta) Uses own encryption keys for Unity Catalog catalogs. Replaces automatic encryption. | Not on AWS | Not on Azure | On GCP, read it on their docs | Not on SAP | Mar 2, 2026 |
| Customer-managed keys for Unity Catalog (Public Preview) Protects data with user-owned encryption keys, replacing automatic encryption. | On AWS, read it on their docs | Not on Azure | Not on GCP | Not on SAP | Mar 2, 2026 |
| Serverless outbound IPs available through public JSON endpoint (Public Preview) Replaces existing stable IPs, requires Public Preview enrollment. | On AWS, read it on their docs | Not on Azure | Not on GCP | Unknown on SAP | Feb 25, 2026 |
| Serverless egress control is now generally available Manages outbound connections with restricted access and FQDN filtering. | Not on AWS | Not on Azure | On GCP, read it on their docs | Unknown on SAP | Feb 9, 2026 |
| Front-end PrivateLink for performance-intensive services (Beta) Supports private connectivity to Zerobus Ingest and Lakebase Autoscaling. | On AWS, read it on their docs | Not on Azure | Not on GCP | Unknown on SAP | Jan 22, 2026 |
| New Databricks accounts will not have access to legacy features New accounts use Unity Catalog, lack DBFS root access. Applies to accounts created after December 18, 2025. | On AWS, read it on their docs | Not on Azure | On GCP, read it on their docs | Unknown on SAP | Dec 19, 2025 |
| GCP Private Service Connect generally available No account team request needed to enable. | Not on AWS | Not on Azure | On GCP, read it on their docs | Unknown on SAP | Nov 3, 2025 |
- Inbound Private Service Connect for performance-intensive services (Beta)
Enables private connectivity to services like Zerobus Ingest and Lakebase Autoscaling on Google Cloud.
- Serverless outbound Private Service Connect to customer-managed resources (Public Preview)
Keeps traffic off the public internet, adding network-layer defense against data exfiltration through customer-managed Google Cloud service attachment.
- Automated setup for S3 external locations
Uses AWS IAM temporary delegation to configure external locations and provision required resources.
- Inbound Private Link for performance-intensive services is now generally available
Supports Lakebase Autoscaling and Zerobus Ingest.
- Connect Databricks to on-premises resources using an SSH reverse tunnel
Uses proxy VMs in AWS, replacing inbound firewall access.
- Customer-managed keys for Unity Catalog are generally available
Encrypts data in Unity Catalog catalogs using cloud KMS keys. Requires default storage.
- Run the change, do not just read it. Hands-on labs in your own Databricks workspace, graded when you submit. Browse labs
- Customer-managed keys for Unity Catalog (Beta)
Uses own encryption keys for Unity Catalog catalogs. Replaces automatic encryption.
- Customer-managed keys for Unity Catalog (Public Preview)
Protects data with user-owned encryption keys, replacing automatic encryption.
- Serverless outbound IPs available through public JSON endpoint (Public Preview)
Replaces existing stable IPs, requires Public Preview enrollment.
- Serverless egress control is now generally available
Manages outbound connections with restricted access and FQDN filtering.
- Front-end PrivateLink for performance-intensive services (Beta)
Supports private connectivity to Zerobus Ingest and Lakebase Autoscaling.
- New Databricks accounts will not have access to legacy features
New accounts use Unity Catalog, lack DBFS root access. Applies to accounts created after December 18, 2025.
- GCP Private Service Connect generally available
No account team request needed to enable.
Headlines, dates and product areas are Databricks' own, from the release notes published for each cloud, and every item links to the note it came from. The one-line summaries are ours. Not a Databricks product and not affiliated with Databricks, Inc.