Databricks releases, every cloud
- Sharing foreign Delta tables with OpenSharing is now generally available
Allows sharing tables from OneLake, Hive metastore, or AWS Glue without copying data.
- Sharing foreign Iceberg tables with OpenSharing is now generally available
Includes tables from external Iceberg catalogs via Lakehouse Federation.
- Sharing foreign schemas and tables with OpenSharing is now generally available
Sharing foreign schemas and tables doesn't copy data into Databricks. It incurs compute and storage costs on the provider's side.
- Private network gateway is in Beta
Connects serverless compute to VNet and on-premises systems through a managed gateway. Enabled from account console Previews page.
- Share metric views with OpenSharing (Beta)
Allows sharing with users in other metastores or accounts. Requires adding views to a share.
- Share foreign Delta tables with OpenSharing (Public Preview)
Allows read-only access to Delta tables in foreign catalogs like OneLake or AWS Glue.
- Run the change, do not just read it. Hands-on labs in your own Databricks workspace, graded when you submit. Browse labs
- Query text is now masked by default in system tables and APIs
Masking applies to system.query.history, Query History API, and List Queries API. Account admins can grant access to unmasked text via databricks_pii_access group.
- Private network gateway is in Private Preview
Connects serverless compute to VPC and on-premises systems through a managed gateway, reusing existing network connectivity configuration.
- Inbound Private Service Connect for performance-intensive services (Beta)
Enables private connectivity to services like Zerobus Ingest and Lakebase Autoscaling on Google Cloud.
- Sharing managed Iceberg tables is now generally available
Now supports sharing to external Iceberg clients.
- Cross-workspace access for serverless (Beta)
Controls serverless network traffic between workspaces with ingress and egress rules.
- Custom URL access to workspaces over inbound Private Link (Beta)
Uses general_access private endpoint, serves workspaces and account-level resources across regions.
- Sharing tables backed by default storage is now generally available
Enabled by default on a rolling basis, can be shared with classic compute recipients.
- Sharing tables backed by default storage will be enabled by default for all accounts Coming soon
Automatically enabled for most Enterprise or Premium tier accounts in mid-September 2026.
- Serverless outbound Private Service Connect to customer-managed resources (Public Preview)
Keeps traffic off the public internet, adding network-layer defense against data exfiltration through customer-managed Google Cloud service attachment.
- Sharing Delta tables with deletion vectors and column mapping is now generally available
Enables sharing tables with deletion vectors or column mapping. Requires setup in Add tables with deletion vectors or column mapping to a share.
- Sharing Delta tables with Iceberg reads enabled is now generally available
Enables reading Delta tables as Iceberg tables, requires Databricks Runtime 8.4 or above.
- Databricks-hosted sample datasets available in the samples catalog
Available in Unity Catalog-enabled workspaces through OpenSharing as samples.databricks.datasets.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Get this table by email. One Monday mail covering the week, filtered to the clouds and products you run. Weekly digest
- Networking charges for performance-intensive products
Charges apply to cross-region and public-internet egress for Lakebase, OpenSharing SecureConnect, Zerobus, and Files API.
- Context-based ingress control for workspaces public access is now generally available
Uses allow and deny rules to control access based on identities, network sources, and request types.
- Allowlist partner platform IPs in context-based ingress control (Beta)
Supports Power BI, Tableau Cloud, and dbt platform, with automatic IP list updates.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Serverless compute is now available in the Azure UK West region
Supports notebooks, jobs, pipelines, and SQL warehouses, with private connectivity.
- Trigger.AvailableNow support for OpenSharing streaming (GA)
Replaces Trigger.Once, requires Databricks Runtime 18.0 or above.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Block specific internet destinations in network policies (Public Preview)
Blocks destinations regardless of network access mode, enforced through REST API.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - OIDC is now supported for sharing to Iceberg clients
Supports Iceberg REST Catalog clients like Snowflake or OSS Spark. Requires OpenID Connect federation.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Private Link for account-level resources (Beta)
Connects account console through VPC interface endpoint instead of public internet. Requires configuration.
- Inbound Private Link for performance-intensive services is now generally available
Supports Lakebase Autoscaling and Zerobus Ingest.
- Intra-VNet NSG rule hardening for Azure Databricks is now in Public Preview
Restricts workspace traffic to host and worker subnet CIDRs. Applies to classic compute plane workspaces.
- Azure UK South now has a dedicated regional control plane
New workspaces require firewall allowlist entries for SCC relay tunnel and other IPs. Existing workspaces use UK West control plane unless migrated.
- Cloud token access for open Delta Sharing sharing (GA)
Supports directory-based access mode, includes cloud storage location and temporary credentials.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Connect Azure Databricks to on-premises resources using an SSH reverse tunnel
Replaces inbound firewall access, works with classic and serverless compute.
- Connect Databricks to on-premises resources using an SSH reverse tunnel
Uses proxy VMs in AWS, replacing inbound firewall access.
- Column-level SAP governance tags sync into Unity Catalog
Includes fieldSemantics, isPotentiallyPersonal, and isPotentiallySensitive tags for ABAC policies.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Share foreign Iceberg tables with Delta Sharing (Public Preview)
Adds read-only access to federated foreign Iceberg tables. Requires Delta Sharing.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - SAP semantic metadata syncs automatically into Unity Catalog
Includes table and column comments, primary keys, and foreign keys.
- Changes to OpenSharing (formerly Delta Sharing) open recipient tokens Coming soon
Replaces old Delta Sharing endpoint with recipient-specific URL format. New tokens use https://<recipient-id>.opensharing.us-west-2.cloud.databricks.com.
AWS, read it on their docsAzure, read it on their docsGCP, read it on their docsSAP(not on this cloud) - Inbound Private Link for performance-intensive services (Public Preview)
Enables private connectivity for Zerobus Ingest and Lakebase Autoscaling.
- Update workspace network configuration to VNet injection is now GA
Migrates from Databricks-managed VNet to customer-owned VNet.
- Serverless outbound IPs available through public JSON endpoint (Public Preview)
Replaces existing stable IPs, requires Public Preview enrollment.
- Azure virtual network service endpoint policies are now generally available
Apply to classic compute for outbound storage access filtering. Requires configuration.
Headlines, dates and product areas are Databricks' own, from the release notes published for each cloud, and every item links to the note it came from. The one-line summaries are ours. Not a Databricks product and not affiliated with Databricks, Inc.