Databricks Genie Agents to Restrict Data Access to Explicitly Attached Sources
Databricks will restrict Genie Agents to access only data sources explicitly attached under the agent's Sources, effective late September 2026. This change prevents agents from implicitly accessing additional tables or Unity Catalog functions referenced in instructions if those sources are not directly linked. Currently, agents can go beyond their attached data sources when references are made in instructions. This update is critical for engineers and architects managing Genie Agents to ensure proper data governance and access control.
Breaking changes (1) ›
- Genie Agents will be restricted to explicitly attached data sources
Effective late September 2026, Databricks Genie Agents will only be able to use data sources explicitly attached under the agent's Sources. This modifies the current behavior where agents could access additional tables or Unity Catalog functions if referenced in their instructions, even if not directly attached.
https://docs.databricks.com/aws/en/release-notes/whats-coming#genie-agents-will-soon-be-restricted-to-only-the-data-sources-attached-to-the-agent
Related releases
- Databricks-managed MCP Connectors for Genie One Now Generally Available Databricks Release Notes ·
- Databricks Genie Agents Get GA APIs and Unity Catalog Function Tools Databricks Release Notes ·
- Databricks Enhances Dashboards with AI, Materialization, and Visualization Features Databricks Release Notes ·
- Databricks Excel Add-in Reaches General Availability Databricks Release Notes ·
- Databricks Unity Catalog Integrates with AWS Secrets Manager for External Secrets Databricks Release Notes ·
- Data Classification to Soon Scan Unity Catalog Views Databricks Release Notes ·