databricks Databricks Release Notes ·

Databricks Unity Catalog Scala UDFs Now Support Secret Access

securitydatabricksgaengineerdatabricks-unity-catalog
feature

Databricks has enhanced Scala User-Defined Functions (UDFs) within Unity Catalog to securely access secrets managed by the catalog. This feature allows UDFs to retrieve sensitive information like API keys or credentials directly during execution, improving data pipeline security. The capability applies to both session-scoped and Unity Catalog Scala UDFs, with the latter utilizing the function owner's permissions and a `SECRETS` clause. Access requires specific environment versions and Databricks Runtime 19+ on classic compute with standard access mode, and is limited to serverless SQL warehouses for Unity Catalog Scala UDFs.

Enhancements (1) ›
  • Scala UDFs Can Now Access Unity Catalog Secrets

    Scala User-Defined Functions (UDFs), encompassing both session-scoped and Unity Catalog UDFs, can now access secrets managed within Unity Catalog. Unity Catalog Scala UDFs declare secrets via a `SECRETS` clause and use the function owner's permissions, while session-scoped UDFs use the caller's permissions. This functionality requires environment version 6 or above for serverless compute and Databricks Runtime 19 or above with standard access mode for classic compute, and is exclusively supported on serverless SQL warehouses.

Read the original announcement →

https://docs.databricks.com/aws/en/release-notes/product/2026/september#scala-udfs-can-access-unity-catalog-secrets

Related releases