# Databricks makes user-scoped app authorization generally available

_Published Wednesday, October 7, 2026 at 10:48 PM EDT · Products, Security, AI · Latest · Tier 2 — Notable_

![Databricks makes user-scoped app authorization generally available — Primary](https://www.databricks.com/sites/default/files/2026-10/OBO-apps.png)

Databricks made on-behalf-of-user authorization generally available for apps that access supported platform APIs. Apps can now act with a signed-in user's identity, letting Unity Catalog enforce existing data permissions, row filters and column masks without developers recreating those rules in application code.

API scopes separately limit which operations an app may perform; the restricted-query scope permits read-only SQL. Apps can retain their own identity for shared configuration and background work. Workspace administrators can restrict available scopes, but removing a scope does not stop apps already running with it: they cannot restart, deploy or update until that scope is removed.

## Sources

- [Databricks](https://www.databricks.com/blog/now-ga-building-permission-aware-databricks-apps-behalf-user-authorization)

---
Canonical: https://techandbusiness.org/newswire/KycTYGz_yyRbPCguM98bGB
Published: 2026-10-08T02:48:37.332Z
Story chronology: 2026-10-07T16:40:00.000Z
Retrieved: 2026-10-08T05:43:00.556Z
Publisher: Tech & Business (techandbusiness.org)
