Valeria_Koz_DBX
Databricks Employee
Databricks Employee

Hello @HOguns ,

Long response, but it is worth it.

Thank you for sharing the screenshots. There appear to be two separate issues: the Genie Code daily-token allowance and Help Center access.

1. Confirm the Databricks identity being used

The screenshots show several external identities for the same person, including mondayhenry31@gmail.com, an Azure guest identity containing #ext#, and onmicrosoft.com identities. The Account admin role appears to be assigned to the #ext# identity, not clearly to the plain Gmail identity.

Please ask your Microsoft Entra ID administrator to confirm which user principal name (UPN) is used when you sign in to Azure Databricks. Then:

  • Sign out of Databricks and Microsoft accounts in the browser, or use an incognito window.
  • Sign in using the same identity that has the Databricks Account admin role.
  • Confirm that this identity is assigned to the affected workspace.
  • If workspace administration is required, confirm that it also has the Workspace admin role.

Account-admin access and workspace access are separate permissions. Azure Databricks also recommends avoiding duplicate identities and using one identity-provisioning method. Do not delete the duplicate entries until the canonical Entra ID identity has been confirmed.

References: Azure Databricks account administration, Manage users in Azure Databricks, and Automatic identity management.

2. The budget does not create the daily token allowance

The screenshot confirms that Genie Code is displaying the error:

This workspace has no daily token allowance for the assistant. Ask your workspace admin to enable it, then try again.

A Genie budget is a usage-cost control; creating a budget does not by itself provision or enable the assistant’s daily token allowance. If a budget is configured, verify that it is scoped to the Genie product using the documented Unity Gateway resource and databricks-product = genie tag.

After correcting the sign-in identity and workspace assignment, start a new Genie Code session and test again. If the same error remains, this requires a Databricks-side account/workspace entitlement or provisioning check rather than another change in User Management.

  • When contacting Databricks, include:
  • Databricks account ID
  • Workspace ID and workspace URL
  • Azure region
  • The exact identity/UPN used to sign in
  • Approximate time of the failure and a screenshot of the error
  • Confirmation that the user identity and workspace assignment were checked

Reference: Genie Code on Azure Databricks.

3. Help Center access is separate from workspace administration

The message stating that the user does not have access to Help Center is not necessarily caused by missing workspace permissions. Help Center access depends on the organization’s Databricks support entitlement and whether the exact email address is registered as an authorized support contact.

The customer should:

  • Sign in to Help Center with the exact email associated with the Databricks support entitlement.
  • If mondayhenry31@gmail.com is not the authorized support contact, ask the account owner or support administrator to add the correct email address.
  • If this is a course, trial, or learning environment without a support contract, use the course support channel or Databricks Community; Help Center case access may not be included.
  • If access is still denied, email help@databricks.com with the account ID, workspace ID, workspace URL, Azure region, login identity, and the Help Center error.

Reference: Azure Databricks support.

Summary

A separate Azure subscription is not normally required just to use the workspace or assign Databricks administrator roles. However, the screenshots suggest that the account has an identity/role mismatch that should be corrected first. If the Genie Code error continues after using the canonical identity, Databricks Support must verify the workspace’s Genie Code daily allowance and provisioning. Help Center access is a separate support entitlement from workspace administration.