Databricks permissions management at scale

lukaszmaron
New Contributor III

Working with permissions in Databricks at scale gets tricky pretty fast.

A few patterns that keep coming up:

  • permissions spread across workspaces, catalogs, groups
  • hard to answer simple questions like “who actually has access to X?”
  • lots of manual querying / scripting to reconstruct the full picture

Even when audit logs are enabled, they don’t fully solve:

  • current state vs historical access
  • effective permissions (inherited via groups)
  • cross-workspace visibility
lukaszmaron_0-1778534349989.png

 

Feels like there’s still a gap between how permissions are modeled and how easily they can be analyzed or audited in practice.

Checkout the article and the tool I've been working on 🙂

Full article: Medium 

GitHub repo: Repo