ReleaseWorth evaluating· Databricks release notes (AWS)
Service principal OAuth secrets can be limited to API scopes
Service principal OAuth secrets can now be restricted to specific API scopes, such as sql or jobs, instead of covering all APIs. Tokens created from a scoped secret cannot exceed those scopes, so administrators who create these secrets can limit what a leaked secret can access.
Learners should know that OAuth secrets for service principals can be scoped instead of granting broad API access.