Claude security directory

Databricks

Published by Databricks

Medium risk

Databricks offers two flavors of MCP servers: Managed servers and custom servers. Managed MCP servers: Databricks has ready-to-use servers that let agents query data and access tools in Unity Catalog. Unity Catalog permissions are always enforced, so agents and users can only access the tools and data they're allowed to. Custom MCP servers: Securely host your own MCP server as a Databricks app to bring your own server or run a third-party MCP server

Security assessment

Plutonium assessed this web connector for permissions, capabilities, and security-relevant behavior.

  • Reads your private information: This connector can read data the connected service holds about you - documents, messages, contact lists, source code, customer records, or saved profile details - and pass it back to the AI.
  • Sends your data to outside companies: Anything you share with this connector flows through one or more third-party services. Those companies see, store, and may use the data according to their own policies.

Available capabilities

This add-on exposes 3 tools or capabilities.

  • <catalog_name>__<schema_name>__<function_name>
  • <catalog_name>__<schema_name>__<vectorindex_name>
  • query_space_<space_id>

The interactive security report will load automatically.