Built for Azure Databricks

Databricks Governance
Native to Azure

Kostavo is built from the ground up for Azure Databricks. Deep Azure integration, native authentication, and governance that speaks your cloud language.

Why Azure Databricks Users Choose Kostavo

Azure-Native Auth

Microsoft Entra SSO. Service principal authentication. No separate identity system to manage.

Azure Tags

Use your existing Azure resource tags for policy assignment. No duplicate tagging required.

Private Endpoint Support

Connect securely to workspaces behind Azure Private Link. Your data stays on your network.

Deep Azure Integration

Microsoft Entra Authentication

SSO with your existing Microsoft Entra tenant. No separate passwords or identity system to manage.

  • Single sign-on
  • SCIM user sync (Enterprise add-on)

Azure Tag-Based Policies

Assign policies based on Azure resource tags. Environment, cost-center, team: any tag becomes a policy selector.

  • Automatic discovery
  • Tag inheritance
  • Dynamic assignment

Private Endpoint Integration

Securely connect to Databricks workspaces behind Azure Private Link. Works with your network security setup.

  • Azure Private Link support
  • Secure workspace access
  • No public exposure required

Azure Databricks workspaces connected via a service principal: hosts, regions, and tags in one place.

Azure-Specific Features

Microsoft Entra SSO

Authenticate with your existing Microsoft Entra tenant

Minimal Azure Permissions

Custom role with only the Azure permissions Kostavo needs. Workspace admin is granted inside Databricks, not at the Azure level.

Resource Tags

Policy assignment based on Azure resource tags

Private Endpoints

Connect to workspaces behind Azure Private Link

Tag rules match on your Azure resource tags: here everything not tagged environment=production gets cost guardrails, with a live preview of the workspaces covered.

Connect in 5 Minutes

1

Create Service Principal

Register an app in Microsoft Entra and assign it a minimal custom role. Kostavo will elevate itself to workspace admin inside Databricks to manage resources on your behalf.

2

Connect to Kostavo

Enter your tenant ID and service principal credentials. We'll discover your workspaces.

3

Start Governing

Apply policies immediately. Auto-discovery finds all resources automatically.

Secure Azure Integration

  • Custom role with minimal Azure permissions: no Contributor or Owner required
  • Kostavo operates as workspace admin inside Databricks, needed to manage resources on your behalf
  • Microsoft Entra integration: SSO out of the box
  • Private endpoint support: connect to secured workspaces
  • No data access: Kostavo manages resources, never touches your data

Built for Azure. Built for You.

Connect your first Azure Databricks workspace in 5 minutes.

Start Free Trial