Databricks App Data in UC Single Sign On End User needs CAN_USE or CAN_MANAGE App Service Principal needs access to the resource SQL Warehouse (needs Can Use permissions or greater) Serving endpoint (needs Can Query permissions or greater) Job (needs Can Manage Run or greater) Databricks Secret (needs Can Read permissions or greater) Vector Search (needs Can Query permissions or greater) Compute (Spark) (needs Can Attach To or greater) App Service Principal needs access to the data, eg Can Select (tables), Use Schema, Use Catalog