Databricks AI Security Leap
Databricks' Omnigent introduces intent-based authorization to prevent AI agents from executing off-task actions, even when their identity permits them.

Visual TL;DR
traditional systems verify who can access what, not why an action is taken
From the article 9+ mentionsDatabricks is rolling out a new security layer for its AI agents designed to tackle a fundamental flaw in current authorization models.
malicious instructions hidden in data trick agents into unauthorized actions
From the article 2 mentionsPrompt injection attacks exploit the agent's inability to distinguish between data to process and instructions to follow.
agent executes off-task actions if identity permissions allow it
From the article 2 mentionsWhen an attacker embeds instructions within this data, the agent might execute them if its identity-based permissions allow it.
From the articleDatabricks is rolling out a new security layer for its AI agents designed to tackle a fundamental flaw in current authorization models.
every AI agent action must align with a clearly declared purpose
From the article 5 mentionsThe new system, part of Omnigent, introduces intent-based authorization.
stops AI agents from executing actions not aligned with their session's purpose
tackles a fundamental flaw in current authorization models for AI agents
From the article 2 mentionsCrucially, the agent cannot alter or expand its own intent at runtime, preventing prompt injection from hijacking the security policy itself.
Contents(3)
© 2026 StartupHub.ai. All rights reserved. You may not republish this article in full without a license. Search engines and AI research tools may crawl and summarize for reference. Bulk reproduction or model training requires a license. See our terms.
Written by
Daniel SingerEditor, StartupHub.ai
Daniel Singer is the editor of StartupHub.ai, a technology expert and thought leader on AI and its applications across sectors, from fintech and healthcare to developer tooling and consumer software. He writes and tests the tools covered here thoroughly and regularly, and built StartupHub.ai to give founders, operators and buyers a clearer read on what they are actually being sold.
More from Daniel Singer