Skip to content

Add a Databricks toolset for Unity Gateway MCP Services - #74198

Open
firasbouzazi wants to merge 5 commits into
apache:mainfrom
firasbouzazi:claude/vibrant-dijkstra-533yw4
Open

firasbouzazi wants to merge 5 commits into
apache:mainfrom
firasbouzazi:claude/vibrant-dijkstra-533yw4

Conversation

@firasbouzazi

Copy link
Copy Markdown

Dag authors want their agents to use governed Databricks tools such as Unity Catalog functions, Genie and AI Search through a Unity AI Gateway MCP Service, without putting bearer tokens or gateway URLs in Dag code. The generic MCP toolset needs both in a separate connection and sends a fixed token, which expires during long agent runs with OAuth identities.

closes: #74193


Was generative AI tooling used to co-author this PR?
  • Yes (please specify the tool below)

  • Read the Pull Request Guidelines for more information. Note: commit author/co-author name and email in commits become permanently public when merged.
  • For fundamental code changes, an Airflow Improvement Proposal (AIP) is needed.
  • When adding dependency, check compliance with the ASF 3rd Party License Policy.
  • For significant user-facing changes create newsfragment: {pr_number}.significant.rst, in airflow-core/newsfragments. You can add this file in a follow-up commit after the PR is created so you know the PR number.

Dag authors want their agents to use governed Databricks tools such as
Unity Catalog functions, Genie and AI Search through a Unity AI Gateway
MCP Service, without putting bearer tokens or gateway URLs in Dag code.
The generic MCP toolset needs both in a separate connection and sends a
fixed token, which expires during long agent runs with OAuth identities.

closes: apache#74193
@boring-cyborg

boring-cyborg Bot commented Oct 4, 2026

Copy link
Copy Markdown

Congratulations on your first Pull Request and welcome to the Apache Airflow community! If you have any issues or are unsure about any anything please check our Contributors' Guide
Here are some useful points:

  • Pay attention to the quality of your code (ruff, mypy and type annotations). Our prek-hooks will help you with that.
  • In case of a new feature add useful documentation (in docstrings or in docs/ directory). Adding a new operator? Check this short guide Consider adding an example Dag that shows how users should use it.
  • Consider using Breeze environment for testing locally, it's a heavy docker but it ships with a working Airflow and a lot of integrations.
  • Be patient and persistent. It might take some time to get a review or get the final approval from Committers.
  • Please follow ASF Code of Conduct for all communication including (but not limited to) comments on Pull Requests, Mailing list and Slack.
  • Be sure to read the Airflow Coding style.
  • Always keep your Pull Requests rebased, otherwise your build might fail due to changes not related to your commits.
    Apache Airflow is a community-driven project and together we are making it better 🚀.
    In case of doubts contact the developers at:
    Mailing List: dev@airflow.apache.org
    Slack: https://s.apache.org/airflow-slack

Each gateway request fetched its token through AirflowToolset.run_blocking,
whose lock is shared by every toolset in the process. While another toolset
ran a long blocking call, such as a SQL query, every request to the MCP
Service waited for it to finish.
Databricks requires USE CATALOG and USE SCHEMA on the parent catalog and
schema as well as EXECUTE on the service, so an identity granted only
EXECUTE is denied. Users following the guide or the access-denied error
would grant too little.
Databricks also requires the calling identity to be assigned to the workspace the request goes to, which the guide did not say.
The MCP client carries on after some gateway error responses, such as one
to a notification, but the toolset kept that status and later reported an
unrelated failure as it. A tool call with bad arguments then ended the agent
run as a gateway error instead of letting the model retry.

Also use Databricks' name for the product, Unity Gateway, and correct the
guide: Databricks provides MCP Services for workspace tools and SaaS
applications, and only external MCP servers can be registered as one.
@firasbouzazi firasbouzazi changed the title Add a Databricks toolset for Unity AI Gateway MCP Services Add a Databricks toolset for Unity Gateway MCP Services Oct 4, 2026

This branch has not been deployed

No deployments
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Databricks: add Unity Gateway MCP integration for common.ai

1 participant