Skip to main content

Workspace roles

What the integration does not need

  • No workspace admin rights at runtime.
  • No Unity Catalog metastore privileges beyond the tables you point the notebooks at.
  • No cluster-scoped init scripts, and no cluster environment variables.
  • No permissions in the Kyberis product beyond a standard customer API key with default read scopes. The integration performs read-only enrichment calls and never mutates Kyberis data.

Sharing outputs

Enrichment output tables contain threat verdicts about your indicators. Treat them like any security telemetry: grant table access via Unity Catalog to the security team’s groups, and avoid granting broad workspace-wide SELECT. Nothing in the output rows contains credentials — see Data handling and privacy.