NewYour coding agent can read the release notes before it upgrades.Set up the MCP server →
npm · #1866 most downloaded on npm
Official SDK for Supabase Auth
Last release today
23 Sep 2026
Ships on a steady schedule
a new release about every 9 days
Nearly every release is documented
notes for 60 of the last 60 stable releases
2 versions withdrawn
withdrawn after publishing
3 years old
522 releases · first in 2023
auth: add X (OAuth 2.0) provider
auth: allow custom predicate for detectSessionInUrl option
One column per month.
repo: migrate build system to tsdown for proper ESM/CJS support
repo: backwards compatible deep import
auth: allow custom predicate for detectSessionInUrl option
Katerina Skroumpelou @mandarini
realtime: omit authorization header when no access token exists
realtime: handle websocket race condition in node.js
supabase: resolve jsDelivr CDN ESM import failure with .js extensions
This was a version bump only for @supabase/auth-js to align it with other projects, there were no code changes.
supabase: resolve jsDelivr CDN ESM import failure with .js extensions
supabase: resolve jsDelivr CDN ESM import failure with .js extensions
auth: add helpful error when PKCE code verifier is missing
auth: add helpful error when PKCE code verifier is missing
auth: skip navigator lock when persistSession is false
auth: skip navigator lock when persistSession is false
realtime: preserve custom JWT tokens across channel resubscribe
storage: align analytics from method with { data, error } pattern
This was a version bump only for @supabase/auth-js to align it with other projects, there were no code changes.
storage: align analytics from method with { data, error } pattern
storage: correct QueryVectorsResponse to use vectors instead of matches
This was a version bump only for @supabase/auth-js to align it with other projects, there were no code changes.
storage: correct QueryVectorsResponse to use vectors instead of matches
auth: suppress getsession warning when getuser is called first
auth: suppress getsession warning when getuser is called first
storage: install iceberg-js and add from method
This was a version bump only for @supabase/auth-js to align it with other projects, there were no code changes.
storage: install iceberg-js and add from method
realtime: add metadata to realtime user broadcast push
Nothing published for this version
Nothing published for this version
postgrest: add isdistinct and regex pattern matching operators
This was a version bump only for @supabase/auth-js to align it with other projects, there were no code changes.
Nothing published for this version
Nothing published for this version
Nothing published for this version
storage: rename StorageAnalyticsApi to StorageAnalyticsClient
This was a version bump only for @supabase/auth-js to align it with other projects, there were no code changes.
Nothing published for this version
auth: add OAuth grant listing and revocation endpoints
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
auth: use Symbols for callback IDs to resolve Next.js 16 compatibility
Nothing published for this version
Nothing published for this version
realtime: implement V2 serializer
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
auth: add TypeScript types for documented JWT claims fields
Nothing published for this version
Nothing published for this version
Nothing published for this version
auth: support throwing errors instead of returning them
Nothing published for this version
Nothing published for this version
auth: add OAuth 2.1 authorization consent management API calls
getAuthorizationDetails (#1811)getAuthorizationDetails (#1811)Nothing published for this version
Nothing published for this version
Nothing published for this version
auth: add OAuth 2.1 authorization consent management API calls
getAuthorizationDetails (#1811)getAuthorizationDetails (#1811)Your coding agent can read these notes before it upgrades. Set up the MCP server →