NewYour coding agent can read the release notes before it upgrades.Set up the MCP server →
npm · #3079 most downloaded on npm
Cookies, optionally signed using Keygrip.
Last release 25 days ago
09 Sep 2026
Release timing varies
gaps range from 2 months to 4.2 years
Some releases are documented
notes for 15 of 35 stable releases
Nothing withdrawn
no release was ever pulled
16 years old
35 releases · first in 2011
Align validation of path and domain with cookie package edf9512
Fix incorrectly disallowing equals sign in cookie value
One column per quarter.
Use req.socket over deprecated req.connection
partitioned option for CHIPS supportpriority option for Priority cookie supportmaxAge option to reject invalid valuesreq.socket over deprecated req.connectionFix check for default secure option behavior
secure option behaviormaxAge option preventing cookie deletion"none" in sameSite optioneval usage with Function constructorprocess to check for listenerstsscmp module for timing-safe signature verificationdeps: keygrip@~1.0.3 perf: enable strict mode
perf: remove argument reassignment
Remove unnecessary Buffer loading
Buffer loadingAdd sameSite option for SameSite cookie support
sameSite option for SameSite cookie supportFix keys deprecation message deps: keygrip@~1.0.1
keys deprecation messageFix regression in 0.6.0 for array of strings in keys option
keys optionDeprecate secureProxy option in .set; use secure option instead
secure constructor option for secure connection checkingnew Cookies(req, res, [options])
new Cookies(req, res, key) with new Cookies(req, res, {'keys': keys})secureProxy option in .set; use secure option instead
secure: true throws even over SSL, use the secure constructor optionThrow on invalid values provided to Cookie constructor
Cookie constructor
Integrate with req.protocol for secure cookies
req.protocol for secure cookiesmaxAge as well as maxage- Update package for repo move
allow passing an array of strings as keys
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Your coding agent can read these notes before it upgrades. Set up the MCP server →