NewYour coding agent can read the release notes before it upgrades.Set up the MCP server →
npm · #1466 most downloaded on npm
Parse the things that can be arguments to `npm install`
Last release 4 months ago
15 May 2026
Ships fairly regularly
a new release about every 2 months
Some releases are documented
notes for 21 of 57 stable releases
Nothing withdrawn
no release was ever pulled
12 years old
57 releases · first in 2014
npm-package-arg now supports node ^22.22.2 || ^24.15.0 || >=26.0.0
npm-package-arg now supports node ^22.22.2 || ^24.15.0 || >=26.0.00eade2f #228 bump to new node engine range (@owlstronaut)245d29a #228 template-oss-apply (@owlstronaut)362844d #228 validate-npm-package-name@8.0.091cf06b #228 proc-log@7.0.055409ca #228 hosted-git-info@10.1.0a6794f1 #228 template-oss-apply (@owlstronaut)bfb6066 #228 bumping @npmcli/template-oss from 4.28.0 to 5.1.0 (@owlstronaut)c9bff6d #220 explicit sha1 / sha256 git committish tests (#220) (@wraithgar)One column per quarter.
34eddcb #216 validate-npm-package-name@7.0.0
bfacbad #216 @npmcli/eslint-config@6.0.0 (@wraithgar)77e0f08 #216 @npmcli/template-oss@4.28.0 (@wraithgar)86f5fc5 #215 remove code coverage bypass (#215) (@wraithgar)f00dea0 #211 Correct tarball regex to detect literal dots ( @markovejnovic )
f00dea0 #211 Correct tarball regex to detect literal dots (@markovejnovic)npm-package-arg now supports node ^20.17.0 || >=22.9.0
14cb8a1 #200 properly parse non-url encoded file specs ( #200 ) ( @wraithgar )
14cb8a1 #200 properly parse non-url encoded file specs (#200) (@wraithgar)1343a54 #199 bump @npmcli/template-oss from 4.23.4 to 4.23.5 (#199) (@dependabot[bot], @npm-cli-bot)ea07a6e #197 allow for git usernames that start with a number ( #197 ) ( @wraithgar )
ea07a6e #197 allow for git usernames that start with a number (#197) (@wraithgar)41aa799 #196 bump @npmcli/template-oss from 4.23.3 to 4.23.4 (#196) (@dependabot[bot], @npm-cli-bot)npm-package-arg now supports node ^18.17.0 || >=20.5.0
npm-package-arg now supports node ^18.17.0 || >=20.5.03361e59 #194 validate-npm-package-name@6.0.006e3bd6 #194 proc-log@5.0.096dd671 #194 hosted-git-info@8.0.0163925e #194 run template-oss-apply (@reggi)a8a9bdd #190 bump @npmcli/eslint-config from 4.0.5 to 5.0.0 (@dependabot[bot])f8d32ec #188 postinstall for dependabot template-oss PR (@hashtagchris)a867f96 #188 bump @npmcli/template-oss from 4.23.1 to 4.23.3 (@dependabot[bot])59d53b3 #184 throws an err when alias is without name ( #184 ) ( @milaninfy )
59d53b3 #184 throws an err when alias is without name (#184) (@milaninfy)911661e #176 bump @npmcli/template-oss to 4.22.0 (@lukekarrys)575012e #186 bump @npmcli/template-oss from 4.22.0 to 4.23.1 (#186) (@dependabot[bot], @wraithgar)74d06ae #176 postinstall for dependabot template-oss PR (@lukekarrys)1765111 #171 readme: fix broken badge URL ( #171 ) ( @10xLaCroixDrinker )
1765111 #171 readme: fix broken badge URL (#171) (@10xLaCroixDrinker)207ba7d #168 postinstall for dependabot template-oss PR (@lukekarrys)604c1d2 #168 bump @npmcli/template-oss from 4.21.1 to 4.21.3 (@dependabot[bot])82273b5 #165 postinstall for dependabot template-oss PR (@lukekarrys)4228b37 #165 bump @npmcli/template-oss from 4.19.0 to 4.21.1 (@dependabot[bot])d4b1447 #147 postinstall for dependabot template-oss PR (@lukekarrys)c5920a9 #147 bump @npmcli/template-oss from 4.18.1 to 4.19.0 (@dependabot[bot])ee68f93 #146 postinstall for dependabot template-oss PR (@lukekarrys)7901052 #146 bump @npmcli/template-oss from 4.18.0 to 4.18.1 (@dependabot[bot])74b3c7e #141 use URL instead of url.parse ( #141 ) ( @wraithgar )
the strict RFC 8909 mode has been removed
`f2c243c` #122 add function to return pacakge purl (@bdehamer, @ljharb)
x and x@ now return the same spec as x@*
x and x@ now return the same spec as x@*npm-package-arg is now compatible with the following semver range for node: ^14.17.0 || ^16.13.0 || >=18.0.0d2b87c0 #97 standardize x x@ and x@* (#97) (@wraithgar)7b9cb25 #108 resolve relative urls that start with file:// (@lukekarrys)`50ed49c` revert engines change (@lukekarrys)
`8383fdc` #109 resolve relative urls that start with file:// (@lukekarrys)
git: add support for :: in #committish
bump validate-npm-package-name from 3.0.0 to 4.0.0
bump hosted-git-info from 4.1.0 to 5.0.0
This drops support for node10 and non-LTS versions of node 12 and node 14.
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Dropping support for node 6 and 8. It'll probably still work on those versions, but they are no longer supported or tested, since npm v7 is moving awa
Dropping support for node 6 and 8. It'll probably still work on those versions, but they are no longer supported or tested, since npm v7 is moving away from them.
drop support for node 6 and 8 (ba85e68)
<a name="7.0.0"></a>
<a name="6.1.1"></a>
Nothing published for this version
preserve drive letter on windows git file:// urls
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Your coding agent can read these notes before it upgrades. Set up the MCP server →