NewYour coding agent can read the release notes before it upgrades.Set up the MCP server →
npm · #4635 most downloaded on npm
Static file serving and directory listing
Last release 7 months ago
03 Mar 2026
Ships fairly regularly
a new release about every 6 months
Nearly every release is documented
notes for 60 of the last 60 stable releases
Nothing withdrawn
no release was ever pulled
15 years old
156 releases · first in 2011
b3888f9: Update serve-handler to 6.1.7 to fix ReDoS vulnerabilities
serve-handler to 6.1.7 to fix ReDoS vulnerabilitiesf4b6fbd: Update compression to v1.8.1
One column per quarter.
Nothing published for this version
Bump serve-handler, vitest, and `typescript: #812
serve-handler, vitest, and `typescript: #812Bump @zeit/schemas to 2.36.0: #803
@zeit/schemas to 2.36.0: #803fix: Update ajv from 8.11.0 to 8.12.0: #796
Huge thanks to @legobeat for helping!
Set Access-Control-Allow-Headers: * default response header: #775
Access-Control-Allow-Headers: * default response header: #775Huge thanks to @hood for helping!
Update CORS headers to support PNA spec: #753
@zeit/schemas package: #756Huge thanks to @k-yle and @IcedMonk for helping!
Fix: add missing CLI option to argv parser: #742
Huge thanks to @casperx for helping!
Infra: move c8 (coverage) to devDeps: #743
Huge thanks to @AviVahl for helping!
Feat: Add support for PFX or PKCS12 encoded certificates: #708
serve-handler from 6.1.3 to 6.1.5: #738Huge thanks to @schemburkar and @gamemaker1 for helping!
Fix(utilities/cli): use chalk-template to render help message: #713
chalk-template to render help message: #713Huge thanks to @gamemaker1 for helping!
The core library has been rewritten in TypeScript
serve has had a major update:
eslint and prettierhusky and lint-stagedWe now also have a contribution guide, with linting/type checking running on a GitHub Actions workflow. There are also issue and pull request templates to help folks contribute more easily to the repository.
Huge thanks to @gamemaker1 for helping!
[major] TypeScript rewrite, support ES Modules.: #706
Huge thanks to @gamemaker1 for helping!
Switch to GitHub Actions.: #702
Huge thanks to @gamgi for helping!
Fix: read passphrase from file as string: #692
Huge thanks to @AliRezaBeigy for helping!
Updated the screenshot: c53be04c62bd22c728be6ca5a98a3cf2ede808cd
Security(deps): boxen@5.1.2 to fix CVE-2021-3807: #676
Huge thanks to @AviVahl for helping!
Change default port from 5000 to 3000: #680
5000 to 3000: #680Huge thanks to @kud for helping!
HTTPS: Adding Ability to Send Passphrase to createServer: #655
Huge thanks to @wilbert-abreu and @marcofugaro for helping!
Update clipboardy to v2.3.0 (Drops support for Node 8, reached end of life): #612
clipboardy to v2.3.0 (Drops support for Node 8, reached end of life): #612-p port flag to the help command output: #607Huge thanks to @hail2u, @Oscar-21, @jespertheend, @rajivshah3, @z-svoboda-mob, @IvanSanchez, and @wabscale for helping!
Update serve-handler to v6.1.3: 04b42e7a3e3e34df9f714739882e29af088d1087
serve-handler to v6.1.3: 04b42e7a3e3e34df9f714739882e29af088d1087yarn.lock file: 059c85201022c1e66ec45099d21cb8fd1240ccddHuge thanks to @brandonarbini for helping!
Bump acorn from 6.3.0 to 6.4.1: #583
Huge thanks to @sarupbanskota for helping!
Huge thanks to @TrevorDev for helping!
--cors option: #527Huge thanks to @TrevorDev for helping!
Add support for manual SSL certs/keys: #520
serve-handler to the latest version: #559Huge thanks to @mattdodge, @d2s, and @Johann-S for helping!
Update serve-handler to v6.1.0 and enable etag option by default: #546
serve-handler to v6.1.0 and enable etag option by default: #546--no-compression option to help message: #523Huge thanks to @philippescher, @christopherjbaker, and @mbalabash for helping!
Bumped serve-handler to latest version: #539
serve-handler to latest version: #539Updated lockfile for yarn: #530
Disable symlinks by default: #517
npx serve option to README: #509Huge thanks to @jamonholmgren for helping!
Use os.networkInterfaces() to detect network address: #492
serve-handler to latest version: #505Huge thanks to @saintwinkle for helping!
Properly encode redirect responses: #491
Deprecate support for now.json and package.json: #489
NO_UPDATE_CHECK environment flag: #457serve-handler to the latest version: #488now.json and package.json: #489Huge thanks to @leeyeh for helping!
Bumped serve-handler to the latest version: #480
serve-handler to the latest version: #480Bumped @zeit/schemas to the latest version: #475
@zeit/schemas to the latest version: #475Bumped dependencies to the latest version: #468
Added support for range requests: #465
Point directly to Spectrum community: #462
### Patches - Updated link to Spectrum: #461
Handle ETag and If-None-Match: #456
ETag and If-None-Match: #456Support for absolute paths: #445
Huge thanks to @az0uz and @styfle for helping!
Allow custom headers to be set for default error responses: #443
Properly handle requests with malformed URIs: #442
Handle DNS lookup failures: #439
Huge thanks to @just-boris for helping!
Read port from environment variable PORT: #434
PORT: #434Huge thanks to @compulim for helping!
Reverted default port back to 5000: #427
public option: #428Add --config for custom paths to serve.json: #418
--config for custom paths to serve.json: #418Huge thanks to @tohjustin for helping!
Fixed requests to /index being redirected wrong: #416
/index being redirected wrong: #416Adding -p as an alias to -l: #412
-p as an alias to -l: #412Huge thanks to @wawhal for helping!
### Patches - Correctly apply host: #410
Show server listen address properly: #407
Huge thanks to @iczero for helping!
Support for renderSingle and reduced stat calls: #406
renderSingle and reduced stat calls: #406Make cleanUrls stop stripping .htm extension: #403
cleanUrls stop stripping .htm extension: #403Added default Content-Disposition header: #397
Content-Disposition header: #397Replace logo for repository: ad821be91a9e11facc46384af3f1a103017aafc4
Added charset to Content-Type header: #394
Content-Type header: #394Ensured that everything in README.md is correct: #392
README.md is correct: #392Bumped middleware to the latest version: #391
Bumped our dependencies to the latest version: #388
Added example of using the middleware: #385
Re-added --single and made --listen support ports: #384
--single and made --listen support ports: #384serve-handler to the latest version: #383Huge thanks to @jaeseok-park for helping!
Your coding agent can read these notes before it upgrades. Set up the MCP server →