# Neon serverless driver changelog > Neon's Postgres driver for serverless and edge runtimes, speaking the wire protocol over HTTP and WebSockets. - Vendor: Neon - Category: Databases & Data - Official site: https://github.com/neondatabase/serverless - Tracked by: What's New (https://whatsnew.fyi/product/neon-serverless-driver) - Harvested from: Registry (npm: @neondatabase/serverless) - Entries below: 15 (newest first) What's New is an index, not a publisher: every entry below links to the vendor's own release notes, which are the authoritative source. Entries are labelled where they are hand-curated sample data, pre-releases, or drawn from a secondary source such as a developer blog. Reuse: the summaries, labels and curation here are © What's New. Quote freely with attribution and a link back; wholesale republication of the corpus is not permitted — terms: https://whatsnew.fyi/terms. The vendors' own release notes remain their publishers'. ## Releases ### 1.1.0 - Date: 2026-04-17 - Version: 1.1.0 - Original notes: https://www.npmjs.com/package/@neondatabase/serverless/v/1.1.0 - Permalink: https://whatsnew.fyi/product/neon-serverless-driver/releases/1.1.0 - **changed** — Type declarations are now fully inlined instead of re-exported from @types/pg and @types/node - **changed** — Package size with dependencies is reduced - **changed** — Buffer-specific types in some places are now declared as Uint8Array Type declarations are now fully inlined (some were previously re-exported from `@types/pg` and `@types/node`). The new types greatly reduce the size of the package with dependencies, and should be compatible in normal usage. The code that is actually run remains unchanged. A few advanced type-level patterns could be affected. Code that depends on exact type identity with the `@types/pg` exports, that relies on `declare module 'pg'` augmentation flowing through these exports, or that assumes `Buffer`-specific types in places now declared as `Uint8Array` may need updated types. ### 1.0.2 - Date: 2025-09-30 - Version: 1.0.2 - Original notes: https://www.npmjs.com/package/@neondatabase/serverless/v/1.0.2 - Permalink: https://whatsnew.fyi/product/neon-serverless-driver/releases/1.0.2 Update neon.tech references to neon.com domain. ### 1.0.1 - Date: 2025-06-06 - Version: 1.0.1 - Original notes: https://www.npmjs.com/package/@neondatabase/serverless/v/1.0.1 - Permalink: https://whatsnew.fyi/product/neon-serverless-driver/releases/1.0.1 The package now prints a security warning to the console when a connection is made in a web browser. This behaviour can be suppressed with a new configuration option: `disableWarningInBrowsers`. There are a few other very minor fixes. ### 1.0.0 - Date: 2025-03-25 - Version: 1.0.0 - Original notes: https://www.npmjs.com/package/@neondatabase/serverless/v/1.0.0 - Permalink: https://whatsnew.fyi/product/neon-serverless-driver/releases/1.0.0 Breaking change: the HTTP query template function can now **only** be called as a template function, not as a conventional function. This improves safety from accidental SQL-injection vulnerabilities. For example: ```js import { neon } from '@neondatabase/serverless'; const sql = neon(process.env.DATABASE_URL); const id = 1; // this is safe and convenient, as before const result = await sql`SELECT * FROM table WHERE id = ${id}`; // this looks very similar and was previously allowed, but was open to SQL // injection attacks because it uses ordinary string interpolation -- it's now // both a TypeScript type error and a runtime error const throws = await sql(`SELECT * FROM table WHERE id = ${id}`); ``` To fill the gap left by this change, the template function has two new properties: a `query()` function that allows manually parameterized queries, and an `unsafe()` function that lets you interpolate trusted arbitrary string values. For example: ```js // this was previously allowed, and was safe, but is now also an error so as to // prevent the vulnerability seen above const throws = await sql('SELECT * FROM table WHERE id = $1', [id]); // the `query()` function is the new way to manually specify placeholders and // values (the same way it's done by `client.query()` and `pool.query()`) const result = await sql.query('SELECT * FROM table WHERE id = $1', [id]); // to interpolate strings like column or table names, **only** if you know // they're safe, use the `unsafe()` function const table = condition ? 'table1' : 'table2'; // known-safe string values const result = await sql`SELECT * FROM ${sql.unsafe(table)} WHERE id = ${id}`; // but in the above case, you might prefer to do this instead const table = condition ? sql`table1` : sql`table2`; const result = await sql`SELECT * FROM ${table} WHERE id = ${id}`; ``` In addition, HTTP template queries are now fully composable, including those with parameters. For example: ```js const name = 'Olivia'; const limit = 1; const whereClause = sql`WHERE name = ${name}`; const limitClause = sql`LIMIT ${limit}`; // compilation to raw SQL now happens lazily, at query time, so that parameter // placeholders can be numbered appropriately const result = await sql`SELECT * FROM table ${whereClause} ${limitClause}`; ``` The minimum supported version of Node is now v19 (this avoids having to do dynamic `crypto` imports, which can cause trouble with bundlers). Lastly: the repository has been rearranged and refactored, `.d.ts` files are now generated automatically, packages are published via `npm version`, and comprehensive tests have been put in place. This should ease the way for future enhancements and contributions. ### 0.10.4 - Date: 2024-11-25 - Version: 0.10.4 - Original notes: https://www.npmjs.com/package/@neondatabase/serverless/v/0.10.4 - Permalink: https://whatsnew.fyi/product/neon-serverless-driver/releases/0.10.4 Fixes insert `Buffer`/`ArrayBuffer` values into `BYTEA` fields when using HTTP fetch queries. Fixes only passing `authToken` in the `sql` HTTP request and not in the `neon` connection setup. ### 0.10.3 - Date: 2024-11-06 - Version: 0.10.3 - Original notes: https://www.npmjs.com/package/@neondatabase/serverless/v/0.10.3 - Permalink: https://whatsnew.fyi/product/neon-serverless-driver/releases/0.10.3 Fixes `authToken` overriding in `sql` HTTP request. ### 0.10.2 - Date: 2024-11-05 - Version: 0.10.2 - Original notes: https://www.npmjs.com/package/@neondatabase/serverless/v/0.10.2 - Permalink: https://whatsnew.fyi/product/neon-serverless-driver/releases/0.10.2 Expose `types` property on public HTTPQueryOptions type ### 0.10.1 - Date: 2024-10-07 - Version: 0.10.1 - Original notes: https://www.npmjs.com/package/@neondatabase/serverless/v/0.10.1 - Permalink: https://whatsnew.fyi/product/neon-serverless-driver/releases/0.10.1 Fix `CONFIG.MD` documentation. ### 0.10.0 - Date: 2024-10-07 - Version: 0.10.0 - Original notes: https://www.npmjs.com/package/@neondatabase/serverless/v/0.10.0 - Permalink: https://whatsnew.fyi/product/neon-serverless-driver/releases/0.10.0 Capture stack traces in `NeonDbError`, if `Error.captureStackTrace` is available. Allow authentication through `JWT` by adding a `authToken` property to the `neon` HTTP connection options. ### 0.9.5 - Date: 2024-09-03 - Version: 0.9.5 - Original notes: https://www.npmjs.com/package/@neondatabase/serverless/v/0.9.5 - Permalink: https://whatsnew.fyi/product/neon-serverless-driver/releases/0.9.5 ### 0.9.4 - Date: 2024-06-26 - Version: 0.9.4 - Original notes: https://www.npmjs.com/package/@neondatabase/serverless/v/0.9.4 - Permalink: https://whatsnew.fyi/product/neon-serverless-driver/releases/0.9.4 ### 0.9.3 - Date: 2024-05-09 - Version: 0.9.3 - Original notes: https://www.npmjs.com/package/@neondatabase/serverless/v/0.9.3 - Permalink: https://whatsnew.fyi/product/neon-serverless-driver/releases/0.9.3 Expose all error information fields on `NeonDbError` objects thrown when using the http fetch transport. ### 0.9.1 - Date: 2024-04-15 - Version: 0.9.1 - Original notes: https://www.npmjs.com/package/@neondatabase/serverless/v/0.9.1 - Permalink: https://whatsnew.fyi/product/neon-serverless-driver/releases/0.9.1 Pass username (and database name) through URL decoder, so all usernames can successfully authorize. ### 0.9.0 - Date: 2024-02-27 - Version: 0.9.0 - Original notes: https://www.npmjs.com/package/@neondatabase/serverless/v/0.9.0 - Permalink: https://whatsnew.fyi/product/neon-serverless-driver/releases/0.9.0 Deprecate `fetchConnectionCache` option, which is now always enabled. For `neon` http fetch queries, enable setting options on individual queries within a batch `transaction` (but note that the types still do not allow this). ### 0.8.1 - Date: 2024-02-07 - Version: 0.8.1 - Original notes: https://www.npmjs.com/package/@neondatabase/serverless/v/0.8.1 - Permalink: https://whatsnew.fyi/product/neon-serverless-driver/releases/0.8.1 Revert single per-region domain for WebSockets. Fix treatment of -pooler connection hosts.