Sourcemap Explorer
Stack · npm package

prisma

Prisma is an open-source database toolkit. It includes a JavaScript/TypeScript ORM for Node.js, migrations and a modern GUI to view and edit the data in your database. You can use Prisma in new projects or add it to an existing one.

latest 7.9.1· Apache-2.0· 9,255 versions publishedView on npm

About

Prisma is an open-source database toolkit. It includes a JavaScript/TypeScript ORM for Node.js, migrations and a modern GUI to view and edit the data in your database. You can use Prisma in new projects or add it to an existing one.

CLIORMPrismaPrisma CLIprisma2databasedbJavaScriptJSTypeScriptTSSQLSQLitepgPostgresPostgreSQLCockroachDBMySQLMariaDBMSSQLSQL ServerSQLServerMongoDBMCP

What detecting prisma tells you about a site

prisma reveals a schema-driven ORM with a generated, fully-typed client — the dominant TypeScript ORM. Finding Prisma tooling signals a team that models its database declaratively and values the generated client's type safety and migrations; it is a server-side dependency, so client-side traces usually mean it leaked through a bundling misconfiguration.

Why the exact prisma version matters

Prisma's query engine and the move toward a Rust-free client changed significantly across the 5.x–6.x line; the exact version tells you which engine and client architecture the project runs.

prisma in a real-world stack

When you find prisma in a bundle, it rarely travels alone. @prisma/client (the generated runtime), and a framework like Next.js or NestJS around it.

Quick facts

Latest version7.9.1
LicenseApache-2.0
AuthorTim Suchanek
Installnpm install prisma
Direct dependencies6
Peer dependenciestypescript, better-sqlite3

Common pairings

Packages this one expects to find in the same project. Each is also a Sourcemap Explorer detection target.

typescriptbetter-sqlite3

What prisma pulls in

prisma declares 6 direct dependencies — each one also rides into any bundle that ships prisma, so they are detection targets too. Reading them is a quick way to understand the package's real footprint .

mysql2postgres@prisma/dev@prisma/config@prisma/engines@prisma/studio-core

How Sourcemap Explorer detects prisma

prisma ships as v7.9.1 and carries 6 direct dependencies, 2 peer dependencies (typescript, better-sqlite3), 9,255 versions on the registry. Those exact numbers are the footprint Sourcemap Explorer matches when prisma rides inside a deployed bundle — here is how the detection works.

We catch prisma from two complementary signals: bundled source paths and the embedded package.json. Modern bundlers (webpack, Vite, esbuild, Rollup, Turbopack) preserve the original node_modules/prisma/ paths inside the JavaScript sourcemap's sources[] array — that's the canonical signal. When the matching package.json is also captured in sourcesContent[], we read the exact version field — patch number included. No regex guessing, no version inference.

  1. 1

    Confirm the site exposes sourcemaps

    In DevTools Network, check the response headers of any application script for `SourceMap` or `X-SourceMap`. Failing that, fetch the script's last 4 KB and look for a `//# sourceMappingURL=` comment — that map is where the `prisma` paths live.

  2. 2

    Find the package in the bundle

    Open DevTools → Network → reload. Click any application script and look at its sourcemap. Inside, search `sources[]` for entries matching `node_modules/prisma/` — every match confirms the package is bundled. The matching `sourcesContent[i]` for `node_modules/prisma/package.json` gives you the exact installed version.

  3. 3

    Read the version directly from package.json

    Run `jq -r '. as $m | $m.sources | to_entries[] | select(.value | endswith("node_modules/prisma/package.json")) | $m.sourcesContent[.key] | fromjson | .version' bundle.js.map`. Sourcemap Explorer automates the same query in the popup.

Major releases of prisma

When each major version first landed. Major bumps are where breaking changes live, so this timeline is the fastest way to date the prisma version a site actually ships against the ecosystem.

Major
First release
v7
7.0.0
v6
6.0.0
v5
5.0.0
v4
4.0.0
v3
3.0.1
v2
2.0.0

Recent versions

Version
7.9.1
7.9.0
7.8.0
7.7.0
7.6.0
7.5.0
7.4.2
7.4.1

prisma README

Live mirror of the GitHub README, for reference. Updated whenever the repo's default branch changes.

Prisma Next

Discord | X | Blog Post | Architecture

License: Apache-2.0 npm CI


Looking for Prisma ORM 7? It lives on the v7 branch of this repository, and the prisma and @prisma/* packages on npm continue to be published from there.

Prisma Next is currently in Early Access and we're building it in the open with the community. APIs will still evolve as your feedback shapes them, so we don't recommend it for production workloads yet. Come along for the ride: star the repo, follow @prisma on X, or read along on the Prisma blog.

Prisma Next is a TypeScript rewrite of Prisma ORM, designed to be extensible, composable, and AI-agent friendly by default. Read the full announcement: The Next Evolution of Prisma ORM.

Prerequisites

  • Node.js 24 or newer
  • A package manager (npm, pnpm, or yarn)

Getting started

1. Scaffold a new project

The interactive scaffolder picks a JavaScript framework (Next.js, Vite, Hono, and others) and wires Prisma Next in with your chosen database (PostgreSQL or MongoDB):

npm create prisma@next

You finish with a runnable app, a starter contract, and the agent skills already registered.

2. Or, add Prisma Next to an existing project

Run this from your repo root:

npx prisma-next@latest init

prisma-next@latest init writes prisma-next.config.ts, scaffolds a starter contract and db.ts under src/prisma/, installs the runtime, emits the contract, and registers the agent skills. It does not touch your framework or build setup.

3. Use your AI agent for everything Prisma Next

Both installers leave a top-level prisma-next.md primer at your project root for any agent to read first. prisma-next@latest init additionally materialises one SKILL.md per workflow in two places, so different agent runtimes can find them at their expected paths:

  • .claude/skills/<skill-name>/SKILL.md — picked up by Claude Code
  • .agents/skills/<skill-name>/SKILL.md — universal location for Cursor, Copilot Agent, and other runtimes

A skills-lock.json at the project root tracks which skill versions are installed. Your editor's AI assistant auto-loads the right skill when your prompt matches.

Just describe what you want. For example:

"Add a posts model with a relation to users, then write a query that loads each user's three most recent posts."

The agent loads prisma-next-contract for the schema edit and prisma-next-queries for the read, then drives the change end-to-end.

For the full catalogue and what each skill covers, see skills/README.md.

Found a bug, missing a feature, or have a question for the team?

Ask your agent. The prisma-next-feedback skill drafts a structured GitHub issue or hands you a Prisma Discord link for live Q&A. You can review and confirm before anything is submitted.

For extension authors

Prisma Next has a minimal core. Everything around it, including Postgres support itself, is built on the same public SPI that's available to any author. If you've wanted to integrate your tool, your database, or your library with Prisma, this is the way in.

A few extensions already shipping:

  • @internal/extension-pgvector: vector columns and similarity operators for semantic search.
  • @internal/extension-paradedb: typed BM25 indexes with multiple tokenizers for full-text search.
  • @internal/extension-postgis: geospatial types and queries.
  • @cipherstash/prisma-next: searchable encryption and data-level access control.

Want to ship your own? The Authoring Prisma Next Extensions blog walks through the SPI, the layers your extension can hook into, and how the team features new extensions in the Prisma Next directory.

Supported databases

Prisma 8 carries PostgreSQL to general availability — and that is all at this stage:

  • PostgreSQL — the primary target; general availability at Prisma 8
  • MongoDB — early access; proves the framework works beyond SQL
  • SQLite — a proof of concept today

MySQL follows later. See the roadmap for what must happen before the 8.0.0-rc.1 release.

Contributing

See CONTRIBUTING.md for setup, commands, DCO signoff, and PR expectations. For substantive changes, please open an issue first so we can give direction-fit feedback before you invest implementation time.

Security issues: follow the Private Vulnerability Reporting flow in SECURITY.md. Please do not file them as public issues.

Community

Built something with Prisma Next? Tag @prisma on X. The best community builds get a shout-out and a link here.

License

Apache 2.0. See LICENSE.

FAQ

What is prisma used for?

Prisma is an open-source database toolkit. It includes a JavaScript/TypeScript ORM for Node.js, migrations and a modern GUI to view and edit the data in your database. You can use Prisma in new projects or add it to an existing one.

How can I tell if a website is using prisma?

Open the page in Chrome with the Sourcemap Explorer extension installed and read the Stack tab. We catch `prisma` from two complementary signals: `node_modules/prisma/` paths inside the JavaScript sourcemap, and the embedded `package.json` we read for exact-version detection. Without the extension you can do the same lookup manually in DevTools — the steps are listed in the "How Sourcemap Explorer detects" section above.

How do I find out which version of prisma a website is running?

Read it straight from the site's JavaScript sourcemap. When a build ships source maps, the bundled `prisma/package.json` carries the exact `version` string — Sourcemap Explorer extracts it in one click on the Stack tab, and you can do it by hand in DevTools by opening the `.map` file and searching for `node_modules/prisma/package.json`. That is far more reliable than inferring the version from an asset-hash or a `?ver=` query string, which is all surface-level detectors have to go on. The current npm release is 7.9.1, but real deployments frequently run an older pinned version — which is exactly why reading the bundled number matters.

What is the latest version of prisma?

7.9.1, as published on the npm registry. The "Recent versions" table on this page lists the most recent 8 releases with their release dates. Sourcemap Explorer reports the version actually bundled into a site, which can lag the latest release by months on real-world deployments.

Where can I read more?

Project homepage: https://www.prisma.io. Source code: https://github.com/prisma/prisma. Published on npm: https://www.npmjs.com/package/prisma. Licensed as Apache-2.0.

Keep reading on Sourcemap Explorer

Practical guides

Detected by Sourcemap Explorer

When a bundle ships sourcemaps, we read the embedded package.json for prisma and report the precise version (registry latest: v7.9.1). Without sourcemaps, an import / require in the page's scripts is enough to flag it.

Install free on Chrome