Security News
pnpm 10.0.0 Blocks Lifecycle Scripts by Default
pnpm 10 blocks lifecycle scripts by default to improve security, addressing supply chain attack risks but sparking debate over compatibility and workflow changes.
hugo-extended
Advanced tools
✏️ Plug-and-play binary wrapper for Hugo Extended, the awesomest static-site generator.
Plug-and-play binary wrapper for Hugo Extended, the awesomest static-site generator.
npm install hugo-extended --save-dev
# or...
yarn add hugo-extended --dev
hugo-extended
defaults to the extended version of Hugo on supported platforms, and automatically falls back to vanilla Hugo if unsupported (mainly on 32-bit systems).
This package's version numbers align with Hugo's — hugo-extended@0.64.1
installs Hugo v0.64.1, for example.
Note: If you'll be using the SCSS features of Hugo Extended, it's probably smart to install postcss
, postcss-cli
, and autoprefixer
as devDependencies too, since they can be conveniently called via built-in Hugo pipes:
npm install postcss postcss-cli autoprefixer --save-dev
# or...
yarn add postcss postcss-cli autoprefixer --dev
The following examples simply refer to downloading and executing Hugo as a Node dependency. See the official Hugo docs for guidance on actual Hugo usage.
package.json
:The build:preview
script below is designed for Netlify deploy previews, where $DEPLOY_PRIME_URL
is substituted for the base URL (usually ending in .netlify.app) of each pull request, branch, or commit preview.
// package.json:
{
// ...
"scripts": {
"build": "hugo",
"build:preview": "hugo --baseURL \"${DEPLOY_PRIME_URL:-/}\" --buildDrafts --buildFuture",
"start": "hugo server"
},
"devDependencies": {
"autoprefixer": "^10.3.4",
"hugo-extended": "^0.88.1",
"postcss": "^8.3.6",
"postcss-cli": "^8.3.1"
}
// ...
}
$ npm run start
Start building sites …
hugo v0.88.1-5BC54738+extended darwin/amd64 BuildDate=2021-09-04T09:39:19Z VendorInfo=gohugoio
| EN
-------------------+------
Pages | 50
Paginator pages | 0
Non-page files | 138
Static files | 39
Processed images | 63
Aliases | 0
Sitemaps | 1
Cleaned | 0
Built in 2361 ms
Watching for changes in {archetypes,assets,content,data,layouts,package.json,static}
Watching for config changes in config.toml
Environment: "development"
Serving pages from memory
Web Server is available at http://localhost:1313/ (bind address 127.0.0.1)
// version.js:
import hugo from "hugo-extended";
import { execFile } from "child_process";
(async () => {
const binPath = await hugo();
execFile(binPath, ["version"], (error, stdout) => {
console.log(stdout);
});
})();
$ node version.js
hugo v0.88.1-5BC54738+extended darwin/amd64 BuildDate=2021-09-04T09:39:19Z VendorInfo=gohugoio
This project is distributed under the MIT License. Hugo is distributed under the Apache License 2.0.
FAQs
✏️ Plug-and-play binary wrapper for Hugo Extended, the awesomest static-site generator.
The npm package hugo-extended receives a total of 42,648 weekly downloads. As such, hugo-extended popularity was classified as popular.
We found that hugo-extended demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 0 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
pnpm 10 blocks lifecycle scripts by default to improve security, addressing supply chain attack risks but sparking debate over compatibility and workflow changes.
Product
Socket now supports uv.lock files to ensure consistent, secure dependency resolution for Python projects and enhance supply chain security.
Research
Security News
Socket researchers have discovered multiple malicious npm packages targeting Solana private keys, abusing Gmail to exfiltrate the data and drain Solana wallets.