Security News
Research
Supply Chain Attack on Rspack npm Packages Injects Cryptojacking Malware
A supply chain attack on Rspack's npm packages injected cryptomining malware, potentially impacting thousands of developers.
hugo-extended
Advanced tools
✏️ Plug-and-play binary wrapper for Hugo Extended, the awesomest static-site generator.
Plug-and-play binary wrapper for Hugo Extended, the awesomest static-site generator.
npm install hugo-extended --save-dev
# or...
yarn add hugo-extended --dev
hugo-extended
defaults to the extended version of Hugo on supported platforms, and automatically falls back to vanilla Hugo if unsupported (mainly on 32-bit systems).
This package's version numbers align with Hugo's — hugo-extended@0.64.1
installs Hugo v0.64.1, for example.
Note: If you'll be using the SCSS features of Hugo Extended, it's probably smart to install postcss
, postcss-cli
, and autoprefixer
as devDependencies too, since they can be conveniently called via built-in Hugo pipes:
npm install postcss postcss-cli autoprefixer --save-dev
# or...
yarn add postcss postcss-cli autoprefixer --dev
The following examples simply refer to downloading and executing Hugo as a Node dependency. See the official Hugo docs for guidance on actual Hugo usage.
package.json
:The build:preview
script below is designed for Netlify deploy previews, where $DEPLOY_PRIME_URL
is substituted for the base URL (usually ending in .netlify.app) of each pull request, branch, or commit preview.
// package.json:
{
// ...
"scripts": {
"build": "hugo",
"build:preview": "hugo --baseURL \"${DEPLOY_PRIME_URL:-/}\" --buildDrafts --buildFuture",
"start": "hugo server"
},
"devDependencies": {
"autoprefixer": "^10.3.4",
"hugo-extended": "^0.88.1",
"postcss": "^8.3.6",
"postcss-cli": "^8.3.1"
}
// ...
}
$ npm run start
Start building sites …
hugo v0.88.1-5BC54738+extended darwin/amd64 BuildDate=2021-09-04T09:39:19Z VendorInfo=gohugoio
| EN
-------------------+------
Pages | 50
Paginator pages | 0
Non-page files | 138
Static files | 39
Processed images | 63
Aliases | 0
Sitemaps | 1
Cleaned | 0
Built in 2361 ms
Watching for changes in {archetypes,assets,content,data,layouts,package.json,static}
Watching for config changes in config.toml
Environment: "development"
Serving pages from memory
Web Server is available at http://localhost:1313/ (bind address 127.0.0.1)
// version.js:
import hugo from "hugo-extended";
import { execFile } from "child_process";
(async () => {
const binPath = await hugo();
execFile(binPath, ["version"], (error, stdout) => {
console.log(stdout);
});
})();
$ node version.js
hugo v0.88.1-5BC54738+extended darwin/amd64 BuildDate=2021-09-04T09:39:19Z VendorInfo=gohugoio
This project is distributed under the MIT License. Hugo is distributed under the Apache License 2.0.
FAQs
✏️ Plug-and-play binary wrapper for Hugo Extended, the awesomest static-site generator.
The npm package hugo-extended receives a total of 71,013 weekly downloads. As such, hugo-extended popularity was classified as popular.
We found that hugo-extended demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 0 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
Research
A supply chain attack on Rspack's npm packages injected cryptomining malware, potentially impacting thousands of developers.
Research
Security News
Socket researchers discovered a malware campaign on npm delivering the Skuld infostealer via typosquatted packages, exposing sensitive data.
Security News
Sonar’s acquisition of Tidelift highlights a growing industry shift toward sustainable open source funding, addressing maintainer burnout and critical software dependencies.