George Cushen
5767dde5e9
fix: hugo v0.161 insufficient tailwind security perms
2026-05-02 21:58:20 +01:00
George Cushen
b8ad554028
refactor(template): rename startup-landing-page → saas-landing-page
...
The template's redesigned content (around fictional Beacon - a B2B SaaS feedback platform)
What's renamed (internal only):
- templates/startup-landing-page/ → templates/saas-landing-page/
- hugoblox.yaml: template id "landing-page" → "saas-landing-page",
name "Landing Page" → "SaaS Landing Page"
- CI workflows: source path in ci-build-starters-matrix.yml and
release-package-splitter.yml
- README.md: slug in URLs, CLI command (`npx hugoblox
create site --template saas-landing-page`)
- splitter target repo: hugo-theme-startup-landing-page →
hugo-theme-saas-landing-page
2026-05-02 21:30:50 +01:00
George Cushen
6aa2898258
chore(deps): upgrade to Hugo v0.161.0 (css.TailwindCSS Node.js sandbox)
...
Hugo v0.161 dropped the standalone tailwindcss binary; @tailwindcss/cli
npm package is now the only accepted transformer, invoked via
`node --permission` (Node >= 22 required).
- Bump module.hugoVersion.min to 0.161.0 in modules/blox/hugo.yaml;
add comment explaining why security.node.permissions is left to
Hugo's built-in defaults
- Bump hugo_version / HUGO_VERSION / devcontainer image tag to 0.161.0
across all 9 templates (hugoblox.yaml, netlify.toml, devcontainer.json)
- Bump devcontainer base image Node 20 → 22 and default Hugo version
- Add scripts/check-template-deps.mjs to assert every template declares
tailwindcss + @tailwindcss/cli; wire as pnpm check:template-deps
- Harden CI: new audit-template-deps job gates all build jobs; add
`require.resolve('@tailwindcss/cli/package.json')` check after each
pnpm install to catch the exact "binary is not a Node.js script" failure
2026-04-30 20:12:37 +01:00
George Cushen
456a0faf43
tpl(starter): add minimal Tailwind starter template
2026-04-22 01:40:43 +01:00
George Cushen
f972c65119
fix(ci): detect .github dir changes in template splitter workflow
2026-03-30 19:55:50 +01:00
dependabot[bot]
71f472d381
ci(deps): bump docker/login-action from 3 to 4 ( #3308 )
...
Bumps [docker/login-action](https://github.com/docker/login-action ) from 3 to 4.
- [Release notes](https://github.com/docker/login-action/releases )
- [Commits](https://github.com/docker/login-action/compare/v3...v4 )
---
updated-dependencies:
- dependency-name: docker/login-action
dependency-version: '4'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-03-13 12:18:39 +00:00
dependabot[bot]
949d15febb
ci(deps): bump docker/build-push-action from 6 to 7 ( #3307 )
...
Bumps [docker/build-push-action](https://github.com/docker/build-push-action ) from 6 to 7.
- [Release notes](https://github.com/docker/build-push-action/releases )
- [Commits](https://github.com/docker/build-push-action/compare/v6...v7 )
---
updated-dependencies:
- dependency-name: docker/build-push-action
dependency-version: '7'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-03-13 12:18:06 +00:00
dependabot[bot]
266d092fac
ci(deps): bump symplify/monorepo-split-github-action from 2.4.2 to 2.4.4 ( #3301 )
...
Bumps [symplify/monorepo-split-github-action](https://github.com/symplify/monorepo-split-github-action ) from 2.4.2 to 2.4.4.
- [Release notes](https://github.com/symplify/monorepo-split-github-action/releases )
- [Commits](https://github.com/symplify/monorepo-split-github-action/compare/v2.4.2...v2.4.4 )
---
updated-dependencies:
- dependency-name: symplify/monorepo-split-github-action
dependency-version: 2.4.4
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-02-18 16:12:53 +00:00
dependabot[bot]
dc418686ba
ci(deps): bump symplify/monorepo-split-github-action from 2.4.0 to 2.4.2 ( #3300 )
...
Bumps [symplify/monorepo-split-github-action](https://github.com/symplify/monorepo-split-github-action ) from 2.4.0 to 2.4.2.
- [Release notes](https://github.com/symplify/monorepo-split-github-action/releases )
- [Commits](https://github.com/symplify/monorepo-split-github-action/compare/v2.4.0...v2.4.2 )
---
updated-dependencies:
- dependency-name: symplify/monorepo-split-github-action
dependency-version: 2.4.2
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-02-08 01:30:36 +00:00
George Cushen
4a758fb82e
ci: fix
2026-01-07 15:48:52 +00:00
George Cushen
d466212f43
ci: fix
2026-01-06 20:46:01 +00:00
George Cushen
7f163e3e31
ci: fix
2026-01-06 20:41:58 +00:00
George Cushen
e19b52a216
ci: add markdown-slides
2026-01-06 20:15:31 +00:00
George Cushen
c792830419
chore: standardise tpl names
2026-01-06 00:51:20 +00:00
George Cushen
061e3201df
ci: fix
2026-01-05 21:38:04 +00:00
George Cushen
3cea03de36
ci: fix
2026-01-05 21:12:09 +00:00
George Cushen
a76bb96a0c
ci: update actions to inc new tpl
2026-01-05 20:48:17 +00:00
George Cushen
f4280ddb1c
refactor: rename modules and update migration docs
...
BREAKING CHANGE
Module paths moved to `github.com/HugoBlox/kit` with new names:
- core `blox-tailwind` → `blox`
- analytics → `analytics`
- netlify → `integrations/netlify`
- slides (reveal) → `slides`
Update go.mod, module.yaml/params, scripts, tests, and v0.11 migration guide accordingly.
2026-01-02 20:59:48 +00:00
George Cushen
8441dd2471
refactor: rename repo
2026-01-02 19:02:59 +00:00
dependabot[bot]
df99e0fdaf
ci(deps): bump actions/checkout from 4 to 6 ( #3291 )
...
Bumps [actions/checkout](https://github.com/actions/checkout ) from 4 to 6.
- [Release notes](https://github.com/actions/checkout/releases )
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md )
- [Commits](https://github.com/actions/checkout/compare/v4...v6 )
---
updated-dependencies:
- dependency-name: actions/checkout
dependency-version: '6'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-12-15 18:00:07 +00:00
dependabot[bot]
cecedc8d6d
ci(deps): bump actions/cache from 4 to 5 ( #3290 )
...
Bumps [actions/cache](https://github.com/actions/cache ) from 4 to 5.
- [Release notes](https://github.com/actions/cache/releases )
- [Changelog](https://github.com/actions/cache/blob/main/RELEASES.md )
- [Commits](https://github.com/actions/cache/compare/v4...v5 )
---
updated-dependencies:
- dependency-name: actions/cache
dependency-version: '5'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-12-15 17:59:54 +00:00
George Cushen
56748e571b
ci: fix
2025-12-10 03:25:45 +00:00
George Cushen
cb648199e3
ci: fix
2025-12-10 03:20:53 +00:00
George Cushen
082e69b7da
ci: fix
2025-12-10 03:05:41 +00:00
George Cushen
4e2f0ba74c
ci: fix
2025-12-10 01:39:28 +00:00
George Cushen
f6cbe6ccff
feat: optimize dev cont
2025-12-10 01:28:09 +00:00
dependabot[bot]
09f4728614
ci(deps): bump actions/checkout from 5 to 6 ( #3288 )
...
Bumps [actions/checkout](https://github.com/actions/checkout ) from 5 to 6.
- [Release notes](https://github.com/actions/checkout/releases )
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md )
- [Commits](https://github.com/actions/checkout/compare/v5...v6 )
---
updated-dependencies:
- dependency-name: actions/checkout
dependency-version: '6'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-11-28 20:54:50 +00:00
George Cushen
6015c70b1e
chore(lint): migrate CSS linting to Biome v2.3 (Tailwind v4) and remove stylelint
...
upgrade @biomejs/biome to ^2.3.2 and migrate biome.json to v2 schema
enable css.parser.tailwindDirectives; ignore .min.css and vendor CSS
remove stylelint deps and .stylelintrc.yaml; switch lint scripts to Biome
update workspace to use Biome for CSS; drop stylelint settings
2025-11-02 20:57:26 +00:00
George Cushen
8a7ce247da
ci: add --no-frozen-lockfile
2025-10-25 14:51:41 +01:00
George Cushen
5f2290d590
starters: standardise starters dir name to templates
2025-10-23 23:43:50 +01:00
George Cushen
38be016452
ci(build-starters-matrix): prevent spurious cancellations by scoping concurrency per workflow+PR and restricting PR event types
2025-10-21 22:45:53 +01:00
dependabot[bot]
27e6af57ce
ci(deps): bump github/codeql-action from 3 to 4 ( #3273 )
...
Bumps [github/codeql-action](https://github.com/github/codeql-action ) from 3 to 4.
- [Release notes](https://github.com/github/codeql-action/releases )
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md )
- [Commits](https://github.com/github/codeql-action/compare/v3...v4 )
---
updated-dependencies:
- dependency-name: github/codeql-action
dependency-version: '4'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-10-21 19:44:13 +01:00
dependabot[bot]
d84278e60f
ci(deps): bump actions/setup-node from 5 to 6 ( #3280 )
...
Bumps [actions/setup-node](https://github.com/actions/setup-node ) from 5 to 6.
- [Release notes](https://github.com/actions/setup-node/releases )
- [Commits](https://github.com/actions/setup-node/compare/v5...v6 )
---
updated-dependencies:
- dependency-name: actions/setup-node
dependency-version: '6'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-10-21 19:43:27 +01:00
George Cushen
4211770c1c
ci: fix regression from 74ed4ecc15
2025-10-07 01:39:11 +01:00
George Cushen
74ed4ecc15
refactor(ci): consolidate build workflows and add Hugo version guards
...
This commit overhauls the CI build process to improve robustness, prevent version drift, and provide better compatibility testing.
The `ci-build-test-site.yml` workflow has been removed and its responsibilities have been merged into the `ci-build-starters-matrix.yml` workflow. This consolidation provides a single source of truth for all build logic.
Three new jobs have been added to the matrix to act as version guards:
1. **smoke-test-min:** Builds the `test/` site using the minimum Hugo version declared in the framework's `hugo.yaml`. This ensures we do not accidentally introduce features that break our minimum supported version.
2. **smoke-test-latest:** Builds the `test/` site using the latest available Hugo version. This job is allowed to fail and acts as a canary to provide early warning of breaking changes in new Hugo releases.
3. **canary-academic-latest:** Builds the `academic-cv` starter with the latest Hugo version. As one of our most popular starters, this provides a more realistic canary for issues that new users might encounter.
2025-10-07 00:29:09 +01:00
George Cushen
f5452a5491
ci: fix Welcome action
2025-10-07 00:29:09 +01:00
dependabot[bot]
aa95877e92
ci(deps): bump symplify/monorepo-split-github-action from 2.3.0 to 2.4.0 ( #3269 )
...
Bumps [symplify/monorepo-split-github-action](https://github.com/symplify/monorepo-split-github-action ) from 2.3.0 to 2.4.0.
- [Release notes](https://github.com/symplify/monorepo-split-github-action/releases )
- [Commits](https://github.com/symplify/monorepo-split-github-action/compare/v2.3.0...v2.4.0 )
---
updated-dependencies:
- dependency-name: symplify/monorepo-split-github-action
dependency-version: 2.4.0
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-09-30 21:55:02 +01:00
George Cushen
1f5693fb66
ci: fetch actual starter hb version
2025-09-27 17:35:23 +01:00
George Cushen
787ac94b5d
feat: add Dev HUD & 15 Obsidian callouts; more collection filters
...
Dev tools
- Add HBX Dev HUD (floating button + panel) with live log viewer
- Add get-build-id helper to dedupe logs per build (during `hugo server` refreshes)
Callouts
- Implement Obsidian-compatible callouts (15+ types) with shared renderer
- Add i18n title translations (en, es, fr) for all callout types
- Deprecate `callout` shortcode with suppressible warning; keep working
- Migrate starters to Markdown callouts (>[!TYPE]) and update docs
Logging
- Centralize logging in partial `functions/logger` with info/warn/error levels
- Use fmt.Warnidf for suppressible warnings (consistent IDs)
- Only show info in Dev HUD/JSON (no longer use warnf for info logging); warn/error still printed in CLI
- Include source metadata and build ID on each entry
Blocks – Collection
- Add support for `content.filters.kinds`
- Add `content.filters.tags` (array) alongside existing `filters.tag` (string)
Build/Tailwind/JS
- Fix missing Tailwind v4 styles in Hugo render: include preact-built assets, extract classes from JSX/TSX to `@sources`
- Load Preact client per block, publish source maps in dev; on-demand Alpine
CI
- Re-implement fast fails with panicOnWarning now that info logging as warnf removed
- Fix package splitter change detection: strip trailing slashes; collapse paths to starter roots
Starters/Docs
- Restructure courses under `courses/hugo-blox/`
- Update menus and landing pages
- Replace deprecated callout usage in content and docs
- Replace missing hero icon `download` with `arrow-down-tray` in academic-cv guide
Icons
- Improve icon resolver: default pack inference, better fallback, and precise missing-icon warnings (with page ref)
2025-09-25 01:58:32 +01:00
George Cushen
96f96636fc
ci: fix
2025-09-23 00:57:06 +01:00
George Cushen
9146d36f1c
ci: fix
2025-09-23 00:33:04 +01:00
dependabot[bot]
0fc34ba8c8
ci(deps): bump tj-actions/changed-files from 44 to 47 ( #3265 )
...
Bumps [tj-actions/changed-files](https://github.com/tj-actions/changed-files ) from 44 to 47.
- [Release notes](https://github.com/tj-actions/changed-files/releases )
- [Changelog](https://github.com/tj-actions/changed-files/blob/main/HISTORY.md )
- [Commits](https://github.com/tj-actions/changed-files/compare/v44...v47 )
---
updated-dependencies:
- dependency-name: tj-actions/changed-files
dependency-version: '47'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-09-22 22:18:51 +01:00
dependabot[bot]
afa66f5756
ci(deps): bump actions/labeler from 5 to 6 ( #3264 )
...
Bumps [actions/labeler](https://github.com/actions/labeler ) from 5 to 6.
- [Release notes](https://github.com/actions/labeler/releases )
- [Commits](https://github.com/actions/labeler/compare/v5...v6 )
---
updated-dependencies:
- dependency-name: actions/labeler
dependency-version: '6'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-09-22 22:18:34 +01:00
dependabot[bot]
6f20917a6b
ci(deps): bump actions/setup-node from 4 to 5 ( #3263 )
...
Bumps [actions/setup-node](https://github.com/actions/setup-node ) from 4 to 5.
- [Release notes](https://github.com/actions/setup-node/releases )
- [Commits](https://github.com/actions/setup-node/compare/v4...v5 )
---
updated-dependencies:
- dependency-name: actions/setup-node
dependency-version: '5'
dependency-type: direct:production
update-type: version-update:semver-major
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2025-09-22 22:18:23 +01:00
George Cushen
9ab22e5397
ci(release): add option to update starters with module commit hashes
2025-09-21 16:33:59 +01:00
George Cushen
2f66c837fb
ci: fix starter builds
2025-09-21 16:25:04 +01:00
George Cushen
04890f328a
ci: only run splitter for starters with changes
2025-09-17 23:14:14 +01:00
George Cushen
bd25b85d1e
ci: rename
2025-09-17 10:09:25 +01:00
George Cushen
1e909204d6
ci: fix pnpm
2025-09-17 03:23:18 +01:00
George Cushen
d5d2f04c2d
chore: adopt Biome + Stylelint, modernize CI/CD, add security/support docs, minor JS fixes
...
- Linting/format
- Replace ESLint/Prettier with Biome; remove old configs; add `biome.json`; update scripts
- Tailwind-friendly `.stylelintrc.yaml`; Stylelint and Biome pass
- Enable Biome across `modules/**`; prune legacy JS globals; ignore oversized `devicon.json`
- Code fixes
- `hb-theme.js`: avoid assignment-in-expressions; clearer dataset updates
- `hugoblox-slides.js`: fix inner var scope (var → let); apply formatting
- CI/CD
- Split lint/build workflows; add path filters; Node via Corepack (pnpm from package.json)
- Hugo pinned to env `HUGO_VERSION`; add consistency check vs `starters/academic-cv/hugoblox.yaml`
- Nightly starters matrix build (academic-cv, landing-page); CodeQL weekly; resource caches
- Workflows/Community
- Greeter: switch to `pull_request_target`; add Contributor Guide to PR message
- PR labeler for path-based labels
- Repo policies/docs
- `CODEOWNERS` for `@gcushen`
- `SECURITY.md`, `SUPPORT.md`
- Documented branch protection in `.github/settings.yml`
- Move `CODE_OF_CONDUCT.md` to `.github/`
- docs(zh): update `README.zh.md` translation
Notes:
- pnpm is sourced from `package.json: packageManager` via Corepack; no hard-coded pnpm versions in CI.
2025-09-17 03:17:38 +01:00