From e6553d60256add83b45df92e5b8783a984b5f848 Mon Sep 17 00:00:00 2001 From: Felix Itzenplitz Date: Sat, 15 Aug 2026 15:28:41 +0200 Subject: [PATCH] Allow tailwindcss to be executed so the site builds again (#764) --- cmd/hugothemesitebuilder/build/site/hugo.toml | 9 +++++++++ 1 file changed, 9 insertions(+) diff --git a/cmd/hugothemesitebuilder/build/site/hugo.toml b/cmd/hugothemesitebuilder/build/site/hugo.toml index dc68088..bee8705 100644 --- a/cmd/hugothemesitebuilder/build/site/hugo.toml +++ b/cmd/hugothemesitebuilder/build/site/hugo.toml @@ -8,6 +8,15 @@ _merge = "deep" [taxonomies] tag = "tags" +# The shared Hugo Docs layouts run the stylesheet through css.TailwindCSS, and +# Hugo's default security policy does not allow that binary to be executed -- +# note that the default node permissions below it already whitelist tailwindcss, +# so only the exec list is out of step. Without this the site build fails with +# `TAILWINDCSS: failed to transform "/css/styles.css" ... access denied`. +[security] + [security.exec] + allow = ['^(dart-)?sass$', '^go$', '^git$', '^node$', '^postcss$', '^tailwindcss$'] + [module] [module.hugoVersion] min = "0.145.0"