Radar · Rust · Archive · Week 27 · Jun 29 – Jul 5, 2026
Update actions/checkout to v6.0.3
Nice to knowtooling
- What changed
- The Rust team updated the
checkoutaction to v6.0.3, fixing SHA‑256 repository initialization and expanding merge‑commit SHA regex. - Production impact
- The source does not say.
- Try it
- Change a workflow to
actions/[email protected]and run it against a SHA‑256 repo. - Source
- github.com/rust-lang/rfcs/pull/3979
Understand it, then run it
Run it now
// This program demonstrates the issue that the v6.0.3 update fixes.
// In a real CI workflow, the actions/checkout action would initialize
// a repository that uses the SHA‑256 hash algorithm. The old
// implementation would fail to set up the repository correctly.
// Here we simply print a message to illustrate the problem that
// the update resolves.
fn main() {
println!("If you run actions/checkout v6.0.2 on a SHA‑256 repo, it may fail to init.");
println!("Upgrading to v6.0.3 fixes that initialization bug and expands merge‑commit SHA matching.");
}
What it printed when we ran it on Rust 1.98.1 (edition 2024)
If you run actions/checkout v6.0.2 on a SHA‑256 repo, it may fail to init. Upgrading to v6.0.3 fixes that initialization bug and expands merge‑commit SHA matching.
Run sends this program (for Solidity, the contract and its tests) to our own sandbox, where it is compiled and run once, with no network, and what it printed or the test report comes back here. Nothing is kept. Runs are counted per visitor for the day so everyone gets a turn; the details are on the legal page.
Written by gpt-oss-20b from the linked source · claims checked against the sources · archive, not individually reviewed