Skip to content

chore(deps): bump actions/checkout from 6.0.2 to 6.0.3#33

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/github_actions/actions/checkout-6.0.3
Open

chore(deps): bump actions/checkout from 6.0.2 to 6.0.3#33
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/github_actions/actions/checkout-6.0.3

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot Bot commented on behalf of github Jun 6, 2026

Bumps actions/checkout from 6.0.2 to 6.0.3.

Release notes

Sourced from actions/checkout's releases.

v6.0.3

What's Changed

New Contributors

Full Changelog: actions/checkout@v6...v6.0.3

Changelog

Sourced from actions/checkout's changelog.

Changelog

v6.0.3

v6.0.2

v6.0.1

v6.0.0

v5.0.1

v5.0.0

v4.3.1

v4.3.0

v4.2.2

v4.2.1

v4.2.0

v4.1.7

... (truncated)

Commits

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [actions/checkout](https://github.com/actions/checkout) from 6.0.2 to 6.0.3.
- [Release notes](https://github.com/actions/checkout/releases)
- [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md)
- [Commits](actions/checkout@de0fac2...df4cb1c)

---
updated-dependencies:
- dependency-name: actions/checkout
  dependency-version: 6.0.3
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code labels Jun 6, 2026
@greptile-apps
Copy link
Copy Markdown
Contributor

greptile-apps Bot commented Jun 6, 2026

Greptile Summary

Routine patch bump of actions/checkout from v6.0.2 to v6.0.3 in the CI workflow, preserving the commit-SHA pinning pattern already in use.

  • The only change is the pinned SHA and version comment on the actions/checkout step; no workflow logic, triggers, or other steps are modified.
  • v6.0.3 includes two bug fixes: expanded merge-commit SHA regex and corrected checkout init for SHA-256 repositories.

Confidence Score: 5/5

Safe to merge — single-line change swapping a pinned SHA for a newer patch release of actions/checkout.

The diff is one line: the pinned commit SHA for actions/checkout moves from the v6.0.2 tag to the v6.0.3 tag. The new version is a patch release with only SHA-256 checkout fixes, and the commit-SHA pinning practice mitigates supply-chain risk.

No files require special attention.

Important Files Changed

Filename Overview
.github/workflows/test.yml Bumps actions/checkout from v6.0.2 (SHA de0fac2) to v6.0.3 (SHA df4cb1c); pin-by-SHA pattern preserved, no other changes.

Flowchart

%%{init: {'theme': 'neutral'}}%%
flowchart TD
    A[Push / PR trigger] --> B[test job\nubuntu-latest]
    B --> C["actions/checkout@df4cb1c\nv6.0.3"]
    C --> D[astral-sh/setup-uv]
    D --> E[Run tests]
Loading

Reviews (1): Last reviewed commit: "chore(deps): bump actions/checkout from ..." | Re-trigger Greptile

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants