# actionlint changelog > Static checker for GitHub Actions workflow files, including shell and expression syntax. - Vendor: actionlint - Category: Developer Tools - Official site: https://rhysd.github.io/actionlint/ - Tracked by: What's New (https://whatsnew.fyi/product/actionlint) - Harvested from: GitHub (rhysd/actionlint) - Entries below: 10 (newest first) What's New is an index, not a publisher: every entry below links to the vendor's own release notes, which are the authoritative source. Entries are labelled where they are hand-curated sample data, pre-releases, or drawn from a secondary source such as a developer blog. ## Releases ### v1.7.12 - Date: 2026-03-30 - Version: v1.7.12 - Original notes: https://github.com/rhysd/actionlint/releases/tag/v1.7.12 - Permalink: https://whatsnew.fyi/product/actionlint/releases/v1.7.12 - Support the [`timezone` configuration in `on.schedule`](https://docs.github.com/en/actions/reference/workflows-and-actions/workflow-syntax#onschedule) with checks for IANA timezone string. See the [documentation](https://github.com/rhysd/actionlint/blob/main/docs/checks.md#check-cron-syntax-and-timezone) for more details. Note that actionlint starts to embed the timezone database in the executables from this version so the binary sizes slightly increase. (#641, thanks @martincostello) ```yaml on: schedule: # ERROR: The timezone is not a valid IANA timezone string - cron: '*/5 * * * *' timezone: 'Asia/Somewhere' ``` - Support the [`jobs..environment.deployment` configuration](https://docs.github.com/en/actions/how-tos/deploy/configure-and-manage-deployments/control-deployments#using-environments-without-deployments). (#639, thanks @springmeyer) - Support the [`macos-26-intel` runner label](https://github.blog/changelog/2026-02-26-macos-26-is-now-generally-available-for-github-hosted-runners/). (#629, thanks @hugovk) - Fix the outdated [table of webhook activity types](https://github.com/rhysd/actionlint/blob/main/all_webhooks.go) by rebuilding the [script to scrape the table](https://github.com/rhysd/actionlint/tree/main/scripts/generate-webhook-events) from scratch. - Support Go 1.26 and drop the support for Go 1.24. Now supported versions are 1.25 and 1.26. - Tests are run on arm64 Windows in CI. - Update the popular actions data set to the latest. ### v1.7.11 - Date: 2026-02-14 - Version: v1.7.11 - Original notes: https://github.com/rhysd/actionlint/releases/tag/v1.7.11 - Permalink: https://whatsnew.fyi/product/actionlint/releases/v1.7.11 - Support the [`case()` function](https://docs.github.com/en/actions/reference/workflows-and-actions/expressions#case) in `${{ }}` expressions which was recently added to GitHub Actions. (#612, #614, thanks @heppu) ```yaml env: # ERROR: case() requires an odd number of arguments ENVIRONMENT: |- ${{ case( github.ref == 'refs/heads/main', 'production', github.ref == 'refs/heads/staging', 'staging' ) }} ``` - Support new `macos-26-large` and `windows-2025-vs2026` runner labels. See the [GitHub's announce](https://github.blog/changelog/2026-02-05-github-actions-early-february-2026-updates/) for more details. (#615, thanks @hugovk and @muzimuzhi) - Enable [Artifact attestations](https://docs.github.com/en/actions/concepts/security/artifact-attestations) for the released binaries. From v1.7.11 [`gh` command](https://cli.github.com/) can verify the integrity of the downloaded binaries as follows. The verification is highly recommended in terms of supply chain security. (#608, thanks @takaram) ```console $ gh release download --repo rhysd/actionlint --pattern '*_darwin_amd64.tar.gz' v1.7.11 $ gh attestation verify --repo rhysd/actionlint actionlint_1.7.11_darwin_amd64.tar.gz Loaded digest sha256:17ffc17fed8f0258ef6ad4aed932d3272464c7ef7d64e1cb0d65aa97c9752107 for file://actionlint_1.7.11_darwin_amd64.tar.gz Loaded 1 attestation from GitHub API The following policy criteria will be enforced: - Predicate type must match:................ https://slsa.dev/provenance/v1 - Source Repository Owner URI must match:... https://github.com/rhysd - Source Repository URI must match:......... https://github.com/rhysd/actionlint - Subject Alternative Name must match regex: (?i)^https://github.com/rhysd/actionlint/ - OIDC Issuer must match:................... https://token.actions.githubusercontent.com ✓ Verification succeeded! The following 1 attestation matched the policy criteria - Attestation #1 - Build repo:..... rhysd/actionlint - Build workflow:. .github/workflows/release.yaml@refs/tags/v1.7.11 - Signer repo:.... rhysd/actionlint - Signer workflow: .github/workflows/release.yaml@refs/tags/v1.7.11 ``` - Report path filters with `./` as error because they never match anything. (#521) ```yaml on: push: paths: # ERROR: This never matches anything. `foo/bar.txt` is correct. - ./foo/bar.txt ``` - Fix comparing matrix items when an item is a super set of another item. (#523, #613, thanks @michaelgruenewald) - Fix stack overflow crash by a recursive anchor in matrix items. (#610) - Fix an unassigned variable false positive from shellcheck by disabling SC2153 rule. (#573) - Reduce the number of memory allocations on resolving anchors. - Update the popular actions data set to the latest. - Update Go dependencies to the latest. - Remove legacy Homebrew formula in rhysd/actionlint repository in favor of the [cask package](https://github.com/rhysd/actionlint/blob/main/Casks/actionlint.rb). Note that this change does not affect Homebrew's official formula. - Add a link to the release page of the version in the [playground](https://rhysd.github.io/actionlint/). ### v1.7.10 - Date: 2025-12-30 - Version: v1.7.10 - Original notes: https://github.com/rhysd/actionlint/releases/tag/v1.7.10 - Permalink: https://whatsnew.fyi/product/actionlint/releases/v1.7.10 - Support [YAML anchors and aliases](https://yaml.org/spec/1.2.2/#71-alias-nodes) (`&anchor` and `*anchor`) in workflow files. In addition to parsing YAML anchors correctly, actionlint checks unused and undefined anchors. See the [document](https://github.com/rhysd/actionlint/blob/main/docs/checks.md#yaml-anchors) for more details. (#133, thanks @srz-zumix for the initial implementation at #568 and @alexaandru for trying another approach at #557) ```yaml jobs: test: runs-on: ubuntu-latest services: nginx: image: nginx:latest credentials: &credentials username: ${{ secrets.user }} password: ${{ secrets.password }} steps: - run: ./download.sh # OK: Valid alias to &credentials env: *credentials - run: ./check.sh # ERROR: Undefined anchor 'credential' env: *credential - run: ./upload.sh # ERROR: Unused anchor 'credentials' env: &credentials ``` - Remove support for `*-xl` macOS runner labels because they were [dropped](https://github.blog/changelog/2024-08-19-notice-of-upcoming-deprecations-and-breaking-changes-in-github-actions-runners/). (#592, thanks @muzimuzhi) - Remove support for the macOS 13 runner labels because they were [dropped on Dec 4, 2025](https://github.blog/changelog/2025-09-19-github-actions-macos-13-runner-image-is-closing-down/). (#593, thanks @muzimuzhi) - `macos-13` - `macos-13-large` - `macos-13-xlarge` - Increase the maximum number of inputs in the `workflow_dispatch` event from 10 to 25 because the limitation [was recently relaxed](https://github.blog/changelog/2025-12-04-actions-workflow-dispatch-workflows-now-support-25-inputs/). (#598, thanks @Haegi) - Support [`artifact-metadata` permission](https://docs.github.com/en/actions/reference/workflows-and-actions/workflow-syntax#defining-access-for-the-github_token-scopes) for workflow permissions. (#602, thanks @martincostello) - Detect more complicated constants at `if:` conditions as error. See the [rule document](https://github.com/rhysd/actionlint/blob/main/docs/checks.md#if-cond-constant) for more details. - Refactor the workflow parser with [Go iterators](https://pkg.go.dev/iter#hdr-Iterators). This slightly improves the performance and memory usage. - Fix parsing extra `{` and `}` characters in format string of `format()` function call. For example v1.7.9 didn't parse `"{{0} {1} {2}}"` correctly. - Detect an invalid value at `type` in workflow call inputs as error. - Report [YAML merge key](https://yaml.org/type/merge.html) `<<` as error because GitHub Actions doesn't support the syntax. - Check available contexts in expressions at `jobs..snapshot.if`. ```yaml snapshot: image-name: my-custom-image # ERROR: `env` context is not allowed here if: ${{ env.USE_SNAPSHOT == 'true' }} ``` - Fix the instruction to install actionlint with `mise` in the installation document. (#591, thanks @risu729) - Update the popular actions data set to the latest to include new major versions of the actions. ### v1.7.9 - Date: 2025-11-21 - Version: v1.7.9 - Original notes: https://github.com/rhysd/actionlint/releases/tag/v1.7.9 - Permalink: https://whatsnew.fyi/product/actionlint/releases/v1.7.9 - Add support for [`ubuntu-slim` runner](https://github.blog/changelog/2025-10-28-1-vcpu-linux-runner-now-available-in-github-actions-in-public-preview/) label. (#585, thanks @cestorer) - Check input deprecation in action by checking [`deprecationMessage` property](https://docs.github.com/en/actions/reference/workflows-and-actions/metadata-syntax#inputsinput_iddeprecationmessage). Using a deprecated input is reported as error if it is not marked as `required`. See [the document](https://github.com/rhysd/actionlint/blob/main/docs/checks.md#deprecated-inputs-usage) for more details. (#580) ```yaml - uses: reviewdog/action-actionlint@v1 with: # ERROR: Using a deprecated input fail_on_error: true ``` - Add support for the [Custom images](https://docs.github.com/en/actions/how-tos/manage-runners/larger-runners/use-custom-images) feature. - Support [`image_version` workflow trigger](https://docs.github.com/en/actions/reference/workflows-and-actions/events-that-trigger-workflows#image_version). ```yaml on: image_version: names: - "MyNewImage" - "MyOtherImage" versions: - 1.* - 2.* ``` - Support [`jobs..snapshot` syntax](https://docs.github.com/en/actions/reference/workflows-and-actions/workflow-syntax#jobsjob_idsnapshot). To make actionlint recognize your own image generation runner, use [`self-hosted-runner.labels` config](https://github.com/rhysd/actionlint/blob/main/docs/config.md). ```yaml jobs: build: runs-on: my-image-generation-runner snapshot: image-name: my-custom-image version: 2.* ``` - Report constant conditions at `if:` like `if: true` as error. Only very simple expressions like `true` or `false` are detected for now. See the [document](https://github.com/rhysd/actionlint/blob/main/docs/checks.md#if-cond-constant) for more details. - Check unexpected keys in inputs in [action metadata](https://docs.github.com/en/actions/reference/workflows-and-actions/metadata-syntax). ```yaml inputs: some_input: # Error: `type` is not supported for inputs in action metadata type: boolean ``` - Fix some invalid permissions are not reported as error in `id-token` and `models` scopes. (#582, thanks @holtkampjs) - Fix `args` and `entrypoint` inputs are not recognized at `uses:` when it's not a Docker action. (#550) - Set correct column in source position of YAML parse error. - Fix `credentials` cannot be configured with `${{ }}`. (#590) - Improve messages in syntax errors on parsing steps (`run:` and `uses:`). Available keys suggestion is now more accurate and unexpected keys are detected more accurately. - Fix the order of errors can be non-deterministic when multiple errors are caused at the same source positions. - Improve error messages showing suggestions on detecting invalid permissions. - Add instruction for installing actionlint with [mise package manager](https://mise.jdx.dev/getting-started.html). (#589, thanks @jylenhof) - Fix outdated URLs in the document. - Add new [`actionlint.AllContexts` map constant](https://pkg.go.dev/github.com/rhysd/actionlint#pkg-variables) in Go API that contains the information about all context availability. - Update popular actions data set to the latest with several major versions of actions and the following new actions. - `anthropics/claude-code-action` - `openai/codex-action` - `google-github-actions/run-gemini-cli` - Add `make cov` task to easily generate a code coverage report. - Make installing the formula version of `actionlint` pacakge from tap of this repository with Homebrew a hard error. Install the cask version instead following the instruction in the error message. ### v1.7.8 - Date: 2025-10-11 - Version: v1.7.8 - Original notes: https://github.com/rhysd/actionlint/releases/tag/v1.7.8 - Permalink: https://whatsnew.fyi/product/actionlint/releases/v1.7.8 - Support `models` permission in `permissions` section. (#531, thanks @muzimuzhi) - Support [`job.check_run_id` property](https://docs.github.com/en/actions/reference/workflows-and-actions/contexts#job-context). (#576, thanks @muzimuzhi for fixing the type at #577) - Support `node24` runtime at `using` section in action metadata. (#561, thanks @salmanmkc) - Add support for the following runner labels. - [`macos-26` and `macos-26-xlarge`](https://github.blog/changelog/2025-09-11-actions-macos-26-image-now-in-public-preview/) (#572, thanks @muzimuzhi) - [`macos-15`](https://github.blog/changelog/2025-09-19-github-actions-macos-13-runner-image-is-closing-down/#what-you-need-to-do) (#572, thanks @muzimuzhi) - Drop support for the following runner labels which are no longer supported by GitHub. - [`ubuntu-20.04`](https://github.com/actions/runner-images/issues/11101) (#534, thanks @shogo82148) - [`windows-2019`](https://github.blog/changelog/2025-04-15-upcoming-breaking-changes-and-releases-for-github-actions/#windows-server-2019-is-closing-down) (#572, thanks @muzimuzhi) - Support [`deprecationMessage`](https://docs.github.com/en/actions/reference/workflows-and-actions/metadata-syntax#inputsinput_iddeprecationmessage) in action inputs metadata. (#540, thanks @saansh45) - Support [`windows-11-arm` runner](https://github.blog/changelog/2025-04-14-windows-arm64-hosted-runners-now-available-in-public-preview/). (#542, thanks @trim21) - Handle `ubuntu-latest` runner label as `ubuntu-24.04` and `macos-latest` runner label as `macos-15`. - Report mixing Intel Mac labels and Arm Mac labels as error. - Add new types to `issues` and `pull_request_target` webhooks. - Update the popular actions data set to the latest and add more actions to it. (thanks @sethvargo for fixing the `go generate` scripts) - `actions/create-github-app-token` - `actions/attest-sbom` - `actions/ai-inference` - `peter-evans/create-or-update-comment` - `release-drafter/release-drafter` - `SamKirkland/FTP-Deploy-Action` - Fix the version value in `actionlint -version` output can be empty. - Fix outdated URL links in some error messages and documents. - [Homebrew formula in this repository](https://github.com/rhysd/actionlint/blob/main/HomebrewFormula/actionlint.rb) is deprecated and [Homebrew cask](https://github.com/rhysd/actionlint/blob/main/Casks/actionlint.rb) is newly added instead because [GoReleaser no longer supports Homebrew formula update](https://goreleaser.com/deprecations/#brews). Note that Homebrew's official `actionlint` formula is still maintained. Please read the [documentation](https://github.com/rhysd/actionlint/blob/main/docs/install.md#homebrew) for more details. - Drop support for Go 1.23 and earlier because they are no longer maintained officially. Go 1.24 and later are supported to build actionlint. - Replace [`go-yaml/yaml@v3`](https://github.com/go-yaml/yaml) package with [`yaml/go-yaml@v4`](https://github.com/yaml/go-yaml) package. `go-yaml/yaml` was used for parsing workflow files however it was unmaintained. `yaml/go-yaml` is a successor of the library officially maintained by YAML organization. (#575) - Improve error messages on parsing workflow and action metadata files. ### v1.7.7 - Date: 2025-01-19 - Version: v1.7.7 - Original notes: https://github.com/rhysd/actionlint/releases/tag/v1.7.7 - Permalink: https://whatsnew.fyi/product/actionlint/releases/v1.7.7 - Support runner labels for [Linux arm64 hosted runners](https://github.blog/changelog/2025-01-16-linux-arm64-hosted-runners-now-available-for-free-in-public-repositories-public-preview/). (#503, #504, thanks @martincostello) - `ubuntu-24.04-arm` - `ubuntu-22.04-arm` - Update Go dependencies to the latest. - Update the popular actions data set to the latest. - Add Linux arm64 job to our CI workflow. Now actionlint is tested on the platform. (#507, thanks @cclauss) ### v1.7.6 - Date: 2025-01-04 - Version: v1.7.6 - Original notes: https://github.com/rhysd/actionlint/releases/tag/v1.7.6 - Permalink: https://whatsnew.fyi/product/actionlint/releases/v1.7.6 - Fix using contexts at specific workflow keys is incorrectly reported as not allowed. Affected workflow keys are as follows. (#495, #497, #498, #500) - `jobs..steps.with.args` - `jobs..steps.with.entrypoint` - `jobs..services..env` - Update Go dependencies to the latest. ### v1.7.5 - Date: 2024-12-28 - Version: v1.7.5 - Original notes: https://github.com/rhysd/actionlint/releases/tag/v1.7.5 - Permalink: https://whatsnew.fyi/product/actionlint/releases/v1.7.5 - Strictly check available contexts in `${{ }}` placeholders following the ['Context availability' table](https://docs.github.com/en/actions/writing-workflows/choosing-what-your-workflow-does/accessing-contextual-information-about-workflow-runs#context-availability) in the official document. - For example, `jobs..defaults.run.shell` allows `env` context but `shell` workflow keys in other places allow no context. ```yaml defaults: run: # ERROR: No context is available here shell: ${{ env.SHELL }} jobs: test: runs-on: ubuntu-latest defaults: run: # OK: 'env' context is available here shell: ${{ env.SHELL }} steps: - run: echo hello # ERROR: No context is available here shell: ${{ env.SHELL}} ``` - Check a string literal passed to `fromJSON()` call. This pattern is [popular](https://github.com/search?q=fromJSON%28%27+lang%3Ayaml&type=code) to create array or object constants because GitHub Actions does not provide the literal syntax for them. See the [document](https://github.com/rhysd/actionlint/blob/main/docs/checks.md#contexts-and-built-in-functions) for more details. (#464) ```yaml jobs: test: # ERROR: Key 'mac' does not exist in the object returned by the fromJSON() runs-on: ${{ fromJSON('{"win":"windows-latest","linux":"ubuntul-latest"}')['mac'] }} steps: - run: echo This is a special branch! # ERROR: Broken JSON string passed to fromJSON. if: contains(fromJSON('["main","release","dev"'), github.ref_name) ``` - Allow passing command arguments to `-shellcheck` argument. (#483, thanks @anuraaga) - This is useful when you want to use alternative build of shellcheck like [go-shellcheck](https://github.com/wasilibs/go-shellcheck/). ```sh actionlint -shellcheck="go run github.com/wasilibs/go-shellcheck/cmd/shellcheck@latest" ``` - Support undocumented `repository_visibility`, `artifact_cache_size_limit`, `step_summary`, `output`, `state` properties in `github` context. (#489, thanks @rasa for adding `repository_visibility` property) - Remove `macos-12` runner label from known labels because it was [dropped](https://github.com/actions/runner-images/issues/10721) from GitHub-hosted runners on Dec. 3 and is no longer available. - Add `windows-2025` runner label to the known labels. The runner is in [public preview](https://github.blog/changelog/2024-12-19-windows-server-2025-is-now-in-public-preview/). (#491, thanks @ericcornelissen) - Add `black` to the list of colors for `branding.color` action metadata. (#485, thanks @eifinger) - Add `table` to the list of icons for `branding.icon` action metadata. - Fix parsing escaped `{` in `format()` function call's first argument. - Fix the incorrect `join()` function overload. `join(s1: string, s2: string)` was wrongly accepted. - Update popular actions data set to the latest. - Add `download-artifact/v3-node20` to the data set. (#468) - Fix missing the `reviewdog/action-hadolint@v1` action input. (#487, thanks @mi-wada) - Link to the documents of the stable version in actionlint `man` page and `-help` output. - Refactor `LintStdin()` API example and some unit tests. (#472, #475, thanks @alexandear) - Improve the configuration example in `actionlint.yaml` document to explain glob patterns for `paths`. (#481) ### v1.7.4 - Date: 2024-11-04 - Version: v1.7.4 - Original notes: https://github.com/rhysd/actionlint/releases/tag/v1.7.4 - Permalink: https://whatsnew.fyi/product/actionlint/releases/v1.7.4 - Disallow the usage of popular actions that run on `node16` runner. The `node16` runner [will reach the end of life on November 12](https://github.blog/changelog/2024-09-25-end-of-life-for-actions-node16/). - In case of the error, please update your actions to the latest version so that they run on the latest `node20` runner. - If you're using self-hosted runner and you cannot upgrade your runner to `node20` soon, please consider to ignore the error by the `paths` configuration described below. - If you're using `actions/upload-artifact@v3` and `actions/download-artifact@v3` on GHES, please replace them with `actions/upload-artifact@v3-node20` and `actions/download-artifact@v3-node20`. (#468) - Provide the configuration for ignoring errors by regular expressions in `actionlint.yml` (or `actionlint.yaml`). Please see the [document](https://github.com/rhysd/actionlint/blob/v1.7.4/docs/config.md) for more details. (#217, #342) - The `paths` is a mapping from the file path glob pattern to the corresponding configuration. The `ignore` configuration is a list of regular expressions to match error messages (similar to the `-ignore` command line option). ```yaml paths: # This pattern matches any YAML file under the '.github/workflows/' directory. .github/workflows/**/*.yaml: ignore: # Ignore the specific error from shellcheck - 'shellcheck reported issue in this script: SC2086:.+' # This pattern only matches '.github/workflows/release.yaml' file. .github/workflows/release.yaml: ignore: # Ignore errors from the old runner check. This may be useful for (outdated) self-hosted runner environment. - 'the runner of ".+" action is too old to run on GitHub Actions' ``` - This configuration was not implemented initially because I wanted to keep the configuration as minimal as possible. However, due to several requests for it, the configuration has now been added. - Untrusted inputs check is safely skipped inside specific function calls. (#459, thanks @IlyaGulya) - For example, the following step contains the untrusted input `github.head_ref`, but it is safe because it's passed to the `contains()` argument. ```yaml - run: echo "is_release_branch=${{ contains(github.head_ref, 'release') }}" >> "$GITHUB_OUTPUT" ``` - For more details, please read the [rule document](https://github.com/rhysd/actionlint/blob/v1.7.4/docs/checks.md#untrusted-inputs). - Recognize `gcr.io` and `gcr.dev` as the correct container registry hosts. (#463, thanks @takaidohigasi) - Note that it is recommended explicitly specifying the scheme like `docker://gcr.io/...`. - Remove `macos-x.0` runner labels which are no longer available. (#452) - Disable shellcheck [`SC2043`](https://www.shellcheck.net/wiki/SC2043) rule because it can cause false positives on checking `run:`. (#355) - The [rule document](https://github.com/rhysd/actionlint/blob/v1.7.4/docs/checks.md#check-shellcheck-integ) was updated as well. (#466, thanks @risu729) - Fix the error message was not deterministic when detecting cycles in `needs` dependencies. - Fix the check for `format()` function was not applied when the function name contains upper case like `Format()`. Note that function names in `${{ }}` placeholders are case-insensitive. - Update the popular actions data set to the latest. - This includes the [new `ref` and `commit` outputs](https://github.com/actions/checkout/pull/1180) of `actions/checkout`. - Add [`actions/cache/save`](https://github.com/actions/cache/tree/main/save) and [`actions/cache/restore`](https://github.com/actions/cache/tree/main/restore) to the popular actions data set. - Links in the [README.md](https://github.com/rhysd/actionlint/blob/main/README.md) now point to the document of the latest version tag instead of HEAD of `main` branch. - Add [`Linter.LintStdin`](https://pkg.go.dev/github.com/rhysd/actionlint#Linter.Lin _[Truncated at 4000 characters — full notes: https://github.com/rhysd/actionlint/releases/tag/v1.7.4]_ ### v1.7.3 - Date: 2024-09-29 - Version: v1.7.3 - Original notes: https://github.com/rhysd/actionlint/releases/tag/v1.7.3 - Permalink: https://whatsnew.fyi/product/actionlint/releases/v1.7.3 - Remove `macos-11` runner labels because [macOS 11 runner was dropped on 6/28/2024](https://github.blog/changelog/2024-05-20-actions-upcoming-changes-to-github-hosted-macos-runners/#macos-11-deprecation-and-removal). (#451, thanks @muzimuzhi) - Support `macos-15`, `macos-15-large`, and `macos-15-xlarge` runner labels. The macOS 15 runner is not globally available yet, but [they are available in beta](https://github.com/actions/runner-images?tab=readme-ov-file#available-images). (#453, thanks @muzimuzhi) - Release artifact includes checksums for the released binaries. The file name is `actionlint_{version}_checksums.txt`. (#449) - For example, the checksums for v1.7.3 can be found [here](https://github.com/rhysd/actionlint/releases/download/v1.7.3/actionlint_1.7.3_checksums.txt). - Fix `download-path` output is missing in `actions/download-artifact@v3` action. (#442) - Note that the latest version `actions/download-artifact@v4` was not affected by this issue. - Support Go 1.23. [Documentation](https://github.com/rhysd/actionlint/blob/v1.7.3/docs/checks.md)