https://bz.apache.org/SpamAssassin/show_bug.cgi?id=7596
--- Comment #4 from Kevin A. McGrail <kmcgr...@apache.org> --- Note, I'm confirming the exact sha1 and sha256 behavior for rules updates. We'll be creating both for at least the near future since we are cryptographically verifying updates anyway the sha-1 risk is infinitesimally low IMO. -- You are receiving this mail because: You are the assignee for the bug.