From: Jonathan Nieder Date: Tue, 21 May 2019 01:57:03 GMT Subject: Re: RFC: Separate commit identification from Merkle hashing Message-ID: <20190521015703.GB32230@google.com> In-Reply-To: <20190521013250.3506B470485F@snark.thyrsus.com> Hi! Eric S. Raymond wrote: > One reason I am sure of this is the SHA-1 to whatever transition. > We can't count on the successor hash to survive attack forever. > Accordingly, git's design needs to be stable against the possibility > of having to accommodate multiple future hash algorithms in the > future. Have you read through Documentation/technical/hash-function-transition? It takes the case where the new hash function is found to be weak into account. Hope that helps, Jonathan