Sign inSign up
Docker Sandboxes Agent Templates

dhi.io/sbx-templates

Docker SBX Agent Templates (Claude Code) (dev)

CIS
linux/amd64
debian 13
Tags:

claude-code, claude-code-2, claude-code-2.1, claude-code-2.1.284

Index digest:

sha256:f4a47ac3116d8728886f6892e5f910293d34c136d30d16bf6af1d6e4f15c26f7

Manifest digest:

sha256:1773c619d0043e6cde9a0f077547fcb9c0e91d48cd57b8fe629bdcfbccf89ea8

Size

475.78 MB

Last pushed

16 hours ago

Vulnerabilities

0
4
9
51
5

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/sbx-templates:claude-code

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/sbx-templates:claude-code --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/sbx-templates@sha256:2f5ab33f147be92e39fb2462bf729f2f1c545f8972959d501b7190ef862383d1
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/sbx-templates@sha256:b7af9b03f78f9390b79299659acacdfc246adc14e60352ffd3fcd1d6e52b2359
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/sbx-templates@sha256:6c687b3caa4368f3fc40bc4e8ab34b50a400cc6d6a23ef5138b962816960fe88
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/sbx-templates@sha256:f24c27b1aaa819b359cd62f84b6e0d7eeb6c9de6cf38b13ecd44bebfc13711e8
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/sbx-templates@sha256:eb408bf36236c05113ffd3a160fac4d6428c67dbfd17a0693d933aabac9ed69d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/sbx-templates@sha256:36211f1d264a9d4e48505023a8a6166a397cac64cf89725c0c9e4c4073a15ba3
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/sbx-templates@sha256:c54b9b83ac8eee77fe13e8936db941ae2e4a3e0fa95b4bcf2a738dcb793ff9dd
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/sbx-templates@sha256:13de05c5a4eddf41a2e78bbd17b4224d9e264ad908bea8fd0a1bb04b3130afb6
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/sbx-templates@sha256:55eed907b67ccc7e82b94f5b224b2278939a60dd71db1ce21d201b7d0f33c055
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/sbx-templates@sha256:c513d877c23aa4121f9fc0dc3a9bc49f44befaf6739b814a330fb767633ed699
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/sbx-templates@sha256:6f1af1f5bc7a6054860785199603c0ca0c3a3e3780ff508ffbf069d2ec9806f9
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/sbx-templates@sha256:a289ba82e3ffbd58d518f8b72b1c332f7f24ff4c2ba199acc7c91c28fb1416bf
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/sbx-templates@sha256:4f46225681e3acd6badcb5015dfb01ac3a8504464f4ee93bd914ca1f96234f0e
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/sbx-templates@sha256:c34dacbe69af4f0b362b9bd41719cde0701bc15b491c2d19c7d74a51b711e984
SPDX SBOMhttps://spdx.dev/Documentdhi.io/sbx-templates@sha256:894debcfd86981116a9c3cf3eb75e292e982867c40a9ffc266b0cc3489f983d5