Sign inSign up
Docker Sandboxes Agent Templates

dhi.io/sbx-templates

Docker SBX Agent Templates (Claude Code) (dev)

CIS
linux/amd64
debian 13
Tags:

claude-code, claude-code-2, claude-code-2.1, claude-code-2.1.289

Index digest:

sha256:adcad86811c6bdcddba183fc74cc14294aa114fd875be6e63c2cb8a50670c50b

Manifest digest:

sha256:3ae84e1d3f4752e5e5fa3d9bc0f6541fbc875e7384f1476ebb1d01a8188fd5e1

Size

477.06 MB

Last pushed

1 hour ago

Vulnerabilities

0
6
12
44
5

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/sbx-templates:claude-code

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/sbx-templates:claude-code --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/sbx-templates@sha256:9498dd2c630f06e3a988d2933bcf9df29fda31850bad6664a72bd0e771c056db
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/sbx-templates@sha256:10322d435947563e94f9bb7c76f8d5c00f1224cae6db7af90d9560e4f42a4998
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/sbx-templates@sha256:7afba25cc1017e5fbf108e6ead43df70d636d55195b3a8423b187f21a500aa8d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/sbx-templates@sha256:d4080f79fdbc0ee38ab66c7b6c873fd21f0de2edbced0cdbcc649447ba8b65db
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/sbx-templates@sha256:3077ba0085d27e84abb35a7e085c57df11c1901252c60bbe9aeea858d9b973c6
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/sbx-templates@sha256:287038065773ebb17a6095f5a1bb5df4250935e83f3c2a9bb8af63b1ad226e76
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/sbx-templates@sha256:ddbbe3de57769ae412a4799666b592cdb92ed410e2389eff40d2d9ed29dcf8b6
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/sbx-templates@sha256:45f53ab608311f7f0da5c10ba86d53b41226489f097fc2fe7e87d33a4f515a90
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/sbx-templates@sha256:aa52fe378b48f81e8496aab8e23520f7394b4a3899492dbddde59cd0e317cfcb
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/sbx-templates@sha256:f92da87cd75f12cb404fac299d3a79245265b7793d11fa0bfd6ff59cc95d162e
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/sbx-templates@sha256:c40ee9a26829ffece20cf50187b29cdbb68c2d50f12dbe515b2dee3c3e04761c
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/sbx-templates@sha256:03a2a7916638fe4b0c8f1faceee8c8b75f12c23e914ab1dc7500e961b17b3093
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/sbx-templates@sha256:de9e6e878e223872005037f04fed48ef202d8ac90b8c69b6d7828db0819dcc27
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/sbx-templates@sha256:72f204269e4da03e639226fa226cf5bb45da123b0b19678cd43120476fcf6788
SPDX SBOMhttps://spdx.dev/Documentdhi.io/sbx-templates@sha256:c4a42f1b73417123c52534e8be76ec1ad75b8b062052c26f40ecc5444a5e576d