Sign inSign up
Docker Sandboxes Agent Templates

dhi.io/sbx-templates

Docker SBX Agent Templates (Claude Code) (docker, dev)

CIS
linux/amd64
debian 13
Tags:

claude-code-2-docker, claude-code-2.1-docker, claude-code-2.1.283-docker, claude-code-docker

Index digest:

sha256:a97a3dfd011565006a696436274eb9c847d01a4b09865d180efc813b58cfe926

Manifest digest:

sha256:9d084405d7f4ae0b1fe97ebff4b2463bfb6037bc20716230dadf6f5bfd2a7d93

Size

576.88 MB

Last pushed

20 hours ago

Vulnerabilities

0
0
2
41
4

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/sbx-templates:claude-code-2-docker

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/sbx-templates:claude-code-2-docker --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/sbx-templates@sha256:d6fc8dce1e082479d986f6c2f74afe61a990b0cbe629d1b056eeee95dde5cd81
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/sbx-templates@sha256:242d2116cb6a3d69bc890b30441d1943627d33a8ec691f995ba8c60768b1a017
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/sbx-templates@sha256:8aef44757afff5e657476a51c16eda0dee9963be3881250438878db7fe06784b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/sbx-templates@sha256:49cb6a1f95b03e1dd84793f14389707dee58eb03ae76295049c3254f69a36e89
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/sbx-templates@sha256:8a8485cf6431670d89c12517f584907e0ed1bef04330d25454d69ae16de1a9cd
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/sbx-templates@sha256:f68f17ac5fdb7511f54bdf512ca70225741d1b666e6e0d1cf5ba84b5531ff676
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/sbx-templates@sha256:32a5ac1c9a9df64553a3ed27da4614b98927416e29e60f869ba514626eb674c2
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/sbx-templates@sha256:5291691b4fbe29d147ac583a7006604e5792121ce3bf3f29730eafaa314dec6b
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/sbx-templates@sha256:fb4f7623b6c14dad3ab1ff297b24ca7d5a3d36fe953e070181328ebec7ce367d
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/sbx-templates@sha256:78b4a9779aedeca38c0ef4fc51e4d99667c9e51cc719ad7d1b839145693ed400
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/sbx-templates@sha256:e5bca864ef78ca50767cb9ef9e604df719090584d381a83163366a2f782a17c3
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/sbx-templates@sha256:ed46e5e57f12aa6c9ff82e64573f3734d5d2ed57cc48c05a77d18d5cca32eadc
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/sbx-templates@sha256:6be3fd17d6303a0f3db3a04a47962b3a2d2f8db948366ea685b6cc9d84389673
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/sbx-templates@sha256:c32c344eb10069a261e3bc34db14136c4d8d945b385e915b40d5672284d3442b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/sbx-templates@sha256:82d464a591639765c8f7f87ae5670db8fd556b0809f9c33e0e81d372e1d10057