Sign inSign up
Docker Sandboxes Agent Templates

dhi.io/sbx-templates

Docker SBX Agent Templates (Claude Code) (docker, dev)

CIS
linux/amd64
debian 13
Tags:

claude-code-2-docker, claude-code-2.1-docker, claude-code-2.1.288-docker, claude-code-docker

Index digest:

sha256:7aa093d1f8ae29de2338c700983285cbd0356116f9b125e172c8bc672b53bd71

Manifest digest:

sha256:c04640c96b16882f75d5ee8da8e728b5d649b70506255f36e75c12ddcca0dfa9

Size

578.31 MB

Last pushed

11 hours ago

Vulnerabilities

0
9
13
43
4

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/sbx-templates:claude-code-2-docker

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/sbx-templates:claude-code-2-docker --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/sbx-templates@sha256:4bce8fc2afea5e35b046dd7fc6672e86f05bbfda68804337fd4eab8f8809ca64
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/sbx-templates@sha256:d01cde03fabbab7de2c2ca54490918818f559c05f6b578645b046f12133ff3c7
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/sbx-templates@sha256:192feb7d7b86f8a4a70b0db66718137b54889e36b4c1aafd3603edbb009bb0e4
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/sbx-templates@sha256:bda15adbaeb98ec01bf53800f6ec5cee99a7979ec6d3790dab8009787cf7bdf5
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/sbx-templates@sha256:03a18ddd7d3e66952d313e3105d12c561a1b33d0c1ec488491a95c7c4105809e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/sbx-templates@sha256:286a17d1ced8dd7e0fbf19b382cbd345b6ddf2e112843e56c353c4f40eaf761a
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/sbx-templates@sha256:98de01c952be81fa9dfd7cab696cfbc12fde11ef36b3e1feb8d2cb4161f8ebea
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/sbx-templates@sha256:96e8df12e5f941a5a2183bb6aeb35b9fad09b70b79c17c5d5487a5e955992eef
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/sbx-templates@sha256:145fa43a8b6daeebfda1840521be237c477769201491d0c0a6aa074047c01cdb
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/sbx-templates@sha256:e4fb17ee0ac30b9a095d95f1082a49d3be6d6a6b553909af5371b9c8ddf5c934
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/sbx-templates@sha256:e989ffdb8ddd88f09a8ec06c8aa3d836af0d5a43fac8441a65f13c94adfd0c77
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/sbx-templates@sha256:37423c913cc9e515d7edf3d45415973e678faa954bbaa2eb17e0cb035944e317
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/sbx-templates@sha256:11aec47588552ed5b02bb0a0d87f3ab5d17dfc3381dc20825d1e1fbb5444510f
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/sbx-templates@sha256:031c0b736d28be45f22b516c89be6b2a324e3e53294ee25c10bc92df41373a7c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/sbx-templates@sha256:6cc20a25a7eb657772211a96f3a601d4789a8ce6f6c8916d6cb09ec5351b0c30