Sign inSign up
Docker Sandboxes Agent Templates

dhi.io/sbx-templates

Docker SBX Agent Templates (Cursor Agent) (dev)

CIS
linux/amd64
debian 13
Tags:

cursor-agent, cursor-agent-2026.10.01-e373342

Index digest:

sha256:8e24de97a13ae7c09945570c77726d1a44127c456275bf2ba47e8e66f4b4f4c2

Manifest digest:

sha256:c9fa15b0b895b4ed9b9d5ef607daa27a3cbc2d267a870de2d6231a69507e7b34

Size

529.87 MB

Last pushed

2 hours ago

Vulnerabilities

1
6
12
44
4

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/sbx-templates:cursor-agent

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/sbx-templates:cursor-agent --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/sbx-templates@sha256:fe02b548f6c4f23d55aa2a214955a8ef2a1777b475371c369088fa946cb2d8df
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/sbx-templates@sha256:3d57a709a9c4f3bef24adde5da0acc8d85df1948563dfeb3d3b6749de4d798a8
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/sbx-templates@sha256:444904f74e390b5ea9ae3e89d85f7f087dafc50300f5c9989383857396e6c59d
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/sbx-templates@sha256:968b6183f5bfa39baf872c1cb1fb97474f410ec92a0ff94ece9362ad295b979f
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/sbx-templates@sha256:5c24aa1a97cf027f2ed375958d998d266373ecc50e1bcae6a6bd7494d5d82806
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/sbx-templates@sha256:138c4b40abe2d5e84582ff183dc51854ab192950da0111e96edfd695b11c5872
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/sbx-templates@sha256:1e1d188836c9e88583ed2c77829582ac19562e9c37987dcf13b46b4d2318b5ea
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/sbx-templates@sha256:31696708014d870dc110f566b8335dad3a36ba48dbabc6aa37bfe47b0f4f766c
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/sbx-templates@sha256:ecae1ef2bd1f1f1ab71d0db4b08406477fd7ec3e944d5fc2573ad90f950cc744
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/sbx-templates@sha256:1b083e57e79370bbf5c821e9020c2352d7c376bc388d94fd95a5cac9ad9cbeb6
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/sbx-templates@sha256:55d857150cf388a77a6ccf50e33a88e178da048fbc748ce0652c50200b8213c8
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/sbx-templates@sha256:2b9151f6b261388fba05aaa571b2b0370f63b229600a0a4e5945e83c7875f8fc
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/sbx-templates@sha256:f68a613cef562dff991092338a97381aeedc6752e47618578ccd29efb917724c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/sbx-templates@sha256:b51725ee0a320017287ff4ba20c34268165ee3e025fe3b47122e745b43ef485c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/sbx-templates@sha256:95f16d9ac0043210f81ac217f4c69c4e7343fd9b26205dbcf0902f0343122841