Sign inSign up
Docker Sandboxes Agent Templates

dhi.io/sbx-templates

Docker SBX Agent Templates (Cursor Agent) (dev)

CIS
linux/amd64
debian 13
Tags:

cursor-agent, cursor-agent-2026.10.01-e373342

Index digest:

sha256:84c2609dd1dbfa31932ec0b58079ef6d56795ddea1c49e1e4c766d3594ffbf09

Manifest digest:

sha256:e5621e6008f5073da905c4fc10fd2b3a2ee9ca0156254bddaeb6598dad27393c

Size

529.93 MB

Last pushed

8 hours ago

Vulnerabilities

1
6
11
43
4

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/sbx-templates:cursor-agent

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/sbx-templates:cursor-agent --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/sbx-templates@sha256:d6b826a82b094e437aa2841731957eb6995c50302cb4d89dae0d52a60d12ee1d
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/sbx-templates@sha256:93ceda84483c3d7e1d4e52aeb1e39b465a8ba48814ecef61c9b1884286212e0e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/sbx-templates@sha256:ddd88f1cd330e41a4c97d55f711dc4c915e89d3efadacc6930faf97a43a769d7
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/sbx-templates@sha256:14c6a6bac6dd6ccc79b1958ac5415f64bef10f7a129341e797544aee0d79d14a
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/sbx-templates@sha256:733d600daa596a44f57c4b2dce38853f56f2352df3062d94738e9bc25759e74c
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/sbx-templates@sha256:03fca0983089f6f2ade14aded5fea4b1f2b2c9293bbfb0112b25666f6003084e
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/sbx-templates@sha256:f64f1dfe5d921f1916d600ebd8fa62e3e57cdc0971f511bc04700e890f7900c7
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/sbx-templates@sha256:c4f69d618550d22a5c5c5d0acbea3e8188dc320e8aa0018b8aeb1a903d706188
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/sbx-templates@sha256:56cdcb429d5444b339045ea3bcb884eb3be8f58a6dd20cb93b310a5920c5471a
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/sbx-templates@sha256:0333e2450726e429e48be8c29b7602c5f489a4799d645e6b2aca868ba8ce7c11
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/sbx-templates@sha256:8b0afd2de498ef3062c329eee21db67d02dce7aa96afb623a5e687eeeb1a1415
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/sbx-templates@sha256:9ab5fa387521c740d8cdcdef253781b8a7f1bf3b1426f3ee66cd9a32900b051a
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/sbx-templates@sha256:a7c3de247ad3b61f0b203c05de9d3e1f20d4316e86c25fb4584b5589b85de786
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/sbx-templates@sha256:77babd8f173adc31307b5302da88406a7e21a2ebe6aa85c963f334c6bb95726c
SPDX SBOMhttps://spdx.dev/Documentdhi.io/sbx-templates@sha256:a3b79349b7fbed667729e6ba477874e665b2ad9b9938a4492acbef819a3620d3