Sign inSign up
Docker Sandboxes Agent Templates

dhi.io/sbx-templates

Docker SBX Agent Templates (Cursor Agent) (docker, dev)

CIS
linux/amd64
debian 13
Tags:

cursor-agent-2026.10.01-e373342-docker, cursor-agent-docker

Index digest:

sha256:469b3d14fff7b6b50b6520641df5f248e6e7c44b56fac13c3fe481fcdc78a539

Manifest digest:

sha256:0a2960dac749e5a2962dc547f53e65eef5aae397514aa263ea66db3e371fb3b1

Size

631.23 MB

Last pushed

14 hours ago

Vulnerabilities

1
9
13
43
4

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/sbx-templates:cursor-agent-2026.10.01-e373342-docker

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/sbx-templates:cursor-agent-2026.10.01-e373342-docker --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/sbx-templates@sha256:b8a9d7a302a543a5d4dbf06e3c52bd104a20f768dde884c08c6cd2ac3def931f
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/sbx-templates@sha256:307235223d0119a0839c85bf8e5c50b5147cde78ac9d6b64ed2055bb1f010adb
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/sbx-templates@sha256:10835212f99e4c315f4b1f85e34fe62aa79e60c2a0398fb0da8faa7d026f2395
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/sbx-templates@sha256:c3da02178c61da406841ed795107ec41f61b8bdb471442e78597c1aee4cffeed
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/sbx-templates@sha256:45d787a0591cb6d27e08234ae35547331990adb7a72f823a01e56ae801ce035e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/sbx-templates@sha256:df98f948f867f034bc021075e79207e689b8146aec9c84da49b5de0f752b9010
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/sbx-templates@sha256:c9d2dd1f105086599c3af61153857933f10ace7947bb42ab72cfb3c9a72485f1
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/sbx-templates@sha256:ac5312a5f872512f3744e9a9a09e826babb7fa65b5e0ede4dea17c5678f46219
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/sbx-templates@sha256:c6355da35036b4d0d2acdf52f994252ee1cd918510e940c3ad02025552e86c4c
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/sbx-templates@sha256:b9af51a053b879ad000689c80582bcf065fc418e36286099d3e00e92eb616432
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/sbx-templates@sha256:c12124fda85b2424860b83988087624893184bd43d51954a1da60a979f6003c6
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/sbx-templates@sha256:963b63517ae51c57679b5ef37be56f014a7083d1d408a8d684eb4827e092c187
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/sbx-templates@sha256:88726cca26dc5520513cb03308ec94dfad9babe80b7c0f810dd5e842dad5c2aa
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/sbx-templates@sha256:8ef6fd9b06a999638c7c92ea12b61141aa6eb82e0daf0ba3c61c3fc0de68a9ab
SPDX SBOMhttps://spdx.dev/Documentdhi.io/sbx-templates@sha256:038e1e410c688aadd73422667927db9006f63684027a8ba665e3a57847f8b3f6