Sign inSign up
Docker Sandboxes Agent Templates

dhi.io/sbx-templates

Docker SBX Agent Templates (Cursor Agent) (docker, dev)

CIS
linux/amd64
debian 13
Tags:

cursor-agent-2026.09.26-dd393fe-docker, cursor-agent-docker

Index digest:

sha256:b362319e2ea705effb3db34251922f3fa23549841392374a07b56475b92d4bd8

Manifest digest:

sha256:3aaaee40aee9e659a68e8e6c7e08a75fe9946ac06628076cdaf4f7760f4166e8

Size

631.09 MB

Last pushed

1 day ago

Vulnerabilities

0
0
2
41
4

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/sbx-templates:cursor-agent-2026.09.26-dd393fe-docker

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/sbx-templates:cursor-agent-2026.09.26-dd393fe-docker --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/sbx-templates@sha256:4e1e25b4683c4877aade33d464c414a54fe3a11d4ae7c6653ca1a0bbcd674133
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/sbx-templates@sha256:a1ec69ae4adad825687d5542fa8633d3fea85f0b0c9e1ba919f9d05958a38280
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/sbx-templates@sha256:6009110c7b43117775700bfd7f0e92c4fe8d3ae30a51a46baece59d53d31d04e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/sbx-templates@sha256:566a29e7195ca7d3db8bbd1a31c587ce4479cd15b1d6d74337b2285a55016530
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/sbx-templates@sha256:b063a51378c8f0b088d1975677a5c36fb202977f5fe90a0a4f6a3f2352482f7d
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/sbx-templates@sha256:dcc6c2056b5da626f2c39463baa1c4906a6f7c48edd0f262545482e086656571
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/sbx-templates@sha256:2bf514a1ac609b855c1da06dad9dfcce224e665279b29746a0b78c20e1f64b63
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/sbx-templates@sha256:bbfa226d89befd8d3085d9e6bcfb76f33cef87d57ab22fe70bba23d3bbe05194
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/sbx-templates@sha256:6f2882b96b46096128be92c294f649d10fed6a9811d7e883428c98ee9b190404
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/sbx-templates@sha256:97592dc9f006e57caef3deb3b115612c723ed2de33495989fac7a251b946f1ff
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/sbx-templates@sha256:7e4046d6387a7765f273229c72d25b548fd40de8ddff8e580c91b560203d63fd
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/sbx-templates@sha256:aab83787e8a77cdea0d4f18cb1bd257f3b248de811ebd945ae198cf0f2b35fe8
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/sbx-templates@sha256:442fb4b3eb49422a4562ded9495e496fd3d715c81ecc6ac1e83ebb8006bc4dca
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/sbx-templates@sha256:b588b859ec48ab75ebf6eb18d2a01a81f1d3206fb536f5c9556e031bb539c37f
SPDX SBOMhttps://spdx.dev/Documentdhi.io/sbx-templates@sha256:0d1dd6d85deb331f4a20939b23c98918b6784438008ed109fc487a6481290e62