Sign inSign up
Docker Sandboxes Agent Templates

dhi.io/sbx-templates

Docker SBX Agent Templates (Cursor Agent) (docker, dev)

CIS
linux/amd64
debian 13
Tags:

cursor-agent-2026.10.01-e373342-docker, cursor-agent-docker

Index digest:

sha256:d9a9a577cff34855d579addfde57fb0c1f09dd5cbeff20fad578c81184beb849

Manifest digest:

sha256:8c71e9d536c56402757518db9312fcdb9fe4be26a2617de93b7c1ca798e75c99

Size

629.72 MB

Last pushed

5 hours ago

Vulnerabilities

5
21
13
44
8

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/sbx-templates:cursor-agent-2026.10.01-e373342-docker

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/sbx-templates:cursor-agent-2026.10.01-e373342-docker --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/sbx-templates@sha256:e432daece6ecee6ca49f0fdaa090ca7beceb859de2e8df3a82f2ccc1fcac81d4
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/sbx-templates@sha256:ef957040f7d98cdb625d90f60cbcd5b991b9726afc0a9c5bb69946c84be730f3
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/sbx-templates@sha256:d96ae525c5086b788c51144b844c95963d23a4234092536aede5c45d7122a669
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/sbx-templates@sha256:9cbdc8231375f0841d4978a52b41e9372ed29c172a79a2582f9c3643905bb995
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/sbx-templates@sha256:86f5c9a8b8b05478333cfbb80b004a17627f7ad29dbd2bfc1c2c1b0ad6a4641b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/sbx-templates@sha256:4621029d0c9005122c91d7db7cc2f4f817df46a778d616397bfa03b315728389
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/sbx-templates@sha256:cf70c33c13e8c714248f61126e5d3959c87b585536a6c64271901ef34874cfc5
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/sbx-templates@sha256:4879d98f2ae572cd3c45ae6672ad6b1a5242a2fbf69444e51e54992b737de026
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/sbx-templates@sha256:bdbb2a46573edb8a88a8bea74ce3a0facdecdd27bd9b992453e448d468d3e6ba
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/sbx-templates@sha256:73de1a01db431c0273852661cb9ca551d75ee8b966fef280875ca77d42d24697
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/sbx-templates@sha256:9b29ddbf50b0007dba8e33fde97fdabbad6d80fc7e85db4f96f8625301a47dd2
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/sbx-templates@sha256:531dcdd36350184b9f74142ce49e9d19e027386fe153f902d8fd7dbde472cb31
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/sbx-templates@sha256:27e0c735560e476f1fa75fa60182c4ebf5cbb18c6ec8089dd4e22b4d96b1a032
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/sbx-templates@sha256:ca6cf083bc298d575e43defe3391a9f216cbd652832988db0913af1ea3c068f7
SPDX SBOMhttps://spdx.dev/Documentdhi.io/sbx-templates@sha256:04ab13d4dcebde052445aeb2fe9e2a44f4de61822e4214015ceeb64329348525