Sign inSign up
Docker Sandboxes Agent Templates

dhi.io/sbx-templates

Docker SBX Agent Templates (Claude Code) (dev)

CIS
linux/amd64
debian 13
Tags:

claude-code, claude-code-2, claude-code-2.1, claude-code-2.1.274

Index digest:

sha256:1246421204855519003338f46cc6a689ce7cbe579053581661aff93327ea26f0

Manifest digest:

sha256:edce9e86c4a171ec4bfc70f0ad49ba36c4de70332033dd5f68512e799c5b783e

Size

470.15 MB

Last pushed

7 hours ago

Vulnerabilities

0
8
8
44
5

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/sbx-templates:claude-code

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/sbx-templates:claude-code --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/sbx-templates@sha256:a53f449e756b4dd47312361fdbe59ce3a70975cf00d8a625f8a028ee746092a7
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/sbx-templates@sha256:bb0f2272578c594db43f98d8801d19775fdd05ab67d2a8caa44cecd454a9e795
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/sbx-templates@sha256:536e23ace098d7efbbb180694f4412919d2c3b3393b8cfac2e4872dddb61416c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/sbx-templates@sha256:acca2e29a0d5ea68b29fac53adb6f34edde8593bb1366312d93ad8ec939c6c4b
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/sbx-templates@sha256:26aba0e332a7295a986f1a2e6490ed0391c471861d7cd8a725ce8c4e89575b8a
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/sbx-templates@sha256:b2b6d25349ff288cb4084d8e1c79d83ea7d20cd95883ecb77e21aab9bf9d447c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/sbx-templates@sha256:bd89cf5927afb6c91f346af271498965f9eb3a1235834c480bc0e045a519903d
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/sbx-templates@sha256:68c99a6d6247652991772249ded3373f431b253c03577bc2008b8dc6ba3ed422
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/sbx-templates@sha256:fd865b888867f61c3114a8620f62440d300850df947391bf49c5cc7a56186535
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/sbx-templates@sha256:c921347359031da452549506356c10890f89ceb94c632514b178471b764e6751
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/sbx-templates@sha256:e8449354a6e1c392a2a0d8dfdd70de664bfc37ac30c0e2db4beb3eb3e33fa7f1
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/sbx-templates@sha256:056af8d82a131dafefe49b8d6039f1b94694eab0d64934a9728b1e490903651c
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/sbx-templates@sha256:27e0b2d3537a62cce11a867e0969e0cf7cf295fccec8cc9d4073e764bdbb5d04
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/sbx-templates@sha256:bf46ea29232bd837a35eaf895671bc7d64aeacc285856ff7e8b27eda83d8f87b
SPDX SBOMhttps://spdx.dev/Documentdhi.io/sbx-templates@sha256:3901bd373fb912c8c0dc1a4c61c0570b0d914b4fa77c30bbcf0f6f1447867260