Sign inSign up
Docker Sandboxes Agent Templates

dhi.io/sbx-templates

Docker SBX Agent Templates (Cursor Agent) (docker, dev)

CIS
linux/amd64
debian 13
Tags:

cursor-agent-2026.10.01-e373342-docker, cursor-agent-docker

Index digest:

sha256:a75af8edd517e5a4f3cc0986b1d451135fb090b21ac750548653c0d1227978d8

Manifest digest:

sha256:315619530b22bfe263adbc3a1c368760f6bd99d2416a87a4dd37dfd7d4fff152

Size

629.94 MB

Last pushed

7 hours ago

Vulnerabilities

5
21
13
44
9

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/sbx-templates:cursor-agent-2026.10.01-e373342-docker

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/sbx-templates:cursor-agent-2026.10.01-e373342-docker --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/sbx-templates@sha256:3c983d5d673357cf2ef2c3e9cf830b3e876db638e68221b0a73fd4c4a819683c
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/sbx-templates@sha256:f9c99f052466f194ef73281474c49dd8414d5ccb59696af0d30a25d2d69bc747
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/sbx-templates@sha256:3bc2aaf6cb93026d74bbde56f480bda8b4fa4ddbbb117392d84d10fc00025223
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/sbx-templates@sha256:e091621ff1ccf5f6b53d56ed28b8724d208d9cb214ac0c3ed827aec103d188c3
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/sbx-templates@sha256:cc3cae8fa5a46df5d5a937ead4165245acbc843cfacc0375ab299752c1c8a4f5
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/sbx-templates@sha256:0b7463e0042bcf8cb183d1940c58dadcd0252a02c026b7984a9fec2c2196a634
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/sbx-templates@sha256:6af5ec5427be2d3e32c564aa66069a80f711b4cc3375af036fa9a5d44a461178
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/sbx-templates@sha256:120aef4b3eb7bdcbd829f80b967fb708ae5b594f5837eab5dac5071886c9b2b9
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/sbx-templates@sha256:63f0909d61227bf9201c4e077f9c07018d9cf9c90c2f87aba5c6a1bed01b1401
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/sbx-templates@sha256:22ff7ea836df7a3ae75aec04fe7c08613c028c34f12bcc9f919df65001b8e089
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/sbx-templates@sha256:9e598ad3a3401763ae55e4a6b10e1b0887fb561e11c79946cf09d500aed82aa9
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/sbx-templates@sha256:6c3964fe0a1feb2214d9bf2ac054080a8f22794d554bf4b37ccedf115ae9e54b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/sbx-templates@sha256:16823217b431ba8261a34347dfd08373df8c3033f536bbcebb7a9d693b0c260e
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/sbx-templates@sha256:51b1c198284cfb3b05ed86993b69d8028fd76f359623ed87483cf075fc459b95
SPDX SBOMhttps://spdx.dev/Documentdhi.io/sbx-templates@sha256:46cb143c397a4bfa89588cae8da246c2f0ef5e1a4f9b430a2f0682f6957fe62b