Sign inSign up
Docker Sandboxes Agent Templates

dhi.io/sbx-templates

Docker SBX Agent Templates (Cursor Agent) (docker, dev)

CIS
linux/amd64
debian 13
Tags:

cursor-agent-2026.09.10-fd3934a-docker, cursor-agent-docker

Index digest:

sha256:9af731ee5d333d7b02858a529496abc10665487887231d4a4437c66dfe46c70e

Manifest digest:

sha256:c9dc52fba590bb9a9123cea8076bad27dcc091aa930f19fd3f6528eab515614a

Size

627.97 MB

Last pushed

8 hours ago

Vulnerabilities

0
1
2
44
5

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/sbx-templates:cursor-agent-2026.09.10-fd3934a-docker

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/sbx-templates:cursor-agent-2026.09.10-fd3934a-docker --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/sbx-templates@sha256:93c4face9d045f8f87279dc1421fd0710f7bc3651be939a0d05c1534660f2eaf
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/sbx-templates@sha256:195a5b4b23b37a6766d4be4c8a8d8e5b940baf00b45b122be016df631e4bf6ac
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/sbx-templates@sha256:32e1a4d230d924306cf7a5a606ee1cd2ebef6e90fb0f8eff4e3f241f38de838c
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/sbx-templates@sha256:71a587eb45fa56ff214a4da36909e3b3a4ca08e406bcfab82fc613f486212039
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/sbx-templates@sha256:dcd108d7923de5c44344fc8d9c44a215c48b5ea804fac0720b30761b6ab30faa
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/sbx-templates@sha256:82317106a3d45e4df2321f0213d99d89fec7f6ea83f7f8b6655b6cf0bfeda5fe
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/sbx-templates@sha256:59bc2f9f4d887f00f205c4dc48cff92d3fc50ec98bfa28114e176f6a71313dfe
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/sbx-templates@sha256:172ae113f144680fe7ac6e20efb068e1ce9c0a0ceea66b0fb549c9aa6b98e7e2
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/sbx-templates@sha256:3bd91973db1e62bccdf35e8e4eafd8afaacdb26584188d0ac8cc70cc6407fb75
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/sbx-templates@sha256:13f73be2ac2ae1a65426e3a70d58806002953b0da31b985fbfae4cf2cf74400f
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/sbx-templates@sha256:e5e3272250f6681fc2c780dfe9d6c0614e4339c5942e8d05b7202d104aed4647
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/sbx-templates@sha256:a0a506cf6e2c1d937e727acf723b718fae4795e737501a330ee1c149169c29bc
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/sbx-templates@sha256:a5616135f57b34af903aaab08ca5af0ab4fb8face1353abf69c06f646bb1d4aa
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/sbx-templates@sha256:d1ae2eea659a64ba96df40f912358a8fb14ba5ed197d71b44ac5462b8718dfae
SPDX SBOMhttps://spdx.dev/Documentdhi.io/sbx-templates@sha256:bc9350d567f42cf1288f5f22af097a5da51fffbc2c46fd3b3f793595fa00997f