Sign inSign up
Docker Sandboxes Agent Templates

dhi.io/sbx-templates

Docker SBX Agent Templates (Cursor Agent) (docker, dev)

CIS
linux/amd64
debian 13
Tags:

cursor-agent-2026.10.01-e373342-docker, cursor-agent-docker

Index digest:

sha256:48659848147d8380d74555d8b20fdcde5aa083893e1019e7a97bb9e24a1543de

Manifest digest:

sha256:dffb3954cba7b894a56c479338a39768ecc5c503a92173e3bf800b496505ea5e

Size

631.84 MB

Last pushed

12 hours ago

Vulnerabilities

1
10
12
43
4

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/sbx-templates:cursor-agent-2026.10.01-e373342-docker

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/sbx-templates:cursor-agent-2026.10.01-e373342-docker --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/sbx-templates@sha256:031a3d5a9b3f5e032669c4c7c366e1e883010d6bb540af08b9811ba37b1694a8
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/sbx-templates@sha256:f3b5c050bfa9373b5ee6dafaa989b81806c13973c7ab87ff1db735e8c187901c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/sbx-templates@sha256:a7a90a7be8452e30a6ff232c68c6b24030303389b32dba94639da290b297383b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/sbx-templates@sha256:587bf6d8f5c5cf82a4690c4c99faa24590839997a3f4b1dc5c8d03bbbceab0d1
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/sbx-templates@sha256:a964a79ae0ff6ef3c9546f65689eb42f87702d25de92d36b4768e42bc6b372e8
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/sbx-templates@sha256:5982d99cb91d421917022cbf751098067f345b0c67004245ebf8bca8dcff5b51
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/sbx-templates@sha256:d1f3368b8bad652ced6381a7566c0a1fae88d5657c1687c684fbf50cc611cc5a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/sbx-templates@sha256:b0a01e46b7c7a6b63527dd756a991a8fb68dcf6419c90a950ebc826934d67328
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/sbx-templates@sha256:fa5273ae8cf4546851ee34f897995c09430c758ad38943816e5dddcdaae8a035
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/sbx-templates@sha256:2c1c03653d9f43130b5293557e3e9e1609f7d46368ea902df783921f36af93fd
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/sbx-templates@sha256:b6c99be1eed08342469381e63a9ee8c0770d369ba23d3d4f29a07975cdb502b6
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/sbx-templates@sha256:902cbf5855f5dc603d81f600116aa054eaf0553a02d6b977d0945bda119a87c8
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/sbx-templates@sha256:912e5f36940556f9e7b797a335d660abc470b5e4bca9bc22efe92f0425af88ec
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/sbx-templates@sha256:57fb7680201abe19f24e0f06b428df064fd04df2db3fd28264a70e0f08b12f6f
SPDX SBOMhttps://spdx.dev/Documentdhi.io/sbx-templates@sha256:2d2b1c299495e8a1fff3261073ff4c839566ecd8b7784a9b3eb3e915c9b29cfc