Sign inSign up
Docker Sandboxes Agent Templates

dhi.io/sbx-templates

Docker SBX Agent Templates (Claude Code) (docker, dev)

CIS
linux/amd64
debian 13
Tags:

claude-code-2-docker, claude-code-2.1-docker, claude-code-2.1.278-docker, claude-code-docker

Index digest:

sha256:8ba82d4b34f59a7f3cd23ebff9bf79a25627140c82fdb8bf16d3f58d8b3e0bc5

Manifest digest:

sha256:6cbeae50f55c9870c6bfa3b19676969fe06fe4bf8daef06509c4d3b41ba7aa4b

Size

572.86 MB

Last pushed

9 hours ago

Vulnerabilities

0
2
4
40
4

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/sbx-templates:claude-code-2-docker

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/sbx-templates:claude-code-2-docker --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/sbx-templates@sha256:fb172c1addd65bacc6727712687509ea82cda0f71fa14eb7684a16201f9e199e
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/sbx-templates@sha256:88d10258e059a10d191a12eb14f93d15014ef844b42ff8b49c315f1f80c83233
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/sbx-templates@sha256:3607ce6a35a55c4c1aa288a6588e6f7566398f87b7cb5cda1984f6bc7c4f5998
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/sbx-templates@sha256:e6e5c5cb4053a7842b54f70428264689b3a935c1ef5a8b1a0e982482a9e7e170
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/sbx-templates@sha256:b4582920ddd2c7a1275953dcfd3db982419b6c9a974b85931a901b4d1b0541cd
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/sbx-templates@sha256:d8a18026b4e2a223edf73c9310be358ba3f5a37270ffd51454524354125a6241
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/sbx-templates@sha256:f9d794dd06ddf63a0f1ae26b26f013bb75474a8419b93ef730c122d5ad976e3e
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/sbx-templates@sha256:42b20464f4845a3b1385020e05e05e9a4479484ac81366133f69faf6c9f07c13
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/sbx-templates@sha256:121713e801f234dba121124b8f025d3721c0994afa03dea1ba87067480edaaca
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/sbx-templates@sha256:b547626f44ca5e586cccc5ce775d8a6f8e51bbaa5d3757021d9cb438c92a7c99
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/sbx-templates@sha256:d8d555e6a9e0edf0f4aabbe74c63e3f9528d6487ce105b9ca0d41881a2db84f5
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/sbx-templates@sha256:4fa4d663e5dcfe055ac49a2bf9372b8991e47c0291b31045af0e0df9356b55b5
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/sbx-templates@sha256:5ccaff9dc68b294a9f0f71c78cf554f99b34b01a6b5b3fe5d41cd916870d0a29
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/sbx-templates@sha256:1514f1cf2834a9506453b0b57c46f389993a684f68dee819722622ce8e391c84
SPDX SBOMhttps://spdx.dev/Documentdhi.io/sbx-templates@sha256:8ed07369855d9349c911883a91cb7f5f319a7811dd77c68c78a6fa005267b2b2