Sign inSign up
Docker Sandboxes Agent Templates

dhi.io/sbx-templates

Docker SBX Agent Templates (Cursor Agent) (docker, dev)

CIS
linux/amd64
debian 13
Tags:

cursor-agent-2026.09.18-9a7762b-docker, cursor-agent-docker

Index digest:

sha256:e89b06dba99141f88b30666869d04eda84bd0b8b09da9e8bd441d105ed0eb216

Manifest digest:

sha256:33629d7a7c1620714562536cac967a79ef51420b500f4f4ee5c0f480bab50070

Size

630.54 MB

Last pushed

12 hours ago

Vulnerabilities

0
1
4
40
5

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/sbx-templates:cursor-agent-2026.09.18-9a7762b-docker

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/sbx-templates:cursor-agent-2026.09.18-9a7762b-docker --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/sbx-templates@sha256:37be4a35839bff7bd845686097411290c3844c18b8b1f99cc1d59fdde111c677
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/sbx-templates@sha256:b2a15d2b99714bbb2150878dc1588395b633a418e17cf5ee67f4a7e1b4d51451
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/sbx-templates@sha256:bcc2db929fe307a792d5a03a35a08b44bbaa3705deb70f01290a1f845446c71f
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/sbx-templates@sha256:dd7384df366f23faa008d949a20e4cf0d8699d3de0ff85e326ed55105e8dc76a
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/sbx-templates@sha256:0d3aed16d68207252c56d789dad439c0cba0dbf022319912f3b12cad6b7d4ec6
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/sbx-templates@sha256:c60806c5f269287cd38e96bc93c32c0a6a03be5f9ba3667e3453a540f167731b
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/sbx-templates@sha256:273ee9f57d53a721ec575f92c2ebdbc0748a76130c41086cb2e4a4e20d7e3cae
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/sbx-templates@sha256:3d00c75cddc825f184ccf7d6f68e60bcecf125509720803ce5fba41353fc672e
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/sbx-templates@sha256:5065c1cf7ca76dc40578534c050bbc47377e258e6e4bd16d4dd0c7fff1699b4e
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/sbx-templates@sha256:773d4ba4101c20960a9ccd6b379d1d8fb4b93428d4c5f6ee89a32c317e11b2e6
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/sbx-templates@sha256:f5a3d57533ff07dea65c23591dab48f3a309bfc8910bd645549bf13599709412
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/sbx-templates@sha256:201b32aa4cf21086ae70726901bdddee19ae369b4d636b552d90283eec7c4c32
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/sbx-templates@sha256:84e19de712e80e03c5272b35d64ee8f2c4c4061a8fdecd81a75c260fc9b5b81e
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/sbx-templates@sha256:842155af3a656c759cc8e1dd61173ddb2db7e2939a32ec1a9a920bda92e809dd
SPDX SBOMhttps://spdx.dev/Documentdhi.io/sbx-templates@sha256:e9ac8b1bd48fc5d2edde46ed3ff2a4e6083b39ada77c678497b2d0494c1f9aa5