dhi.io/sbx-templates
cursor-agent-2026.09.15-d2fe57e-docker, cursor-agent-docker
sha256:4e0c5bba0cf5055761c88055b3ab39ff43c7aa8ee3d41cc4930a13d638f4fbd1
Manifest digest:sha256:fd07b728578b736983b73202cd348551808574fe00369e8f59a6005d9ef51e93
Size
630.28 MB
Last pushed
6 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/sbx-templates:cursor-agent-2026.09.15-d2fe57e-docker2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/sbx-templates:cursor-agent-2026.09.15-d2fe57e-docker --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/sbx-templates@sha256:958f68451897758fdf4f4d97cbca8bc0c6897c5f4a898d5faf28859507ead0a0 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/sbx-templates@sha256:e3888db5085740d09313113397221d5510bcb6024acf4c4ef34c4f8bb0f6a71e |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/sbx-templates@sha256:a5ad531971466993ca62b8c374f8e1ff2fff7144327bf2c7bcc4476b909a3baa |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/sbx-templates@sha256:94e57da1cc97f1282a400b5ce655186dbe4466976babc573e6d9698104e43b34 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/sbx-templates@sha256:998fa0a5345ebd6d04b4ed8c270b4df121481f59be00afe0718679bf881e3ccf |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/sbx-templates@sha256:521ffb1dc8339c021e5b440c38446f1bff6ec0333b3be33d906d8d372c0d90e6 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/sbx-templates@sha256:93528d748d5c0d7803ab80144a2fc9234e2a3cfe1b55ba3d70ee89aa706a8af2 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/sbx-templates@sha256:70bc94c8e6eb6a226f3277e9c13efe72b1f828e756a8da5f03003156ab5e2cc9 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/sbx-templates@sha256:c47ae535b7ab23abe87f9daa3972385c0f6a055c116e689092c8e29b80525de0 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/sbx-templates@sha256:02d73bf9ad0c3ca1dc766e829141d5eafd0cb775e786dc86cc791e80198e847a |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/sbx-templates@sha256:df6214a5de83669c74a6ad48ae4b3d60ca1a4c30ccaa6ffc6286380ef0f0de6f |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/sbx-templates@sha256:4eb5f78c327715fe1878bc64dedb98bf0ad03598b4ceff2a998e63d43d839db1 |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/sbx-templates@sha256:3d24890a495f7a14251470a2f654a3ec0f1546c8610d09577bdc9954f773a70f |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/sbx-templates@sha256:22826382f9af5d264ac2474a1e420c1876474061913298b2acfc00cfbb78eb49 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/sbx-templates@sha256:9d2260ffbdcdbeb1b8640bedef653af2648b934d10bb6d3cb3c11e8624b6cca6 |