Sign inSign up
Docker Sandboxes Agent Templates

dhi.io/sbx-templates

Docker SBX Agent Templates (Cursor Agent) (docker, dev)

CIS
linux/amd64
debian 13
Tags:

cursor-agent-2026.09.15-d2fe57e-docker, cursor-agent-docker

Index digest:

sha256:4e0c5bba0cf5055761c88055b3ab39ff43c7aa8ee3d41cc4930a13d638f4fbd1

Manifest digest:

sha256:fd07b728578b736983b73202cd348551808574fe00369e8f59a6005d9ef51e93

Size

630.28 MB

Last pushed

6 hours ago

Vulnerabilities

0
8
9
44
5

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/sbx-templates:cursor-agent-2026.09.15-d2fe57e-docker

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/sbx-templates:cursor-agent-2026.09.15-d2fe57e-docker --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/sbx-templates@sha256:958f68451897758fdf4f4d97cbca8bc0c6897c5f4a898d5faf28859507ead0a0
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/sbx-templates@sha256:e3888db5085740d09313113397221d5510bcb6024acf4c4ef34c4f8bb0f6a71e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/sbx-templates@sha256:a5ad531971466993ca62b8c374f8e1ff2fff7144327bf2c7bcc4476b909a3baa
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/sbx-templates@sha256:94e57da1cc97f1282a400b5ce655186dbe4466976babc573e6d9698104e43b34
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/sbx-templates@sha256:998fa0a5345ebd6d04b4ed8c270b4df121481f59be00afe0718679bf881e3ccf
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/sbx-templates@sha256:521ffb1dc8339c021e5b440c38446f1bff6ec0333b3be33d906d8d372c0d90e6
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/sbx-templates@sha256:93528d748d5c0d7803ab80144a2fc9234e2a3cfe1b55ba3d70ee89aa706a8af2
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/sbx-templates@sha256:70bc94c8e6eb6a226f3277e9c13efe72b1f828e756a8da5f03003156ab5e2cc9
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/sbx-templates@sha256:c47ae535b7ab23abe87f9daa3972385c0f6a055c116e689092c8e29b80525de0
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/sbx-templates@sha256:02d73bf9ad0c3ca1dc766e829141d5eafd0cb775e786dc86cc791e80198e847a
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/sbx-templates@sha256:df6214a5de83669c74a6ad48ae4b3d60ca1a4c30ccaa6ffc6286380ef0f0de6f
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/sbx-templates@sha256:4eb5f78c327715fe1878bc64dedb98bf0ad03598b4ceff2a998e63d43d839db1
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/sbx-templates@sha256:3d24890a495f7a14251470a2f654a3ec0f1546c8610d09577bdc9954f773a70f
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/sbx-templates@sha256:22826382f9af5d264ac2474a1e420c1876474061913298b2acfc00cfbb78eb49
SPDX SBOMhttps://spdx.dev/Documentdhi.io/sbx-templates@sha256:9d2260ffbdcdbeb1b8640bedef653af2648b934d10bb6d3cb3c11e8624b6cca6