Sign inSign up
Docker Sandboxes Agent Templates

dhi.io/sbx-templates

Docker Sandbox Agent Templates (minimal, dev)

CIS
linux/amd64
debian 13
Tags:

claude-code-2-minimal, claude-code-2.1-minimal, claude-code-2.1.272-minimal, claude-code-minimal

Index digest:

sha256:e9c406ec62371548e3f7f8106dd7eeb7248de7f5afb94438390656ce6e0d8e48

Manifest digest:

sha256:5ba2cf3de87df50c4f09057cf2ea838304666c76a74d0cb1b516d20ff73c4b59

Size

176.94 MB

Last pushed

7 hours ago

Vulnerabilities

0
1
0
13
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/sbx-templates:claude-code-2-minimal

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/sbx-templates:claude-code-2-minimal --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/sbx-templates@sha256:aac6add9829ae49db165e7634f7d5b288038a958eb6447fb517d868ef7aa4d20
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/sbx-templates@sha256:6d46a4ad7e9f9176115dfe14fe6db7b487fc35a81d2f355b34671e14cd5da3ee
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/sbx-templates@sha256:5fe15237d9bbc75c43a25d6602012fd9a09ab79a69fd1703fc59e653b9122ab6
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/sbx-templates@sha256:2075d7c3dc6595f08f1a8161f08ec0930b0c731f39881cc44f4b24f647e25098
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/sbx-templates@sha256:4f445fb35df1d528481dd0653582553ff67a0ce2d2909b29af626fe0a29c9274
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/sbx-templates@sha256:7dc7084f2434b0a92eff296e71fe288f98ef3d52ab3a79f106010b4602b3bef5
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/sbx-templates@sha256:ef626935c8233c8eb08a90593df873e15504111be471bf0ac6aa45b1dccdd5d2
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/sbx-templates@sha256:c7e5ac207145505281ba786fdecd379c419e9f32164d5e502d02c2a37e8d6560
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/sbx-templates@sha256:7630da53c2b230f1827868d69d195ef87b40ca7f52daf4304717eff31e44b29d
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/sbx-templates@sha256:ca4d615b845f3e9f98591c59d213b875d7ff832ab50fbaaf9f4296a858e34089
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/sbx-templates@sha256:ca39029a343e48f059277e733b138efeb6b335853c6d9a254a0cc1f04af235f2
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/sbx-templates@sha256:9d7a1b28222d51bf664f07864924a10fb8dda7b1fe4e9886eb7309b94142c34b
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/sbx-templates@sha256:08e59909806916ac97bafbccfc7dad9dc659c00dc3de89050bcbc429c360255c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/sbx-templates@sha256:bfe70ab264d111e0e56a0d2d2505cc35ff3b5387387f0809bb30ae6fe2f52404
SPDX SBOMhttps://spdx.dev/Documentdhi.io/sbx-templates@sha256:f46c0e596cecbc8c7b37fe1d9515d6582d076de78279b6066ef085c552024a0b