dhi.io/sbx-templates
claude-code-2-minimal, claude-code-2.1-minimal, claude-code-2.1.272-minimal, claude-code-minimal
sha256:e9c406ec62371548e3f7f8106dd7eeb7248de7f5afb94438390656ce6e0d8e48
Manifest digest:sha256:5ba2cf3de87df50c4f09057cf2ea838304666c76a74d0cb1b516d20ff73c4b59
Size
176.94 MB
Last pushed
7 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/sbx-templates:claude-code-2-minimal2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/sbx-templates:claude-code-2-minimal --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/sbx-templates@sha256:aac6add9829ae49db165e7634f7d5b288038a958eb6447fb517d868ef7aa4d20 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/sbx-templates@sha256:6d46a4ad7e9f9176115dfe14fe6db7b487fc35a81d2f355b34671e14cd5da3ee |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/sbx-templates@sha256:5fe15237d9bbc75c43a25d6602012fd9a09ab79a69fd1703fc59e653b9122ab6 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/sbx-templates@sha256:2075d7c3dc6595f08f1a8161f08ec0930b0c731f39881cc44f4b24f647e25098 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/sbx-templates@sha256:4f445fb35df1d528481dd0653582553ff67a0ce2d2909b29af626fe0a29c9274 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/sbx-templates@sha256:7dc7084f2434b0a92eff296e71fe288f98ef3d52ab3a79f106010b4602b3bef5 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/sbx-templates@sha256:ef626935c8233c8eb08a90593df873e15504111be471bf0ac6aa45b1dccdd5d2 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/sbx-templates@sha256:c7e5ac207145505281ba786fdecd379c419e9f32164d5e502d02c2a37e8d6560 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/sbx-templates@sha256:7630da53c2b230f1827868d69d195ef87b40ca7f52daf4304717eff31e44b29d |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/sbx-templates@sha256:ca4d615b845f3e9f98591c59d213b875d7ff832ab50fbaaf9f4296a858e34089 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/sbx-templates@sha256:ca39029a343e48f059277e733b138efeb6b335853c6d9a254a0cc1f04af235f2 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/sbx-templates@sha256:9d7a1b28222d51bf664f07864924a10fb8dda7b1fe4e9886eb7309b94142c34b |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/sbx-templates@sha256:08e59909806916ac97bafbccfc7dad9dc659c00dc3de89050bcbc429c360255c |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/sbx-templates@sha256:bfe70ab264d111e0e56a0d2d2505cc35ff3b5387387f0809bb30ae6fe2f52404 |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/sbx-templates@sha256:f46c0e596cecbc8c7b37fe1d9515d6582d076de78279b6066ef085c552024a0b |