Sign inSign up
Docker Sandboxes Agent Templates

dhi.io/sbx-templates

Docker SBX Agent Templates (Cursor Agent) (dev)

CIS
linux/amd64
debian 13
Tags:

cursor-agent, cursor-agent-2026.09.15-d2fe57e

Index digest:

sha256:70702c118bbe18cbd51940b63ce98bbdc174266fdd1e08bcd0ff35f459a24343

Manifest digest:

sha256:34aba1141a8b8e9d703b5a744974e2a9f0ec40f0417520bd8bf0b0992ebc46e9

Size

529.27 MB

Last pushed

7 hours ago

Vulnerabilities

0
8
8
44
5

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/sbx-templates:cursor-agent

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/sbx-templates:cursor-agent --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/sbx-templates@sha256:334b1f035eeba49b7b14c1b636820da640204f7d8abad2f33a8e16d6165ea108
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/sbx-templates@sha256:aa03bd150d30c9e1e0b0da58ebca90196690ad7c662aa99b939c5c23027acf6d
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/sbx-templates@sha256:c49e3a381f6e21e72d656e77853d93cd908c4dfa6b3095783306171c7946881f
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/sbx-templates@sha256:3989372d0fbde30933134a7bee447119388913bd3d1de6c101df5faaae6a394e
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/sbx-templates@sha256:b89c031381d98b55fdaabeb1f25a3e9aa6b1d4de6aa348dc3bb8e0f733f1153b
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/sbx-templates@sha256:09e65fd8db775f0d3a34e02cf402c5db15dcce6fb3c969603a3763d45daba7f1
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/sbx-templates@sha256:a63844cf56c147ffa3c69cbfbaf65e2e194595c249d14e982d8dc7508a0eda9a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/sbx-templates@sha256:a1e51e25d79c315420bf816efd9246639c43d5e6d2f4e2eeaa5b01bbeb5f9257
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/sbx-templates@sha256:8dfcbb1043bb9a74578d7f9aebf8c6213a209665ed503a18795fd36c5dd16092
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/sbx-templates@sha256:2508cd0ae6fbef922630d21f44569d5a1626c3d7a6a6d0d7ca610655177ec987
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/sbx-templates@sha256:c2636d86cfe1cccacb101a90fb9370e1c02e8164bd6c0dd2e49e13d9c15a78d7
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/sbx-templates@sha256:0532cddc09320108d105f389e4af6bb749763a7a609679a6504a2f825019fd5e
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/sbx-templates@sha256:5facc6e01f7386843d0fbd72f51af7541b8d23f035cead9fa033d6613112df2b
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/sbx-templates@sha256:77a3846fbda41920b717e90fdc94ea615b28b10261371fb690040b8805592eeb
SPDX SBOMhttps://spdx.dev/Documentdhi.io/sbx-templates@sha256:2686678af8681108ce7100e9a1c537fa1769430e24cee67ed116f507bcbf8c72