Sign inSign up
Docker Sandboxes Agent Templates

dhi.io/sbx-templates

Docker SBX Agent Templates (Cursor Agent) (dev)

CIS
linux/amd64
debian 13
Tags:

cursor-agent, cursor-agent-2026.09.10-fd3934a

Index digest:

sha256:cfeb6fe53868a76c205b5cc6c8b025417a6f9771d2ef9f3cd89484bbdd2f4bf8

Manifest digest:

sha256:954f383922c3fa096760cd399040e3dae925598ad6b9f977358d5f6659974d0b

Size

526.90 MB

Last pushed

6 hours ago

Vulnerabilities

0
1
1
44
5

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/sbx-templates:cursor-agent

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/sbx-templates:cursor-agent --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/sbx-templates@sha256:1583690aff083a485d2df0d9b7dc8f678a662cc064a243332e54b79a229bcb47
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/sbx-templates@sha256:6dad7d3a92f2a907d8a811624cb74ecd7325250253df08731cff025ee9d0f3d3
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/sbx-templates@sha256:af58b978fb3901c699fd3435b2c0119e64881ca0fafb159e822ef5b448aa6c96
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/sbx-templates@sha256:2c3ae6c7e88633a811ec7fcae02217f950bea5833121e8370217bc28a21b7b2d
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/sbx-templates@sha256:460df46b57cb3c20ef29936570b565c90dc7132bcbf689b7c29d594b1b518b55
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/sbx-templates@sha256:e9cf28f848146b8b23e4a08d8c6e1a2c42c49256a863b7e66f5f1fe3079414d8
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/sbx-templates@sha256:829a5db3b6b4c13972856fb28d99db96fcb3037bd901a0dab6c14225e656184a
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/sbx-templates@sha256:05a3a6345185edee52568adea22b7910e11783775ec422c08201c08aca6a26b2
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/sbx-templates@sha256:ddec21e105130fa47c88db963827c437269a9a23d9456c44282be5517ab6167b
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/sbx-templates@sha256:81aed622524154a1da23f4ee66378409e45afa8b5efd9ac5371202ad59558109
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/sbx-templates@sha256:a55cc89d784c4196aa2a2563d52366872638bae0dfdc3d77e11bb5f4a452f38b
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/sbx-templates@sha256:bd5ad4a6c10f1842fa8abe81a2d59dbf1c7c977d21886499da7319b4967b5324
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/sbx-templates@sha256:cf279fb99a552c2fce406abd171d22891f3368aca2fe774736d9acaab8bc44e6
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/sbx-templates@sha256:9cda84f5843d69e82622223b1721de2c8605ae40a3f7b2de591e7f184674bfc4
SPDX SBOMhttps://spdx.dev/Documentdhi.io/sbx-templates@sha256:566415d30fa5e882eadd68b80075507195afb7e66367777a4b3fca53fb72a6ed