Sign inSign up
Docker Sandboxes Agent Templates

dhi.io/sbx-templates

Docker SBX Agent Templates (Cursor Agent) (dev)

CIS
linux/amd64
debian 13
Tags:

cursor-agent, cursor-agent-2026.09.15-d2fe57e

Index digest:

sha256:29ddad60cf8ceae498d4782f3b5f561cdf1b24e170f023e648f4920948d87e65

Manifest digest:

sha256:aa864276750c7a2d7f121688161475005e23cb512023baf96997a73a5f3d0d07

Size

529.53 MB

Last pushed

4 hours ago

Vulnerabilities

0
1
3
40
4

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/sbx-templates:cursor-agent

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/sbx-templates:cursor-agent --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/sbx-templates@sha256:317511043e4d2d38453a8b223bb8f3dc0622725312d6e8a6ab7772f7c2220582
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/sbx-templates@sha256:0e5a6eddf9ef8d3b7f88da52da42bdd38e1d438cabf6f4ea40d15023d2ec2b99
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/sbx-templates@sha256:7d8765e51cedaf1dcb9f45b95a30e2c549a9542b79afc8f79fff27efb5736054
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/sbx-templates@sha256:dc48ef63105e1ad974ee0e82da57ff90b56922640b47979e70296cd4e2668d52
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/sbx-templates@sha256:a9fb9529b6ce034c13cbab621a3f0140ea1eff2a46b6342f95152a5d9a5c6727
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/sbx-templates@sha256:ffecbbd56a5df68d3c4fa8567099a2661132c279227a3531974171242248cbbb
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/sbx-templates@sha256:7651aa7be019f3df428cf235b83dab2168f11e649ff4d18f5e6e52016f7f79df
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/sbx-templates@sha256:af1137a4a22fb73f5d3a888ea6e530dcac0dd8462a5c657e808464d0890483ff
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/sbx-templates@sha256:1d64f578b400015ddf306b9b73b9e965c58d8fc43d6ea59d4d9c1a8a1cd560d5
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/sbx-templates@sha256:74b62f0fa3d568e36e9dc1b26bf073b9a25c7073730bae89b7f1fd4d2eeb8e5a
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/sbx-templates@sha256:92dbbdaaeca931675fc2ce78926df55881555e0dda0224908fecb878bb2b2c65
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/sbx-templates@sha256:8d6ca2ced0929135aa3aef0aea8108c83c1a7096868358adaacb5619b8f860fa
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/sbx-templates@sha256:b0eea8570d1a6e1d4937f82e6c2f2d639bd61e3f6e28b614d52ad8036c222cc1
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/sbx-templates@sha256:db1828eb89e3e0830a2867d2ec2b265a5a1b9e970fb94d983f7c890d16869949
SPDX SBOMhttps://spdx.dev/Documentdhi.io/sbx-templates@sha256:dae6aef3ff30d1b679cbd3792f81d09ae32d46c8d8ad31b3fe1f1b9c47aa6030