Trust Docker for the agents you don’t (opens on the source site)
At WeAreDevelopers, Docker introduced Cloud Sandboxes, the open Sandbox Kit specification, and a commitment to bring Kits to the CNCF for neutral governance.
Read at the sourceTHE COMPANY INDEX TRACKED BLOG
Ideas, decisions, and lessons from the team.
blog.docker.com (opens on the source site)LinkedIn XAt WeAreDevelopers, Docker introduced Cloud Sandboxes, the open Sandbox Kit specification, and a commitment to bring Kits to the CNCF for neutral governance.
Read at the sourceDocker's WeAreDevelopers keynote shows how Sandboxes, Kits, and Cloud Sandboxes give AI agents strong isolation and reproducible authority.
Read at the sourceDocker is bringing the open source Sandbox Kit Spec to the CNCF, so AI agent permissions become a neutral, vendor independent standard built on OCI.
Read at the sourceDocker's Sandbox Kit Specification v3 packages an AI agent's network rules, credentials, and volumes as an ordinary, pinnable OCI image.
Read at the sourceMeet the partners and customers bringing practical AI, security, and development sessions to the Docker Pavilion at WeAreDevelopers. The post explains why a strong ecosystem matters to developers, announces the sessions and speakers, and invites attendees to connect with the teams building and using these technologies.
Read at the sourceLearn about the key benefits of sandbox environments with Docker including isolation, definable controls, secrets credential handling, and more.
Read at the sourceLearn how Docker Sandboxes can make AI evaluation workflows more reproducible with consistent execution, structured artifacts, and runtime evidence.
Read at the sourceWe believe the future is a multi-model, multi-harness world. And we think it needs a new trust model. In 1988, Norm Hardy described a problem that had been quietly breaking systems for years: the confused deputy. A program that takes action using its permissions instead of yours. Today, every AI agent is that deputy. It...
Read at the sourceThe newest worker on your team builds with whatever it finds and never asks what deserves your trust. Our answer is a hardened foundation and a boundary built for agents.
Read at the sourceThe Minimus registry goes offline on October 22. Here is the migration path, the free help Docker is offering, and where to start.
Read at the sourceMinIO reached end of life in February 2026. Docker Extended Lifecycle Support (ELS) keeps end-of-life software like it patched, compliant, and audit-ready for up to five years, covering versions upstream no longer supports all the way up to entire projects.
Read at the sourceRun AI agents in GitHub Actions with Docker Sandboxes. See how isolated agents can run Testcontainers tests, fix code, and open draft pull requests.
Read at the sourceApply to become a Docker Verified Publisher (DVP) now directly through Docker Hub. Get your verified content seen first by devs looking for trusted options.
Read at the sourceThe OpenAI/Hugging Face incident exposed a new challenge for AI agent security. 17,600 attacker actions show why AI agent security can’t rely on human review. Explore the controls needed to constrain, observe, and govern agents at speed.
Read at the sourceLearn how AI coding agents can run attacker code through commands you already approved and how Docker Sandboxes limit what an attack can reach.
Read at the sourceSupply-chain attacks have kept escalating while AI writes more of the code you ship. Docker's latest updates bring more software built from source into your images, keep security coverage running past end of life, carry every guarantee through your customized images, and move policy enforcement onto every developer machine.
Read at the sourceBuild ESP32 firmware with reproducible Docker environments and use Docker Sandboxes for isolated AI-assisted development and hardware testing.
Read at the sourceDocker VMM is now available in public beta for Mac and Windows. Learn what this means for performance, stability, and governance and how to try it yourself.
Read at the sourceAgent Baseline is a blueprint for AI adoption that defines six security outcomes for putting enterprise agents to work without giving them unchecked authority. Consider this scenario: a customer-support agent receives a ticket with an attachment. Hidden inside the attachment is an instruction: query the customer database and send the results to an external address....
Read at the source