Sign inSign up

docker/sbx-kit-devin-mixin:latest

Multi-platform
Manifest digest

sha256:02d2c712bf40b67f632c0312c6fe85380d056db1eeb54b1af3d8a86133bdd544

Last pushed

9 days by cdupuis

Type

Sandbox Kit

Manifest digest

sha256:02d2c712bf40b67f632c0312c6fe85380d056db1eeb54b1af3d8a86133bdd544

yaml
schemaVersion: "3"
displayName: Devin (mixin)
description: Devin CLI by Cognition as a mixin -- the CLI and its auth wrapper in an overlay, with the passthrough Devin credential, its rendered credentials.toml, and the config and MCP seeds. Layer it onto a shell base and run `devin`.
sourceUrl: https://devin.ai
version: 3000.10.31
kind: mixin
provides:
    - [email protected]
capabilities:
    - type: com.docker.sandbox/network-policy@1
      config:
        runtime:
            allow:
                - '*.devin.ai'
                - api.devin.ai
                - windsurf.com
                - server.codeium.com
                - unleash.codeium.com
    - type: com.docker.sandbox/credential@1
      optional: true
      config:
        apiKey:
            inject:
                - domain: server.codeium.com
                  format: Bearer %s
                  header: Authorization
                - domain: api.devin.ai
                  format: Bearer %s
                  header: Authorization
        oauth:
            credentialFile:
                format: toml
                path: ~/.local/share/devin/credentials.toml
                structure:
                    api_server_url: https://server.codeium.com
                    devin_api_url: https://api.devin.ai
                    devin_webapp_host: app.devin.ai
                    windsurf_api_key: '{{.PrimaryApiKey}}'
            passthrough: true
            resourceHosts:
                - server.codeium.com
                - api.devin.ai
            responseFields:
                accessToken: token
                refreshToken: token
            tokenEndpoint:
                host: api.devin.ai
                path: /auth/cli/token
        phase: runtime
        service: devin
      description: Devin account credential captured during in-sandbox login
    - type: com.docker.sandbox/lifecycle@1
      config:
        files:
            - content: '{"auto_update": false}'
              description: Disable Devin background updates
              overwrite: false
              path: /home/agent/.config/devin/config.json
        startup:
            - command: |
                set -e
                [ -n "$MCP_GATEWAY_URL" ] || exit 0
                mkdir -p "$HOME/.config/devin"
                cat > "$HOME/.config/devin/mcp_config.json" <<EOF
                {
                  "mcpServers": {
                    "mcp-gateway": {
                      "url": "$MCP_GATEWAY_URL",
                      "transport": "http",
                      "headers": {
                        "Authorization": "Bearer $MCP_SENTINEL_TOKEN_NAME"
                      }
                    }
                  }
                }
                EOF
              description: Register the sandbox MCP gateway
              env:
                - MCP_GATEWAY_URL
                - MCP_SENTINEL_TOKEN_NAME
              user: agent
    - type: com.docker.sandbox/agent-context@1
      config:
        contentFile: /usr/share/sandbox/kit/devin-mixin/devin-mixin-context.md
args:
    version:
        default: 3000.10.31
        description: Devin CLI release to install
        pattern: ^[0-9]+\.[0-9]+\.[0-9]+(-[0-9]+)?$
        buildArg: DEVIN_VERSION