Run Devin CLI non-interactively in CI. Hardened base, runtime credentials.
866
Run the official Devin CLI safely and non-interactively in containers, CI pipelines, and Docker Sandboxes. Give it a prompt, mount a workspace and credentials, and receive a plain response that the next job can consume.
| Tag | Contents |
|---|---|
latest, X.Y.Z, X.Y, X | CI image on Docker Hardened Debian 13 (Trixie) with a non-interactive entrypoint for pipelines. |
Images are published for linux/amd64 and linux/arm64 with SBOM and provenance attestations. The former sandbox and sandbox-0.2.x tags are frozen at 0.2.1 and no longer built: Docker Sandboxes now ships a built-in Devin agent.
docker run --rm \
--volume "$PWD:/workspace" \
--volume "$HOME/.local/share/devin/credentials.toml:/run/secrets/credentials.toml:ro" \
--env DEVIN_CREDENTIALS_FILE=/run/secrets/credentials.toml \
--env 'DEVIN_PROMPT=Summarize this repository.' \
junior/devin-in-a-box:latest
Authentication is mounted only at runtime; credentials are never baked into the image. Model selection defaults to swe-1.6 and can be overridden with DEVIN_MODEL.
Docker Sandboxes includes a built-in devin agent (sbx run devin ~/src/your-repo) that keeps your Devin key on the host, so this image is not needed there. Each release also publishes a signed kit with this project's defaults for that agent: junior/devin-in-a-box-kit. See the Docker Sandboxes section of the README.
MIT licensed. Devin is a product of Cognition; this community project is not affiliated with or endorsed by Cognition.
Content type
Image
Digest
sha256:a0bebed2a…
Size
134.9 MB
Last updated
5 days ago
docker pull junior/devin-in-a-box