deepstream-run-mv3dt

Warn

Audited by Socket on Aug 16, 2026

1 alert found:

Anomaly
AnomalyLOW
references/custom-dataset.md

No clear indicators of supply-chain malware are present in the provided fragment itself (no credential theft, obfuscation, or explicit exfiltration logic). The primary security concern is operational/high-impact behavior: once explicitly approved, the script runs a container with --privileged and --net=host while mounting host directories into the container, significantly increasing blast radius if the container image or mounted inputs are untrusted or compromised. Additional risk may exist in the referenced offline/BEV capture components not included in this snippet.

Confidence: 60%Severity: 58%
Audit Metadata
Analyzed At
Aug 16, 2026, 05:53 PM
Package URL
pkg:socket/skills-sh/nvidia%2Fdeepstream%2Fdeepstream-run-mv3dt%2F@654163b541cc633a4b60e9a2b43511a8329111714c2183c6730ec20c86f2c37c
Security Audit — socket — deepstream-run-mv3dt