amc-run-video-calibration
Warn
Audited by Socket on Jul 15, 2026
1 alert found:
AnomalyAnomalyscripts/run_video_calibration.py
LOWAnomalyLOW
scripts/run_video_calibration.py
No clear evidence of embedded malware (no obfuscation, no eval/exec, no process/system command execution, no credential theft). However, the module can perform significant data exfiltration because it uploads arbitrary local files (videos and optional config/alignment/layout/GT zip) to a destination URL entirely determined by the BASE_URL environment variable. If BASE_URL is attacker-controlled, this becomes a high-impact exfiltration vector. Otherwise, in a trusted environment it appears to be a normal remote calibration orchestration script.
Confidence: 66%Severity: 55%
Audit Metadata