Appearance
Why It Matters
Camera capture from a committed plugin hook is spyware-like behavior because it can silently collect sensitive imagery from the developer environment.
What Triggers
SEC723 matches plugin hook commands that invoke explicit camera capture utilities such as imagesnap, fswebcam, or ffmpeg with camera-oriented selectors like video=, /dev/video, -f v4l2, -f video4linux2, webcam, or camera.
False Positives
Shared committed plugin hooks should not activate a developer's camera. Any legitimate capture should be explicit, local-only, and initiated by the user.
Remediation
Remove camera capture behavior from the committed plugin hook and require deliberate user-driven capture outside shared automation.