adyen

Warn

Audited by Socket on Apr 21, 2026

1 alert found:

Anomaly
AnomalyLOW
SKILL.md

SUSPICIOUS. The skill is largely coherent for an Adyen integration and uses an official-looking first-party CLI from npm, but it routes all Adyen access through Membrane rather than directly to Adyen. That intermediary data flow and the unpinned CLI execution path create moderate security risk, though there is no clear evidence of malware or deceptive credential harvesting.

Confidence: 85%Severity: 53%
Audit Metadata
Analyzed At
Apr 21, 2026, 05:40 PM
Package URL
pkg:socket/skills-sh/membranedev%2Fapplication-skills%2Fadyen%2F@f9c19c073c30669b58708ed18b8fe9d8d6c3a5a0