double
Warn
Audited by Socket on Apr 21, 2026
1 alert found:
AnomalyAnomalySKILL.md
LOWAnomalyLOW
SKILL.md
SUSPICIOUS. The skill is broadly coherent with its stated purpose and uses an official npm-published Membrane CLI, so it does not look overtly malicious. However, it requires trusting Membrane as a broker for authentication and all Double operations, uses an unpinned global CLI install, and can create/run account-changing actions through that intermediary service, which raises medium security risk.
Confidence: 85%Severity: 52%
Audit Metadata