How to Find Sinks and Sources of a Web Application
Tracy, a tool designed to assist with finding all sinks and sources of a web application and display these results in a digestible manner, can find different sources and sinks of the application. It was developed to work in a similar manner as DOM Inspector, as it is based on a live DOM.
Tracy supports the following web applications:
As soon as the extension is installed, you can start its process. The application needs to be loaded and opened in order to be scanned, however, this is usually a very short process, as the application does not need to be opened in a way that prevents the extension from functioning properly.