Skip to content

Sitemap ​

Sitemap displays all hosts and paths discovered through captured traffic as an interactive node graph, giving you a structural view of the application under test.

Sitemap in dark modeSitemap in light mode

The Node Graph ​

The default view renders hosts as top-level domain nodes with path segments as child nodes. The graph updates as new traffic is captured.

  • Each host node shows the domain or IP, total request count, and the set of HTTP methods observed.
  • Each path node shows the path segment, status codes returned, and the request count for that path.
  • Nodes with child paths expand on click. Leaf nodes represent the deepest captured path segments.

Pan and zoom with mouse or trackpad. Use the Reset view button to return to the default layout.

Selecting a Node ​

Click any host or path node to open its detail panel on the right.

The detail panel shows:

  • Full URL for the selected path.
  • HTTP methods seen at this path.
  • Port and request count.
  • Tracked parameter names, their sources, occurrence counts, and example values.

Use View in History to inspect matching captured requests. Copy params copies the parameter names as a wordlist. Send to Fuzzer creates an Automate template using the endpoint and its first tracked parameter; review the resulting request before running it.

Context Menu Actions ​

Right-click any path node to open its context menu.

ActionDescription
HTTP HistoryOpens captured traffic for the selected host/path.
Search this pathOpens Search for the selected path.
Copy URLCopies the endpoint URL.
Add host to scopeAdds the host to scope configuration.
Discover from hereOpens the Content Discovery panel pre-filled with this path's host and base path.

Filtering the Sitemap ​

Use the Filter hosts input to show only nodes matching a hostname substring. The graph redraws to include only matching host nodes and their children.

Examples:

  • api. - shows hosts containing api.
  • staging - shows only hosts containing staging
  • Leave the field empty to show all hosts.

Content Discovery ​

The Discover button at the top of the Sitemap panel opens the Content Discovery panel. This panel sends probing requests to find paths not captured through passive traffic.

When you use Discover from here from a path node's context menu, the discovery panel opens with the host and base path pre-filled. You can then choose a wordlist and start discovery without retyping the target.

See Content Discovery for configuration details.

Proprietary software. All rights reserved.