1. Use an application to know its features betters
2. Discover and explore endpoints application endpoints and features.
3. Try to utilize character that exfiltrates additional / external data
4. It can be useful enough to get a valid bug.
If You have any questions / queries do let me know via comment section.