friendica-github/mod/manage.php

191 lines
4.5 KiB
PHP
Raw Normal View History

2011-03-01 20:36:24 -08:00
<?php
2018-01-21 13:33:59 -05:00
/**
* @file mod/manage.php
*/
use Friendica\App;
use Friendica\Core\Authentication;
use Friendica\Core\Addon;
2018-01-21 13:33:59 -05:00
use Friendica\Core\L10n;
use Friendica\Core\Renderer;
2017-08-26 06:04:21 +00:00
use Friendica\Core\System;
use Friendica\Database\DBA;
2018-01-21 13:33:59 -05:00
require_once "include/text.php";
function manage_post(App $a) {
2011-03-01 20:36:24 -08:00
if (! local_user()) {
2011-03-01 20:36:24 -08:00
return;
}
2011-03-01 20:36:24 -08:00
2012-01-26 16:52:12 -08:00
$uid = local_user();
$orig_record = $a->user;
if((x($_SESSION,'submanage')) && intval($_SESSION['submanage'])) {
$r = q("select * from user where uid = %d limit 1",
2012-01-26 16:52:12 -08:00
intval($_SESSION['submanage'])
);
2018-07-21 08:46:04 -04:00
if (DBA::isResult($r)) {
2012-01-26 16:52:12 -08:00
$uid = intval($r[0]['uid']);
$orig_record = $r[0];
}
}
$r = q("SELECT * FROM `manage` WHERE `uid` = %d",
2012-01-26 16:52:12 -08:00
intval($uid)
);
$submanage = $r;
2018-02-08 22:18:34 +00:00
$identity = (x($_POST['identity']) ? intval($_POST['identity']) : 0);
if (!$identity) {
2011-03-01 20:36:24 -08:00
return;
}
2011-03-01 20:36:24 -08:00
2012-01-26 16:52:12 -08:00
$limited_id = 0;
$original_id = $uid;
2018-07-21 08:46:04 -04:00
if (DBA::isResult($submanage)) {
foreach ($submanage as $m) {
if ($identity == $m['mid']) {
2012-01-26 16:52:12 -08:00
$limited_id = $m['mid'];
break;
}
}
}
if ($limited_id) {
2012-01-26 16:52:12 -08:00
$r = q("SELECT * FROM `user` WHERE `uid` = %d LIMIT 1",
intval($limited_id)
);
} else {
2018-02-08 22:18:34 +00:00
// Check if the target user is one of our children
$r = q("SELECT * FROM `user` WHERE `uid` = %d AND `parent-uid` = %d LIMIT 1",
2012-01-26 16:52:12 -08:00
intval($identity),
2018-07-21 09:10:13 -04:00
DBA::escape($orig_record['uid'])
2012-01-26 16:52:12 -08:00
);
2018-02-08 22:18:34 +00:00
// Check if the target user is one of our siblings
2018-07-21 08:46:04 -04:00
if (!DBA::isResult($r) && ($orig_record['parent-uid'] != 0)) {
2018-02-08 22:18:34 +00:00
$r = q("SELECT * FROM `user` WHERE `uid` = %d AND `parent-uid` = %d LIMIT 1",
intval($identity),
2018-07-21 09:10:13 -04:00
DBA::escape($orig_record['parent-uid'])
2018-02-08 22:18:34 +00:00
);
}
// Check if it's our parent
2018-07-21 08:46:04 -04:00
if (!DBA::isResult($r) && ($orig_record['parent-uid'] != 0) && ($orig_record['parent-uid'] == $identity)) {
2018-02-08 22:18:34 +00:00
$r = q("SELECT * FROM `user` WHERE `uid` = %d LIMIT 1",
intval($identity)
);
}
// Finally check if it's out own user
2018-07-21 08:46:04 -04:00
if (!DBA::isResult($r) && ($orig_record['uid'] != 0) && ($orig_record['uid'] == $identity)) {
2018-02-08 22:18:34 +00:00
$r = q("SELECT * FROM `user` WHERE `uid` = %d LIMIT 1",
intval($identity)
);
}
2012-01-26 16:52:12 -08:00
}
2011-03-01 20:36:24 -08:00
2018-07-21 08:46:04 -04:00
if (!DBA::isResult($r)) {
2011-03-01 20:36:24 -08:00
return;
}
2011-03-01 20:36:24 -08:00
unset($_SESSION['authenticated']);
unset($_SESSION['uid']);
unset($_SESSION['visitor_id']);
unset($_SESSION['administrator']);
unset($_SESSION['cid']);
unset($_SESSION['theme']);
unset($_SESSION['mobile-theme']);
2011-03-01 20:36:24 -08:00
unset($_SESSION['page_flags']);
unset($_SESSION['return_path']);
if (x($_SESSION, 'submanage')) {
2012-01-26 16:52:12 -08:00
unset($_SESSION['submanage']);
}
if (x($_SESSION, 'sysmsg')) {
unset($_SESSION['sysmsg']);
}
if (x($_SESSION, 'sysmsg_info')) {
unset($_SESSION['sysmsg_info']);
}
2011-03-01 20:36:24 -08:00
Authentication::setAuthenticatedSessionForUser($r[0], true, true);
2011-03-01 20:36:24 -08:00
if ($limited_id) {
2012-01-26 16:52:12 -08:00
$_SESSION['submanage'] = $original_id;
}
2012-01-26 16:52:12 -08:00
$ret = [];
Addon::callHooks('home_init',$ret);
$a->internalRedirect('profile/' . $a->user['nickname'] );
2011-03-01 20:36:24 -08:00
// NOTREACHED
}
function manage_content(App $a) {
2011-03-01 20:36:24 -08:00
if (! local_user()) {
2018-01-21 13:33:59 -05:00
notice(L10n::t('Permission denied.') . EOL);
2011-03-01 20:36:24 -08:00
return;
}
if (!empty($_GET['identity'])) {
2015-10-26 23:11:42 +01:00
$_POST['identity'] = $_GET['identity'];
manage_post($a);
return;
}
$identities = $a->identities;
//getting additinal information for each identity
foreach ($identities as $key=>$id) {
$thumb = q("SELECT `thumb` FROM `contact` WHERE `uid` = '%s' AND `self` = 1",
2018-07-21 09:10:13 -04:00
DBA::escape($id['uid'])
);
$identities[$key]['thumb'] = $thumb[0]['thumb'];
$identities[$key]['selected'] = ($id['nickname'] === $a->user['nickname']);
$notifications = 0;
$r = q("SELECT DISTINCT(`parent`) FROM `notify` WHERE `uid` = %d AND NOT `seen` AND NOT (`type` IN (%d, %d))",
intval($id['uid']), intval(NOTIFY_INTRO), intval(NOTIFY_MAIL));
2018-07-21 08:46:04 -04:00
if (DBA::isResult($r)) {
$notifications = sizeof($r);
}
$r = q("SELECT DISTINCT(`convid`) FROM `mail` WHERE `uid` = %d AND NOT `seen`",
intval($id['uid']));
2018-07-21 08:46:04 -04:00
if (DBA::isResult($r)) {
$notifications = $notifications + sizeof($r);
}
2015-11-28 23:35:02 +01:00
$r = q("SELECT COUNT(*) AS `introductions` FROM `intro` WHERE NOT `blocked` AND NOT `ignore` AND `uid` = %d",
intval($id['uid']));
2018-07-21 08:46:04 -04:00
if (DBA::isResult($r)) {
2015-11-28 23:35:02 +01:00
$notifications = $notifications + $r[0]["introductions"];
}
2015-11-28 23:35:02 +01:00
$identities[$key]['notifications'] = $notifications;
2011-03-01 20:36:24 -08:00
}
$o = Renderer::replaceMacros(Renderer::getMarkupTemplate('manage.tpl'), [
2018-01-22 09:16:25 -05:00
'$title' => L10n::t('Manage Identities and/or Pages'),
'$desc' => L10n::t('Toggle between different identities or community/group pages which share your account details or which you have been granted "manage" permissions'),
'$choose' => L10n::t('Select an identity to manage: '),
'$identities' => $identities,
2018-01-22 09:16:25 -05:00
'$submit' => L10n::t('Submit'),
]);
2011-03-01 20:36:24 -08:00
return $o;
}