diff --git a/include/api.php b/include/api.php index 16396c263b..78ce746a7f 100644 --- a/include/api.php +++ b/include/api.php @@ -28,7 +28,6 @@ use Friendica\Collection\Api\Notifications as ApiNotifications; use Friendica\Content\ContactSelector; use Friendica\Content\Text\BBCode; use Friendica\Content\Text\HTML; -use Friendica\Core\Hook; use Friendica\Core\Logger; use Friendica\Core\Protocol; use Friendica\Core\System; @@ -44,9 +43,9 @@ use Friendica\Model\Post; use Friendica\Model\Profile; use Friendica\Model\User; use Friendica\Model\Verb; +use Friendica\Module\BaseApi; use Friendica\Network\HTTPException; use Friendica\Network\HTTPException\BadRequestException; -use Friendica\Network\HTTPException\ExpectationFailedException; use Friendica\Network\HTTPException\ForbiddenException; use Friendica\Network\HTTPException\InternalServerErrorException; use Friendica\Network\HTTPException\MethodNotAllowedException; @@ -56,14 +55,13 @@ use Friendica\Network\HTTPException\UnauthorizedException; use Friendica\Object\Api\Friendica\Notification as ApiNotification; use Friendica\Object\Image; use Friendica\Protocol\Activity; -use Friendica\Protocol\Diaspora; +use Friendica\Security\BasicAuth; use Friendica\Security\OAuth; use Friendica\Util\DateTimeFormat; use Friendica\Util\Images; use Friendica\Util\Network; use Friendica\Util\Proxy; use Friendica\Util\Strings; -use Friendica\Util\XML; require_once __DIR__ . '/../mod/item.php'; require_once __DIR__ . '/../mod/wall_upload.php'; @@ -174,94 +172,6 @@ function api_register_func($path, $func, $auth = false, $method = API_METHOD_ANY ]; } -/** - * Log in user via Simple HTTP Auth. - * Simple Auth allow username in form of
user@server, ignoring server part - * - * @param App $a App - * @throws ForbiddenException - * @throws InternalServerErrorException - * @throws UnauthorizedException - * @hook 'authenticate' - * array $addon_auth - * 'username' => username from login form - * 'password' => password from login form - * 'authenticated' => return status, - * 'user_record' => return authenticated user record - */ -function api_login(App $a) -{ - $_SESSION["allow_api"] = false; - - // workaround for HTTP-auth in CGI mode - if (!empty($_SERVER['REDIRECT_REMOTE_USER'])) { - $userpass = base64_decode(substr($_SERVER["REDIRECT_REMOTE_USER"], 6)); - if (strlen($userpass)) { - list($name, $password) = explode(':', $userpass); - $_SERVER['PHP_AUTH_USER'] = $name; - $_SERVER['PHP_AUTH_PW'] = $password; - } - } - - if (empty($_SERVER['PHP_AUTH_USER'])) { - Logger::debug(API_LOG_PREFIX . 'failed', ['module' => 'api', 'action' => 'login', 'parameters' => $_SERVER]); - header('WWW-Authenticate: Basic realm="Friendica"'); - throw new UnauthorizedException("This API requires login"); - } - - $user = $_SERVER['PHP_AUTH_USER'] ?? ''; - $password = $_SERVER['PHP_AUTH_PW'] ?? ''; - - // allow "user@server" login (but ignore 'server' part) - $at = strstr($user, "@", true); - if ($at) { - $user = $at; - } - - // next code from mod/auth.php. needs better solution - $record = null; - - $addon_auth = [ - 'username' => trim($user), - 'password' => trim($password), - 'authenticated' => 0, - 'user_record' => null, - ]; - - /* - * An addon indicates successful login by setting 'authenticated' to non-zero value and returning a user record - * Addons should never set 'authenticated' except to indicate success - as hooks may be chained - * and later addons should not interfere with an earlier one that succeeded. - */ - Hook::callAll('authenticate', $addon_auth); - - if ($addon_auth['authenticated'] && !empty($addon_auth['user_record'])) { - $record = $addon_auth['user_record']; - } else { - try { - $user_id = User::getIdFromPasswordAuthentication(trim($user), trim($password), true); - $record = DBA::selectFirst('user', [], ['uid' => $user_id]); - } catch (Exception $ex) { - $record = []; - } - } - - if (!DBA::isResult($record)) { - Logger::debug(API_LOG_PREFIX . 'failed', ['module' => 'api', 'action' => 'login', 'parameters' => $_SERVER]); - header('WWW-Authenticate: Basic realm="Friendica"'); - throw new UnauthorizedException("This API requires login"); - } - - // Don't refresh the login date more often than twice a day to spare database writes - $login_refresh = strcmp(DateTimeFormat::utc('now - 12 hours'), $record['login_date']) > 0; - - DI::auth()->setForUser($a, $record, false, false, $login_refresh); - - $_SESSION["allow_api"] = true; - - Hook::callAll('logged_in', $record); -} - /** * Check HTTP method of called API * @@ -322,7 +232,7 @@ function api_call(App $a, App\Arguments $args = null) $called_api = explode("/", $p); if (!empty($info['auth']) && api_user() === false) { - api_login($a); + BasicAuth::getCurrentUserID(true); Logger::info(API_LOG_PREFIX . 'nickname {nickname}', ['module' => 'api', 'action' => 'call', 'nickname' => $a->getLoggedInUserNickname()]); } @@ -396,7 +306,7 @@ function api_error($type, $e, App\Arguments $args) "code" => $e->getCode() . " " . $e->getDescription(), "request" => $args->getQueryString()]; - $return = api_format_data('status', $type, ['status' => $error]); + $return = BaseApi::formatData('status', $type, ['status' => $error]); switch ($type) { case "xml": @@ -433,7 +343,7 @@ function api_error($type, $e, App\Arguments $args) function api_rss_extra(App $a, $arr, $user_info) { if (is_null($user_info)) { - $user_info = api_get_user($a); + $user_info = api_get_user(); } $arr['$user'] = $user_info; @@ -481,7 +391,7 @@ function api_unique_id_to_nurl($id) * @throws InternalServerErrorException * @throws UnauthorizedException */ -function api_get_user(App $a, $contact_id = null) +function api_get_user($contact_id = null) { global $called_api; @@ -576,7 +486,7 @@ function api_get_user(App $a, $contact_id = null) if (!$user) { if (api_user() === false) { - api_login($a); + BasicAuth::getCurrentUserID(true); return false; } else { $user = api_user(); @@ -771,14 +681,14 @@ function api_get_user(App $a, $contact_id = null) */ function api_item_get_user(App $a, $item) { - $status_user = api_get_user($a, $item['author-id'] ?? null); + $status_user = api_get_user($item['author-id'] ?? null); $author_user = $status_user; $status_user["protected"] = isset($item['private']) && ($item['private'] == Item::PRIVATE); if (($item['thr-parent'] ?? '') == ($item['uri'] ?? '')) { - $owner_user = api_get_user($a, $item['owner-id'] ?? null); + $owner_user = api_get_user($item['owner-id'] ?? null); } else { $owner_user = $author_user; } @@ -786,130 +696,6 @@ function api_item_get_user(App $a, $item) return ([$status_user, $author_user, $owner_user]); } -/** - * walks recursively through an array with the possibility to change value and key - * - * @param array $array The array to walk through - * @param callable $callback The callback function - * - * @return array the transformed array - */ -function api_walk_recursive(array &$array, callable $callback) -{ - $new_array = []; - - foreach ($array as $k => $v) { - if (is_array($v)) { - if ($callback($v, $k)) { - $new_array[$k] = api_walk_recursive($v, $callback); - } - } else { - if ($callback($v, $k)) { - $new_array[$k] = $v; - } - } - } - $array = $new_array; - - return $array; -} - -/** - * Callback function to transform the array in an array that can be transformed in a XML file - * - * @param mixed $item Array item value - * @param string $key Array key - * - * @return boolean Should the array item be deleted? - */ -function api_reformat_xml(&$item, &$key) -{ - if (is_bool($item)) { - $item = ($item ? "true" : "false"); - } - - if (substr($key, 0, 10) == "statusnet_") { - $key = "statusnet:".substr($key, 10); - } elseif (substr($key, 0, 10) == "friendica_") { - $key = "friendica:".substr($key, 10); - } - /// @TODO old-lost code? - //else - // $key = "default:".$key; - - return true; -} - -/** - * Creates the XML from a JSON style array - * - * @param array $data JSON style array - * @param string $root_element Name of the root element - * - * @return string The XML data - */ -function api_create_xml(array $data, $root_element) -{ - $childname = key($data); - $data2 = array_pop($data); - - $namespaces = ["" => "http://api.twitter.com", - "statusnet" => "http://status.net/schema/api/1/", - "friendica" => "http://friendi.ca/schema/api/1/", - "georss" => "http://www.georss.org/georss"]; - - /// @todo Auto detection of needed namespaces - if (in_array($root_element, ["ok", "hash", "config", "version", "ids", "notes", "photos"])) { - $namespaces = []; - } - - if (is_array($data2)) { - $key = key($data2); - api_walk_recursive($data2, "api_reformat_xml"); - - if ($key == "0") { - $data4 = []; - $i = 1; - - foreach ($data2 as $item) { - $data4[$i++ . ":" . $childname] = $item; - } - - $data2 = $data4; - } - } - - $data3 = [$root_element => $data2]; - - $ret = XML::fromArray($data3, $xml, false, $namespaces); - return $ret; -} - -/** - * Formats the data according to the data type - * - * @param string $root_element Name of the root element - * @param string $type Return type (atom, rss, xml, json) - * @param array $data JSON style array - * - * @return array|string (string|array) XML data or JSON data - */ -function api_format_data($root_element, $type, $data) -{ - switch ($type) { - case "atom": - case "rss": - case "xml": - $ret = api_create_xml($data, $root_element); - break; - case "json": - default: - $ret = $data; - break; - } - return $ret; -} - /** * TWITTER API */ @@ -944,7 +730,7 @@ function api_account_verify_credentials($type) $skip_status = $_REQUEST['skip_status'] ?? false; - $user_info = api_get_user($a); + $user_info = api_get_user(); // "verified" isn't used here in the standard unset($user_info["verified"]); @@ -961,7 +747,7 @@ function api_account_verify_credentials($type) unset($user_info["uid"]); unset($user_info["self"]); - return api_format_data("user", $type, ['user' => $user_info]); + return BaseApi::formatData("user", $type, ['user' => $user_info]); } /// @TODO move to top of file or somewhere better @@ -1004,7 +790,7 @@ function api_statuses_mediap($type) logger::notice('api_statuses_update: no user'); throw new ForbiddenException(); } - $user_info = api_get_user($a); + $user_info = api_get_user(); $_REQUEST['profile_uid'] = api_user(); $_REQUEST['api_source'] = true; @@ -1059,7 +845,7 @@ function api_statuses_update($type) throw new ForbiddenException(); } - api_get_user($a); + api_get_user(); // convert $_POST array items to the form we use for web posts. if (requestdata('htmlstatus')) { @@ -1242,7 +1028,7 @@ function api_media_upload() throw new ForbiddenException(); } - api_get_user($a); + api_get_user(); if (empty($_FILES['media'])) { // Output error @@ -1297,7 +1083,7 @@ function api_media_metadata_create($type) throw new ForbiddenException(); } - api_get_user($a); + api_get_user(); $postdata = Network::postdata(); @@ -1350,7 +1136,7 @@ function api_status_show($type, $item_id) Logger::info(API_LOG_PREFIX . 'End', ['action' => 'get_status', 'status_info' => $status_info]); - return api_format_data('statuses', $type, ['status' => $status_info]); + return BaseApi::formatData('statuses', $type, ['status' => $status_info]); } /** @@ -1405,7 +1191,7 @@ function api_users_show($type) { $a = Friendica\DI::app(); - $user_info = api_get_user($a); + $user_info = api_get_user(); $item = api_get_last_status($user_info['pid'], $user_info['uid']); if (!empty($item)) { @@ -1416,7 +1202,7 @@ function api_users_show($type) unset($user_info['uid']); unset($user_info['self']); - return api_format_data('user', $type, ['user' => $user_info]); + return BaseApi::formatData('user', $type, ['user' => $user_info]); } /// @TODO move to top of file or somewhere better @@ -1456,7 +1242,7 @@ function api_users_search($type) if (DBA::isResult($contacts)) { $k = 0; foreach ($contacts as $contact) { - $user_info = api_get_user($a, $contact['id']); + $user_info = api_get_user($contact['id']); if ($type == 'xml') { $userlist[$k++ . ':user'] = $user_info; @@ -1472,7 +1258,7 @@ function api_users_search($type) throw new BadRequestException('No search term specified.'); } - return api_format_data('users', $type, $userlist); + return BaseApi::formatData('users', $type, $userlist); } /// @TODO move to top of file or somewhere better @@ -1499,7 +1285,7 @@ function api_users_lookup($type) if (!empty($_REQUEST['user_id'])) { foreach (explode(',', $_REQUEST['user_id']) as $id) { if (!empty($id)) { - $users[] = api_get_user(DI::app(), $id); + $users[] = api_get_user($id); } } } @@ -1508,7 +1294,7 @@ function api_users_lookup($type) throw new NotFoundException; } - return api_format_data("users", $type, ['users' => $users]); + return BaseApi::formatData("users", $type, ['users' => $users]); } /// @TODO move to top of file or somewhere better @@ -1531,7 +1317,7 @@ api_register_func('api/users/lookup', 'api_users_lookup', true); function api_search($type) { $a = DI::app(); - $user_info = api_get_user($a); + $user_info = api_get_user(); if (api_user() === false || $user_info === false) { throw new ForbiddenException(); @@ -1571,7 +1357,7 @@ function api_search($type) DBA::close($tags); if (empty($uriids)) { - return api_format_data('statuses', $type, $data); + return BaseApi::formatData('statuses', $type, $data); } $condition = ['uri-id' => $uriids]; @@ -1612,7 +1398,7 @@ function api_search($type) bindComments($data['status']); - return api_format_data('statuses', $type, $data); + return BaseApi::formatData('statuses', $type, $data); } /// @TODO move to top of file or somewhere better @@ -1638,7 +1424,7 @@ api_register_func('api/search', 'api_search', true); function api_statuses_home_timeline($type) { $a = DI::app(); - $user_info = api_get_user($a); + $user_info = api_get_user(); if (api_user() === false || $user_info === false) { throw new ForbiddenException(); @@ -1709,7 +1495,7 @@ function api_statuses_home_timeline($type) break; } - return api_format_data("statuses", $type, $data); + return BaseApi::formatData("statuses", $type, $data); } @@ -1732,7 +1518,7 @@ api_register_func('api/statuses/friends_timeline', 'api_statuses_home_timeline', function api_statuses_public_timeline($type) { $a = DI::app(); - $user_info = api_get_user($a); + $user_info = api_get_user(); if (api_user() === false || $user_info === false) { throw new ForbiddenException(); @@ -1795,7 +1581,7 @@ function api_statuses_public_timeline($type) break; } - return api_format_data("statuses", $type, $data); + return BaseApi::formatData("statuses", $type, $data); } /// @TODO move to top of file or somewhere better @@ -1815,7 +1601,7 @@ api_register_func('api/statuses/public_timeline', 'api_statuses_public_timeline' function api_statuses_networkpublic_timeline($type) { $a = DI::app(); - $user_info = api_get_user($a); + $user_info = api_get_user(); if (api_user() === false || $user_info === false) { throw new ForbiddenException(); @@ -1854,7 +1640,7 @@ function api_statuses_networkpublic_timeline($type) break; } - return api_format_data("statuses", $type, $data); + return BaseApi::formatData("statuses", $type, $data); } /// @TODO move to top of file or somewhere better @@ -1876,7 +1662,7 @@ api_register_func('api/statuses/networkpublic_timeline', 'api_statuses_networkpu function api_statuses_show($type) { $a = DI::app(); - $user_info = api_get_user($a); + $user_info = api_get_user(); if (api_user() === false || $user_info === false) { throw new ForbiddenException(); @@ -1930,10 +1716,10 @@ function api_statuses_show($type) if ($conversation) { $data = ['status' => $ret]; - return api_format_data("statuses", $type, $data); + return BaseApi::formatData("statuses", $type, $data); } else { $data = ['status' => $ret[0]]; - return api_format_data("status", $type, $data); + return BaseApi::formatData("status", $type, $data); } } @@ -1955,7 +1741,7 @@ api_register_func('api/statuses/show', 'api_statuses_show', true); function api_conversation_show($type) { $a = DI::app(); - $user_info = api_get_user($a); + $user_info = api_get_user(); if (api_user() === false || $user_info === false) { throw new ForbiddenException(); @@ -2012,7 +1798,7 @@ function api_conversation_show($type) $ret = api_format_items(Post::toArray($statuses), $user_info, false, $type); $data = ['status' => $ret]; - return api_format_data("statuses", $type, $data); + return BaseApi::formatData("statuses", $type, $data); } /// @TODO move to top of file or somewhere better @@ -2042,7 +1828,7 @@ function api_statuses_repeat($type) throw new ForbiddenException(); } - api_get_user($a); + api_get_user(); // params $id = intval(DI::args()->getArgv()[3] ?? 0); @@ -2125,7 +1911,7 @@ function api_statuses_destroy($type) throw new ForbiddenException(); } - api_get_user($a); + api_get_user(); // params $id = intval(DI::args()->getArgv()[3] ?? 0); @@ -2167,7 +1953,7 @@ api_register_func('api/statuses/destroy', 'api_statuses_destroy', true, API_METH function api_statuses_mentions($type) { $a = DI::app(); - $user_info = api_get_user($a); + $user_info = api_get_user(); if (api_user() === false || $user_info === false) { throw new ForbiddenException(); @@ -2223,7 +2009,7 @@ function api_statuses_mentions($type) break; } - return api_format_data("statuses", $type, $data); + return BaseApi::formatData("statuses", $type, $data); } /// @TODO move to top of file or somewhere better @@ -2245,7 +2031,7 @@ api_register_func('api/statuses/replies', 'api_statuses_mentions', true); function api_statuses_user_timeline($type) { $a = DI::app(); - $user_info = api_get_user($a); + $user_info = api_get_user(); if (api_user() === false || $user_info === false) { throw new ForbiddenException(); @@ -2301,7 +2087,7 @@ function api_statuses_user_timeline($type) break; } - return api_format_data("statuses", $type, $data); + return BaseApi::formatData("statuses", $type, $data); } /// @TODO move to top of file or somewhere better @@ -2370,7 +2156,7 @@ function api_favorites_create_destroy($type) } - $user_info = api_get_user($a); + $user_info = api_get_user(); $rets = api_format_items([$item], $user_info, false, $type); $ret = $rets[0]; @@ -2383,7 +2169,7 @@ function api_favorites_create_destroy($type) break; } - return api_format_data("status", $type, $data); + return BaseApi::formatData("status", $type, $data); } /// @TODO move to top of file or somewhere better @@ -2407,7 +2193,7 @@ function api_favorites($type) global $called_api; $a = DI::app(); - $user_info = api_get_user($a); + $user_info = api_get_user(); if (api_user() === false || $user_info === false) { throw new ForbiddenException(); @@ -2456,7 +2242,7 @@ function api_favorites($type) break; } - return api_format_data("statuses", $type, $data); + return BaseApi::formatData("statuses", $type, $data); } /// @TODO move to top of file or somewhere better @@ -2897,7 +2683,7 @@ function api_format_items_activities($item, $type = "json") //builtin_activity_puller($i, $activities); // get user data and add it to the array of the activity - $user = api_get_user($a, $parent_item['author-id']); + $user = api_get_user($parent_item['author-id']); switch ($parent_item['verb']) { case Activity::LIKE: $activities['like'][] = $user; @@ -3061,7 +2847,7 @@ function api_format_item($item, $type = "json", $status_user = null, $author_use if (!empty($announce)) { $retweeted_item = $item; $item = $announce; - $status['friendica_owner'] = api_get_user($a, $announce['author-id']); + $status['friendica_owner'] = api_get_user($announce['author-id']); } } @@ -3080,7 +2866,7 @@ function api_format_item($item, $type = "json", $status_user = null, $author_use $quoted_status['text'] = $conv_quoted['text']; $quoted_status['statusnet_html'] = $conv_quoted['html']; try { - $quoted_status["user"] = api_get_user($a, $quoted_item["author-id"]); + $quoted_status["user"] = api_get_user($quoted_item["author-id"]); } catch (BadRequestException $e) { // user not found. should be found? /// @todo check if the user should be always found @@ -3102,7 +2888,7 @@ function api_format_item($item, $type = "json", $status_user = null, $author_use unset($retweeted_status['statusnet_conversation_id']); $status['user'] = $status['friendica_owner']; try { - $retweeted_status["user"] = api_get_user($a, $retweeted_item["author-id"]); + $retweeted_status["user"] = api_get_user($retweeted_item["author-id"]); } catch (BadRequestException $e) { // user not found. should be found? /// @todo check if the user should be always found @@ -3180,33 +2966,12 @@ function api_account_rate_limit_status($type) ]; } - return api_format_data('hash', $type, ['hash' => $hash]); + return BaseApi::formatData('hash', $type, ['hash' => $hash]); } /// @TODO move to top of file or somewhere better api_register_func('api/account/rate_limit_status', 'api_account_rate_limit_status', true); -/** - * Returns the string "ok" in the requested format with a 200 OK HTTP status code. - * - * @param string $type Return type (atom, rss, xml, json) - * - * @return array|string - */ -function api_help_test($type) -{ - if ($type == 'xml') { - $ok = "true"; - } else { - $ok = "ok"; - } - - return api_format_data('ok', $type, ["ok" => $ok]); -} - -/// @TODO move to top of file or somewhere better -api_register_func('api/help/test', 'api_help_test', false); - /** * Returns all lists the user subscribes to. * @@ -3219,7 +2984,7 @@ function api_lists_list($type) { $ret = []; /// @TODO $ret is not filled here? - return api_format_data('lists', $type, ["lists_list" => $ret]); + return BaseApi::formatData('lists', $type, ["lists_list" => $ret]); } /// @TODO move to top of file or somewhere better @@ -3248,7 +3013,7 @@ function api_lists_ownerships($type) } // params - $user_info = api_get_user($a); + $user_info = api_get_user(); $uid = $user_info['uid']; $groups = DBA::select('group', [], ['deleted' => 0, 'uid' => $uid]); @@ -3269,7 +3034,7 @@ function api_lists_ownerships($type) 'mode' => $mode ]; } - return api_format_data("lists", $type, ['lists' => ['lists' => $lists]]); + return BaseApi::formatData("lists", $type, ['lists' => ['lists' => $lists]]); } /// @TODO move to top of file or somewhere better @@ -3292,7 +3057,7 @@ function api_lists_statuses($type) { $a = DI::app(); - $user_info = api_get_user($a); + $user_info = api_get_user(); if (api_user() === false || $user_info === false) { throw new ForbiddenException(); } @@ -3349,7 +3114,7 @@ function api_lists_statuses($type) break; } - return api_format_data("statuses", $type, $data); + return BaseApi::formatData("statuses", $type, $data); } /// @TODO move to top of file or somewhere better @@ -3383,7 +3148,7 @@ function api_statuses_f($qtype) $start = max(0, ($page - 1) * $count); - $user_info = api_get_user($a); + $user_info = api_get_user(); if (!empty($_GET['cursor']) && $_GET['cursor'] == 'undefined') { /* this is to stop Hotot to load friends multiple times @@ -3433,7 +3198,7 @@ function api_statuses_f($qtype) $ret = []; foreach ($r as $cid) { - $user = api_get_user($a, $cid['nurl']); + $user = api_get_user($cid['nurl']); // "uid" and "self" are only needed for some internal stuff, so remove it from here unset($user["uid"]); unset($user["self"]); @@ -3463,7 +3228,7 @@ function api_statuses_friends($type) if ($data === false) { return false; } - return api_format_data("users", $type, $data); + return BaseApi::formatData("users", $type, $data); } /** @@ -3482,7 +3247,7 @@ function api_statuses_followers($type) if ($data === false) { return false; } - return api_format_data("users", $type, $data); + return BaseApi::formatData("users", $type, $data); } /// @TODO move to top of file or somewhere better @@ -3506,7 +3271,7 @@ function api_blocks_list($type) if ($data === false) { return false; } - return api_format_data("users", $type, $data); + return BaseApi::formatData("users", $type, $data); } /// @TODO move to top of file or somewhere better @@ -3535,7 +3300,7 @@ function api_friendships_incoming($type) $ids[] = $user['id']; } - return api_format_data("ids", $type, ['id' => $ids]); + return BaseApi::formatData("ids", $type, ['id' => $ids]); } /// @TODO move to top of file or somewhere better @@ -3576,31 +3341,13 @@ function api_statusnet_config($type) ], ]; - return api_format_data('config', $type, ['config' => $config]); + return BaseApi::formatData('config', $type, ['config' => $config]); } /// @TODO move to top of file or somewhere better api_register_func('api/gnusocial/config', 'api_statusnet_config', false); api_register_func('api/statusnet/config', 'api_statusnet_config', false); -/** - * - * @param string $type Return type (atom, rss, xml, json) - * - * @return array|string - */ -function api_statusnet_version($type) -{ - // liar - $fake_statusnet_version = "0.9.7"; - - return api_format_data('version', $type, ['version' => $fake_statusnet_version]); -} - -/// @TODO move to top of file or somewhere better -api_register_func('api/gnusocial/version', 'api_statusnet_version', false); -api_register_func('api/statusnet/version', 'api_statusnet_version', false); - /** * Sends a new direct message. * @@ -3627,7 +3374,7 @@ function api_direct_messages_new($type) return; } - $sender = api_get_user($a); + $sender = api_get_user(); $recipient = null; if (!empty($_POST['screen_name'])) { @@ -3636,10 +3383,10 @@ function api_direct_messages_new($type) // Selecting the id by priority, friendica first api_best_nickname($contacts); - $recipient = api_get_user($a, $contacts[0]['nurl']); + $recipient = api_get_user($contacts[0]['nurl']); } } else { - $recipient = api_get_user($a, $_POST['user_id']); + $recipient = api_get_user($_POST['user_id']); } if (empty($recipient)) { @@ -3678,7 +3425,7 @@ function api_direct_messages_new($type) break; } - return api_format_data("direct-messages", $type, $data); + return BaseApi::formatData("direct-messages", $type, $data); } /// @TODO move to top of file or somewhere better @@ -3705,7 +3452,7 @@ function api_direct_messages_destroy($type) } // params - $user_info = api_get_user($a); + $user_info = api_get_user(); //required $id = $_REQUEST['id'] ?? 0; // optional @@ -3717,7 +3464,7 @@ function api_direct_messages_destroy($type) // error if no id or parenturi specified (for clients posting parent-uri as well) if ($verbose == "true" && ($id == 0 || $parenturi == "")) { $answer = ['result' => 'error', 'message' => 'message id or parenturi not specified']; - return api_format_data("direct_messages_delete", $type, ['$result' => $answer]); + return BaseApi::formatData("direct_messages_delete", $type, ['$result' => $answer]); } // BadRequestException if no id specified (for clients using Twitter API) @@ -3732,7 +3479,7 @@ function api_direct_messages_destroy($type) if (!DBA::exists('mail', ["`uid` = ? AND `id` = ? " . $sql_extra, $uid, $id])) { if ($verbose == "true") { $answer = ['result' => 'error', 'message' => 'message id not in database']; - return api_format_data("direct_messages_delete", $type, ['$result' => $answer]); + return BaseApi::formatData("direct_messages_delete", $type, ['$result' => $answer]); } /// @todo BadRequestException ok for Twitter API clients? throw new BadRequestException('message id not in database'); @@ -3745,10 +3492,10 @@ function api_direct_messages_destroy($type) if ($result) { // return success $answer = ['result' => 'ok', 'message' => 'message deleted']; - return api_format_data("direct_message_delete", $type, ['$result' => $answer]); + return BaseApi::formatData("direct_message_delete", $type, ['$result' => $answer]); } else { $answer = ['result' => 'error', 'message' => 'unknown error']; - return api_format_data("direct_messages_delete", $type, ['$result' => $answer]); + return BaseApi::formatData("direct_messages_delete", $type, ['$result' => $answer]); } } /// @todo return JSON data like Twitter API not yet implemented @@ -3833,7 +3580,7 @@ function api_friendships_destroy($type) // Set screen_name since Twidere requests it $contact['screen_name'] = $contact['nick']; - return api_format_data('friendships-destroy', $type, ['user' => $contact]); + return BaseApi::formatData('friendships-destroy', $type, ['user' => $contact]); } api_register_func('api/friendships/destroy', 'api_friendships_destroy', true, API_METHOD_POST); @@ -3873,7 +3620,7 @@ function api_direct_messages_box($type, $box, $verbose) unset($_REQUEST["screen_name"]); unset($_GET["screen_name"]); - $user_info = api_get_user($a); + $user_info = api_get_user(); if ($user_info === false) { throw new ForbiddenException(); } @@ -3914,16 +3661,16 @@ function api_direct_messages_box($type, $box, $verbose) )); if ($verbose == "true" && !DBA::isResult($r)) { $answer = ['result' => 'error', 'message' => 'no mails available']; - return api_format_data("direct_messages_all", $type, ['$result' => $answer]); + return BaseApi::formatData("direct_messages_all", $type, ['$result' => $answer]); } $ret = []; foreach ($r as $item) { if ($box == "inbox" || $item['from-url'] != $profile_url) { $recipient = $user_info; - $sender = api_get_user($a, Strings::normaliseLink($item['contact-url'])); + $sender = api_get_user(Strings::normaliseLink($item['contact-url'])); } elseif ($box == "sentbox" || $item['from-url'] == $profile_url) { - $recipient = api_get_user($a, Strings::normaliseLink($item['contact-url'])); + $recipient = api_get_user(Strings::normaliseLink($item['contact-url'])); $sender = $user_info; } @@ -3942,7 +3689,7 @@ function api_direct_messages_box($type, $box, $verbose) break; } - return api_format_data("direct-messages", $type, $data); + return BaseApi::formatData("direct-messages", $type, $data); } /** @@ -4052,7 +3799,7 @@ function api_fr_photoalbum_delete($type) // return success of deletion or error message if ($result) { $answer = ['result' => 'deleted', 'message' => 'album `' . $album . '` with all containing photos has been deleted.']; - return api_format_data("photoalbum_delete", $type, ['$result' => $answer]); + return BaseApi::formatData("photoalbum_delete", $type, ['$result' => $answer]); } else { throw new InternalServerErrorException("unknown error - deleting from database failed"); } @@ -4093,7 +3840,7 @@ function api_fr_photoalbum_update($type) // return success of updating or error message if ($result) { $answer = ['result' => 'updated', 'message' => 'album `' . $album . '` with all containing photos has been renamed to `' . $album_new . '`.']; - return api_format_data("photoalbum_update", $type, ['$result' => $answer]); + return BaseApi::formatData("photoalbum_update", $type, ['$result' => $answer]); } else { throw new InternalServerErrorException("unknown error - updating in database failed"); } @@ -4145,7 +3892,7 @@ function api_fr_photos_list($type) } } } - return api_format_data("photos", $type, $data); + return BaseApi::formatData("photos", $type, $data); } /** @@ -4217,7 +3964,7 @@ function api_fr_photo_create_update($type) // return success of updating or error message if (!is_null($data)) { - return api_format_data("photo_create", $type, $data); + return BaseApi::formatData("photo_create", $type, $data); } else { throw new InternalServerErrorException("unknown error - uploading photo failed, see Friendica log for more information"); } @@ -4268,18 +4015,18 @@ function api_fr_photo_create_update($type) $media = $_FILES['media']; $data = save_media_to_database("photo", $media, $type, $album, $allow_cid, $deny_cid, $allow_gid, $deny_gid, $desc, Photo::DEFAULT, $visibility, $photo_id); if (!is_null($data)) { - return api_format_data("photo_update", $type, $data); + return BaseApi::formatData("photo_update", $type, $data); } } // return success of updating or error message if ($result) { $answer = ['result' => 'updated', 'message' => 'Image id `' . $photo_id . '` has been updated.']; - return api_format_data("photo_update", $type, ['$result' => $answer]); + return BaseApi::formatData("photo_update", $type, ['$result' => $answer]); } else { if ($nothingtodo) { $answer = ['result' => 'cancelled', 'message' => 'Nothing to update for image id `' . $photo_id . '`.']; - return api_format_data("photo_update", $type, ['$result' => $answer]); + return BaseApi::formatData("photo_update", $type, ['$result' => $answer]); } throw new InternalServerErrorException("unknown error - update photo entry in database failed"); } @@ -4327,7 +4074,7 @@ function api_fr_photo_delete($type) Item::deleteForUser($condition, api_user()); $result = ['result' => 'deleted', 'message' => 'photo with id `' . $photo_id . '` has been deleted from server.']; - return api_format_data("photo_delete", $type, ['$result' => $result]); + return BaseApi::formatData("photo_delete", $type, ['$result' => $result]); } else { throw new InternalServerErrorException("unknown error on deleting photo from database table"); } @@ -4359,7 +4106,7 @@ function api_fr_photo_detail($type) // prepare json/xml output with data from database for the requested photo $data = prepare_photo_data($type, $scale, $photo_id); - return api_format_data("photo_detail", $type, $data); + return BaseApi::formatData("photo_detail", $type, $data); } @@ -4755,7 +4502,7 @@ function post_photo_item($hash, $allow_cid, $deny_cid, $allow_gid, $deny_gid, $f function prepare_photo_data($type, $scale, $photo_id) { $a = DI::app(); - $user_info = api_get_user($a); + $user_info = api_get_user(); if ($user_info === false) { throw new ForbiddenException(); @@ -5055,7 +4802,7 @@ function api_friendica_group_show($type) } // params - $user_info = api_get_user($a); + $user_info = api_get_user(); $gid = $_REQUEST['gid'] ?? 0; $uid = $user_info['uid']; @@ -5081,19 +4828,19 @@ function api_friendica_group_show($type) $user_element = "users"; $k = 0; foreach ($members as $member) { - $user = api_get_user($a, $member['nurl']); + $user = api_get_user($member['nurl']); $users[$k++.":user"] = $user; } } else { $user_element = "user"; foreach ($members as $member) { - $user = api_get_user($a, $member['nurl']); + $user = api_get_user($member['nurl']); $users[] = $user; } } $grps[] = ['name' => $rr['name'], 'gid' => $rr['id'], $user_element => $users]; } - return api_format_data("groups", $type, ['group' => $grps]); + return BaseApi::formatData("groups", $type, ['group' => $grps]); } api_register_func('api/friendica/group_show', 'api_friendica_group_show', true); @@ -5119,7 +4866,7 @@ function api_friendica_group_delete($type) } // params - $user_info = api_get_user($a); + $user_info = api_get_user(); $gid = $_REQUEST['gid'] ?? 0; $name = $_REQUEST['name'] ?? ''; $uid = $user_info['uid']; @@ -5150,7 +4897,7 @@ function api_friendica_group_delete($type) if ($ret) { // return success $success = ['success' => $ret, 'gid' => $gid, 'name' => $name, 'status' => 'deleted', 'wrong users' => []]; - return api_format_data("group_delete", $type, ['result' => $success]); + return BaseApi::formatData("group_delete", $type, ['result' => $success]); } else { throw new BadRequestException('other API error'); } @@ -5179,7 +4926,7 @@ function api_lists_destroy($type) } // params - $user_info = api_get_user($a); + $user_info = api_get_user(); $gid = $_REQUEST['list_id'] ?? 0; $uid = $user_info['uid']; @@ -5203,7 +4950,7 @@ function api_lists_destroy($type) 'user' => $user_info ]; - return api_format_data("lists", $type, ['lists' => $list]); + return BaseApi::formatData("lists", $type, ['lists' => $list]); } } api_register_func('api/lists/destroy', 'api_lists_destroy', true, API_METHOD_DELETE); @@ -5283,7 +5030,7 @@ function api_friendica_group_create($type) } // params - $user_info = api_get_user($a); + $user_info = api_get_user(); $name = $_REQUEST['name'] ?? ''; $uid = $user_info['uid']; $json = json_decode($_POST['json'], true); @@ -5291,7 +5038,7 @@ function api_friendica_group_create($type) $success = group_create($name, $uid, $users); - return api_format_data("group_create", $type, ['result' => $success]); + return BaseApi::formatData("group_create", $type, ['result' => $success]); } api_register_func('api/friendica/group_create', 'api_friendica_group_create', true, API_METHOD_POST); @@ -5317,7 +5064,7 @@ function api_lists_create($type) } // params - $user_info = api_get_user($a); + $user_info = api_get_user(); $name = $_REQUEST['name'] ?? ''; $uid = $user_info['uid']; @@ -5330,7 +5077,7 @@ function api_lists_create($type) 'user' => $user_info ]; - return api_format_data("lists", $type, ['lists'=>$grp]); + return BaseApi::formatData("lists", $type, ['lists'=>$grp]); } } api_register_func('api/lists/create', 'api_lists_create', true, API_METHOD_POST); @@ -5356,7 +5103,7 @@ function api_friendica_group_update($type) } // params - $user_info = api_get_user($a); + $user_info = api_get_user(); $uid = $user_info['uid']; $gid = $_REQUEST['gid'] ?? 0; $name = $_REQUEST['name'] ?? ''; @@ -5403,7 +5150,7 @@ function api_friendica_group_update($type) // return success message incl. missing users in array $status = ($erroraddinguser ? "missing user" : "ok"); $success = ['success' => true, 'gid' => $gid, 'name' => $name, 'status' => $status, 'wrong users' => $errorusers]; - return api_format_data("group_update", $type, ['result' => $success]); + return BaseApi::formatData("group_update", $type, ['result' => $success]); } api_register_func('api/friendica/group_update', 'api_friendica_group_update', true, API_METHOD_POST); @@ -5430,7 +5177,7 @@ function api_lists_update($type) } // params - $user_info = api_get_user($a); + $user_info = api_get_user(); $gid = $_REQUEST['list_id'] ?? 0; $name = $_REQUEST['name'] ?? ''; $uid = $user_info['uid']; @@ -5455,7 +5202,7 @@ function api_lists_update($type) 'user' => $user_info ]; - return api_format_data("lists", $type, ['lists' => $list]); + return BaseApi::formatData("lists", $type, ['lists' => $list]); } } @@ -5491,7 +5238,7 @@ function api_friendica_activity($type) } else { $ok = "ok"; } - return api_format_data('ok', $type, ['ok' => $ok]); + return BaseApi::formatData('ok', $type, ['ok' => $ok]); } else { throw new BadRequestException('Error adding activity'); } @@ -5548,7 +5295,7 @@ function api_friendica_notification($type) $result = false; } - return api_format_data('notes', $type, ['note' => $result]); + return BaseApi::formatData('notes', $type, ['note' => $result]); } /** @@ -5567,7 +5314,7 @@ function api_friendica_notification($type) function api_friendica_notification_seen($type) { $a = DI::app(); - $user_info = api_get_user($a); + $user_info = api_get_user(); if (api_user() === false || $user_info === false) { throw new ForbiddenException(); @@ -5597,12 +5344,12 @@ function api_friendica_notification_seen($type) // we found the item, return it to the user $ret = api_format_items([$item], $user_info, false, $type); $data = ['status' => $ret]; - return api_format_data('status', $type, $data); + return BaseApi::formatData('status', $type, $data); } // the item can't be found, but we set the notification as seen, so we count this as a success } - return api_format_data('result', $type, ['result' => 'success']); + return BaseApi::formatData('result', $type, ['result' => 'success']); } catch (NotFoundException $e) { throw new BadRequestException('Invalid argument', $e); } catch (Exception $e) { @@ -5633,20 +5380,20 @@ function api_friendica_direct_messages_setseen($type) } // params - $user_info = api_get_user($a); + $user_info = api_get_user(); $uid = $user_info['uid']; $id = $_REQUEST['id'] ?? 0; // return error if id is zero if ($id == "") { $answer = ['result' => 'error', 'message' => 'message id not specified']; - return api_format_data("direct_messages_setseen", $type, ['$result' => $answer]); + return BaseApi::formatData("direct_messages_setseen", $type, ['$result' => $answer]); } // error message if specified id is not in database if (!DBA::exists('mail', ['id' => $id, 'uid' => $uid])) { $answer = ['result' => 'error', 'message' => 'message id not in database']; - return api_format_data("direct_messages_setseen", $type, ['$result' => $answer]); + return BaseApi::formatData("direct_messages_setseen", $type, ['$result' => $answer]); } // update seen indicator @@ -5655,10 +5402,10 @@ function api_friendica_direct_messages_setseen($type) if ($result) { // return success $answer = ['result' => 'ok', 'message' => 'message set to seen']; - return api_format_data("direct_message_setseen", $type, ['$result' => $answer]); + return BaseApi::formatData("direct_message_setseen", $type, ['$result' => $answer]); } else { $answer = ['result' => 'error', 'message' => 'unknown error']; - return api_format_data("direct_messages_setseen", $type, ['$result' => $answer]); + return BaseApi::formatData("direct_messages_setseen", $type, ['$result' => $answer]); } } @@ -5688,14 +5435,14 @@ function api_friendica_direct_messages_search($type, $box = "") } // params - $user_info = api_get_user($a); + $user_info = api_get_user(); $searchstring = $_REQUEST['searchstring'] ?? ''; $uid = $user_info['uid']; // error if no searchstring specified if ($searchstring == "") { $answer = ['result' => 'error', 'message' => 'searchstring not specified']; - return api_format_data("direct_messages_search", $type, ['$result' => $answer]); + return BaseApi::formatData("direct_messages_search", $type, ['$result' => $answer]); } // get data for the specified searchstring @@ -5717,9 +5464,9 @@ function api_friendica_direct_messages_search($type, $box = "") foreach ($r as $item) { if ($box == "inbox" || $item['from-url'] != $profile_url) { $recipient = $user_info; - $sender = api_get_user($a, Strings::normaliseLink($item['contact-url'])); + $sender = api_get_user(Strings::normaliseLink($item['contact-url'])); } elseif ($box == "sentbox" || $item['from-url'] == $profile_url) { - $recipient = api_get_user($a, Strings::normaliseLink($item['contact-url'])); + $recipient = api_get_user(Strings::normaliseLink($item['contact-url'])); $sender = $user_info; } @@ -5730,7 +5477,7 @@ function api_friendica_direct_messages_search($type, $box = "") $success = ['success' => true, 'search_results' => $ret]; } - return api_format_data("direct_message_search", $type, ['$result' => $success]); + return BaseApi::formatData("direct_message_search", $type, ['$result' => $success]); } /// @TODO move to top of file or somewhere better @@ -5764,7 +5511,7 @@ function api_saved_searches_list($type) DBA::close($terms); - return api_format_data("terms", $type, ['terms' => $result]); + return BaseApi::formatData("terms", $type, ['terms' => $result]); } /// @TODO move to top of file or somewhere better diff --git a/mod/wall_upload.php b/mod/wall_upload.php index fd88ab2bc2..88d5008c25 100644 --- a/mod/wall_upload.php +++ b/mod/wall_upload.php @@ -55,7 +55,7 @@ function wall_upload_post(App $a, $desktopmode = true) return; } } else { - $user_info = api_get_user($a); + $user_info = api_get_user(); $user = DBA::selectFirst('owner-view', ['id', 'uid', 'nickname', 'page-flags'], ['nickname' => $user_info['screen_name'], 'blocked' => false]); } } else { diff --git a/src/Module/Api/Friendica/GNUSocial/Version.php b/src/Module/Api/Friendica/GNUSocial/Version.php new file mode 100644 index 0000000000..3a9bc9c56c --- /dev/null +++ b/src/Module/Api/Friendica/GNUSocial/Version.php @@ -0,0 +1,36 @@ +. + * + */ + +namespace Friendica\Module\Api\Friendica\GNUSocial; + +use Friendica\Module\BaseApi; + +/** + * API endpoint: /api/friendica/gnusocial/version, /api/friendica/statusnet/version + */ +class Version extends BaseApi +{ + public static function rawContent(array $parameters = []) + { + echo self::format('version', ['version' => '0.9.7']); + exit; + } +} diff --git a/src/Module/Api/Friendica/Help/Test.php b/src/Module/Api/Friendica/Help/Test.php new file mode 100644 index 0000000000..c631e76378 --- /dev/null +++ b/src/Module/Api/Friendica/Help/Test.php @@ -0,0 +1,42 @@ +. + * + */ + +namespace Friendica\Module\Api\Friendica\Help; + +use Friendica\Module\BaseApi; + +/** + * API endpoint: /api/friendica/help/test + */ +class Test extends BaseApi +{ + public static function rawContent(array $parameters = []) + { + if (self::$format == 'xml') { + $ok = 'true'; + } else { + $ok = 'ok'; + } + + echo self::format('ok', ['ok' => $ok]); + exit; + } +} diff --git a/src/Module/BaseApi.php b/src/Module/BaseApi.php index 5b44073f3f..25caa78ab2 100644 --- a/src/Module/BaseApi.php +++ b/src/Module/BaseApi.php @@ -31,6 +31,7 @@ use Friendica\Security\BasicAuth; use Friendica\Security\OAuth; use Friendica\Util\DateTimeFormat; use Friendica\Util\HTTPInputData; +use Friendica\Util\XML; require_once __DIR__ . '/../../include/api.php'; @@ -342,7 +343,7 @@ class BaseApi extends BaseModule */ protected static function getUser($contact_id = null) { - return api_get_user(DI::app(), $contact_id); + return api_get_user($contact_id); } /** @@ -354,28 +355,28 @@ class BaseApi extends BaseModule */ protected static function format(string $root_element, array $data) { - $return = api_format_data($root_element, self::$format, $data); + $return = self::formatData($root_element, self::$format, $data); switch (self::$format) { - case "xml": - header("Content-Type: text/xml"); + case 'xml': + header('Content-Type: text/xml'); break; - case "json": - header("Content-Type: application/json"); + case 'json': + header('Content-Type: application/json'); if (!empty($return)) { $json = json_encode(end($return)); if (!empty($_GET['callback'])) { - $json = $_GET['callback'] . "(" . $json . ")"; + $json = $_GET['callback'] . '(' . $json . ')'; } $return = $json; } break; - case "rss": - header("Content-Type: application/rss+xml"); + case 'rss': + header('Content-Type: application/rss+xml'); $return = '' . "\n" . $return; break; - case "atom": - header("Content-Type: application/atom+xml"); + case 'atom': + header('Content-Type: application/atom+xml'); $return = '' . "\n" . $return; break; } @@ -383,15 +384,123 @@ class BaseApi extends BaseModule return $return; } + /** + * walks recursively through an array with the possibility to change value and key + * + * @param array $array The array to walk through + * @param callable $callback The callback function + * + * @return array the transformed array + */ + static public function walkRecursive(array &$array, callable $callback) + { + $new_array = []; + + foreach ($array as $k => $v) { + if (is_array($v)) { + if ($callback($v, $k)) { + $new_array[$k] = self::walkRecursive($v, $callback); + } + } else { + if ($callback($v, $k)) { + $new_array[$k] = $v; + } + } + } + $array = $new_array; + + return $array; + } + + /** + * Formats the data according to the data type + * + * @param string $root_element Name of the root element + * @param string $type Return type (atom, rss, xml, json) + * @param array $data JSON style array + * + * @return array|string (string|array) XML data or JSON data + */ + public static function formatData($root_element, string $type, array $data) + { + switch ($type) { + case 'atom': + case 'rss': + case 'xml': + $ret = self::createXML($data, $root_element); + break; + case 'json': + default: + $ret = $data; + break; + } + return $ret; + } + + /** + * Callback function to transform the array in an array that can be transformed in a XML file + * + * @param mixed $item Array item value + * @param string $key Array key + * + * @return boolean + */ + public static function reformatXML(&$item, &$key) + { + if (is_bool($item)) { + $item = ($item ? 'true' : 'false'); + } + + if (substr($key, 0, 10) == 'statusnet_') { + $key = 'statusnet:'.substr($key, 10); + } elseif (substr($key, 0, 10) == 'friendica_') { + $key = 'friendica:'.substr($key, 10); + } + return true; + } + /** * Creates the XML from a JSON style array * - * @param $data - * @param $root_element - * @return string + * @param array $data JSON style array + * @param string $root_element Name of the root element + * + * @return string The XML data */ - protected static function createXml($data, $root_element) + public static function createXML(array $data, $root_element) { - return api_create_xml($data, $root_element); + $childname = key($data); + $data2 = array_pop($data); + + $namespaces = ['' => 'http://api.twitter.com', + 'statusnet' => 'http://status.net/schema/api/1/', + 'friendica' => 'http://friendi.ca/schema/api/1/', + 'georss' => 'http://www.georss.org/georss']; + + /// @todo Auto detection of needed namespaces + if (in_array($root_element, ['ok', 'hash', 'config', 'version', 'ids', 'notes', 'photos'])) { + $namespaces = []; + } + + if (is_array($data2)) { + $key = key($data2); + self::walkRecursive($data2, ['Friendica\Module\BaseApi', 'reformatXML']); + + if ($key == '0') { + $data4 = []; + $i = 1; + + foreach ($data2 as $item) { + $data4[$i++ . ':' . $childname] = $item; + } + + $data2 = $data4; + } + } + + $data3 = [$root_element => $data2]; + + $ret = XML::fromArray($data3, $xml, false, $namespaces); + return $ret; } } diff --git a/static/routes.config.php b/static/routes.config.php index cc37a4eff8..ec4e317ff6 100644 --- a/static/routes.config.php +++ b/static/routes.config.php @@ -100,9 +100,9 @@ $apiRoutes = [ '/photo[.{extension:json|xml|rss|atom}]' => [Module\Api\Friendica\Index::class, [R::GET ]], ], - '/gnusocial/config[.{extension:json|xml|rss|atom}]' => [Module\Api\Friendica\Index::class, [R::GET ]], - '/gnusocial/version[.{extension:json|xml|rss|atom}]' => [Module\Api\Friendica\Index::class, [R::GET ]], - '/help/test[.{extension:json|xml|rss|atom}]' => [Module\Api\Friendica\Index::class, [R::GET ]], + '/gnusocial/config[.{extension:json|xml|rss|atom}]' => [Module\Api\Friendica\Index::class, [R::GET ]], + '/gnusocial/version[.{extension:json|xml|rss|atom}]' => [Module\Api\Friendica\GNUSocial\Version::class, [R::GET ]], + '/help/test[.{extension:json|xml|rss|atom}]' => [Module\Api\Friendica\Help\Test::class, [R::GET ]], '/lists' => [ '/create[.{extension:json|xml|rss|atom}]' => [Module\Api\Friendica\Index::class, [ R::POST]], @@ -114,15 +114,15 @@ $apiRoutes = [ '/update[.{extension:json|xml|rss|atom}]' => [Module\Api\Friendica\Index::class, [ R::POST]], ], - '/media/upload[.{extension:json|xml|rss|atom}]' => [Module\Api\Friendica\Index::class, [ R::POST]], - '/media/metadata/create[.{extension:json|xml|rss|atom}]' => [Module\Api\Friendica\Index::class, [ R::POST]], - '/saved_searches/list[.{extension:json|xml|rss|atom}]' => [Module\Api\Friendica\Index::class, [R::GET ]], - '/search/tweets[.{extension:json|xml|rss|atom}]' => [Module\Api\Friendica\Index::class, [R::GET ]], - '/search[.{extension:json|xml|rss|atom}]' => [Module\Api\Friendica\Index::class, [R::GET ]], - '/statusnet/config[.{extension:json|xml|rss|atom}]' => [Module\Api\Friendica\Index::class, [R::GET ]], - '/statusnet/conversation[.{extension:json|xml|rss|atom}]' => [Module\Api\Friendica\Index::class, [R::GET ]], - '/statusnet/conversation/{id:\d+}[.{extension:json|xml|rss|atom}]' => [Module\Api\Friendica\Index::class, [R::GET ]], - '/statusnet/version[.{extension:json|xml|rss|atom}]' => [Module\Api\Friendica\Index::class, [R::GET ]], + '/media/upload[.{extension:json|xml|rss|atom}]' => [Module\Api\Friendica\Index::class, [ R::POST]], + '/media/metadata/create[.{extension:json|xml|rss|atom}]' => [Module\Api\Friendica\Index::class, [ R::POST]], + '/saved_searches/list[.{extension:json|xml|rss|atom}]' => [Module\Api\Friendica\Index::class, [R::GET ]], + '/search/tweets[.{extension:json|xml|rss|atom}]' => [Module\Api\Friendica\Index::class, [R::GET ]], + '/search[.{extension:json|xml|rss|atom}]' => [Module\Api\Friendica\Index::class, [R::GET ]], + '/statusnet/config[.{extension:json|xml|rss|atom}]' => [Module\Api\Friendica\Index::class, [R::GET ]], + '/statusnet/conversation[.{extension:json|xml|rss|atom}]' => [Module\Api\Friendica\Index::class, [R::GET ]], + '/statusnet/conversation/{id:\d+}[.{extension:json|xml|rss|atom}]' => [Module\Api\Friendica\Index::class, [R::GET ]], + '/statusnet/version[.{extension:json|xml|rss|atom}]' => [Module\Api\Friendica\GNUSocial\Version::class, [R::GET ]], '/statuses' => [ '/destroy[.{extension:json|xml|rss|atom}]' => [Module\Api\Friendica\Index::class, [R::DELETE, R::POST]], diff --git a/tests/legacy/ApiTest.php b/tests/legacy/ApiTest.php index e800f68c80..eaafda9b79 100644 --- a/tests/legacy/ApiTest.php +++ b/tests/legacy/ApiTest.php @@ -10,7 +10,9 @@ use Friendica\Core\Config\Capability\IManageConfigValues; use Friendica\Core\PConfig\Capability\IManagePersonalConfigValues; use Friendica\Core\Protocol; use Friendica\DI; +use Friendica\Module\BaseApi; use Friendica\Network\HTTPException; +use Friendica\Security\BasicAuth; use Friendica\Test\FixtureTest; use Friendica\Util\DateTimeFormat; use Friendica\Util\Temporal; @@ -298,7 +300,7 @@ class ApiTest extends FixtureTest } /** - * Test the api_login() function without any login. + * Test the BasicAuth::getCurrentUserID() function without any login. * * @runInSeparateProcess * @preserveGlobalState disabled @@ -307,11 +309,11 @@ class ApiTest extends FixtureTest public function testApiLoginWithoutLogin() { $this->expectException(\Friendica\Network\HTTPException\UnauthorizedException::class); - api_login($this->app); + BasicAuth::getCurrentUserID(true); } /** - * Test the api_login() function with a bad login. + * Test the BasicAuth::getCurrentUserID() function with a bad login. * * @runInSeparateProcess * @preserveGlobalState disabled @@ -321,11 +323,11 @@ class ApiTest extends FixtureTest { $this->expectException(\Friendica\Network\HTTPException\UnauthorizedException::class); $_SERVER['PHP_AUTH_USER'] = 'user@server'; - api_login($this->app); + BasicAuth::getCurrentUserID(true); } /** - * Test the api_login() function with oAuth. + * Test the BasicAuth::getCurrentUserID() function with oAuth. * * @return void */ @@ -335,7 +337,7 @@ class ApiTest extends FixtureTest } /** - * Test the api_login() function with authentication provided by an addon. + * Test the BasicAuth::getCurrentUserID() function with authentication provided by an addon. * * @return void */ @@ -345,7 +347,7 @@ class ApiTest extends FixtureTest } /** - * Test the api_login() function with a correct login. + * Test the BasicAuth::getCurrentUserID() function with a correct login. * * @runInSeparateProcess * @preserveGlobalState disabled @@ -355,11 +357,11 @@ class ApiTest extends FixtureTest { $_SERVER['PHP_AUTH_USER'] = 'Test user'; $_SERVER['PHP_AUTH_PW'] = 'password'; - api_login($this->app); + BasicAuth::getCurrentUserID(true); } /** - * Test the api_login() function with a remote user. + * Test the BasicAuth::getCurrentUserID() function with a remote user. * * @runInSeparateProcess * @preserveGlobalState disabled @@ -368,7 +370,7 @@ class ApiTest extends FixtureTest { $this->expectException(\Friendica\Network\HTTPException\UnauthorizedException::class); $_SERVER['REDIRECT_REMOTE_USER'] = '123456dXNlcjpwYXNzd29yZA=='; - api_login($this->app); + BasicAuth::getCurrentUserID(true); } /** @@ -799,7 +801,7 @@ class ApiTest extends FixtureTest */ public function testApiGetUser() { - $user = api_get_user($this->app); + $user = api_get_user(); self::assertSelfUser($user); self::assertEquals('708fa0', $user['profile_sidebar_fill_color']); self::assertEquals('6fdbe8', $user['profile_link_color']); @@ -815,7 +817,7 @@ class ApiTest extends FixtureTest { $pConfig = $this->dice->create(IManagePersonalConfigValues::class); $pConfig->set($this->selfUser['id'], 'frio', 'schema', 'red'); - $user = api_get_user($this->app); + $user = api_get_user(); self::assertSelfUser($user); self::assertEquals('708fa0', $user['profile_sidebar_fill_color']); self::assertEquals('6fdbe8', $user['profile_link_color']); @@ -831,7 +833,7 @@ class ApiTest extends FixtureTest { $pConfig = $this->dice->create(IManagePersonalConfigValues::class); $pConfig->set($this->selfUser['id'], 'frio', 'schema', '---'); - $user = api_get_user($this->app); + $user = api_get_user(); self::assertSelfUser($user); self::assertEquals('708fa0', $user['profile_sidebar_fill_color']); self::assertEquals('6fdbe8', $user['profile_link_color']); @@ -850,7 +852,7 @@ class ApiTest extends FixtureTest $pConfig->set($this->selfUser['id'], 'frio', 'nav_bg', '#123456'); $pConfig->set($this->selfUser['id'], 'frio', 'link_color', '#123456'); $pConfig->set($this->selfUser['id'], 'frio', 'background_color', '#123456'); - $user = api_get_user($this->app); + $user = api_get_user(); self::assertSelfUser($user); self::assertEquals('123456', $user['profile_sidebar_fill_color']); self::assertEquals('123456', $user['profile_link_color']); @@ -868,7 +870,7 @@ class ApiTest extends FixtureTest $_SERVER['PHP_AUTH_USER'] = 'Test user'; $_SERVER['PHP_AUTH_PW'] = 'password'; $_SESSION['allow_api'] = false; - self::assertFalse(api_get_user($this->app)); + self::assertFalse(api_get_user()); } /** @@ -879,7 +881,7 @@ class ApiTest extends FixtureTest public function testApiGetUserWithGetId() { $_GET['user_id'] = $this->otherUser['id']; - self::assertOtherUser(api_get_user($this->app)); + self::assertOtherUser(api_get_user()); } /** @@ -891,7 +893,7 @@ class ApiTest extends FixtureTest { $this->expectException(\Friendica\Network\HTTPException\BadRequestException::class); $_GET['user_id'] = $this->wrongUserId; - self::assertOtherUser(api_get_user($this->app)); + self::assertOtherUser(api_get_user()); } /** @@ -902,7 +904,7 @@ class ApiTest extends FixtureTest public function testApiGetUserWithGetName() { $_GET['screen_name'] = $this->selfUser['nick']; - self::assertSelfUser(api_get_user($this->app)); + self::assertSelfUser(api_get_user()); } /** @@ -913,7 +915,7 @@ class ApiTest extends FixtureTest public function testApiGetUserWithGetUrl() { $_GET['profileurl'] = $this->selfUser['nurl']; - self::assertSelfUser(api_get_user($this->app)); + self::assertSelfUser(api_get_user()); } /** @@ -926,7 +928,7 @@ class ApiTest extends FixtureTest global $called_api; $called_api = ['api_path']; DI::args()->setArgv(['', $this->otherUser['id'] . '.json']); - self::assertOtherUser(api_get_user($this->app)); + self::assertOtherUser(api_get_user()); } /** @@ -938,7 +940,7 @@ class ApiTest extends FixtureTest { global $called_api; $called_api = ['api', 'api_path']; - self::assertSelfUser(api_get_user($this->app)); + self::assertSelfUser(api_get_user()); } /** @@ -948,7 +950,7 @@ class ApiTest extends FixtureTest */ public function testApiGetUserWithCorrectUser() { - self::assertOtherUser(api_get_user($this->app, $this->otherUser['id'])); + self::assertOtherUser(api_get_user($this->otherUser['id'])); } /** @@ -959,7 +961,7 @@ class ApiTest extends FixtureTest public function testApiGetUserWithWrongUser() { $this->expectException(\Friendica\Network\HTTPException\BadRequestException::class); - self::assertOtherUser(api_get_user($this->app, $this->wrongUserId)); + self::assertOtherUser(api_get_user($this->wrongUserId)); } /** @@ -969,7 +971,7 @@ class ApiTest extends FixtureTest */ public function testApiGetUserWithZeroUser() { - self::assertSelfUser(api_get_user($this->app, 0)); + self::assertSelfUser(api_get_user(0)); } /** @@ -996,7 +998,7 @@ class ApiTest extends FixtureTest } /** - * Test the api_walk_recursive() function. + * Test the BaseApi::walkRecursive() function. * * @return void */ @@ -1005,7 +1007,7 @@ class ApiTest extends FixtureTest $array = ['item1']; self::assertEquals( $array, - api_walk_recursive( + BaseApi::walkRecursive( $array, function () { // Should we test this with a callback that actually does something? @@ -1016,7 +1018,7 @@ class ApiTest extends FixtureTest } /** - * Test the api_walk_recursive() function with an array. + * Test the BaseApi::walkRecursive() function with an array. * * @return void */ @@ -1025,7 +1027,7 @@ class ApiTest extends FixtureTest $array = [['item1'], ['item2']]; self::assertEquals( $array, - api_walk_recursive( + BaseApi::walkRecursive( $array, function () { // Should we test this with a callback that actually does something? @@ -1036,7 +1038,7 @@ class ApiTest extends FixtureTest } /** - * Test the api_reformat_xml() function. + * Test the BaseApi::reformatXML() function. * * @return void */ @@ -1044,12 +1046,12 @@ class ApiTest extends FixtureTest { $item = true; $key = ''; - self::assertTrue(api_reformat_xml($item, $key)); + self::assertTrue(BaseApi::reformatXML($item, $key)); self::assertEquals('true', $item); } /** - * Test the api_reformat_xml() function with a statusnet_api key. + * Test the BaseApi::reformatXML() function with a statusnet_api key. * * @return void */ @@ -1057,12 +1059,12 @@ class ApiTest extends FixtureTest { $item = ''; $key = 'statusnet_api'; - self::assertTrue(api_reformat_xml($item, $key)); + self::assertTrue(BaseApi::reformatXML($item, $key)); self::assertEquals('statusnet:api', $key); } /** - * Test the api_reformat_xml() function with a friendica_api key. + * Test the BaseApi::reformatXML() function with a friendica_api key. * * @return void */ @@ -1070,12 +1072,12 @@ class ApiTest extends FixtureTest { $item = ''; $key = 'friendica_api'; - self::assertTrue(api_reformat_xml($item, $key)); + self::assertTrue(BaseApi::reformatXML($item, $key)); self::assertEquals('friendica:api', $key); } /** - * Test the api_create_xml() function. + * Test the BaseApi::createXML() function. * * @return void */ @@ -1088,12 +1090,12 @@ class ApiTest extends FixtureTest 'xmlns:georss="http://www.georss.org/georss">' . "\n" . ' some_data' . "\n" . '' . "\n", - api_create_xml(['data' => ['some_data']], 'root_element') + BaseApi::createXML(['data' => ['some_data']], 'root_element') ); } /** - * Test the api_create_xml() function without any XML namespace. + * Test the BaseApi::createXML() function without any XML namespace. * * @return void */ @@ -1104,23 +1106,23 @@ class ApiTest extends FixtureTest '