3 require_once('include/config.php');
4 require_once('include/network.php');
5 require_once('include/plugin.php');
6 require_once('include/text.php');
7 require_once('include/datetime.php');
8 require_once('include/pgettext.php');
9 require_once('include/nav.php');
10 require_once('include/cache.php');
12 define ( 'FRIENDICA_PLATFORM', 'Friendica');
13 define ( 'FRIENDICA_VERSION', '3.0.1394' );
14 define ( 'DFRN_PROTOCOL_VERSION', '2.23' );
15 define ( 'DB_UPDATE_VERSION', 1151 );
17 define ( 'EOL', "<br />\r\n" );
18 define ( 'ATOM_TIME', 'Y-m-d\TH:i:s\Z' );
23 * Image storage quality. Lower numbers save space at cost of image detail.
24 * For ease of upgrade, please do not change here. Change jpeg quality with
25 * $a->config['system']['jpeg_quality'] = n;
26 * in .htconfig.php, where n is netween 1 and 100, and with very poor results
31 define ( 'JPEG_QUALITY', 100 );
33 * $a->config['system']['png_quality'] from 0 (uncompressed) to 9
35 define ( 'PNG_QUALITY', 8 );
39 * An alternate way of limiting picture upload sizes. Specify the maximum pixel
40 * length that pictures are allowed to be (for non-square pictures, it will apply
41 * to the longest side). Pictures longer than this length will be resized to be
42 * this length (on the longest side, the other side will be scaled appropriately).
43 * Modify this value using
45 * $a->config['system']['max_image_length'] = n;
49 * If you don't want to set a maximum length, set to -1. The default value is
50 * defined by 'MAX_IMAGE_LENGTH' below.
53 define ( 'MAX_IMAGE_LENGTH', -1 );
60 define ( 'DEFAULT_DB_ENGINE', 'MyISAM' );
63 * SSL redirection policies
66 define ( 'SSL_POLICY_NONE', 0 );
67 define ( 'SSL_POLICY_FULL', 1 );
68 define ( 'SSL_POLICY_SELFSIGN', 2 );
75 define ( 'LOGGER_NORMAL', 0 );
76 define ( 'LOGGER_TRACE', 1 );
77 define ( 'LOGGER_DEBUG', 2 );
78 define ( 'LOGGER_DATA', 3 );
79 define ( 'LOGGER_ALL', 4 );
82 * registration policies
85 define ( 'REGISTER_CLOSED', 0 );
86 define ( 'REGISTER_APPROVE', 1 );
87 define ( 'REGISTER_OPEN', 2 );
93 define ( 'CONTACT_IS_FOLLOWER', 1);
94 define ( 'CONTACT_IS_SHARING', 2);
95 define ( 'CONTACT_IS_FRIEND', 3);
99 * DB update return values
102 define ( 'UPDATE_SUCCESS', 0);
103 define ( 'UPDATE_FAILED', 1);
110 * PAGE_NORMAL is a typical personal profile account
111 * PAGE_SOAPBOX automatically approves all friend requests as CONTACT_IS_SHARING, (readonly)
112 * PAGE_COMMUNITY automatically approves all friend requests as CONTACT_IS_SHARING, but with
113 * write access to wall and comments (no email and not included in page owner's ACL lists)
114 * PAGE_FREELOVE automatically approves all friend requests as full friends (CONTACT_IS_FRIEND).
118 define ( 'PAGE_NORMAL', 0 );
119 define ( 'PAGE_SOAPBOX', 1 );
120 define ( 'PAGE_COMMUNITY', 2 );
121 define ( 'PAGE_FREELOVE', 3 );
122 define ( 'PAGE_BLOG', 4 );
123 define ( 'PAGE_PRVGROUP', 5 );
126 * Network and protocol family types
129 define ( 'NETWORK_DFRN', 'dfrn'); // Friendica, Mistpark, other DFRN implementations
130 define ( 'NETWORK_ZOT', 'zot!'); // Zot!
131 define ( 'NETWORK_OSTATUS', 'stat'); // status.net, identi.ca, GNU-social, other OStatus implementations
132 define ( 'NETWORK_FEED', 'feed'); // RSS/Atom feeds with no known "post/notify" protocol
133 define ( 'NETWORK_DIASPORA', 'dspr'); // Diaspora
134 define ( 'NETWORK_MAIL', 'mail'); // IMAP/POP
135 define ( 'NETWORK_MAIL2', 'mai2'); // extended IMAP/POP
136 define ( 'NETWORK_FACEBOOK', 'face'); // Facebook API
137 define ( 'NETWORK_LINKEDIN', 'lnkd'); // LinkedIn
138 define ( 'NETWORK_XMPP', 'xmpp'); // XMPP
139 define ( 'NETWORK_MYSPACE', 'mysp'); // MySpace
140 define ( 'NETWORK_GPLUS', 'goog'); // Google+
142 define ( 'NETWORK_PHANTOM', 'unkn'); // Place holder
145 * These numbers are used in stored permissions
146 * and existing allocations MUST NEVER BE CHANGED
147 * OR RE-ASSIGNED! You may only add to them.
150 $netgroup_ids = array(
151 NETWORK_DFRN => (-1),
153 NETWORK_OSTATUS => (-3),
154 NETWORK_FEED => (-4),
155 NETWORK_DIASPORA => (-5),
156 NETWORK_MAIL => (-6),
157 NETWORK_MAIL2 => (-7),
158 NETWORK_FACEBOOK => (-8),
159 NETWORK_LINKEDIN => (-9),
160 NETWORK_XMPP => (-10),
161 NETWORK_MYSPACE => (-11),
162 NETWORK_GPLUS => (-12),
164 NETWORK_PHANTOM => (-127),
169 * Maximum number of "people who like (or don't like) this" that we will list by name
172 define ( 'MAX_LIKERS', 75);
175 * Communication timeout
178 define ( 'ZCURL_TIMEOUT' , (-1));
182 * email notification options
185 define ( 'NOTIFY_INTRO', 0x0001 );
186 define ( 'NOTIFY_CONFIRM', 0x0002 );
187 define ( 'NOTIFY_WALL', 0x0004 );
188 define ( 'NOTIFY_COMMENT', 0x0008 );
189 define ( 'NOTIFY_MAIL', 0x0010 );
190 define ( 'NOTIFY_SUGGEST', 0x0020 );
191 define ( 'NOTIFY_PROFILE', 0x0040 );
192 define ( 'NOTIFY_TAGSELF', 0x0080 );
193 define ( 'NOTIFY_TAGSHARE', 0x0100 );
195 define ( 'NOTIFY_SYSTEM', 0x8000 );
199 * various namespaces we may need to parse
202 define ( 'NAMESPACE_ZOT', 'http://purl.org/macgirvin/zot' );
203 define ( 'NAMESPACE_DFRN' , 'http://purl.org/macgirvin/dfrn/1.0' );
204 define ( 'NAMESPACE_THREAD' , 'http://purl.org/syndication/thread/1.0' );
205 define ( 'NAMESPACE_TOMB' , 'http://purl.org/atompub/tombstones/1.0' );
206 define ( 'NAMESPACE_ACTIVITY', 'http://activitystrea.ms/spec/1.0/' );
207 define ( 'NAMESPACE_ACTIVITY_SCHEMA', 'http://activitystrea.ms/schema/1.0/' );
208 define ( 'NAMESPACE_MEDIA', 'http://purl.org/syndication/atommedia' );
209 define ( 'NAMESPACE_SALMON_ME', 'http://salmon-protocol.org/ns/magic-env' );
210 define ( 'NAMESPACE_OSTATUSSUB', 'http://ostatus.org/schema/1.0/subscribe' );
211 define ( 'NAMESPACE_GEORSS', 'http://www.georss.org/georss' );
212 define ( 'NAMESPACE_POCO', 'http://portablecontacts.net/spec/1.0' );
213 define ( 'NAMESPACE_FEED', 'http://schemas.google.com/g/2010#updates-from' );
214 define ( 'NAMESPACE_OSTATUS', 'http://ostatus.org/schema/1.0' );
215 define ( 'NAMESPACE_STATUSNET', 'http://status.net/schema/api/1/' );
216 define ( 'NAMESPACE_ATOM1', 'http://www.w3.org/2005/Atom' );
218 * activity stream defines
221 define ( 'ACTIVITY_LIKE', NAMESPACE_ACTIVITY_SCHEMA . 'like' );
222 define ( 'ACTIVITY_DISLIKE', NAMESPACE_DFRN . '/dislike' );
223 define ( 'ACTIVITY_OBJ_HEART', NAMESPACE_DFRN . '/heart' );
225 define ( 'ACTIVITY_FRIEND', NAMESPACE_ACTIVITY_SCHEMA . 'make-friend' );
226 define ( 'ACTIVITY_REQ_FRIEND', NAMESPACE_ACTIVITY_SCHEMA . 'request-friend' );
227 define ( 'ACTIVITY_UNFRIEND', NAMESPACE_ACTIVITY_SCHEMA . 'remove-friend' );
228 define ( 'ACTIVITY_FOLLOW', NAMESPACE_ACTIVITY_SCHEMA . 'follow' );
229 define ( 'ACTIVITY_UNFOLLOW', NAMESPACE_ACTIVITY_SCHEMA . 'stop-following' );
230 define ( 'ACTIVITY_JOIN', NAMESPACE_ACTIVITY_SCHEMA . 'join' );
232 define ( 'ACTIVITY_POST', NAMESPACE_ACTIVITY_SCHEMA . 'post' );
233 define ( 'ACTIVITY_UPDATE', NAMESPACE_ACTIVITY_SCHEMA . 'update' );
234 define ( 'ACTIVITY_TAG', NAMESPACE_ACTIVITY_SCHEMA . 'tag' );
235 define ( 'ACTIVITY_FAVORITE', NAMESPACE_ACTIVITY_SCHEMA . 'favorite' );
237 define ( 'ACTIVITY_OBJ_COMMENT', NAMESPACE_ACTIVITY_SCHEMA . 'comment' );
238 define ( 'ACTIVITY_OBJ_NOTE', NAMESPACE_ACTIVITY_SCHEMA . 'note' );
239 define ( 'ACTIVITY_OBJ_PERSON', NAMESPACE_ACTIVITY_SCHEMA . 'person' );
240 define ( 'ACTIVITY_OBJ_PHOTO', NAMESPACE_ACTIVITY_SCHEMA . 'photo' );
241 define ( 'ACTIVITY_OBJ_P_PHOTO', NAMESPACE_ACTIVITY_SCHEMA . 'profile-photo' );
242 define ( 'ACTIVITY_OBJ_ALBUM', NAMESPACE_ACTIVITY_SCHEMA . 'photo-album' );
243 define ( 'ACTIVITY_OBJ_EVENT', NAMESPACE_ACTIVITY_SCHEMA . 'event' );
244 define ( 'ACTIVITY_OBJ_GROUP', NAMESPACE_ACTIVITY_SCHEMA . 'group' );
245 define ( 'ACTIVITY_OBJ_TAGTERM', NAMESPACE_DFRN . '/tagterm' );
246 define ( 'ACTIVITY_OBJ_PROFILE', NAMESPACE_DFRN . '/profile' );
249 * item weight for query ordering
252 define ( 'GRAVITY_PARENT', 0);
253 define ( 'GRAVITY_LIKE', 3);
254 define ( 'GRAVITY_COMMENT', 6);
258 * Reverse the effect of magic_quotes_gpc if it is enabled.
259 * Please disable magic_quotes_gpc so we don't have to do this.
260 * See http://php.net/manual/en/security.magicquotes.disabling.php
265 error_reporting(E_ERROR | E_WARNING | E_PARSE);
268 // This has to be quite large to deal with embedded private photos
269 ini_set('pcre.backtrack_limit', 500000);
272 if (get_magic_quotes_gpc()) {
273 $process = array(&$_GET, &$_POST, &$_COOKIE, &$_REQUEST);
274 while (list($key, $val) = each($process)) {
275 foreach ($val as $k => $v) {
276 unset($process[$key][$k]);
278 $process[$key][stripslashes($k)] = $v;
279 $process[] = &$process[$key][stripslashes($k)];
281 $process[$key][stripslashes($k)] = stripslashes($v);
294 * Our main application structure for the life of this page
295 * Primarily deals with the URL that got us here
296 * and tries to make some sense of it, and
297 * stores our page contents and config storage
298 * and anything else that might need to be passed around
299 * before we spit the page out.
303 if(! class_exists('App')) {
306 public $module_loaded = false;
307 public $query_string;
315 public $page_contact;
317 public $data = array();
318 public $error = false;
328 public $interactive = true;
330 public $apps = array();
343 private $curl_headers;
345 private $cached_profile_image;
346 private $cached_profile_picdate;
348 function __construct() {
350 global $default_timezone;
352 $this->timezone = ((x($default_timezone)) ? $default_timezone : 'UTC');
354 date_default_timezone_set($this->timezone);
356 $this->config = array();
357 $this->page = array();
358 $this->pager= array();
360 $this->query_string = '';
364 $this->scheme = 'http';
365 if(x($_SERVER,'HTTPS') && $_SERVER['HTTPS'])
366 $this->scheme = 'https';
367 elseif(x($_SERVER,'SERVER_PORT') && (intval($_SERVER['SERVER_PORT']) == 443))
368 $this->scheme = 'https';
371 if(x($_SERVER,'SERVER_NAME')) {
372 $this->hostname = $_SERVER['SERVER_NAME'];
373 if(stristr($this->hostname,'xn--')) {
374 // PHP or webserver may have converted idn to punycode, so
375 // convert punycode back to utf-8
376 require_once('library/simplepie/idn/idna_convert.class.php');
377 $x = new idna_convert();
378 $this->hostname = $x->decode($_SERVER['SERVER_NAME']);
381 if(x($_SERVER,'SERVER_PORT') && $_SERVER['SERVER_PORT'] != 80 && $_SERVER['SERVER_PORT'] != 443)
382 $this->hostname .= ':' . $_SERVER['SERVER_PORT'];
384 * Figure out if we are running at the top of a domain
385 * or in a sub-directory and adjust accordingly
388 $path = trim(dirname($_SERVER['SCRIPT_NAME']),'/\\');
389 if(isset($path) && strlen($path) && ($path != $this->path))
394 "include/$this->hostname" . PATH_SEPARATOR
395 . 'include' . PATH_SEPARATOR
396 . 'library' . PATH_SEPARATOR
397 . 'library/phpsec' . PATH_SEPARATOR
400 if((x($_SERVER,'QUERY_STRING')) && substr($_SERVER['QUERY_STRING'],0,2) === "q=") {
401 $this->query_string = substr($_SERVER['QUERY_STRING'],2);
402 // removing trailing / - maybe a nginx problem
403 if (substr($this->query_string, 0, 1) == "/")
404 $this->query_string = substr($this->query_string, 1);
407 $this->cmd = trim($_GET['q'],'/\\');
409 // unix style "homedir"
411 if(substr($this->cmd,0,1) === '~')
412 $this->cmd = 'profile/' . substr($this->cmd,1);
414 // Diaspora style profile url
416 if(substr($this->cmd,0,2) === 'u/')
417 $this->cmd = 'profile/' . substr($this->cmd,2);
421 * Break the URL path into C style argc/argv style arguments for our
422 * modules. Given "http://example.com/module/arg1/arg2", $this->argc
423 * will be 3 (integer) and $this->argv will contain:
429 * There will always be one argument. If provided a naked domain
430 * URL, $this->argv[0] is set to "home".
434 $this->argv = explode('/',$this->cmd);
435 $this->argc = count($this->argv);
436 if((array_key_exists('0',$this->argv)) && strlen($this->argv[0])) {
437 $this->module = str_replace(".", "_", $this->argv[0]);
441 $this->argv = array('home');
442 $this->module = 'home';
446 * Special handling for the webfinger/lrdd host XRD file
449 if($this->cmd === '.well-known/host-meta') {
451 $this->argv = array('hostxrd');
452 $this->module = 'hostxrd';
456 * See if there is any page number information, and initialise
460 $this->pager['page'] = ((x($_GET,'page') && intval($_GET['page']) > 0) ? intval($_GET['page']) : 1);
461 $this->pager['itemspage'] = 50;
462 $this->pager['start'] = ($this->pager['page'] * $this->pager['itemspage']) - $this->pager['itemspage'];
463 if($this->pager['start'] < 0)
464 $this->pager['start'] = 0;
465 $this->pager['total'] = 0;
468 function get_baseurl($ssl = false) {
470 $scheme = $this->scheme;
472 if((x($this->config,'system')) && (x($this->config['system'],'ssl_policy'))) {
473 if(intval($this->config['system']['ssl_policy']) === intval(SSL_POLICY_FULL))
476 // Basically, we have $ssl = true on any links which can only be seen by a logged in user
477 // (and also the login link). Anything seen by an outsider will have it turned off.
479 if($this->config['system']['ssl_policy'] == SSL_POLICY_SELFSIGN) {
487 $this->baseurl = $scheme . "://" . $this->hostname . ((isset($this->path) && strlen($this->path)) ? '/' . $this->path : '' );
488 return $this->baseurl;
491 function set_baseurl($url) {
492 $parsed = @parse_url($url);
494 $this->baseurl = $url;
497 $this->scheme = $parsed['scheme'];
499 $this->hostname = $parsed['host'];
500 if(x($parsed,'port'))
501 $this->hostname .= ':' . $parsed['port'];
502 if(x($parsed,'path'))
503 $this->path = trim($parsed['path'],'\\/');
508 function get_hostname() {
509 return $this->hostname;
512 function set_hostname($h) {
513 $this->hostname = $h;
516 function set_path($p) {
517 $this->path = trim(trim($p),'/');
520 function get_path() {
524 function set_pager_total($n) {
525 $this->pager['total'] = intval($n);
528 function set_pager_itemspage($n) {
529 $this->pager['itemspage'] = ((intval($n) > 0) ? intval($n) : 0);
530 $this->pager['start'] = ($this->pager['page'] * $this->pager['itemspage']) - $this->pager['itemspage'];
534 function init_pagehead() {
535 $interval = ((local_user()) ? get_pconfig(local_user(),'system','update_interval') : 40000);
536 if($interval < 10000)
539 $this->page['title'] = $this->config['sitename'];
540 $tpl = file_get_contents('view/head.tpl');
541 $this->page['htmlhead'] = replace_macros($tpl,array(
542 '$baseurl' => $this->get_baseurl(), // FIXME for z_path!!!!
543 '$local_user' => local_user(),
544 '$generator' => 'Friendica' . ' ' . FRIENDICA_VERSION,
545 '$delitem' => t('Delete this item?'),
546 '$comment' => t('Comment'),
547 '$showmore' => t('show more'),
548 '$showfewer' => t('show fewer'),
549 '$update_interval' => $interval
553 function set_curl_code($code) {
554 $this->curl_code = $code;
557 function get_curl_code() {
558 return $this->curl_code;
561 function set_curl_headers($headers) {
562 $this->curl_headers = $headers;
565 function get_curl_headers() {
566 return $this->curl_headers;
569 function get_cached_avatar_image($avatar_image){
570 if($this->cached_profile_image[$avatar_image])
571 return $this->cached_profile_image[$avatar_image];
573 $path_parts = explode("/",$avatar_image);
574 $common_filename = $path_parts[count($path_parts)-1];
576 if($this->cached_profile_picdate[$common_filename]){
577 $this->cached_profile_image[$avatar_image] = $avatar_image . $this->cached_profile_picdate[$common_filename];
579 $r = q("SELECT `contact`.`avatar-date` AS picdate FROM `contact` WHERE `contact`.`thumb` like \"%%/%s\"",
582 $this->cached_profile_image[$avatar_image] = $avatar_image;
584 $this->cached_profile_picdate[$common_filename] = "?rev=" . urlencode($r[0]['picdate']);
585 $this->cached_profile_image[$avatar_image] = $avatar_image . $this->cached_profile_picdate[$common_filename];
588 return $this->cached_profile_image[$avatar_image];
595 // retrieve the App structure
596 // useful in functions which require it but don't get it passed to them
598 if(! function_exists('get_app')) {
606 // Multi-purpose function to check variable state.
607 // Usage: x($var) or $x($array,'key')
608 // returns false if variable/key is not set
609 // if variable is set, returns 1 if has 'non-zero' value, otherwise returns 0.
610 // e.g. x('') or x(0) returns 0;
612 if(! function_exists('x')) {
613 function x($s,$k = NULL) {
615 if((is_array($s)) && (array_key_exists($k,$s))) {
634 // called from db initialisation if db is dead.
636 if(! function_exists('system_unavailable')) {
637 function system_unavailable() {
638 include('system_unavailable.php');
646 function clean_urls() {
648 // if($a->config['system']['clean_urls'])
655 $base = $a->get_baseurl();
663 return $a->get_baseurl();
666 function absurl($path) {
667 if(strpos($path,'/') === 0)
668 return z_path() . $path;
673 return (!empty($_SERVER['HTTP_X_REQUESTED_WITH']) && strtolower($_SERVER['HTTP_X_REQUESTED_WITH']) == 'xmlhttprequest');
677 // Primarily involved with database upgrade, but also sets the
678 // base url for use in cmdline programs which don't have
679 // $_SERVER variables, and synchronising the state of installed plugins.
682 if(! function_exists('check_config')) {
683 function check_config(&$a) {
685 $build = get_config('system','build');
687 $build = set_config('system','build',DB_UPDATE_VERSION);
689 $url = get_config('system','url');
691 // if the url isn't set or the stored url is radically different
692 // than the currently visited url, store the current value accordingly.
693 // "Radically different" ignores common variations such as http vs https
694 // and www.example.com vs example.com.
696 if((! x($url)) || (! link_compare($url,$a->get_baseurl())))
697 $url = set_config('system','url',$a->get_baseurl());
699 if($build != DB_UPDATE_VERSION) {
700 $stored = intval($build);
701 $current = intval(DB_UPDATE_VERSION);
702 if(($stored < $current) && file_exists('update.php')) {
704 load_config('database');
706 // We're reporting a different version than what is currently installed.
707 // Run any existing update scripts to bring the database up to current.
709 require_once('update.php');
711 // make sure that boot.php and update.php are the same release, we might be
712 // updating right this very second and the correct version of the update.php
713 // file may not be here yet. This can happen on a very busy site.
715 if(DB_UPDATE_VERSION == UPDATE_VERSION) {
717 for($x = $stored; $x < $current; $x ++) {
718 if(function_exists('update_' . $x)) {
720 // There could be a lot of processes running or about to run.
721 // We want exactly one process to run the update command.
722 // So store the fact that we're taking responsibility
723 // after first checking to see if somebody else already has.
725 // If the update fails or times-out completely you may need to
726 // delete the config entry to try again.
728 if(get_config('database','update_' . $x))
730 set_config('database','update_' . $x, '1');
732 // call the specific update
734 $func = 'update_' . $x;
737 //send the administrator an e-mail
738 $email_tpl = get_intltext_template("update_fail_eml.tpl");
739 $email_msg = replace_macros($email_tpl, array(
740 '$sitename' => $a->config['sitename'],
741 '$siteurl' => $a->get_baseurl(),
743 '$error' => sprintf( t('Update %s failed. See error logs.'), $x)
745 $subject=sprintf(t('Update Error at %s'), $a->get_baseurl());
747 mail($a->config['admin_email'], $subject, $email_msg,
748 'From: ' . t('Administrator') . '@' . $_SERVER['SERVER_NAME'] . "\n"
749 . 'Content-type: text/plain; charset=UTF-8' . "\n"
750 . 'Content-transfer-encoding: 8bit' );
752 logger('CRITICAL: Update Failed: '. $x);
755 set_config('database','update_' . $x, 'success');
759 set_config('system','build', DB_UPDATE_VERSION);
766 * Synchronise plugins:
768 * $a->config['system']['addon'] contains a comma-separated list of names
769 * of plugins/addons which are used on this system.
770 * Go through the database list of already installed addons, and if we have
771 * an entry, but it isn't in the config list, call the uninstall procedure
772 * and mark it uninstalled in the database (for now we'll remove it).
773 * Then go through the config list and if we have a plugin that isn't installed,
774 * call the install procedure and add it to the database.
778 $r = q("SELECT * FROM `addon` WHERE `installed` = 1");
782 $installed = array();
784 $plugins = get_config('system','addon');
785 $plugins_arr = array();
788 $plugins_arr = explode(',',str_replace(' ', '',$plugins));
790 $a->plugins = $plugins_arr;
792 $installed_arr = array();
794 if(count($installed)) {
795 foreach($installed as $i) {
796 if(! in_array($i['name'],$plugins_arr)) {
797 uninstall_plugin($i['name']);
800 $installed_arr[] = $i['name'];
805 if(count($plugins_arr)) {
806 foreach($plugins_arr as $p) {
807 if(! in_array($p,$installed_arr)) {
821 function get_guid($size=16) {
822 $exists = true; // assume by default that we don't have a unique guid
824 $s = random_string($size);
825 $r = q("select id from guid where guid = '%s' limit 1", dbesc($s));
829 q("insert into guid ( guid ) values ( '%s' ) ", dbesc($s));
834 // wrapper for adding a login box. If $register == true provide a registration
835 // link. This will most always depend on the value of $a->config['register_policy'].
836 // returns the complete html for inserting into the page
838 if(! function_exists('login')) {
839 function login($register = false, $hiddens=false) {
845 'title' => t('Create a New Account'),
846 'desc' => t('Register')
850 $noid = get_config('system','no_openid');
852 $dest_url = $a->get_baseurl(true) . '/' . $a->query_string;
855 $tpl = get_markup_template("logout.tpl");
858 $tpl = get_markup_template("login.tpl");
859 $_SESSION['return_url'] = $a->query_string;
863 $o .= replace_macros($tpl,array(
865 '$dest_url' => $dest_url,
866 '$logout' => t('Logout'),
867 '$login' => t('Login'),
869 '$lname' => array('username', t('Nickname or Email address: ') , '', ''),
870 '$lpassword' => array('password', t('Password: '), '', ''),
873 '$lopenid' => array('openid_url', t('Or login using OpenID: '),'',''),
875 '$hiddens' => $hiddens,
879 '$lostpass' => t('Forgot your password?'),
880 '$lostlink' => t('Password Reset'),
883 call_hooks('login_hook',$o);
889 // Used to end the current process, after saving session state.
891 if(! function_exists('killme')) {
893 session_write_close();
898 // redirect to another URL and terminate this process.
900 if(! function_exists('goaway')) {
901 function goaway($s) {
902 header("Location: $s");
908 // Returns the uid of locally logged in user or false.
910 if(! function_exists('local_user')) {
911 function local_user() {
912 if((x($_SESSION,'authenticated')) && (x($_SESSION,'uid')))
913 return intval($_SESSION['uid']);
918 // Returns contact id of authenticated site visitor or false
920 if(! function_exists('remote_user')) {
921 function remote_user() {
922 if((x($_SESSION,'authenticated')) && (x($_SESSION,'visitor_id')))
923 return intval($_SESSION['visitor_id']);
928 // contents of $s are displayed prominently on the page the next time
929 // a page is loaded. Usually used for errors or alerts.
931 if(! function_exists('notice')) {
932 function notice($s) {
934 if(! x($_SESSION,'sysmsg')) $_SESSION['sysmsg'] = array();
936 $_SESSION['sysmsg'][] = $s;
939 if(! function_exists('info')) {
942 if(! x($_SESSION,'sysmsg_info')) $_SESSION['sysmsg_info'] = array();
944 $_SESSION['sysmsg_info'][] = $s;
949 // wrapper around config to limit the text length of an incoming message
951 if(! function_exists('get_max_import_size')) {
952 function get_max_import_size() {
954 return ((x($a->config,'max_import_size')) ? $a->config['max_import_size'] : 0 );
962 * Function : profile_load
964 * @parameter string $nickname
965 * @parameter int $profile
967 * Summary: Loads a profile into the page sidebar.
968 * The function requires a writeable copy of the main App structure, and the nickname
969 * of a registered local account.
971 * If the viewer is an authenticated remote viewer, the profile displayed is the
972 * one that has been configured for his/her viewing in the Contact manager.
973 * Passing a non-zero profile ID can also allow a preview of a selected profile
976 * Profile information is placed in the App structure for later retrieval.
977 * Honours the owner's chosen theme for display.
981 if(! function_exists('profile_load')) {
982 function profile_load(&$a, $nickname, $profile = 0) {
984 $r = q("SELECT `profile-id` FROM `contact` WHERE `id` = %d LIMIT 1",
985 intval($_SESSION['visitor_id']));
987 $profile = $r[0]['profile-id'];
993 $profile_int = intval($profile);
994 $r = q("SELECT `profile`.`uid` AS `profile_uid`, `profile`.* , `contact`.`avatar-date` AS picdate, `user`.* FROM `profile`
995 left join `contact` on `contact`.`uid` = `profile`.`uid` LEFT JOIN `user` ON `profile`.`uid` = `user`.`uid`
996 WHERE `user`.`nickname` = '%s' AND `profile`.`id` = %d and `contact`.`self` = 1 LIMIT 1",
1001 if((! $r) && (! count($r))) {
1002 $r = q("SELECT `profile`.`uid` AS `profile_uid`, `profile`.* , `contact`.`avatar-date` AS picdate, `user`.* FROM `profile`
1003 left join `contact` on `contact`.`uid` = `profile`.`uid` LEFT JOIN `user` ON `profile`.`uid` = `user`.`uid`
1004 WHERE `user`.`nickname` = '%s' AND `profile`.`is-default` = 1 and `contact`.`self` = 1 LIMIT 1",
1009 if(($r === false) || (! count($r))) {
1010 logger('profile error: ' . $a->query_string, LOGGER_DEBUG);
1011 notice( t('Requested profile is not available.') . EOL );
1016 // fetch user tags if this isn't the default profile
1018 if(! $r[0]['is-default']) {
1019 $x = q("select `pub_keywords` from `profile` where uid = %d and `is-default` = 1 limit 1",
1020 intval($profile_uid)
1023 $r[0]['pub_keywords'] = $x[0]['pub_keywords'];
1026 $a->profile = $r[0];
1029 $a->page['title'] = $a->profile['name'] . " @ " . $a->config['sitename'];
1030 $_SESSION['theme'] = $a->profile['theme'];
1033 * load/reload current theme info
1036 $theme_info_file = "view/theme/".current_theme()."/theme.php";
1037 if (file_exists($theme_info_file)){
1038 require_once($theme_info_file);
1041 if(! (x($a->page,'aside')))
1042 $a->page['aside'] = '';
1044 if(local_user() && local_user() == $a->profile['uid']) {
1045 $a->page['aside'] .= replace_macros(get_markup_template('profile_edlink.tpl'),array(
1046 '$editprofile' => t('Edit profile'),
1047 '$profid' => $a->profile['id']
1051 $block = (((get_config('system','block_public')) && (! local_user()) && (! remote_user())) ? true : false);
1053 $a->page['aside'] .= profile_sidebar($a->profile, $block);
1056 $a->page['aside'] .= contact_block();*/
1065 * Function: profile_sidebar
1067 * Formats a profile for display in the sidebar.
1068 * It is very difficult to templatise the HTML completely
1069 * because of all the conditional logic.
1071 * @parameter: array $profile
1073 * Returns HTML string stuitable for sidebar inclusion
1074 * Exceptions: Returns empty string if passed $profile is wrong type or not populated
1079 if(! function_exists('profile_sidebar')) {
1080 function profile_sidebar($profile, $block = 0) {
1089 if((! is_array($profile)) && (! count($profile)))
1092 $profile['picdate'] = urlencode($profile['picdate']);
1094 call_hooks('profile_sidebar_enter', $profile);
1097 // don't show connect link to yourself
1098 $connect = (($profile['uid'] != local_user()) ? t('Connect') : False);
1100 // don't show connect link to authenticated visitors either
1102 if((remote_user()) && ($_SESSION['visitor_visiting'] == $profile['uid']))
1105 if(get_my_url() && $profile['unkmail'])
1106 $wallmessage = t('Message');
1108 $wallmessage = false;
1112 // show edit profile to yourself
1113 if ($profile['uid'] == local_user()) {
1114 $profile['edit'] = array($a->get_baseurl(). '/profiles', t('Profiles'),"", t('Manage/edit profiles'));
1116 $r = q("SELECT * FROM `profile` WHERE `uid` = %d",
1119 $profile['menu'] = array(
1120 'chg_photo' => t('Change profile photo'),
1121 'cr_new' => t('Create New Profile'),
1122 'entries' => array(),
1127 foreach($r as $rr) {
1128 $profile['menu']['entries'][] = array(
1129 'photo' => $rr['thumb'],
1131 'alt' => t('Profile Image'),
1132 'profile_name' => $rr['profile-name'],
1133 'isdefault' => $rr['is-default'],
1134 'visibile_to_everybody' => t('visible to everybody'),
1135 'edit_visibility' => t('Edit visibility'),
1149 if((x($profile,'address') == 1)
1150 || (x($profile,'locality') == 1)
1151 || (x($profile,'region') == 1)
1152 || (x($profile,'postal-code') == 1)
1153 || (x($profile,'country-name') == 1))
1154 $location = t('Location:');
1156 $gender = ((x($profile,'gender') == 1) ? t('Gender:') : False);
1159 $marital = ((x($profile,'marital') == 1) ? t('Status:') : False);
1161 $homepage = ((x($profile,'homepage') == 1) ? t('Homepage:') : False);
1163 if(($profile['hidewall'] || $block) && (! local_user()) && (! remote_user())) {
1164 $location = $pdesc = $gender = $marital = $homepage = False;
1167 $firstname = ((strpos($profile['name'],' '))
1168 ? trim(substr($profile['name'],0,strpos($profile['name'],' '))) : $profile['name']);
1169 $lastname = (($firstname === $profile['name']) ? '' : trim(substr($profile['name'],strlen($firstname))));
1172 'podloc' => $a->get_baseurl(),
1173 'searchable' => (($profile['publish'] && $profile['net-publish']) ? 'true' : 'false' ),
1174 'nickname' => $profile['nickname'],
1175 'fullname' => $profile['name'],
1176 'firstname' => $firstname,
1177 'lastname' => $lastname,
1178 'photo300' => $a->get_cached_avatar_image($a->get_baseurl() . '/photo/custom/300/' . $profile['uid'] . '.jpg'),
1179 'photo100' => $a->get_cached_avatar_image($a->get_baseurl() . '/photo/custom/100/' . $profile['uid'] . '.jpg'),
1180 'photo50' => $a->get_cached_avatar_image($a->get_baseurl() . '/photo/custom/50/' . $profile['uid'] . '.jpg'),
1184 $contact_block = contact_block();
1188 $tpl = get_markup_template('profile_vcard.tpl');
1190 $o .= replace_macros($tpl, array(
1191 '$profile' => $profile,
1192 '$connect' => $connect,
1193 '$wallmessage' => $wallmessage,
1194 '$location' => template_escape($location),
1195 '$gender' => $gender,
1197 '$marital' => $marital,
1198 '$homepage' => $homepage,
1199 '$diaspora' => $diaspora,
1200 '$contact_block' => $contact_block,
1204 $arr = array('profile' => &$profile, 'entry' => &$o);
1206 call_hooks('profile_sidebar', $arr);
1213 if(! function_exists('get_birthdays')) {
1214 function get_birthdays() {
1222 $bd_format = t('g A l F d') ; // 8 AM Friday January 18
1223 $bd_short = t('F d');
1225 $r = q("SELECT `event`.*, `event`.`id` AS `eid`, `contact`.* FROM `event`
1226 LEFT JOIN `contact` ON `contact`.`id` = `event`.`cid`
1227 WHERE `event`.`uid` = %d AND `type` = 'birthday' AND `start` < '%s' AND `finish` > '%s'
1228 ORDER BY `start` ASC ",
1229 intval(local_user()),
1230 dbesc(datetime_convert('UTC','UTC','now + 6 days')),
1231 dbesc(datetime_convert('UTC','UTC','now'))
1234 if($r && count($r)) {
1236 $now = strtotime('now');
1240 foreach($r as $rr) {
1241 if(strlen($rr['name']))
1243 if((strtotime($rr['start'] . ' +00:00') < $now) && (strtotime($rr['finish'] . ' +00:00') > $now))
1246 $classtoday = $istoday ? ' birthday-today ' : '';
1248 foreach($r as &$rr) {
1249 if(! strlen($rr['name']))
1254 if(in_array($rr['cid'],$cids))
1256 $cids[] = $rr['cid'];
1258 $today = (((strtotime($rr['start'] . ' +00:00') < $now) && (strtotime($rr['finish'] . ' +00:00') > $now)) ? true : false);
1261 if($rr['network'] === NETWORK_DFRN) {
1262 $sparkle = " sparkle";
1263 $url = $a->get_baseurl() . '/redir/' . $rr['cid'];
1267 $rr['title'] = $rr['name'];
1268 $rr['date'] = day_translate(datetime_convert('UTC', $a->timezone, $rr['start'], $rr['adjust'] ? $bd_format : $bd_short)) . (($today) ? ' ' . t('[today]') : '');
1269 $rr['startime'] = Null;
1270 $rr['today'] = $today;
1275 $tpl = get_markup_template("birthdays_reminder.tpl");
1276 return replace_macros($tpl, array(
1277 '$baseurl' => $a->get_baseurl(),
1278 '$classtoday' => $classtoday,
1280 '$event_reminders' => t('Birthday Reminders'),
1281 '$event_title' => t('Birthdays this week:'),
1283 '$lbr' => '{', // raw brackets mess up if/endif macro processing
1291 if(! function_exists('get_events')) {
1292 function get_events() {
1294 require_once('include/bbcode.php');
1301 $bd_format = t('g A l F d') ; // 8 AM Friday January 18
1302 $bd_short = t('F d');
1304 $r = q("SELECT `event`.* FROM `event`
1305 WHERE `event`.`uid` = %d AND `type` != 'birthday' AND `start` < '%s' AND `start` > '%s'
1306 ORDER BY `start` ASC ",
1307 intval(local_user()),
1308 dbesc(datetime_convert('UTC','UTC','now + 6 days')),
1309 dbesc(datetime_convert('UTC','UTC','now - 1 days'))
1312 if($r && count($r)) {
1313 $now = strtotime('now');
1315 foreach($r as $rr) {
1316 if(strlen($rr['name']))
1319 $strt = datetime_convert('UTC',$rr['convert'] ? $a->timezone : 'UTC',$rr['start'],'Y-m-d');
1320 if($strt === datetime_convert('UTC',$a->timezone,'now','Y-m-d'))
1323 $classtoday = (($istoday) ? 'event-today' : '');
1326 foreach($r as &$rr) {
1328 $md = datetime_convert('UTC',$a->timezone,$rr['start'],'Y/m');
1330 $md = datetime_convert('UTC','UTC',$rr['start'],'Y/m');
1331 $md .= "/#link-".$rr['id'];
1333 $title = substr(strip_tags(bbcode($rr['desc'])),0,32) . '... ';
1335 $title = t('[No description]');
1337 $strt = datetime_convert('UTC',$rr['convert'] ? $a->timezone : 'UTC',$rr['start']);
1338 $today = ((substr($strt,0,10) === datetime_convert('UTC',$a->timezone,'now','Y-m-d')) ? true : false);
1341 $rr['title'] = $title;
1342 $rr['date'] = day_translate(datetime_convert('UTC', $rr['adjust'] ? $a->timezone : 'UTC', $rr['start'], $bd_format)) . (($today) ? ' ' . t('[today]') : '');
1343 $rr['startime'] = $strt;
1344 $rr['today'] = $today;
1348 $tpl = get_markup_template("events_reminder.tpl");
1349 return replace_macros($tpl, array(
1350 '$baseurl' => $a->get_baseurl(),
1351 '$classtoday' => $classtoday,
1352 '$count' => count($r),
1353 '$event_reminders' => t('Event Reminders'),
1354 '$event_title' => t('Events this week:'),
1363 * Wrap calls to proc_close(proc_open()) and call hook
1364 * so plugins can take part in process :)
1367 * $cmd program to run
1368 * next args are passed as $cmd command line
1370 * e.g.: proc_run("ls","-la","/tmp");
1372 * $cmd and string args are surrounded with ""
1375 if(! function_exists('proc_run')) {
1376 function proc_run($cmd){
1380 $args = func_get_args();
1386 // expand any arrays
1388 foreach($args as $arg) {
1389 if(is_array($arg)) {
1390 foreach($arg as $n) {
1400 $arr = array('args' => $args, 'run_cmd' => true);
1402 call_hooks("proc_run", $arr);
1403 if(! $arr['run_cmd'])
1406 if(count($args) && $args[0] === 'php')
1407 $args[0] = ((x($a->config,'php_path')) && (strlen($a->config['php_path'])) ? $a->config['php_path'] : 'php');
1408 for($x = 0; $x < count($args); $x ++)
1409 $args[$x] = escapeshellarg($args[$x]);
1411 $cmdline = implode($args," ");
1412 proc_close(proc_open($cmdline." &",array(),$foo));
1416 if(! function_exists('current_theme')) {
1417 function current_theme(){
1418 $app_base_themes = array('duepuntozero', 'dispy', 'quattro');
1422 $system_theme = ((isset($a->config['system']['theme'])) ? $a->config['system']['theme'] : '');
1423 $theme_name = ((isset($_SESSION) && x($_SESSION,'theme')) ? $_SESSION['theme'] : $system_theme);
1426 (file_exists('view/theme/' . $theme_name . '/style.css') ||
1427 file_exists('view/theme/' . $theme_name . '/style.php')))
1428 return($theme_name);
1430 foreach($app_base_themes as $t) {
1431 if(file_exists('view/theme/' . $t . '/style.css')||
1432 file_exists('view/theme/' . $t . '/style.php'))
1436 $fallback = array_merge(glob('view/theme/*/style.css'),glob('view/theme/*/style.php'));
1437 if(count($fallback))
1438 return (str_replace('view/theme/','', substr($fallback[0],0,-10)));
1444 * Return full URL to theme which is currently in effect.
1445 * Provide a sane default if nothing is chosen or the specified theme does not exist.
1447 if(! function_exists('current_theme_url')) {
1448 function current_theme_url() {
1450 $t = current_theme();
1451 if (file_exists('view/theme/' . $t . '/style.php'))
1452 return($a->get_baseurl() . '/view/theme/' . $t . '/style.pcss');
1453 return($a->get_baseurl() . '/view/theme/' . $t . '/style.css');
1457 if(! function_exists('feed_birthday')) {
1458 function feed_birthday($uid,$tz) {
1462 * Determine the next birthday, but only if the birthday is published
1463 * in the default profile. We _could_ also look for a private profile that the
1464 * recipient can see, but somebody could get mad at us if they start getting
1465 * public birthday greetings when they haven't made this info public.
1467 * Assuming we are able to publish this info, we are then going to convert
1468 * the start time from the owner's timezone to UTC.
1470 * This will potentially solve the problem found with some social networks
1471 * where birthdays are converted to the viewer's timezone and salutations from
1472 * elsewhere in the world show up on the wrong day. We will convert it to the
1473 * viewer's timezone also, but first we are going to convert it from the birthday
1474 * person's timezone to GMT - so the viewer may find the birthday starting at
1475 * 6:00PM the day before, but that will correspond to midnight to the birthday person.
1485 $p = q("SELECT `dob` FROM `profile` WHERE `is-default` = 1 AND `uid` = %d LIMIT 1",
1489 if($p && count($p)) {
1490 $tmp_dob = substr($p[0]['dob'],5);
1491 if(intval($tmp_dob)) {
1492 $y = datetime_convert($tz,$tz,'now','Y');
1493 $bd = $y . '-' . $tmp_dob . ' 00:00';
1494 $t_dob = strtotime($bd);
1495 $now = strtotime(datetime_convert($tz,$tz,'now'));
1497 $bd = $y + 1 . '-' . $tmp_dob . ' 00:00';
1498 $birthday = datetime_convert($tz,'UTC',$bd,ATOM_TIME);
1506 if(! function_exists('is_site_admin')) {
1507 function is_site_admin() {
1509 if(local_user() && x($a->user,'email') && x($a->config,'admin_email') && ($a->user['email'] === $a->config['admin_email']))
1516 if(! function_exists('load_contact_links')) {
1517 function load_contact_links($uid) {
1523 if(! $uid || x($a->contacts,'empty'))
1526 $r = q("SELECT `id`,`network`,`url`,`thumb` FROM `contact` WHERE `uid` = %d AND `self` = 0 AND `blocked` = 0 ",
1531 $url = normalise_link($rr['url']);
1536 $ret['empty'] = true;
1537 $a->contacts = $ret;
1542 if(! function_exists('profile_tabs')){
1543 function profile_tabs($a, $is_owner=False, $nickname=Null){
1544 //echo "<pre>"; var_dump($a->user); killme();
1546 if (is_null($nickname))
1547 $nickname = $a->user['nickname'];
1550 $tab = notags(trim($_GET['tab']));
1552 $url = $a->get_baseurl() . '/profile/' . $nickname;
1556 'label'=>t('Status'),
1558 'sel' => ((!isset($tab)&&$a->argv[0]=='profile')?'active':''),
1559 'title' => t('Status Messages and Posts'),
1562 'label' => t('Profile'),
1563 'url' => $url.'/?tab=profile',
1564 'sel' => ((isset($tab) && $tab=='profile')?'active':''),
1565 'title' => t('Profile Details'),
1568 'label' => t('Photos'),
1569 'url' => $a->get_baseurl() . '/photos/' . $nickname,
1570 'sel' => ((!isset($tab)&&$a->argv[0]=='photos')?'active':''),
1571 'title' => t('Photo Albums'),
1577 'label' => t('Events'),
1578 'url' => $a->get_baseurl() . '/events',
1579 'sel' =>((!isset($tab)&&$a->argv[0]=='events')?'active':''),
1580 'title' => t('Events and Calendar'),
1583 'label' => t('Personal Notes'),
1584 'url' => $a->get_baseurl() . '/notes',
1585 'sel' =>((!isset($tab)&&$a->argv[0]=='notes')?'active':''),
1586 'title' => t('Only You Can See This'),
1591 $arr = array('is_owner' => $is_owner, 'nickname' => $nickname, 'tab' => (($tab) ? $tab : false), 'tabs' => $tabs);
1592 call_hooks('profile_tabs', $arr);
1594 $tpl = get_markup_template('common_tabs.tpl');
1596 return replace_macros($tpl,array('$tabs' => $arr['tabs']));
1600 function get_my_url() {
1601 if(x($_SESSION,'my_url'))
1602 return $_SESSION['my_url'];
1606 function zrl_init(&$a) {
1607 $tmp_str = get_my_url();
1608 if(validate_url($tmp_str)) {
1609 proc_run('php','include/gprobe.php',bin2hex($tmp_str));
1610 $arr = array('zrl' => $tmp_str, 'url' => $a->cmd);
1611 call_hooks('zrl_init',$arr);
1615 function zrl($s,$force = false) {
1618 if((! strpos($s,'/profile/')) && (! $force))
1620 if($force && substr($s,-1,1) !== '/')
1622 $achar = strpos($s,'?') ? '&' : '?';
1623 $mine = get_my_url();
1624 if($mine and ! link_compare($mine,$s))
1625 return $s . $achar . 'zrl=' . urlencode($mine);
1630 * returns querystring as string from a mapped array
1632 * @param params Array
1635 function build_querystring($params, $name=null) {
1637 foreach($params as $key=>$val) {
1638 if(is_array($val)) {
1640 $ret .= build_querystring($val, $key);
1642 $ret .= build_querystring($val, $name."[$key]");
1645 $val = urlencode($val);
1647 $ret.=$name."[$key]"."=$val&";
1649 $ret.= "$key=$val&";