3 require_once('include/config.php');
4 require_once('include/network.php');
5 require_once('include/plugin.php');
6 require_once('include/text.php');
7 require_once('include/datetime.php');
8 require_once('include/pgettext.php');
9 require_once('include/nav.php');
10 require_once('include/cache.php');
12 define ( 'FRIENDICA_PLATFORM', 'Friendica');
13 define ( 'FRIENDICA_VERSION', '3.0.1388' );
14 define ( 'DFRN_PROTOCOL_VERSION', '2.23' );
15 define ( 'DB_UPDATE_VERSION', 1151 );
17 define ( 'EOL', "<br />\r\n" );
18 define ( 'ATOM_TIME', 'Y-m-d\TH:i:s\Z' );
23 * Image storage quality. Lower numbers save space at cost of image detail.
24 * For ease of upgrade, please do not change here. Change jpeg quality with
25 * $a->config['system']['jpeg_quality'] = n;
26 * in .htconfig.php, where n is netween 1 and 100, and with very poor results
31 define ( 'JPEG_QUALITY', 100 );
33 * $a->config['system']['png_quality'] from 0 (uncompressed) to 9
35 define ( 'PNG_QUALITY', 8 );
42 define ( 'DEFAULT_DB_ENGINE', 'MyISAM' );
45 * SSL redirection policies
48 define ( 'SSL_POLICY_NONE', 0 );
49 define ( 'SSL_POLICY_FULL', 1 );
50 define ( 'SSL_POLICY_SELFSIGN', 2 );
57 define ( 'LOGGER_NORMAL', 0 );
58 define ( 'LOGGER_TRACE', 1 );
59 define ( 'LOGGER_DEBUG', 2 );
60 define ( 'LOGGER_DATA', 3 );
61 define ( 'LOGGER_ALL', 4 );
64 * registration policies
67 define ( 'REGISTER_CLOSED', 0 );
68 define ( 'REGISTER_APPROVE', 1 );
69 define ( 'REGISTER_OPEN', 2 );
75 define ( 'CONTACT_IS_FOLLOWER', 1);
76 define ( 'CONTACT_IS_SHARING', 2);
77 define ( 'CONTACT_IS_FRIEND', 3);
81 * DB update return values
84 define ( 'UPDATE_SUCCESS', 0);
85 define ( 'UPDATE_FAILED', 1);
92 * PAGE_NORMAL is a typical personal profile account
93 * PAGE_SOAPBOX automatically approves all friend requests as CONTACT_IS_SHARING, (readonly)
94 * PAGE_COMMUNITY automatically approves all friend requests as CONTACT_IS_SHARING, but with
95 * write access to wall and comments (no email and not included in page owner's ACL lists)
96 * PAGE_FREELOVE automatically approves all friend requests as full friends (CONTACT_IS_FRIEND).
100 define ( 'PAGE_NORMAL', 0 );
101 define ( 'PAGE_SOAPBOX', 1 );
102 define ( 'PAGE_COMMUNITY', 2 );
103 define ( 'PAGE_FREELOVE', 3 );
104 define ( 'PAGE_BLOG', 4 );
105 define ( 'PAGE_PRVGROUP', 5 );
108 * Network and protocol family types
111 define ( 'NETWORK_DFRN', 'dfrn'); // Friendica, Mistpark, other DFRN implementations
112 define ( 'NETWORK_ZOT', 'zot!'); // Zot!
113 define ( 'NETWORK_OSTATUS', 'stat'); // status.net, identi.ca, GNU-social, other OStatus implementations
114 define ( 'NETWORK_FEED', 'feed'); // RSS/Atom feeds with no known "post/notify" protocol
115 define ( 'NETWORK_DIASPORA', 'dspr'); // Diaspora
116 define ( 'NETWORK_MAIL', 'mail'); // IMAP/POP
117 define ( 'NETWORK_MAIL2', 'mai2'); // extended IMAP/POP
118 define ( 'NETWORK_FACEBOOK', 'face'); // Facebook API
119 define ( 'NETWORK_LINKEDIN', 'lnkd'); // LinkedIn
120 define ( 'NETWORK_XMPP', 'xmpp'); // XMPP
121 define ( 'NETWORK_MYSPACE', 'mysp'); // MySpace
122 define ( 'NETWORK_GPLUS', 'goog'); // Google+
124 define ( 'NETWORK_PHANTOM', 'unkn'); // Place holder
127 * These numbers are used in stored permissions
128 * and existing allocations MUST NEVER BE CHANGED
129 * OR RE-ASSIGNED! You may only add to them.
132 $netgroup_ids = array(
133 NETWORK_DFRN => (-1),
135 NETWORK_OSTATUS => (-3),
136 NETWORK_FEED => (-4),
137 NETWORK_DIASPORA => (-5),
138 NETWORK_MAIL => (-6),
139 NETWORK_MAIL2 => (-7),
140 NETWORK_FACEBOOK => (-8),
141 NETWORK_LINKEDIN => (-9),
142 NETWORK_XMPP => (-10),
143 NETWORK_MYSPACE => (-11),
144 NETWORK_GPLUS => (-12),
146 NETWORK_PHANTOM => (-127),
151 * Maximum number of "people who like (or don't like) this" that we will list by name
154 define ( 'MAX_LIKERS', 75);
157 * Communication timeout
160 define ( 'ZCURL_TIMEOUT' , (-1));
164 * email notification options
167 define ( 'NOTIFY_INTRO', 0x0001 );
168 define ( 'NOTIFY_CONFIRM', 0x0002 );
169 define ( 'NOTIFY_WALL', 0x0004 );
170 define ( 'NOTIFY_COMMENT', 0x0008 );
171 define ( 'NOTIFY_MAIL', 0x0010 );
172 define ( 'NOTIFY_SUGGEST', 0x0020 );
173 define ( 'NOTIFY_PROFILE', 0x0040 );
174 define ( 'NOTIFY_TAGSELF', 0x0080 );
175 define ( 'NOTIFY_TAGSHARE', 0x0100 );
177 define ( 'NOTIFY_SYSTEM', 0x8000 );
181 * various namespaces we may need to parse
184 define ( 'NAMESPACE_ZOT', 'http://purl.org/macgirvin/zot' );
185 define ( 'NAMESPACE_DFRN' , 'http://purl.org/macgirvin/dfrn/1.0' );
186 define ( 'NAMESPACE_THREAD' , 'http://purl.org/syndication/thread/1.0' );
187 define ( 'NAMESPACE_TOMB' , 'http://purl.org/atompub/tombstones/1.0' );
188 define ( 'NAMESPACE_ACTIVITY', 'http://activitystrea.ms/spec/1.0/' );
189 define ( 'NAMESPACE_ACTIVITY_SCHEMA', 'http://activitystrea.ms/schema/1.0/' );
190 define ( 'NAMESPACE_MEDIA', 'http://purl.org/syndication/atommedia' );
191 define ( 'NAMESPACE_SALMON_ME', 'http://salmon-protocol.org/ns/magic-env' );
192 define ( 'NAMESPACE_OSTATUSSUB', 'http://ostatus.org/schema/1.0/subscribe' );
193 define ( 'NAMESPACE_GEORSS', 'http://www.georss.org/georss' );
194 define ( 'NAMESPACE_POCO', 'http://portablecontacts.net/spec/1.0' );
195 define ( 'NAMESPACE_FEED', 'http://schemas.google.com/g/2010#updates-from' );
196 define ( 'NAMESPACE_OSTATUS', 'http://ostatus.org/schema/1.0' );
197 define ( 'NAMESPACE_STATUSNET', 'http://status.net/schema/api/1/' );
198 define ( 'NAMESPACE_ATOM1', 'http://www.w3.org/2005/Atom' );
200 * activity stream defines
203 define ( 'ACTIVITY_LIKE', NAMESPACE_ACTIVITY_SCHEMA . 'like' );
204 define ( 'ACTIVITY_DISLIKE', NAMESPACE_DFRN . '/dislike' );
205 define ( 'ACTIVITY_OBJ_HEART', NAMESPACE_DFRN . '/heart' );
207 define ( 'ACTIVITY_FRIEND', NAMESPACE_ACTIVITY_SCHEMA . 'make-friend' );
208 define ( 'ACTIVITY_REQ_FRIEND', NAMESPACE_ACTIVITY_SCHEMA . 'request-friend' );
209 define ( 'ACTIVITY_UNFRIEND', NAMESPACE_ACTIVITY_SCHEMA . 'remove-friend' );
210 define ( 'ACTIVITY_FOLLOW', NAMESPACE_ACTIVITY_SCHEMA . 'follow' );
211 define ( 'ACTIVITY_UNFOLLOW', NAMESPACE_ACTIVITY_SCHEMA . 'stop-following' );
212 define ( 'ACTIVITY_JOIN', NAMESPACE_ACTIVITY_SCHEMA . 'join' );
214 define ( 'ACTIVITY_POST', NAMESPACE_ACTIVITY_SCHEMA . 'post' );
215 define ( 'ACTIVITY_UPDATE', NAMESPACE_ACTIVITY_SCHEMA . 'update' );
216 define ( 'ACTIVITY_TAG', NAMESPACE_ACTIVITY_SCHEMA . 'tag' );
217 define ( 'ACTIVITY_FAVORITE', NAMESPACE_ACTIVITY_SCHEMA . 'favorite' );
219 define ( 'ACTIVITY_OBJ_COMMENT', NAMESPACE_ACTIVITY_SCHEMA . 'comment' );
220 define ( 'ACTIVITY_OBJ_NOTE', NAMESPACE_ACTIVITY_SCHEMA . 'note' );
221 define ( 'ACTIVITY_OBJ_PERSON', NAMESPACE_ACTIVITY_SCHEMA . 'person' );
222 define ( 'ACTIVITY_OBJ_PHOTO', NAMESPACE_ACTIVITY_SCHEMA . 'photo' );
223 define ( 'ACTIVITY_OBJ_P_PHOTO', NAMESPACE_ACTIVITY_SCHEMA . 'profile-photo' );
224 define ( 'ACTIVITY_OBJ_ALBUM', NAMESPACE_ACTIVITY_SCHEMA . 'photo-album' );
225 define ( 'ACTIVITY_OBJ_EVENT', NAMESPACE_ACTIVITY_SCHEMA . 'event' );
226 define ( 'ACTIVITY_OBJ_GROUP', NAMESPACE_ACTIVITY_SCHEMA . 'group' );
227 define ( 'ACTIVITY_OBJ_TAGTERM', NAMESPACE_DFRN . '/tagterm' );
228 define ( 'ACTIVITY_OBJ_PROFILE', NAMESPACE_DFRN . '/profile' );
231 * item weight for query ordering
234 define ( 'GRAVITY_PARENT', 0);
235 define ( 'GRAVITY_LIKE', 3);
236 define ( 'GRAVITY_COMMENT', 6);
240 * Reverse the effect of magic_quotes_gpc if it is enabled.
241 * Please disable magic_quotes_gpc so we don't have to do this.
242 * See http://php.net/manual/en/security.magicquotes.disabling.php
247 error_reporting(E_ERROR | E_WARNING | E_PARSE);
250 // This has to be quite large to deal with embedded private photos
251 ini_set('pcre.backtrack_limit', 500000);
254 if (get_magic_quotes_gpc()) {
255 $process = array(&$_GET, &$_POST, &$_COOKIE, &$_REQUEST);
256 while (list($key, $val) = each($process)) {
257 foreach ($val as $k => $v) {
258 unset($process[$key][$k]);
260 $process[$key][stripslashes($k)] = $v;
261 $process[] = &$process[$key][stripslashes($k)];
263 $process[$key][stripslashes($k)] = stripslashes($v);
276 * Our main application structure for the life of this page
277 * Primarily deals with the URL that got us here
278 * and tries to make some sense of it, and
279 * stores our page contents and config storage
280 * and anything else that might need to be passed around
281 * before we spit the page out.
285 if(! class_exists('App')) {
288 public $module_loaded = false;
289 public $query_string;
297 public $page_contact;
299 public $data = array();
300 public $error = false;
310 public $interactive = true;
312 public $apps = array();
325 private $curl_headers;
327 private $cached_profile_image;
328 private $cached_profile_picdate;
330 function __construct() {
332 global $default_timezone;
334 $this->timezone = ((x($default_timezone)) ? $default_timezone : 'UTC');
336 date_default_timezone_set($this->timezone);
338 $this->config = array();
339 $this->page = array();
340 $this->pager= array();
342 $this->query_string = '';
346 $this->scheme = 'http';
347 if(x($_SERVER,'HTTPS') && $_SERVER['HTTPS'])
348 $this->scheme = 'https';
349 elseif(x($_SERVER,'SERVER_PORT') && (intval($_SERVER['SERVER_PORT']) == 443))
350 $this->scheme = 'https';
353 if(x($_SERVER,'SERVER_NAME')) {
354 $this->hostname = $_SERVER['SERVER_NAME'];
355 if(x($_SERVER,'SERVER_PORT') && $_SERVER['SERVER_PORT'] != 80 && $_SERVER['SERVER_PORT'] != 443)
356 $this->hostname .= ':' . $_SERVER['SERVER_PORT'];
358 * Figure out if we are running at the top of a domain
359 * or in a sub-directory and adjust accordingly
362 $path = trim(dirname($_SERVER['SCRIPT_NAME']),'/\\');
363 if(isset($path) && strlen($path) && ($path != $this->path))
368 "include/$this->hostname" . PATH_SEPARATOR
369 . 'include' . PATH_SEPARATOR
370 . 'library' . PATH_SEPARATOR
371 . 'library/phpsec' . PATH_SEPARATOR
374 if((x($_SERVER,'QUERY_STRING')) && substr($_SERVER['QUERY_STRING'],0,2) === "q=") {
375 $this->query_string = substr($_SERVER['QUERY_STRING'],2);
376 // removing trailing / - maybe a nginx problem
377 if (substr($this->query_string, 0, 1) == "/")
378 $this->query_string = substr($this->query_string, 1);
381 $this->cmd = trim($_GET['q'],'/\\');
383 // unix style "homedir"
385 if(substr($this->cmd,0,1) === '~')
386 $this->cmd = 'profile/' . substr($this->cmd,1);
388 // Diaspora style profile url
390 if(substr($this->cmd,0,2) === 'u/')
391 $this->cmd = 'profile/' . substr($this->cmd,2);
395 * Break the URL path into C style argc/argv style arguments for our
396 * modules. Given "http://example.com/module/arg1/arg2", $this->argc
397 * will be 3 (integer) and $this->argv will contain:
403 * There will always be one argument. If provided a naked domain
404 * URL, $this->argv[0] is set to "home".
408 $this->argv = explode('/',$this->cmd);
409 $this->argc = count($this->argv);
410 if((array_key_exists('0',$this->argv)) && strlen($this->argv[0])) {
411 $this->module = str_replace(".", "_", $this->argv[0]);
415 $this->argv = array('home');
416 $this->module = 'home';
420 * Special handling for the webfinger/lrdd host XRD file
423 if($this->cmd === '.well-known/host-meta') {
425 $this->argv = array('hostxrd');
426 $this->module = 'hostxrd';
430 * See if there is any page number information, and initialise
434 $this->pager['page'] = ((x($_GET,'page') && intval($_GET['page']) > 0) ? intval($_GET['page']) : 1);
435 $this->pager['itemspage'] = 50;
436 $this->pager['start'] = ($this->pager['page'] * $this->pager['itemspage']) - $this->pager['itemspage'];
437 if($this->pager['start'] < 1)
438 $this->pager['start'] = 1;
439 $this->pager['total'] = 0;
442 function get_baseurl($ssl = false) {
444 $scheme = $this->scheme;
446 if((x($this->config,'system')) && (x($this->config['system'],'ssl_policy'))) {
447 if(intval($this->config['system']['ssl_policy']) === intval(SSL_POLICY_FULL))
450 // Basically, we have $ssl = true on any links which can only be seen by a logged in user
451 // (and also the login link). Anything seen by an outsider will have it turned off.
453 if($this->config['system']['ssl_policy'] == SSL_POLICY_SELFSIGN) {
461 $this->baseurl = $scheme . "://" . $this->hostname . ((isset($this->path) && strlen($this->path)) ? '/' . $this->path : '' );
462 return $this->baseurl;
465 function set_baseurl($url) {
466 $parsed = @parse_url($url);
468 $this->baseurl = $url;
471 $this->scheme = $parsed['scheme'];
473 $this->hostname = $parsed['host'];
474 if(x($parsed,'port'))
475 $this->hostname .= ':' . $parsed['port'];
476 if(x($parsed,'path'))
477 $this->path = trim($parsed['path'],'\\/');
482 function get_hostname() {
483 return $this->hostname;
486 function set_hostname($h) {
487 $this->hostname = $h;
490 function set_path($p) {
491 $this->path = trim(trim($p),'/');
494 function get_path() {
498 function set_pager_total($n) {
499 $this->pager['total'] = intval($n);
502 function set_pager_itemspage($n) {
503 $this->pager['itemspage'] = ((intval($n) > 0) ? intval($n) : 0);
504 $this->pager['start'] = ($this->pager['page'] * $this->pager['itemspage']) - $this->pager['itemspage'];
508 function init_pagehead() {
509 $interval = ((local_user()) ? get_pconfig(local_user(),'system','update_interval') : 40000);
510 if($interval < 10000)
513 $this->page['title'] = $this->config['sitename'];
514 $tpl = file_get_contents('view/head.tpl');
515 $this->page['htmlhead'] = replace_macros($tpl,array(
516 '$baseurl' => $this->get_baseurl(), // FIXME for z_path!!!!
517 '$local_user' => local_user(),
518 '$generator' => 'Friendica' . ' ' . FRIENDICA_VERSION,
519 '$delitem' => t('Delete this item?'),
520 '$comment' => t('Comment'),
521 '$showmore' => t('show more'),
522 '$showfewer' => t('show fewer'),
523 '$update_interval' => $interval
527 function set_curl_code($code) {
528 $this->curl_code = $code;
531 function get_curl_code() {
532 return $this->curl_code;
535 function set_curl_headers($headers) {
536 $this->curl_headers = $headers;
539 function get_curl_headers() {
540 return $this->curl_headers;
543 function get_cached_avatar_image($avatar_image){
544 if($this->cached_profile_image[$avatar_image])
545 return $this->cached_profile_image[$avatar_image];
547 $path_parts = explode("/",$avatar_image);
548 $common_filename = $path_parts[count($path_parts)-1];
550 if($this->cached_profile_picdate[$common_filename]){
551 $this->cached_profile_image[$avatar_image] = $avatar_image . $this->cached_profile_picdate[$common_filename];
553 $r = q("SELECT `contact`.`avatar-date` AS picdate FROM `contact` WHERE `contact`.`thumb` like \"%%/%s\"",
556 $this->cached_profile_image[$avatar_image] = $avatar_image;
558 $this->cached_profile_picdate[$common_filename] = "?rev=" . urlencode($r[0]['picdate']);
559 $this->cached_profile_image[$avatar_image] = $avatar_image . $this->cached_profile_picdate[$common_filename];
562 return $this->cached_profile_image[$avatar_image];
569 // retrieve the App structure
570 // useful in functions which require it but don't get it passed to them
572 if(! function_exists('get_app')) {
580 // Multi-purpose function to check variable state.
581 // Usage: x($var) or $x($array,'key')
582 // returns false if variable/key is not set
583 // if variable is set, returns 1 if has 'non-zero' value, otherwise returns 0.
584 // e.g. x('') or x(0) returns 0;
586 if(! function_exists('x')) {
587 function x($s,$k = NULL) {
589 if((is_array($s)) && (array_key_exists($k,$s))) {
608 // called from db initialisation if db is dead.
610 if(! function_exists('system_unavailable')) {
611 function system_unavailable() {
612 include('system_unavailable.php');
620 function clean_urls() {
622 // if($a->config['system']['clean_urls'])
629 $base = $a->get_baseurl();
637 return $a->get_baseurl();
640 function absurl($path) {
641 if(strpos($path,'/') === 0)
642 return z_path() . $path;
647 return (!empty($_SERVER['HTTP_X_REQUESTED_WITH']) && strtolower($_SERVER['HTTP_X_REQUESTED_WITH']) == 'xmlhttprequest');
651 // Primarily involved with database upgrade, but also sets the
652 // base url for use in cmdline programs which don't have
653 // $_SERVER variables, and synchronising the state of installed plugins.
656 if(! function_exists('check_config')) {
657 function check_config(&$a) {
659 $build = get_config('system','build');
661 $build = set_config('system','build',DB_UPDATE_VERSION);
663 $url = get_config('system','url');
665 // if the url isn't set or the stored url is radically different
666 // than the currently visited url, store the current value accordingly.
667 // "Radically different" ignores common variations such as http vs https
668 // and www.example.com vs example.com.
670 if((! x($url)) || (! link_compare($url,$a->get_baseurl())))
671 $url = set_config('system','url',$a->get_baseurl());
673 if($build != DB_UPDATE_VERSION) {
674 $stored = intval($build);
675 $current = intval(DB_UPDATE_VERSION);
676 if(($stored < $current) && file_exists('update.php')) {
678 load_config('database');
680 // We're reporting a different version than what is currently installed.
681 // Run any existing update scripts to bring the database up to current.
683 require_once('update.php');
685 // make sure that boot.php and update.php are the same release, we might be
686 // updating right this very second and the correct version of the update.php
687 // file may not be here yet. This can happen on a very busy site.
689 if(DB_UPDATE_VERSION == UPDATE_VERSION) {
691 for($x = $stored; $x < $current; $x ++) {
692 if(function_exists('update_' . $x)) {
694 // There could be a lot of processes running or about to run.
695 // We want exactly one process to run the update command.
696 // So store the fact that we're taking responsibility
697 // after first checking to see if somebody else already has.
699 // If the update fails or times-out completely you may need to
700 // delete the config entry to try again.
702 if(get_config('database','update_' . $x))
704 set_config('database','update_' . $x, '1');
706 // call the specific update
708 $func = 'update_' . $x;
711 //send the administrator an e-mail
712 $email_tpl = get_intltext_template("update_fail_eml.tpl");
713 $email_msg = replace_macros($email_tpl, array(
714 '$sitename' => $a->config['sitename'],
715 '$siteurl' => $a->get_baseurl(),
717 '$error' => sprintf( t('Update %s failed. See error logs.'), $x)
719 $subject=sprintf(t('Update Error at %s'), $a->get_baseurl());
721 mail($a->config['admin_email'], $subject, $email_msg,
722 'From: ' . t('Administrator') . '@' . $_SERVER['SERVER_NAME'] . "\n"
723 . 'Content-type: text/plain; charset=UTF-8' . "\n"
724 . 'Content-transfer-encoding: 8bit' );
726 logger('CRITICAL: Update Failed: '. $x);
729 set_config('database','update_' . $x, 'success');
733 set_config('system','build', DB_UPDATE_VERSION);
740 * Synchronise plugins:
742 * $a->config['system']['addon'] contains a comma-separated list of names
743 * of plugins/addons which are used on this system.
744 * Go through the database list of already installed addons, and if we have
745 * an entry, but it isn't in the config list, call the uninstall procedure
746 * and mark it uninstalled in the database (for now we'll remove it).
747 * Then go through the config list and if we have a plugin that isn't installed,
748 * call the install procedure and add it to the database.
752 $r = q("SELECT * FROM `addon` WHERE `installed` = 1");
756 $installed = array();
758 $plugins = get_config('system','addon');
759 $plugins_arr = array();
762 $plugins_arr = explode(',',str_replace(' ', '',$plugins));
764 $a->plugins = $plugins_arr;
766 $installed_arr = array();
768 if(count($installed)) {
769 foreach($installed as $i) {
770 if(! in_array($i['name'],$plugins_arr)) {
771 uninstall_plugin($i['name']);
774 $installed_arr[] = $i['name'];
779 if(count($plugins_arr)) {
780 foreach($plugins_arr as $p) {
781 if(! in_array($p,$installed_arr)) {
795 function get_guid($size=16) {
796 $exists = true; // assume by default that we don't have a unique guid
798 $s = random_string($size);
799 $r = q("select id from guid where guid = '%s' limit 1", dbesc($s));
803 q("insert into guid ( guid ) values ( '%s' ) ", dbesc($s));
808 // wrapper for adding a login box. If $register == true provide a registration
809 // link. This will most always depend on the value of $a->config['register_policy'].
810 // returns the complete html for inserting into the page
812 if(! function_exists('login')) {
813 function login($register = false, $hiddens=false) {
819 'title' => t('Create a New Account'),
820 'desc' => t('Register')
824 $noid = get_config('system','no_openid');
826 $dest_url = $a->get_baseurl(true) . '/' . $a->query_string;
829 $tpl = get_markup_template("logout.tpl");
832 $tpl = get_markup_template("login.tpl");
833 $_SESSION['return_url'] = $a->query_string;
837 $o .= replace_macros($tpl,array(
839 '$dest_url' => $dest_url,
840 '$logout' => t('Logout'),
841 '$login' => t('Login'),
843 '$lname' => array('username', t('Nickname or Email address: ') , '', ''),
844 '$lpassword' => array('password', t('Password: '), '', ''),
847 '$lopenid' => array('openid_url', t('Or login using OpenID: '),'',''),
849 '$hiddens' => $hiddens,
853 '$lostpass' => t('Forgot your password?'),
854 '$lostlink' => t('Password Reset'),
857 call_hooks('login_hook',$o);
863 // Used to end the current process, after saving session state.
865 if(! function_exists('killme')) {
867 session_write_close();
872 // redirect to another URL and terminate this process.
874 if(! function_exists('goaway')) {
875 function goaway($s) {
876 header("Location: $s");
882 // Returns the uid of locally logged in user or false.
884 if(! function_exists('local_user')) {
885 function local_user() {
886 if((x($_SESSION,'authenticated')) && (x($_SESSION,'uid')))
887 return intval($_SESSION['uid']);
892 // Returns contact id of authenticated site visitor or false
894 if(! function_exists('remote_user')) {
895 function remote_user() {
896 if((x($_SESSION,'authenticated')) && (x($_SESSION,'visitor_id')))
897 return intval($_SESSION['visitor_id']);
902 // contents of $s are displayed prominently on the page the next time
903 // a page is loaded. Usually used for errors or alerts.
905 if(! function_exists('notice')) {
906 function notice($s) {
908 if(! x($_SESSION,'sysmsg')) $_SESSION['sysmsg'] = array();
910 $_SESSION['sysmsg'][] = $s;
913 if(! function_exists('info')) {
916 if(! x($_SESSION,'sysmsg_info')) $_SESSION['sysmsg_info'] = array();
918 $_SESSION['sysmsg_info'][] = $s;
923 // wrapper around config to limit the text length of an incoming message
925 if(! function_exists('get_max_import_size')) {
926 function get_max_import_size() {
928 return ((x($a->config,'max_import_size')) ? $a->config['max_import_size'] : 0 );
936 * Function : profile_load
938 * @parameter string $nickname
939 * @parameter int $profile
941 * Summary: Loads a profile into the page sidebar.
942 * The function requires a writeable copy of the main App structure, and the nickname
943 * of a registered local account.
945 * If the viewer is an authenticated remote viewer, the profile displayed is the
946 * one that has been configured for his/her viewing in the Contact manager.
947 * Passing a non-zero profile ID can also allow a preview of a selected profile
950 * Profile information is placed in the App structure for later retrieval.
951 * Honours the owner's chosen theme for display.
955 if(! function_exists('profile_load')) {
956 function profile_load(&$a, $nickname, $profile = 0) {
958 $r = q("SELECT `profile-id` FROM `contact` WHERE `id` = %d LIMIT 1",
959 intval($_SESSION['visitor_id']));
961 $profile = $r[0]['profile-id'];
967 $profile_int = intval($profile);
968 $r = q("SELECT `profile`.`uid` AS `profile_uid`, `profile`.* , `contact`.`avatar-date` AS picdate, `user`.* FROM `profile`
969 left join `contact` on `contact`.`uid` = `profile`.`uid` LEFT JOIN `user` ON `profile`.`uid` = `user`.`uid`
970 WHERE `user`.`nickname` = '%s' AND `profile`.`id` = %d and `contact`.`self` = 1 LIMIT 1",
975 if((! $r) && (! count($r))) {
976 $r = q("SELECT `profile`.`uid` AS `profile_uid`, `profile`.* , `contact`.`avatar-date` AS picdate, `user`.* FROM `profile`
977 left join `contact` on `contact`.`uid` = `profile`.`uid` LEFT JOIN `user` ON `profile`.`uid` = `user`.`uid`
978 WHERE `user`.`nickname` = '%s' AND `profile`.`is-default` = 1 and `contact`.`self` = 1 LIMIT 1",
983 if(($r === false) || (! count($r))) {
984 logger('profile error: ' . $a->query_string, LOGGER_DEBUG);
985 notice( t('Requested profile is not available.') . EOL );
990 // fetch user tags if this isn't the default profile
992 if(! $r[0]['is-default']) {
993 $x = q("select `pub_keywords` from `profile` where uid = %d and `is-default` = 1 limit 1",
997 $r[0]['pub_keywords'] = $x[0]['pub_keywords'];
1000 $a->profile = $r[0];
1003 $a->page['title'] = $a->profile['name'] . " @ " . $a->config['sitename'];
1004 $_SESSION['theme'] = $a->profile['theme'];
1007 * load/reload current theme info
1010 $theme_info_file = "view/theme/".current_theme()."/theme.php";
1011 if (file_exists($theme_info_file)){
1012 require_once($theme_info_file);
1015 if(! (x($a->page,'aside')))
1016 $a->page['aside'] = '';
1018 if(local_user() && local_user() == $a->profile['uid']) {
1019 $a->page['aside'] .= replace_macros(get_markup_template('profile_edlink.tpl'),array(
1020 '$editprofile' => t('Edit profile'),
1021 '$profid' => $a->profile['id']
1025 $block = (((get_config('system','block_public')) && (! local_user()) && (! remote_user())) ? true : false);
1027 $a->page['aside'] .= profile_sidebar($a->profile, $block);
1030 $a->page['aside'] .= contact_block();*/
1039 * Function: profile_sidebar
1041 * Formats a profile for display in the sidebar.
1042 * It is very difficult to templatise the HTML completely
1043 * because of all the conditional logic.
1045 * @parameter: array $profile
1047 * Returns HTML string stuitable for sidebar inclusion
1048 * Exceptions: Returns empty string if passed $profile is wrong type or not populated
1053 if(! function_exists('profile_sidebar')) {
1054 function profile_sidebar($profile, $block = 0) {
1063 if((! is_array($profile)) && (! count($profile)))
1066 $profile['picdate'] = urlencode($profile['picdate']);
1068 call_hooks('profile_sidebar_enter', $profile);
1071 // don't show connect link to yourself
1072 $connect = (($profile['uid'] != local_user()) ? t('Connect') : False);
1074 // don't show connect link to authenticated visitors either
1076 if((remote_user()) && ($_SESSION['visitor_visiting'] == $profile['uid']))
1079 if(get_my_url() && $profile['unkmail'])
1080 $wallmessage = t('Message');
1082 $wallmessage = false;
1086 // show edit profile to yourself
1087 if ($profile['uid'] == local_user()) {
1088 $profile['edit'] = array($a->get_baseurl(). '/profiles', t('Profiles'),"", t('Manage/edit profiles'));
1090 $r = q("SELECT * FROM `profile` WHERE `uid` = %d",
1093 $profile['menu'] = array(
1094 'chg_photo' => t('Change profile photo'),
1095 'cr_new' => t('Create New Profile'),
1096 'entries' => array(),
1101 foreach($r as $rr) {
1102 $profile['menu']['entries'][] = array(
1103 'photo' => $rr['thumb'],
1105 'alt' => t('Profile Image'),
1106 'profile_name' => $rr['profile-name'],
1107 'isdefault' => $rr['is-default'],
1108 'visibile_to_everybody' => t('visible to everybody'),
1109 'edit_visibility' => t('Edit visibility'),
1123 if((x($profile,'address') == 1)
1124 || (x($profile,'locality') == 1)
1125 || (x($profile,'region') == 1)
1126 || (x($profile,'postal-code') == 1)
1127 || (x($profile,'country-name') == 1))
1128 $location = t('Location:');
1130 $gender = ((x($profile,'gender') == 1) ? t('Gender:') : False);
1133 $marital = ((x($profile,'marital') == 1) ? t('Status:') : False);
1135 $homepage = ((x($profile,'homepage') == 1) ? t('Homepage:') : False);
1137 if(($profile['hidewall'] || $block) && (! local_user()) && (! remote_user())) {
1138 $location = $pdesc = $gender = $marital = $homepage = False;
1141 $firstname = ((strpos($profile['name'],' '))
1142 ? trim(substr($profile['name'],0,strpos($profile['name'],' '))) : $profile['name']);
1143 $lastname = (($firstname === $profile['name']) ? '' : trim(substr($profile['name'],strlen($firstname))));
1146 'podloc' => $a->get_baseurl(),
1147 'searchable' => (($profile['publish'] && $profile['net-publish']) ? 'true' : 'false' ),
1148 'nickname' => $profile['nickname'],
1149 'fullname' => $profile['name'],
1150 'firstname' => $firstname,
1151 'lastname' => $lastname,
1152 'photo300' => $a->get_cached_avatar_image($a->get_baseurl() . '/photo/custom/300/' . $profile['uid'] . '.jpg'),
1153 'photo100' => $a->get_cached_avatar_image($a->get_baseurl() . '/photo/custom/100/' . $profile['uid'] . '.jpg'),
1154 'photo50' => $a->get_cached_avatar_image($a->get_baseurl() . '/photo/custom/50/' . $profile['uid'] . '.jpg'),
1158 $contact_block = contact_block();
1162 $tpl = get_markup_template('profile_vcard.tpl');
1164 $o .= replace_macros($tpl, array(
1165 '$profile' => $profile,
1166 '$connect' => $connect,
1167 '$wallmessage' => $wallmessage,
1168 '$location' => template_escape($location),
1169 '$gender' => $gender,
1171 '$marital' => $marital,
1172 '$homepage' => $homepage,
1173 '$diaspora' => $diaspora,
1174 '$contact_block' => $contact_block,
1178 $arr = array('profile' => &$profile, 'entry' => &$o);
1180 call_hooks('profile_sidebar', $arr);
1187 if(! function_exists('get_birthdays')) {
1188 function get_birthdays() {
1196 $bd_format = t('g A l F d') ; // 8 AM Friday January 18
1197 $bd_short = t('F d');
1199 $r = q("SELECT `event`.*, `event`.`id` AS `eid`, `contact`.* FROM `event`
1200 LEFT JOIN `contact` ON `contact`.`id` = `event`.`cid`
1201 WHERE `event`.`uid` = %d AND `type` = 'birthday' AND `start` < '%s' AND `finish` > '%s'
1202 ORDER BY `start` ASC ",
1203 intval(local_user()),
1204 dbesc(datetime_convert('UTC','UTC','now + 6 days')),
1205 dbesc(datetime_convert('UTC','UTC','now'))
1208 if($r && count($r)) {
1210 $now = strtotime('now');
1214 foreach($r as $rr) {
1215 if(strlen($rr['name']))
1217 if((strtotime($rr['start'] . ' +00:00') < $now) && (strtotime($rr['finish'] . ' +00:00') > $now))
1220 $classtoday = $istoday ? ' birthday-today ' : '';
1222 foreach($r as &$rr) {
1223 if(! strlen($rr['name']))
1228 if(in_array($rr['cid'],$cids))
1230 $cids[] = $rr['cid'];
1232 $today = (((strtotime($rr['start'] . ' +00:00') < $now) && (strtotime($rr['finish'] . ' +00:00') > $now)) ? true : false);
1235 if($rr['network'] === NETWORK_DFRN) {
1236 $sparkle = " sparkle";
1237 $url = $a->get_baseurl() . '/redir/' . $rr['cid'];
1241 $rr['title'] = $rr['name'];
1242 $rr['date'] = day_translate(datetime_convert('UTC', $a->timezone, $rr['start'], $rr['adjust'] ? $bd_format : $bd_short)) . (($today) ? ' ' . t('[today]') : '');
1243 $rr['startime'] = Null;
1244 $rr['today'] = $today;
1249 $tpl = get_markup_template("birthdays_reminder.tpl");
1250 return replace_macros($tpl, array(
1251 '$baseurl' => $a->get_baseurl(),
1252 '$classtoday' => $classtoday,
1254 '$event_reminders' => t('Birthday Reminders'),
1255 '$event_title' => t('Birthdays this week:'),
1257 '$lbr' => '{', // raw brackets mess up if/endif macro processing
1265 if(! function_exists('get_events')) {
1266 function get_events() {
1268 require_once('include/bbcode.php');
1275 $bd_format = t('g A l F d') ; // 8 AM Friday January 18
1276 $bd_short = t('F d');
1278 $r = q("SELECT `event`.* FROM `event`
1279 WHERE `event`.`uid` = %d AND `type` != 'birthday' AND `start` < '%s' AND `start` > '%s'
1280 ORDER BY `start` ASC ",
1281 intval(local_user()),
1282 dbesc(datetime_convert('UTC','UTC','now + 6 days')),
1283 dbesc(datetime_convert('UTC','UTC','now - 1 days'))
1286 if($r && count($r)) {
1287 $now = strtotime('now');
1289 foreach($r as $rr) {
1290 if(strlen($rr['name']))
1293 $strt = datetime_convert('UTC',$rr['convert'] ? $a->timezone : 'UTC',$rr['start'],'Y-m-d');
1294 if($strt === datetime_convert('UTC',$a->timezone,'now','Y-m-d'))
1297 $classtoday = (($istoday) ? 'event-today' : '');
1300 foreach($r as &$rr) {
1302 $md = datetime_convert('UTC',$a->timezone,$rr['start'],'Y/m');
1304 $md = datetime_convert('UTC','UTC',$rr['start'],'Y/m');
1305 $md .= "/#link-".$rr['id'];
1307 $title = substr(strip_tags(bbcode($rr['desc'])),0,32) . '... ';
1309 $title = t('[No description]');
1311 $strt = datetime_convert('UTC',$rr['convert'] ? $a->timezone : 'UTC',$rr['start']);
1312 $today = ((substr($strt,0,10) === datetime_convert('UTC',$a->timezone,'now','Y-m-d')) ? true : false);
1315 $rr['title'] = $title;
1316 $rr['date'] = day_translate(datetime_convert('UTC', $rr['adjust'] ? $a->timezone : 'UTC', $rr['start'], $bd_format)) . (($today) ? ' ' . t('[today]') : '');
1317 $rr['startime'] = $strt;
1318 $rr['today'] = $today;
1322 $tpl = get_markup_template("events_reminder.tpl");
1323 return replace_macros($tpl, array(
1324 '$baseurl' => $a->get_baseurl(),
1325 '$classtoday' => $classtoday,
1326 '$count' => count($r),
1327 '$event_reminders' => t('Event Reminders'),
1328 '$event_title' => t('Events this week:'),
1337 * Wrap calls to proc_close(proc_open()) and call hook
1338 * so plugins can take part in process :)
1341 * $cmd program to run
1342 * next args are passed as $cmd command line
1344 * e.g.: proc_run("ls","-la","/tmp");
1346 * $cmd and string args are surrounded with ""
1349 if(! function_exists('proc_run')) {
1350 function proc_run($cmd){
1354 $args = func_get_args();
1360 // expand any arrays
1362 foreach($args as $arg) {
1363 if(is_array($arg)) {
1364 foreach($arg as $n) {
1374 $arr = array('args' => $args, 'run_cmd' => true);
1376 call_hooks("proc_run", $arr);
1377 if(! $arr['run_cmd'])
1380 if(count($args) && $args[0] === 'php')
1381 $args[0] = ((x($a->config,'php_path')) && (strlen($a->config['php_path'])) ? $a->config['php_path'] : 'php');
1382 for($x = 0; $x < count($args); $x ++)
1383 $args[$x] = escapeshellarg($args[$x]);
1385 $cmdline = implode($args," ");
1386 proc_close(proc_open($cmdline." &",array(),$foo));
1390 if(! function_exists('current_theme')) {
1391 function current_theme(){
1392 $app_base_themes = array('duepuntozero', 'dispy', 'quattro');
1396 $system_theme = ((isset($a->config['system']['theme'])) ? $a->config['system']['theme'] : '');
1397 $theme_name = ((isset($_SESSION) && x($_SESSION,'theme')) ? $_SESSION['theme'] : $system_theme);
1400 (file_exists('view/theme/' . $theme_name . '/style.css') ||
1401 file_exists('view/theme/' . $theme_name . '/style.php')))
1402 return($theme_name);
1404 foreach($app_base_themes as $t) {
1405 if(file_exists('view/theme/' . $t . '/style.css')||
1406 file_exists('view/theme/' . $t . '/style.php'))
1410 $fallback = array_merge(glob('view/theme/*/style.css'),glob('view/theme/*/style.php'));
1411 if(count($fallback))
1412 return (str_replace('view/theme/','', substr($fallback[0],0,-10)));
1418 * Return full URL to theme which is currently in effect.
1419 * Provide a sane default if nothing is chosen or the specified theme does not exist.
1421 if(! function_exists('current_theme_url')) {
1422 function current_theme_url() {
1424 $t = current_theme();
1425 if (file_exists('view/theme/' . $t . '/style.php'))
1426 return($a->get_baseurl() . '/view/theme/' . $t . '/style.pcss');
1427 return($a->get_baseurl() . '/view/theme/' . $t . '/style.css');
1431 if(! function_exists('feed_birthday')) {
1432 function feed_birthday($uid,$tz) {
1436 * Determine the next birthday, but only if the birthday is published
1437 * in the default profile. We _could_ also look for a private profile that the
1438 * recipient can see, but somebody could get mad at us if they start getting
1439 * public birthday greetings when they haven't made this info public.
1441 * Assuming we are able to publish this info, we are then going to convert
1442 * the start time from the owner's timezone to UTC.
1444 * This will potentially solve the problem found with some social networks
1445 * where birthdays are converted to the viewer's timezone and salutations from
1446 * elsewhere in the world show up on the wrong day. We will convert it to the
1447 * viewer's timezone also, but first we are going to convert it from the birthday
1448 * person's timezone to GMT - so the viewer may find the birthday starting at
1449 * 6:00PM the day before, but that will correspond to midnight to the birthday person.
1459 $p = q("SELECT `dob` FROM `profile` WHERE `is-default` = 1 AND `uid` = %d LIMIT 1",
1463 if($p && count($p)) {
1464 $tmp_dob = substr($p[0]['dob'],5);
1465 if(intval($tmp_dob)) {
1466 $y = datetime_convert($tz,$tz,'now','Y');
1467 $bd = $y . '-' . $tmp_dob . ' 00:00';
1468 $t_dob = strtotime($bd);
1469 $now = strtotime(datetime_convert($tz,$tz,'now'));
1471 $bd = $y + 1 . '-' . $tmp_dob . ' 00:00';
1472 $birthday = datetime_convert($tz,'UTC',$bd,ATOM_TIME);
1480 if(! function_exists('is_site_admin')) {
1481 function is_site_admin() {
1483 if(local_user() && x($a->user,'email') && x($a->config,'admin_email') && ($a->user['email'] === $a->config['admin_email']))
1490 if(! function_exists('load_contact_links')) {
1491 function load_contact_links($uid) {
1497 if(! $uid || x($a->contacts,'empty'))
1500 $r = q("SELECT `id`,`network`,`url`,`thumb` FROM `contact` WHERE `uid` = %d AND `self` = 0 AND `blocked` = 0 ",
1505 $url = normalise_link($rr['url']);
1510 $ret['empty'] = true;
1511 $a->contacts = $ret;
1516 if(! function_exists('profile_tabs')){
1517 function profile_tabs($a, $is_owner=False, $nickname=Null){
1518 //echo "<pre>"; var_dump($a->user); killme();
1520 if (is_null($nickname))
1521 $nickname = $a->user['nickname'];
1524 $tab = notags(trim($_GET['tab']));
1526 $url = $a->get_baseurl() . '/profile/' . $nickname;
1530 'label'=>t('Status'),
1532 'sel' => ((!isset($tab)&&$a->argv[0]=='profile')?'active':''),
1533 'title' => t('Status Messages and Posts'),
1536 'label' => t('Profile'),
1537 'url' => $url.'/?tab=profile',
1538 'sel' => ((isset($tab) && $tab=='profile')?'active':''),
1539 'title' => t('Profile Details'),
1542 'label' => t('Photos'),
1543 'url' => $a->get_baseurl() . '/photos/' . $nickname,
1544 'sel' => ((!isset($tab)&&$a->argv[0]=='photos')?'active':''),
1545 'title' => t('Photo Albums'),
1551 'label' => t('Events'),
1552 'url' => $a->get_baseurl() . '/events',
1553 'sel' =>((!isset($tab)&&$a->argv[0]=='events')?'active':''),
1554 'title' => t('Events and Calendar'),
1557 'label' => t('Personal Notes'),
1558 'url' => $a->get_baseurl() . '/notes',
1559 'sel' =>((!isset($tab)&&$a->argv[0]=='notes')?'active':''),
1560 'title' => t('Only You Can See This'),
1565 $arr = array('is_owner' => $is_owner, 'nickname' => $nickname, 'tab' => (($tab) ? $tab : false), 'tabs' => $tabs);
1566 call_hooks('profile_tabs', $arr);
1568 $tpl = get_markup_template('common_tabs.tpl');
1570 return replace_macros($tpl,array('$tabs' => $arr['tabs']));
1574 function get_my_url() {
1575 if(x($_SESSION,'my_url'))
1576 return $_SESSION['my_url'];
1580 function zrl_init(&$a) {
1581 $tmp_str = get_my_url();
1582 if(validate_url($tmp_str)) {
1583 proc_run('php','include/gprobe.php',bin2hex($tmp_str));
1584 $arr = array('zrl' => $tmp_str, 'url' => $a->cmd);
1585 call_hooks('zrl_init',$arr);
1589 function zrl($s,$force = false) {
1592 if((! strpos($s,'/profile/')) && (! $force))
1594 if($force && substr($s,-1,1) !== '/')
1596 $achar = strpos($s,'?') ? '&' : '?';
1597 $mine = get_my_url();
1598 if($mine and ! link_compare($mine,$s))
1599 return $s . $achar . 'zrl=' . urlencode($mine);
1604 * returns querystring as string from a mapped array
1606 * @param params Array
1609 function build_querystring($params, $name=null) {
1611 foreach($params as $key=>$val) {
1612 if(is_array($val)) {
1614 $ret .= build_querystring($val, $key);
1616 $ret .= build_querystring($val, $name."[$key]");
1619 $val = urlencode($val);
1621 $ret.=$name."[$key]"."=$val&";
1623 $ret.= "$key=$val&";