]> git.mxchange.org Git - friendica.git/blob - include/acl_selectors.php
The url detection in BBCode is too greedy
[friendica.git] / include / acl_selectors.php
1 <?php
2 /**
3  * @file include/acl_selectors.php
4  */
5 use Friendica\App;
6 use Friendica\Content\Feature;
7 use Friendica\Content\Widget;
8 use Friendica\Core\Addon;
9 use Friendica\Core\Config;
10 use Friendica\Database\DBM;
11 use Friendica\Model\Contact;
12 use Friendica\Model\GContact;
13
14 require_once "mod/proxy.php";
15
16 /**
17  * @package acl_selectors
18  */
19 function group_select($selname,$selclass,$preselected = false,$size = 4) {
20
21         $a = get_app();
22
23         $o = '';
24
25         $o .= "<select name=\"{$selname}[]\" id=\"$selclass\" class=\"$selclass\" multiple=\"multiple\" size=\"$size\" >\r\n";
26
27         $r = q("SELECT `id`, `name` FROM `group` WHERE NOT `deleted` AND `uid` = %d ORDER BY `name` ASC",
28                 intval(local_user())
29         );
30
31
32         $arr = ['group' => $r, 'entry' => $o];
33
34         // e.g. 'network_pre_group_deny', 'profile_pre_group_allow'
35
36         Addon::callHooks($a->module . '_pre_' . $selname, $arr);
37
38         if (DBM::is_result($r)) {
39                 foreach ($r as $rr) {
40                         if ((is_array($preselected)) && in_array($rr['id'], $preselected)) {
41                                 $selected = " selected=\"selected\" ";
42                         } else {
43                                 $selected = '';
44                         }
45
46                         $trimmed = mb_substr($rr['name'],0,12);
47
48                         $o .= "<option value=\"{$rr['id']}\" $selected title=\"{$rr['name']}\" >$trimmed</option>\r\n";
49                 }
50
51         }
52         $o .= "</select>\r\n";
53
54         Addon::callHooks($a->module . '_post_' . $selname, $o);
55
56
57         return $o;
58 }
59
60 /// @TODO find proper type-hints
61 function contact_selector($selname, $selclass, $options, $preselected = false)
62 {
63         $a = get_app();
64
65         $mutual = false;
66         $networks = null;
67         $single = false;
68         $exclude = false;
69         $size = 4;
70
71         if (is_array($options)) {
72                 if (x($options, 'size'))
73                         $size = $options['size'];
74
75                 if (x($options, 'mutual_friends')) {
76                         $mutual = true;
77                 }
78                 if (x($options, 'single')) {
79                         $single = true;
80                 }
81                 if (x($options, 'multiple')) {
82                         $single = false;
83                 }
84                 if (x($options, 'exclude')) {
85                         $exclude = $options['exclude'];
86                 }
87
88                 if (x($options, 'networks')) {
89                         switch ($options['networks']) {
90                                 case 'DFRN_ONLY':
91                                         $networks = [NETWORK_DFRN];
92                                         break;
93                                 case 'PRIVATE':
94                                         if (is_array($a->user) && $a->user['prvnets']) {
95                                                 $networks = [NETWORK_DFRN, NETWORK_MAIL, NETWORK_DIASPORA];
96                                         } else {
97                                                 $networks = [NETWORK_DFRN, NETWORK_FACEBOOK, NETWORK_MAIL, NETWORK_DIASPORA];
98                                         }
99                                         break;
100                                 case 'TWO_WAY':
101                                         if (is_array($a->user) && $a->user['prvnets']) {
102                                                 $networks = [NETWORK_DFRN, NETWORK_MAIL, NETWORK_DIASPORA];
103                                         } else {
104                                                 $networks = [NETWORK_DFRN, NETWORK_FACEBOOK, NETWORK_MAIL, NETWORK_DIASPORA, NETWORK_OSTATUS];
105                                         }
106                                         break;
107                                 default: /// @TODO Maybe log this call?
108                                         break;
109                         }
110                 }
111         }
112
113         $x = ['options' => $options, 'size' => $size, 'single' => $single, 'mutual' => $mutual, 'exclude' => $exclude, 'networks' => $networks];
114
115         Addon::callHooks('contact_select_options', $x);
116
117         $o = '';
118
119         $sql_extra = '';
120
121         if (x($x, 'mutual')) {
122                 $sql_extra .= sprintf(" AND `rel` = %d ", intval(CONTACT_IS_FRIEND));
123         }
124
125         if (x($x, 'exclude')) {
126                 $sql_extra .= sprintf(" AND `id` != %d ", intval($x['exclude']));
127         }
128
129         if (is_array($x['networks']) && count($x['networks'])) {
130                 /// @TODO rewrite to foreach()
131                 for ($y = 0; $y < count($x['networks']) ; $y ++) {
132                         $x['networks'][$y] = "'" . dbesc($x['networks'][$y]) . "'";
133                 }
134                 $str_nets = implode(',', $x['networks']);
135                 $sql_extra .= " AND `network` IN ( $str_nets ) ";
136         }
137
138         $tabindex = (x($options, 'tabindex') ? "tabindex=\"" . $options["tabindex"] . "\"" : "");
139
140         if ($x['single']) {
141                 $o .= "<select name=\"$selname\" id=\"$selclass\" class=\"$selclass\" size=\"" . $x['size'] . "\" $tabindex >\r\n";
142         } else {
143                 $o .= "<select name=\"{$selname}[]\" id=\"$selclass\" class=\"$selclass\" multiple=\"multiple\" size=\"" . $x['size'] . "$\" $tabindex >\r\n";
144         }
145
146         $r = q("SELECT `id`, `name`, `url`, `network` FROM `contact`
147                 WHERE `uid` = %d AND NOT `self` AND NOT `blocked` AND NOT `pending` AND NOT `archive` AND `notify` != ''
148                 $sql_extra
149                 ORDER BY `name` ASC ",
150                 intval(local_user())
151         );
152
153
154         $arr = ['contact' => $r, 'entry' => $o];
155
156         // e.g. 'network_pre_contact_deny', 'profile_pre_contact_allow'
157
158         Addon::callHooks($a->module . '_pre_' . $selname, $arr);
159
160         if (DBM::is_result($r)) {
161                 foreach ($r as $rr) {
162                         if ((is_array($preselected)) && in_array($rr['id'], $preselected)) {
163                                 $selected = " selected=\"selected\" ";
164                         } else {
165                                 $selected = '';
166                         }
167
168                         $trimmed = mb_substr($rr['name'],0,20);
169
170                         $o .= "<option value=\"{$rr['id']}\" $selected title=\"{$rr['name']}|{$rr['url']}\" >$trimmed</option>\r\n";
171                 }
172
173         }
174
175         $o .= "</select>\r\n";
176
177         Addon::callHooks($a->module . '_post_' . $selname, $o);
178
179         return $o;
180 }
181
182
183
184 function contact_select($selname, $selclass, $preselected = false, $size = 4, $privmail = false, $celeb = false, $privatenet = false, $tabindex = null) {
185
186         require_once "include/bbcode.php";
187
188         $a = get_app();
189
190         $o = '';
191
192         // When used for private messages, we limit correspondence to mutual DFRN/Friendica friends and the selector
193         // to one recipient. By default our selector allows multiple selects amongst all contacts.
194
195         $sql_extra = '';
196
197         if ($privmail || $celeb) {
198                 $sql_extra .= sprintf(" AND `rel` = %d ", intval(CONTACT_IS_FRIEND));
199         }
200
201         if ($privmail) {
202                 $sql_extra .= sprintf(" AND `network` IN ('%s' , '%s') ",
203                                         NETWORK_DFRN, NETWORK_DIASPORA);
204         } elseif ($privatenet) {
205                 $sql_extra .= sprintf(" AND `network` IN ('%s' , '%s', '%s', '%s') ",
206                                         NETWORK_DFRN, NETWORK_MAIL, NETWORK_FACEBOOK, NETWORK_DIASPORA);
207         }
208
209         $tabindex = ($tabindex > 0 ? "tabindex=\"$tabindex\"" : "");
210
211         if ($privmail && $preselected) {
212                 $sql_extra .= " AND `id` IN (".implode(",", $preselected).")";
213                 $hidepreselected = ' style="display: none;"';
214         } else {
215                 $hidepreselected = "";
216         }
217
218         if ($privmail) {
219                 $o .= "<select name=\"$selname\" id=\"$selclass\" class=\"$selclass\" size=\"$size\" $tabindex $hidepreselected>\r\n";
220         } else {
221                 $o .= "<select name=\"{$selname}[]\" id=\"$selclass\" class=\"$selclass\" multiple=\"multiple\" size=\"$size\" $tabindex >\r\n";
222         }
223
224         $r = q("SELECT `id`, `name`, `url`, `network` FROM `contact`
225                 WHERE `uid` = %d AND NOT `self` AND NOT `blocked` AND NOT `pending` AND NOT `archive` AND `notify` != ''
226                 $sql_extra
227                 ORDER BY `name` ASC ",
228                 intval(local_user())
229         );
230
231
232         $arr = ['contact' => $r, 'entry' => $o];
233
234         // e.g. 'network_pre_contact_deny', 'profile_pre_contact_allow'
235
236         Addon::callHooks($a->module . '_pre_' . $selname, $arr);
237
238         $receiverlist = [];
239
240         if (DBM::is_result($r)) {
241                 foreach ($r as $rr) {
242                         if ((is_array($preselected)) && in_array($rr['id'], $preselected)) {
243                                 $selected = " selected=\"selected\" ";
244                         } else {
245                                 $selected = '';
246                         }
247
248                         if ($privmail) {
249                                 $trimmed = GetProfileUsername($rr['url'], $rr['name'], false);
250                         } else {
251                                 $trimmed = mb_substr($rr['name'],0,20);
252                         }
253
254                         $receiverlist[] = $trimmed;
255
256                         $o .= "<option value=\"{$rr['id']}\" $selected title=\"{$rr['name']}|{$rr['url']}\" >$trimmed</option>\r\n";
257                 }
258
259         }
260
261         $o .= "</select>\r\n";
262
263         if ($privmail && $preselected) {
264                 $o .= implode(", ", $receiverlist);
265         }
266
267         Addon::callHooks($a->module . '_post_' . $selname, $o);
268
269         return $o;
270 }
271
272
273 function fixacl(&$item) {
274         $item = intval(str_replace(['<', '>'], ['', ''], $item));
275 }
276
277 function prune_deadguys($arr) {
278
279         if (! $arr) {
280                 return $arr;
281         }
282
283         $str = dbesc(implode(',', $arr));
284
285         $r = q("SELECT `id` FROM `contact` WHERE `id` IN ( " . $str . ") AND `blocked` = 0 AND `pending` = 0 AND `archive` = 0 ");
286
287         if (DBM::is_result($r)) {
288                 $ret = [];
289                 foreach ($r as $rr) {
290                         $ret[] = intval($rr['id']);
291                 }
292                 return $ret;
293         }
294
295         return [];
296 }
297
298
299 function get_acl_permissions($user = null) {
300         $allow_cid = $allow_gid = $deny_cid = $deny_gid = false;
301
302         if (is_array($user)) {
303                 $allow_cid = ((strlen($user['allow_cid']))
304                         ? explode('><', $user['allow_cid']) : [] );
305                 $allow_gid = ((strlen($user['allow_gid']))
306                         ? explode('><', $user['allow_gid']) : [] );
307                 $deny_cid  = ((strlen($user['deny_cid']))
308                         ? explode('><', $user['deny_cid']) : [] );
309                 $deny_gid  = ((strlen($user['deny_gid']))
310                         ? explode('><', $user['deny_gid']) : [] );
311                 array_walk($allow_cid,'fixacl');
312                 array_walk($allow_gid,'fixacl');
313                 array_walk($deny_cid,'fixacl');
314                 array_walk($deny_gid,'fixacl');
315         }
316
317         $allow_cid = prune_deadguys($allow_cid);
318
319         return [
320                 'allow_cid' => $allow_cid,
321                 'allow_gid' => $allow_gid,
322                 'deny_cid' => $deny_cid,
323                 'deny_gid' => $deny_gid,
324         ];
325 }
326
327
328 function populate_acl($user = null, $show_jotnets = false) {
329
330         $perms = get_acl_permissions($user);
331
332         $jotnets = '';
333         if ($show_jotnets) {
334                 $mail_disabled = ((function_exists('imap_open') && (! Config::get('system','imap_disabled'))) ? 0 : 1);
335
336                 $mail_enabled = false;
337                 $pubmail_enabled = false;
338
339                 if (! $mail_disabled) {
340                         $r = q("SELECT `pubmail` FROM `mailacct` WHERE `uid` = %d AND `server` != '' LIMIT 1",
341                                 intval(local_user())
342                         );
343                         if (DBM::is_result($r)) {
344                                 $mail_enabled = true;
345                                 if (intval($r[0]['pubmail'])) {
346                                         $pubmail_enabled = true;
347                                 }
348                         }
349                 }
350
351                 if (!$user['hidewall']) {
352                         if ($mail_enabled) {
353                                 $selected = (($pubmail_enabled) ? ' checked="checked" ' : '');
354                                 $jotnets .= '<div class="profile-jot-net"><input type="checkbox" name="pubmail_enable"' . $selected . ' value="1" /> ' . t("Post to Email") . '</div>';
355                         }
356
357                         Addon::callHooks('jot_networks', $jotnets);
358                 } else {
359                         $jotnets .= sprintf(t('Connectors disabled, since "%s" is enabled.'),
360                                             t('Hide your profile details from unknown viewers?'));
361                 }
362         }
363
364         $tpl = get_markup_template("acl_selector.tpl");
365         $o = replace_macros($tpl, [
366                 '$showall'=> t("Visible to everybody"),
367                 '$show' => t("show"),
368                 '$hide'  => t("don't show"),
369                 '$allowcid' => json_encode($perms['allow_cid']),
370                 '$allowgid' => json_encode($perms['allow_gid']),
371                 '$denycid' => json_encode($perms['deny_cid']),
372                 '$denygid' => json_encode($perms['deny_gid']),
373                 '$networks' => $show_jotnets,
374                 '$emailcc' => t('CC: email addresses'),
375                 '$emtitle' => t('Example: bob@example.com, mary@example.com'),
376                 '$jotnets' => $jotnets,
377                 '$aclModalTitle' => t('Permissions'),
378                 '$aclModalDismiss' => t('Close'),
379                 '$features' => [
380                 'aclautomention' => (Feature::isEnabled($user['uid'], "aclautomention") ? "true" : "false")
381                 ],
382         ]);
383
384
385         return $o;
386
387 }
388
389 function acl_lookup(App $a, $out_type = 'json')
390 {
391         if (!local_user()) {
392                 return '';
393         }
394
395         $start   = defaults($_REQUEST, 'start'       , 0);
396         $count   = defaults($_REQUEST, 'count'       , 100);
397         $search  = defaults($_REQUEST, 'search'      , '');
398         $type    = defaults($_REQUEST, 'type'        , '');
399         $conv_id = defaults($_REQUEST, 'conversation', null);
400
401         // For use with jquery.textcomplete for private mail completion
402         if (x($_REQUEST, 'query')) {
403                 if (! $type) {
404                         $type = 'm';
405                 }
406                 $search = $_REQUEST['query'];
407         }
408
409         logger("Searching for ".$search." - type ".$type, LOGGER_DEBUG);
410
411         if ($search != '') {
412                 $sql_extra = "AND `name` LIKE '%%".dbesc($search)."%%'";
413                 $sql_extra2 = "AND (`attag` LIKE '%%".dbesc($search)."%%' OR `name` LIKE '%%".dbesc($search)."%%' OR `nick` LIKE '%%".dbesc($search)."%%')";
414         } else {
415                 /// @TODO Avoid these needless else blocks by putting variable-initialization atop of if()
416                 $sql_extra = $sql_extra2 = "";
417         }
418
419         // count groups and contacts
420         if ($type == '' || $type == 'g') {
421                 $r = q("SELECT COUNT(*) AS g FROM `group` WHERE `deleted` = 0 AND `uid` = %d $sql_extra",
422                         intval(local_user())
423                 );
424                 $group_count = (int)$r[0]['g'];
425         } else {
426                 $group_count = 0;
427         }
428
429         $sql_extra2 .= " ".Widget::unavailableNetworks();
430
431         if ($type == '' || $type == 'c') {
432                 // autocomplete for editor mentions
433                 $r = q("SELECT COUNT(*) AS c FROM `contact`
434                                 WHERE `uid` = %d AND NOT `self`
435                                 AND NOT `blocked` AND NOT `pending` AND NOT `archive`
436                                 AND `success_update` >= `failure_update`
437                                 AND `notify` != '' $sql_extra2" ,
438                         intval(local_user())
439                 );
440                 $contact_count = (int)$r[0]['c'];
441         } elseif ($type == 'f') {
442                 // autocomplete for editor mentions of forums
443                 $r = q("SELECT COUNT(*) AS c FROM `contact`
444                                 WHERE `uid` = %d AND NOT `self`
445                                 AND NOT `blocked` AND NOT `pending` AND NOT `archive`
446                                 AND (`forum` OR `prv`)
447                                 AND `success_update` >= `failure_update`
448                                 AND `notify` != '' $sql_extra2" ,
449                         intval(local_user())
450                 );
451                 $contact_count = (int)$r[0]['c'];
452         } elseif ($type == 'm') {
453                 // autocomplete for Private Messages
454                 $r = q("SELECT COUNT(*) AS c FROM `contact`
455                                 WHERE `uid` = %d AND NOT `self`
456                                 AND NOT `blocked` AND NOT `pending` AND NOT `archive`
457                                 AND `success_update` >= `failure_update`
458                                 AND `network` IN ('%s', '%s') $sql_extra2" ,
459                         intval(local_user()),
460                         dbesc(NETWORK_DFRN),
461                         dbesc(NETWORK_DIASPORA)
462                 );
463                 $contact_count = (int)$r[0]['c'];
464
465         } elseif ($type == 'a') {
466                 // autocomplete for Contacts
467                 $r = q("SELECT COUNT(*) AS c FROM `contact`
468                                 WHERE `uid` = %d AND NOT `self`
469                                 AND NOT `pending` $sql_extra2" ,
470                         intval(local_user())
471                 );
472                 $contact_count = (int)$r[0]['c'];
473         } else {
474                 $contact_count = 0;
475         }
476
477         $tot = $group_count + $contact_count;
478
479         $groups = [];
480         $contacts = [];
481
482         if ($type == '' || $type == 'g') {
483                 /// @todo We should cache this query.
484                 // This can be done when we can delete cache entries via wildcard
485                 $r = q("SELECT `group`.`id`, `group`.`name`, GROUP_CONCAT(DISTINCT `group_member`.`contact-id` SEPARATOR ',') AS uids
486                                 FROM `group`
487                                 INNER JOIN `group_member` ON `group_member`.`gid`=`group`.`id`
488                                 WHERE NOT `group`.`deleted` AND `group`.`uid` = %d
489                                         $sql_extra
490                                 GROUP BY `group`.`name`, `group`.`id`
491                                 ORDER BY `group`.`name`
492                                 LIMIT %d,%d",
493                         intval(local_user()),
494                         intval($start),
495                         intval($count)
496                 );
497
498                 foreach ($r as $g) {
499                         $groups[] = [
500                                 "type"  => "g",
501                                 "photo" => "images/twopeople.png",
502                                 "name"  => htmlentities($g['name']),
503                                 "id"    => intval($g['id']),
504                                 "uids"  => array_map("intval", explode(",",$g['uids'])),
505                                 "link"  => '',
506                                 "forum" => '0'
507                         ];
508                 }
509                 if ((count($groups) > 0) && ($search == "")) {
510                         $groups[] = ["separator" => true];
511                 }
512         }
513
514         if ($type == '') {
515                 $r = q("SELECT `id`, `name`, `nick`, `micro`, `network`, `url`, `attag`, `addr`, `forum`, `prv`, (`prv` OR `forum`) AS `frm` FROM `contact`
516                         WHERE `uid` = %d AND NOT `self` AND NOT `blocked` AND NOT `pending` AND NOT `archive` AND `notify` != ''
517                         AND `success_update` >= `failure_update` AND NOT (`network` IN ('%s', '%s'))
518                         $sql_extra2
519                         ORDER BY `name` ASC ",
520                         intval(local_user()),
521                         dbesc(NETWORK_OSTATUS), dbesc(NETWORK_STATUSNET)
522                 );
523         } elseif ($type == 'c') {
524                 $r = q("SELECT `id`, `name`, `nick`, `micro`, `network`, `url`, `attag`, `addr`, `forum`, `prv` FROM `contact`
525                         WHERE `uid` = %d AND NOT `self` AND NOT `blocked` AND NOT `pending` AND NOT `archive` AND `notify` != ''
526                         AND `success_update` >= `failure_update` AND NOT (`network` IN ('%s'))
527                         $sql_extra2
528                         ORDER BY `name` ASC ",
529                         intval(local_user()),
530                         dbesc(NETWORK_STATUSNET)
531                 );
532         } elseif ($type == 'f') {
533                 $r = q("SELECT `id`, `name`, `nick`, `micro`, `network`, `url`, `attag`, `addr`, `forum`, `prv` FROM `contact`
534                         WHERE `uid` = %d AND NOT `self` AND NOT `blocked` AND NOT `pending` AND NOT `archive` AND `notify` != ''
535                         AND `success_update` >= `failure_update` AND NOT (`network` IN ('%s'))
536                         AND (`forum` OR `prv`)
537                         $sql_extra2
538                         ORDER BY `name` ASC ",
539                         intval(local_user()),
540                         dbesc(NETWORK_STATUSNET)
541                 );
542         } elseif ($type == 'm') {
543                 $r = q("SELECT `id`, `name`, `nick`, `micro`, `network`, `url`, `attag`, `addr` FROM `contact`
544                         WHERE `uid` = %d AND NOT `self` AND NOT `blocked` AND NOT `pending` AND NOT `archive`
545                         AND `success_update` >= `failure_update` AND `network` IN ('%s', '%s')
546                         $sql_extra2
547                         ORDER BY `name` ASC ",
548                         intval(local_user()),
549                         dbesc(NETWORK_DFRN),
550                         dbesc(NETWORK_DIASPORA)
551                 );
552         } elseif ($type == 'a') {
553                 $r = q("SELECT `id`, `name`, `nick`, `micro`, `network`, `url`, `attag`, `addr`, `forum`, `prv` FROM `contact`
554                         WHERE `uid` = %d AND `pending` = 0 AND `success_update` >= `failure_update`
555                         $sql_extra2
556                         ORDER BY `name` ASC ",
557                         intval(local_user())
558                 );
559         } elseif ($type == 'x') {
560                 // autocomplete for global contact search (e.g. navbar search)
561                 $r = navbar_complete($a);
562                 $contacts = [];
563                 if ($r) {
564                         foreach ($r as $g) {
565                                 $contacts[] = [
566                                         'photo'   => proxy_url($g['photo'], false, PROXY_SIZE_MICRO),
567                                         'name'    => $g['name'],
568                                         'nick'    => (x($g['addr']) ? $g['addr'] : $g['url']),
569                                         'network' => $g['network'],
570                                         'link'    => $g['url'],
571                                         'forum'   => (x($g['community']) ? 1 : 0),
572                                 ];
573                         }
574                 }
575                 $o = [
576                         'start' => $start,
577                         'count' => $count,
578                         'items' => $contacts,
579                 ];
580                 echo json_encode($o);
581                 killme();
582         } else {
583                 $r = [];
584         }
585
586         if (DBM::is_result($r)) {
587                 $forums = [];
588                 foreach ($r as $g) {
589                         $entry = [
590                                 'type'    => 'c',
591                                 'photo'   => proxy_url($g['micro'], false, PROXY_SIZE_MICRO),
592                                 'name'    => htmlentities($g['name']),
593                                 'id'      => intval($g['id']),
594                                 'network' => $g['network'],
595                                 'link'    => $g['url'],
596                                 'nick'    => htmlentities(($g['attag']) ? $g['attag'] : $g['nick']),
597                                 'addr'    => htmlentities(($g['addr']) ? $g['addr'] : $g['url']),
598                                 'forum'   => ((x($g, 'forum') || x($g, 'prv')) ? 1 : 0),
599                         ];
600                         if ($entry['forum']) {
601                                 $forums[] = $entry;
602                         } else {
603                                 $contacts[] = $entry;
604                         }
605                 }
606                 if (count($forums) > 0) {
607                         if ($search == "") {
608                                 $forums[] = ["separator" => true];
609                         }
610                         $contacts = array_merge($forums, $contacts);
611                 }
612         }
613
614         $items = array_merge($groups, $contacts);
615
616         if ($conv_id) {
617                 /*
618                  * if $conv_id is set, get unknown contacts in thread
619                  * but first get known contacts url to filter them out
620                  */
621                 $known_contacts = array_map(
622                         function ($i) {
623                                 return dbesc($i['link']);
624                         }
625                 , $contacts);
626
627                 $unknown_contacts = [];
628                 $r = q("SELECT `author-link`
629                                 FROM `item` WHERE `parent` = %d
630                                         AND (`author-name` LIKE '%%%s%%' OR `author-link` LIKE '%%%s%%')
631                                         AND `author-link` NOT IN ('%s')
632                                 GROUP BY `author-link`, `author-avatar`, `author-name`
633                                 ORDER BY `author-name` ASC
634                                 ",
635                                 intval($conv_id),
636                                 dbesc($search),
637                                 dbesc($search),
638                                 implode("', '", $known_contacts)
639                 );
640                 if (DBM::is_result($r)) {
641                         foreach ($r as $row) {
642                                 $contact = Contact::getDetailsByURL($row['author-link']);
643
644                                 if (count($contact) > 0) {
645                                         $unknown_contacts[] = [
646                                                 'type'    => 'c',
647                                                 'photo'   => proxy_url($contact['micro'], false, PROXY_SIZE_MICRO),
648                                                 'name'    => htmlentities($contact['name']),
649                                                 'id'      => intval($contact['cid']),
650                                                 'network' => $contact['network'],
651                                                 'link'    => $contact['url'],
652                                                 'nick'    => htmlentities($contact['nick'] ? : $contact['addr']),
653                                                 'addr'    => htmlentities(($contact['addr']) ? $contact['addr'] : $contact['url']),
654                                                 'forum'   => $contact['forum']
655                                         ];
656                                 }
657                         }
658                 }
659
660                 $items = array_merge($items, $unknown_contacts);
661                 $tot += count($unknown_contacts);
662         }
663
664         $results = [
665                 'tot'      => $tot,
666                 'start'    => $start,
667                 'count'    => $count,
668                 'groups'   => $groups,
669                 'contacts' => $contacts,
670                 'items'    => $items,
671                 'type'     => $type,
672                 'search'   => $search,
673         ];
674
675         Addon::callHooks('acl_lookup_end', $results);
676
677         if ($out_type === 'html') {
678                 $o = [
679                         'tot'      => $results['tot'],
680                         'start'    => $results['start'],
681                         'count'    => $results['count'],
682                         'groups'   => $results['groups'],
683                         'contacts' => $results['contacts'],
684                 ];
685                 return $o;
686         }
687
688         $o = [
689                 'tot'   => $results['tot'],
690                 'start' => $results['start'],
691                 'count' => $results['count'],
692                 'items' => $results['items'],
693         ];
694
695         echo json_encode($o);
696
697         killme();
698 }
699 /**
700  * @brief Searching for global contacts for autocompletion
701  *
702  * @param App $a
703  * @return array with the search results
704  */
705 function navbar_complete(App $a) {
706
707 //      logger('navbar_complete');
708
709         if ((Config::get('system','block_public')) && (! local_user()) && (! remote_user())) {
710                 return;
711         }
712
713         // check if searching in the local global contact table is enabled
714         $localsearch = Config::get('system','poco_local_search');
715
716         $search = $prefix.notags(trim($_REQUEST['search']));
717         $mode = $_REQUEST['smode'];
718
719         // don't search if search term has less than 2 characters
720         if (! $search || mb_strlen($search) < 2) {
721                 return [];
722         }
723
724         if (substr($search,0,1) === '@') {
725                 $search = substr($search,1);
726         }
727
728         if ($localsearch) {
729                 $x = GContact::searchByName($search, $mode);
730                 return $x;
731         }
732
733         if (! $localsearch) {
734                 $p = (($a->pager['page'] != 1) ? '&p=' . $a->pager['page'] : '');
735
736                 $x = z_fetch_url(get_server() . '/lsearch?f=' . $p .  '&search=' . urlencode($search));
737                 if ($x['success']) {
738                         $j = json_decode($x['body'],true);
739                         if ($j && isset($j['results'])) {
740                                 return $j['results'];
741                         }
742                 }
743         }
744
745         /// @TODO Not needed here?
746         return;
747 }