]> git.mxchange.org Git - friendica.git/blob - mod/settings.php
Bump DB version
[friendica.git] / mod / settings.php
1 <?php
2
3 require_once('include/group.php');
4 require_once('include/socgraph.php');
5
6 function get_theme_config_file($theme){
7         $a = get_app();
8         $base_theme = $a->theme_info['extends'];
9
10         if (file_exists("view/theme/$theme/config.php")){
11                 return "view/theme/$theme/config.php";
12         }
13         if (file_exists("view/theme/$base_theme/config.php")){
14                 return "view/theme/$base_theme/config.php";
15         }
16         return null;
17 }
18
19 function settings_init(App $a) {
20
21         if (! local_user()) {
22                 notice( t('Permission denied.') . EOL );
23                 return;
24         }
25
26         // APC deactivated, since there are problems with PHP 5.5
27         //if (function_exists("apc_delete")) {
28         //      $toDelete = new APCIterator('user', APC_ITER_VALUE);
29         //      apc_delete($toDelete);
30         //}
31
32         // These lines provide the javascript needed by the acl selector
33
34         $tpl = get_markup_template("settings-head.tpl");
35         $a->page['htmlhead'] .= replace_macros($tpl,array(
36                 '$ispublic' => t('everybody')
37         ));
38
39
40
41         $tabs = array(
42                 array(
43                         'label' => t('Account'),
44                         'url'   => 'settings',
45                         'selected'      =>  (($a->argc == 1) && ($a->argv[0] === 'settings')?'active':''),
46                         'accesskey' => 'o',
47                 ),
48         );
49
50         if(get_features()) {
51                 $tabs[] =       array(
52                                         'label' => t('Additional features'),
53                                         'url'   => 'settings/features',
54                                         'selected'      => (($a->argc > 1) && ($a->argv[1] === 'features') ? 'active' : ''),
55                                         'accesskey' => 't',
56                                 );
57         }
58
59         $tabs[] =       array(
60                 'label' => t('Display'),
61                 'url'   => 'settings/display',
62                 'selected'      => (($a->argc > 1) && ($a->argv[1] === 'display')?'active':''),
63                 'accesskey' => 'i',
64         );
65
66         $tabs[] =       array(
67                 'label' => t('Social Networks'),
68                 'url'   => 'settings/connectors',
69                 'selected'      => (($a->argc > 1) && ($a->argv[1] === 'connectors')?'active':''),
70                 'accesskey' => 'w',
71         );
72
73         $tabs[] =       array(
74                 'label' => t('Plugins'),
75                 'url'   => 'settings/addon',
76                 'selected'      => (($a->argc > 1) && ($a->argv[1] === 'addon')?'active':''),
77                 'accesskey' => 'l',
78         );
79
80         $tabs[] =       array(
81                 'label' => t('Delegations'),
82                 'url'   => 'delegate',
83                 'selected'      => (($a->argc == 1) && ($a->argv[0] === 'delegate')?'active':''),
84                 'accesskey' => 'd',
85         );
86
87         $tabs[] =       array(
88                 'label' => t('Connected apps'),
89                 'url' => 'settings/oauth',
90                 'selected' => (($a->argc > 1) && ($a->argv[1] === 'oauth')?'active':''),
91                 'accesskey' => 'b',
92         );
93
94         $tabs[] =       array(
95                 'label' => t('Export personal data'),
96                 'url' => 'uexport',
97                 'selected' => (($a->argc == 1) && ($a->argv[0] === 'uexport')?'active':''),
98                 'accesskey' => 'e',
99         );
100
101         $tabs[] =       array(
102                 'label' => t('Remove account'),
103                 'url' => 'removeme',
104                 'selected' => (($a->argc == 1) && ($a->argv[0] === 'removeme')?'active':''),
105                 'accesskey' => 'r',
106         );
107
108
109         $tabtpl = get_markup_template("generic_links_widget.tpl");
110         $a->page['aside'] = replace_macros($tabtpl, array(
111                 '$title' => t('Settings'),
112                 '$class' => 'settings-widget',
113                 '$items' => $tabs,
114         ));
115
116 }
117
118
119 function settings_post(App $a) {
120
121         if (! local_user()) {
122                 return;
123         }
124
125         if (x($_SESSION,'submanage') && intval($_SESSION['submanage'])) {
126                 return;
127         }
128
129         if (count($a->user) && x($a->user,'uid') && $a->user['uid'] != local_user()) {
130                 notice( t('Permission denied.') . EOL);
131                 return;
132         }
133
134         $old_page_flags = $a->user['page-flags'];
135
136         if (($a->argc > 1) && ($a->argv[1] === 'oauth') && x($_POST,'remove')) {
137                 check_form_security_token_redirectOnErr('/settings/oauth', 'settings_oauth');
138
139                 $key = $_POST['remove'];
140                 q("DELETE FROM tokens WHERE id='%s' AND uid=%d",
141                         dbesc($key),
142                         local_user());
143                 goaway(App::get_baseurl(true)."/settings/oauth/");
144                 return;
145         }
146
147         if (($a->argc > 2) && ($a->argv[1] === 'oauth')  && ($a->argv[2] === 'edit'||($a->argv[2] === 'add')) && x($_POST,'submit')) {
148
149                 check_form_security_token_redirectOnErr('/settings/oauth', 'settings_oauth');
150
151                 $name           = ((x($_POST,'name')) ? $_POST['name'] : '');
152                 $key            = ((x($_POST,'key')) ? $_POST['key'] : '');
153                 $secret         = ((x($_POST,'secret')) ? $_POST['secret'] : '');
154                 $redirect       = ((x($_POST,'redirect')) ? $_POST['redirect'] : '');
155                 $icon           = ((x($_POST,'icon')) ? $_POST['icon'] : '');
156                 if ($name=="" || $key=="" || $secret==""){
157                         notice(t("Missing some important data!"));
158
159                 } else {
160                         if ($_POST['submit']==t("Update")){
161                                 $r = q("UPDATE clients SET
162                                                         client_id='%s',
163                                                         pw='%s',
164                                                         name='%s',
165                                                         redirect_uri='%s',
166                                                         icon='%s',
167                                                         uid=%d
168                                                 WHERE client_id='%s'",
169                                                 dbesc($key),
170                                                 dbesc($secret),
171                                                 dbesc($name),
172                                                 dbesc($redirect),
173                                                 dbesc($icon),
174                                                 local_user(),
175                                                 dbesc($key));
176                         } else {
177                                 $r = q("INSERT INTO clients
178                                                         (client_id, pw, name, redirect_uri, icon, uid)
179                                                 VALUES ('%s','%s','%s','%s','%s',%d)",
180                                                 dbesc($key),
181                                                 dbesc($secret),
182                                                 dbesc($name),
183                                                 dbesc($redirect),
184                                                 dbesc($icon),
185                                                 local_user());
186                         }
187                 }
188                 goaway(App::get_baseurl(true)."/settings/oauth/");
189                 return;
190         }
191
192         if(($a->argc > 1) && ($a->argv[1] == 'addon')) {
193                 check_form_security_token_redirectOnErr('/settings/addon', 'settings_addon');
194
195                 call_hooks('plugin_settings_post', $_POST);
196                 return;
197         }
198
199         if(($a->argc > 1) && ($a->argv[1] == 'connectors')) {
200
201                 check_form_security_token_redirectOnErr('/settings/connectors', 'settings_connectors');
202
203                 if(x($_POST, 'general-submit')) {
204                         set_pconfig(local_user(), 'system', 'no_intelligent_shortening', intval($_POST['no_intelligent_shortening']));
205                         set_pconfig(local_user(), 'system', 'ostatus_autofriend', intval($_POST['snautofollow']));
206                         set_pconfig(local_user(), 'ostatus', 'default_group', $_POST['group-selection']);
207                         set_pconfig(local_user(), 'ostatus', 'legacy_contact', $_POST['legacy_contact']);
208                 } elseif(x($_POST, 'imap-submit')) {
209
210                         $mail_server       = ((x($_POST,'mail_server')) ? $_POST['mail_server'] : '');
211                         $mail_port         = ((x($_POST,'mail_port')) ? $_POST['mail_port'] : '');
212                         $mail_ssl          = ((x($_POST,'mail_ssl')) ? strtolower(trim($_POST['mail_ssl'])) : '');
213                         $mail_user         = ((x($_POST,'mail_user')) ? $_POST['mail_user'] : '');
214                         $mail_pass         = ((x($_POST,'mail_pass')) ? trim($_POST['mail_pass']) : '');
215                         $mail_action       = ((x($_POST,'mail_action')) ? trim($_POST['mail_action']) : '');
216                         $mail_movetofolder = ((x($_POST,'mail_movetofolder')) ? trim($_POST['mail_movetofolder']) : '');
217                         $mail_replyto      = ((x($_POST,'mail_replyto')) ? $_POST['mail_replyto'] : '');
218                         $mail_pubmail      = ((x($_POST,'mail_pubmail')) ? $_POST['mail_pubmail'] : '');
219
220
221                         $mail_disabled = ((function_exists('imap_open') && (! get_config('system','imap_disabled'))) ? 0 : 1);
222                         if(get_config('system','dfrn_only'))
223                                 $mail_disabled = 1;
224
225                         if(! $mail_disabled) {
226                                 $failed = false;
227                                 $r = q("SELECT * FROM `mailacct` WHERE `uid` = %d LIMIT 1",
228                                         intval(local_user())
229                                 );
230                                 if (! dbm::is_result($r)) {
231                                         q("INSERT INTO `mailacct` (`uid`) VALUES (%d)",
232                                                 intval(local_user())
233                                         );
234                                 }
235                                 if(strlen($mail_pass)) {
236                                         $pass = '';
237                                         openssl_public_encrypt($mail_pass,$pass,$a->user['pubkey']);
238                                         q("UPDATE `mailacct` SET `pass` = '%s' WHERE `uid` = %d",
239                                                 dbesc(bin2hex($pass)),
240                                                 intval(local_user())
241                                         );
242                                 }
243                                 $r = q("UPDATE `mailacct` SET `server` = '%s', `port` = %d, `ssltype` = '%s', `user` = '%s',
244                                         `action` = %d, `movetofolder` = '%s',
245                                         `mailbox` = 'INBOX', `reply_to` = '%s', `pubmail` = %d WHERE `uid` = %d",
246                                         dbesc($mail_server),
247                                         intval($mail_port),
248                                         dbesc($mail_ssl),
249                                         dbesc($mail_user),
250                                         intval($mail_action),
251                                         dbesc($mail_movetofolder),
252                                         dbesc($mail_replyto),
253                                         intval($mail_pubmail),
254                                         intval(local_user())
255                                 );
256                                 logger("mail: updating mailaccount. Response: ".print_r($r, true));
257                                 $r = q("SELECT * FROM `mailacct` WHERE `uid` = %d LIMIT 1",
258                                         intval(local_user())
259                                 );
260                                 if (dbm::is_result($r)) {
261                                         $eacct = $r[0];
262                                         require_once('include/email.php');
263                                         $mb = construct_mailbox_name($eacct);
264                                         if(strlen($eacct['server'])) {
265                                                 $dcrpass = '';
266                                                 openssl_private_decrypt(hex2bin($eacct['pass']),$dcrpass,$a->user['prvkey']);
267                                                 $mbox = email_connect($mb,$mail_user,$dcrpass);
268                                                 unset($dcrpass);
269                                                 if(! $mbox) {
270                                                         $failed = true;
271                                                         notice( t('Failed to connect with email account using the settings provided.') . EOL);
272                                                 }
273                                         }
274                                 }
275                                 if(! $failed)
276                                         info( t('Email settings updated.') . EOL);
277                         }
278                 }
279
280                 call_hooks('connector_settings_post', $_POST);
281                 return;
282         }
283
284         if (($a->argc > 1) && ($a->argv[1] === 'features')) {
285                 check_form_security_token_redirectOnErr('/settings/features', 'settings_features');
286                 foreach($_POST as $k => $v) {
287                         if(strpos($k,'feature_') === 0) {
288                                 set_pconfig(local_user(),'feature',substr($k,8),((intval($v)) ? 1 : 0));
289                         }
290                 }
291                 info( t('Features updated') . EOL);
292                 return;
293         }
294
295         if (($a->argc > 1) && ($a->argv[1] === 'display')) {
296                 check_form_security_token_redirectOnErr('/settings/display', 'settings_display');
297
298                 $theme             = x($_POST, 'theme')             ? notags(trim($_POST['theme']))        : $a->user['theme'];
299                 $mobile_theme      = x($_POST, 'mobile_theme')      ? notags(trim($_POST['mobile_theme'])) : '';
300                 $nosmile           = x($_POST, 'nosmile')           ? intval($_POST['nosmile'])            : 0;
301                 $first_day_of_week = x($_POST, 'first_day_of_week') ? intval($_POST['first_day_of_week'])  : 0;
302                 $noinfo            = x($_POST, 'noinfo')            ? intval($_POST['noinfo'])             : 0;
303                 $infinite_scroll   = x($_POST, 'infinite_scroll')   ? intval($_POST['infinite_scroll'])    : 0;
304                 $no_auto_update    = x($_POST, 'no_auto_update')    ? intval($_POST['no_auto_update'])     : 0;
305                 $bandwidth_saver   = x($_POST, 'bandwidth_saver')   ? intval($_POST['bandwidth_saver'])    : 0;
306                 $nowarn_insecure   = x($_POST, 'nowarn_insecure')   ? intval($_POST['nowarn_insecure'])    : 0;
307                 $browser_update    = x($_POST, 'browser_update')    ? intval($_POST['browser_update'])     : 0;
308                 if ($browser_update != -1) {
309                         $browser_update = $browser_update * 1000;
310                         if ($browser_update < 10000)
311                                 $browser_update = 10000;
312                 }
313
314                 $itemspage_network = x($_POST,'itemspage_network')  ? intval($_POST['itemspage_network'])  : 40;
315                 if ($itemspage_network > 100) {
316                         $itemspage_network = 100;
317                 }
318                 $itemspage_mobile_network = x($_POST,'itemspage_mobile_network') ? intval($_POST['itemspage_mobile_network']) : 20;
319                 if ($itemspage_mobile_network > 100) {
320                         $itemspage_mobile_network = 100;
321                 }
322
323                 if($mobile_theme !== '') {
324                         set_pconfig(local_user(),'system','mobile_theme',$mobile_theme);
325                 }
326
327                 set_pconfig(local_user(), 'system', 'nowarn_insecure'         , $nowarn_insecure);
328                 set_pconfig(local_user(), 'system', 'update_interval'         , $browser_update);
329                 set_pconfig(local_user(), 'system', 'itemspage_network'       , $itemspage_network);
330                 set_pconfig(local_user(), 'system', 'itemspage_mobile_network', $itemspage_mobile_network);
331                 set_pconfig(local_user(), 'system', 'no_smilies'              , $nosmile);
332                 set_pconfig(local_user(), 'system', 'first_day_of_week'       , $first_day_of_week);
333                 set_pconfig(local_user(), 'system', 'ignore_info'             , $noinfo);
334                 set_pconfig(local_user(), 'system', 'infinite_scroll'         , $infinite_scroll);
335                 set_pconfig(local_user(), 'system', 'no_auto_update'          , $no_auto_update);
336                 set_pconfig(local_user(), 'system', 'bandwidth_saver'         , $bandwidth_saver);
337
338                 if ($theme == $a->user['theme']) {
339                         // call theme_post only if theme has not been changed
340                         if (($themeconfigfile = get_theme_config_file($theme)) != null) {
341                                 require_once($themeconfigfile);
342                                 theme_post($a);
343                         }
344                 }
345
346
347                 $r = q("UPDATE `user` SET `theme` = '%s' WHERE `uid` = %d",
348                                 dbesc($theme),
349                                 intval(local_user())
350                 );
351
352                 call_hooks('display_settings_post', $_POST);
353                 goaway('settings/display' );
354                 return; // NOTREACHED
355         }
356
357         check_form_security_token_redirectOnErr('/settings', 'settings');
358
359         if (x($_POST,'resend_relocate')) {
360                 proc_run(PRIORITY_HIGH, 'include/notifier.php', 'relocate', local_user());
361                 info(t("Relocate message has been send to your contacts"));
362                 goaway('settings');
363         }
364
365         call_hooks('settings_post', $_POST);
366
367         if((x($_POST,'password')) || (x($_POST,'confirm'))) {
368
369                 $newpass = $_POST['password'];
370                 $confirm = $_POST['confirm'];
371                 $oldpass = hash('whirlpool', $_POST['opassword']);
372
373                 $err = false;
374                 if($newpass != $confirm ) {
375                         notice( t('Passwords do not match. Password unchanged.') . EOL);
376                         $err = true;
377                 }
378
379                 if((! x($newpass)) || (! x($confirm))) {
380                         notice( t('Empty passwords are not allowed. Password unchanged.') . EOL);
381                         $err = true;
382         }
383
384         //  check if the old password was supplied correctly before
385         //  changing it to the new value
386         $r = q("SELECT `password` FROM `user`WHERE `uid` = %d LIMIT 1", intval(local_user()));
387         if( $oldpass != $r[0]['password'] ) {
388             notice( t('Wrong password.') . EOL);
389             $err = true;
390         }
391
392                 if(! $err) {
393                         $password = hash('whirlpool',$newpass);
394                         $r = q("UPDATE `user` SET `password` = '%s' WHERE `uid` = %d",
395                                 dbesc($password),
396                                 intval(local_user())
397                         );
398                         if($r)
399                                 info( t('Password changed.') . EOL);
400                         else
401                                 notice( t('Password update failed. Please try again.') . EOL);
402                 }
403         }
404
405
406         $username         = ((x($_POST,'username'))   ? notags(trim($_POST['username']))     : '');
407         $email            = ((x($_POST,'email'))      ? notags(trim($_POST['email']))        : '');
408         $timezone         = ((x($_POST,'timezone'))   ? notags(trim($_POST['timezone']))     : '');
409         $language         = ((x($_POST,'language'))   ? notags(trim($_POST['language']))     : '');
410
411         $defloc           = ((x($_POST,'defloc'))     ? notags(trim($_POST['defloc']))       : '');
412         $openid           = ((x($_POST,'openid_url')) ? notags(trim($_POST['openid_url']))   : '');
413         $maxreq           = ((x($_POST,'maxreq'))     ? intval($_POST['maxreq'])             : 0);
414         $expire           = ((x($_POST,'expire'))     ? intval($_POST['expire'])             : 0);
415         $def_gid          = ((x($_POST,'group-selection')) ? intval($_POST['group-selection']) : 0);
416
417
418         $expire_items     = ((x($_POST,'expire_items')) ? intval($_POST['expire_items'])         : 0);
419         $expire_notes     = ((x($_POST,'expire_notes')) ? intval($_POST['expire_notes'])         : 0);
420         $expire_starred   = ((x($_POST,'expire_starred')) ? intval($_POST['expire_starred']) : 0);
421         $expire_photos    = ((x($_POST,'expire_photos'))? intval($_POST['expire_photos'])        : 0);
422         $expire_network_only    = ((x($_POST,'expire_network_only'))? intval($_POST['expire_network_only'])      : 0);
423
424         $allow_location   = (((x($_POST,'allow_location')) && (intval($_POST['allow_location']) == 1)) ? 1: 0);
425         $publish          = (((x($_POST,'profile_in_directory')) && (intval($_POST['profile_in_directory']) == 1)) ? 1: 0);
426         $net_publish      = (((x($_POST,'profile_in_netdirectory')) && (intval($_POST['profile_in_netdirectory']) == 1)) ? 1: 0);
427         $old_visibility   = (((x($_POST,'visibility')) && (intval($_POST['visibility']) == 1)) ? 1 : 0);
428         $account_type     = (((x($_POST,'account-type')) && (intval($_POST['account-type']))) ? intval($_POST['account-type']) : 0);
429         $page_flags       = (((x($_POST,'page-flags')) && (intval($_POST['page-flags']))) ? intval($_POST['page-flags']) : 0);
430         $blockwall        = (((x($_POST,'blockwall')) && (intval($_POST['blockwall']) == 1)) ? 0: 1); // this setting is inverted!
431         $blocktags        = (((x($_POST,'blocktags')) && (intval($_POST['blocktags']) == 1)) ? 0: 1); // this setting is inverted!
432         $unkmail          = (((x($_POST,'unkmail')) && (intval($_POST['unkmail']) == 1)) ? 1: 0);
433         $cntunkmail       = ((x($_POST,'cntunkmail')) ? intval($_POST['cntunkmail']) : 0);
434         $suggestme        = ((x($_POST,'suggestme')) ? intval($_POST['suggestme'])  : 0);
435         $hide_friends     = (($_POST['hide-friends'] == 1) ? 1: 0);
436         $hidewall         = (($_POST['hidewall'] == 1) ? 1: 0);
437         $post_newfriend   = (($_POST['post_newfriend'] == 1) ? 1: 0);
438         $post_joingroup   = (($_POST['post_joingroup'] == 1) ? 1: 0);
439         $post_profilechange   = (($_POST['post_profilechange'] == 1) ? 1: 0);
440
441         $email_textonly   = (($_POST['email_textonly'] == 1) ? 1 : 0);
442
443         $notify = 0;
444
445         if(x($_POST,'notify1'))
446                 $notify += intval($_POST['notify1']);
447         if(x($_POST,'notify2'))
448                 $notify += intval($_POST['notify2']);
449         if(x($_POST,'notify3'))
450                 $notify += intval($_POST['notify3']);
451         if(x($_POST,'notify4'))
452                 $notify += intval($_POST['notify4']);
453         if(x($_POST,'notify5'))
454                 $notify += intval($_POST['notify5']);
455         if(x($_POST,'notify6'))
456                 $notify += intval($_POST['notify6']);
457         if(x($_POST,'notify7'))
458                 $notify += intval($_POST['notify7']);
459         if(x($_POST,'notify8'))
460                 $notify += intval($_POST['notify8']);
461
462         // Adjust the page flag if the account type doesn't fit to the page flag.
463         if (($account_type == ACCOUNT_TYPE_PERSON) AND !in_array($page_flags, array(PAGE_NORMAL, PAGE_SOAPBOX, PAGE_FREELOVE)))
464                 $page_flags = PAGE_NORMAL;
465         elseif (($account_type == ACCOUNT_TYPE_ORGANISATION) AND !in_array($page_flags, array(PAGE_SOAPBOX)))
466                 $page_flags = PAGE_SOAPBOX;
467         elseif (($account_type == ACCOUNT_TYPE_NEWS) AND !in_array($page_flags, array(PAGE_SOAPBOX)))
468                 $page_flags = PAGE_SOAPBOX;
469         elseif (($account_type == ACCOUNT_TYPE_COMMUNITY) AND !in_array($page_flags, array(PAGE_COMMUNITY, PAGE_PRVGROUP)))
470                 $page_flags = PAGE_COMMUNITY;
471
472         $email_changed = false;
473
474         $err = '';
475
476         $name_change = false;
477
478         if($username != $a->user['username']) {
479                 $name_change = true;
480                 if(strlen($username) > 40)
481                         $err .= t(' Please use a shorter name.');
482                 if(strlen($username) < 3)
483                         $err .= t(' Name too short.');
484         }
485
486         if($email != $a->user['email']) {
487                 $email_changed = true;
488                 //  check for the correct password
489                 $r = q("SELECT `password` FROM `user`WHERE `uid` = %d LIMIT 1", intval(local_user()));
490                 $password = hash('whirlpool', $_POST['mpassword']);
491                 if ($password != $r[0]['password']) {
492                         $err .= t('Wrong Password') . EOL;
493                         $email = $a->user['email'];
494                 }
495                 //  check the email is valid
496                 if(! valid_email($email))
497                         $err .= t(' Not valid email.');
498                 //  ensure new email is not the admin mail
499                 //if((x($a->config,'admin_email')) && (strcasecmp($email,$a->config['admin_email']) == 0)) {
500                 if(x($a->config,'admin_email')) {
501                         $adminlist = explode(",", str_replace(" ", "", strtolower($a->config['admin_email'])));
502                         if (in_array(strtolower($email), $adminlist)) {
503                                 $err .= t(' Cannot change to that email.');
504                                 $email = $a->user['email'];
505                         }
506                 }
507         }
508
509         if(strlen($err)) {
510                 notice($err . EOL);
511                 return;
512         }
513
514         if($timezone != $a->user['timezone']) {
515                 if(strlen($timezone))
516                         date_default_timezone_set($timezone);
517         }
518
519         $str_group_allow   = perms2str($_POST['group_allow']);
520         $str_contact_allow = perms2str($_POST['contact_allow']);
521         $str_group_deny    = perms2str($_POST['group_deny']);
522         $str_contact_deny  = perms2str($_POST['contact_deny']);
523
524         $openidserver = $a->user['openidserver'];
525         //$openid = normalise_openid($openid);
526
527         // If openid has changed or if there's an openid but no openidserver, try and discover it.
528
529         if($openid != $a->user['openid'] || (strlen($openid) && (! strlen($openidserver)))) {
530                 $tmp_str = $openid;
531                 if(strlen($tmp_str) && validate_url($tmp_str)) {
532                         logger('updating openidserver');
533                         require_once('library/openid.php');
534                         $open_id_obj = new LightOpenID;
535                         $open_id_obj->identity = $openid;
536                         $openidserver = $open_id_obj->discover($open_id_obj->identity);
537                 }
538                 else
539                         $openidserver = '';
540         }
541
542         set_pconfig(local_user(),'expire','items', $expire_items);
543         set_pconfig(local_user(),'expire','notes', $expire_notes);
544         set_pconfig(local_user(),'expire','starred', $expire_starred);
545         set_pconfig(local_user(),'expire','photos', $expire_photos);
546         set_pconfig(local_user(),'expire','network_only', $expire_network_only);
547
548         set_pconfig(local_user(),'system','suggestme', $suggestme);
549         set_pconfig(local_user(),'system','post_newfriend', $post_newfriend);
550         set_pconfig(local_user(),'system','post_joingroup', $post_joingroup);
551         set_pconfig(local_user(),'system','post_profilechange', $post_profilechange);
552
553         set_pconfig(local_user(),'system','email_textonly', $email_textonly);
554
555         if($page_flags == PAGE_PRVGROUP) {
556                 $hidewall = 1;
557                 if((! $str_contact_allow) && (! $str_group_allow) && (! $str_contact_deny) && (! $str_group_deny)) {
558                         if($def_gid) {
559                                 info( t('Private forum has no privacy permissions. Using default privacy group.'). EOL);
560                                 $str_group_allow = '<' . $def_gid . '>';
561                         }
562                         else {
563                                 notice( t('Private forum has no privacy permissions and no default privacy group.') . EOL);
564                         }
565                 }
566         }
567
568
569         $r = q("UPDATE `user` SET `username` = '%s', `email` = '%s',
570                                 `openid` = '%s', `timezone` = '%s',
571                                 `allow_cid` = '%s', `allow_gid` = '%s', `deny_cid` = '%s', `deny_gid` = '%s',
572                                 `notify-flags` = %d, `page-flags` = %d, `account-type` = %d, `default-location` = '%s',
573                                 `allow_location` = %d, `maxreq` = %d, `expire` = %d, `openidserver` = '%s',
574                                 `def_gid` = %d, `blockwall` = %d, `hidewall` = %d, `blocktags` = %d,
575                                 `unkmail` = %d, `cntunkmail` = %d, `language` = '%s'
576                         WHERE `uid` = %d",
577                         dbesc($username),
578                         dbesc($email),
579                         dbesc($openid),
580                         dbesc($timezone),
581                         dbesc($str_contact_allow),
582                         dbesc($str_group_allow),
583                         dbesc($str_contact_deny),
584                         dbesc($str_group_deny),
585                         intval($notify),
586                         intval($page_flags),
587                         intval($account_type),
588                         dbesc($defloc),
589                         intval($allow_location),
590                         intval($maxreq),
591                         intval($expire),
592                         dbesc($openidserver),
593                         intval($def_gid),
594                         intval($blockwall),
595                         intval($hidewall),
596                         intval($blocktags),
597                         intval($unkmail),
598                         intval($cntunkmail),
599                         dbesc($language),
600                         intval(local_user())
601         );
602         if($r)
603                 info( t('Settings updated.') . EOL);
604
605         // clear session language
606         unset($_SESSION['language']);
607
608         $r = q("UPDATE `profile`
609                 SET `publish` = %d,
610                 `name` = '%s',
611                 `net-publish` = %d,
612                 `hide-friends` = %d
613                 WHERE `is-default` = 1 AND `uid` = %d",
614                 intval($publish),
615                 dbesc($username),
616                 intval($net_publish),
617                 intval($hide_friends),
618                 intval(local_user())
619         );
620
621
622         if($name_change) {
623                 q("UPDATE `contact` SET `name` = '%s', `name-date` = '%s' WHERE `uid` = %d AND `self`",
624                         dbesc($username),
625                         dbesc(datetime_convert()),
626                         intval(local_user())
627                 );
628         }
629
630         if (($old_visibility != $net_publish) || ($page_flags != $old_page_flags)) {
631                 // Update global directory in background
632                 $url = $_SESSION['my_url'];
633                 if ($url && strlen(get_config('system','directory'))) {
634                         proc_run(PRIORITY_LOW, "include/directory.php", $url);
635                 }
636         }
637
638         require_once('include/profile_update.php');
639         profile_change();
640
641         // Update the global contact for the user
642         update_gcontact_for_user(local_user());
643
644         //$_SESSION['theme'] = $theme;
645         if ($email_changed && $a->config['register_policy'] == REGISTER_VERIFY) {
646
647                 /// @TODO set to un-verified, blocked and redirect to logout
648                 /// @TODO Why? Are we verifying people or email addresses?
649
650         }
651
652         goaway('settings');
653         return; // NOTREACHED
654 }
655
656
657 function settings_content(App $a) {
658
659         $o = '';
660         nav_set_selected('settings');
661
662         if (! local_user()) {
663                 #notice( t('Permission denied.') . EOL );
664                 return;
665         }
666
667         if (x($_SESSION,'submanage') && intval($_SESSION['submanage'])) {
668                 notice( t('Permission denied.') . EOL );
669                 return;
670         }
671
672
673
674         if (($a->argc > 1) && ($a->argv[1] === 'oauth')) {
675
676                 if (($a->argc > 2) && ($a->argv[2] === 'add')) {
677                         $tpl = get_markup_template("settings_oauth_edit.tpl");
678                         $o .= replace_macros($tpl, array(
679                                 '$form_security_token' => get_form_security_token("settings_oauth"),
680                                 '$title'        => t('Add application'),
681                                 '$submit'       => t('Save Settings'),
682                                 '$cancel'       => t('Cancel'),
683                                 '$name'         => array('name', t('Name'), '', ''),
684                                 '$key'          => array('key', t('Consumer Key'), '', ''),
685                                 '$secret'       => array('secret', t('Consumer Secret'), '', ''),
686                                 '$redirect'     => array('redirect', t('Redirect'), '', ''),
687                                 '$icon'         => array('icon', t('Icon url'), '', ''),
688                         ));
689                         return $o;
690                 }
691
692                 if (($a->argc > 3) && ($a->argv[2] === 'edit')) {
693                         $r = q("SELECT * FROM clients WHERE client_id='%s' AND uid=%d",
694                                         dbesc($a->argv[3]),
695                                         local_user());
696
697                         if (!dbm::is_result($r)){
698                                 notice(t("You can't edit this application."));
699                                 return;
700                         }
701                         $app = $r[0];
702
703                         $tpl = get_markup_template("settings_oauth_edit.tpl");
704                         $o .= replace_macros($tpl, array(
705                                 '$form_security_token' => get_form_security_token("settings_oauth"),
706                                 '$title'        => t('Add application'),
707                                 '$submit'       => t('Update'),
708                                 '$cancel'       => t('Cancel'),
709                                 '$name'         => array('name', t('Name'), $app['name'] , ''),
710                                 '$key'          => array('key', t('Consumer Key'), $app['client_id'], ''),
711                                 '$secret'       => array('secret', t('Consumer Secret'), $app['pw'], ''),
712                                 '$redirect'     => array('redirect', t('Redirect'), $app['redirect_uri'], ''),
713                                 '$icon'         => array('icon', t('Icon url'), $app['icon'], ''),
714                         ));
715                         return $o;
716                 }
717
718                 if(($a->argc > 3) && ($a->argv[2] === 'delete')) {
719                         check_form_security_token_redirectOnErr('/settings/oauth', 'settings_oauth', 't');
720
721                         $r = q("DELETE FROM clients WHERE client_id='%s' AND uid=%d",
722                                         dbesc($a->argv[3]),
723                                         local_user());
724                         goaway(App::get_baseurl(true)."/settings/oauth/");
725                         return;
726                 }
727
728                 /// @TODO validate result with dbm::is_result()
729                 $r = q("SELECT clients.*, tokens.id as oauth_token, (clients.uid=%d) AS my
730                                 FROM clients
731                                 LEFT JOIN tokens ON clients.client_id=tokens.client_id
732                                 WHERE clients.uid IN (%d,0)",
733                                 local_user(),
734                                 local_user());
735
736
737                 $tpl = get_markup_template("settings_oauth.tpl");
738                 $o .= replace_macros($tpl, array(
739                         '$form_security_token' => get_form_security_token("settings_oauth"),
740                         '$baseurl'      => App::get_baseurl(true),
741                         '$title'        => t('Connected Apps'),
742                         '$add'          => t('Add application'),
743                         '$edit'         => t('Edit'),
744                         '$delete'               => t('Delete'),
745                         '$consumerkey' => t('Client key starts with'),
746                         '$noname'       => t('No name'),
747                         '$remove'       => t('Remove authorization'),
748                         '$apps'         => $r,
749                 ));
750                 return $o;
751
752         }
753
754         if (($a->argc > 1) && ($a->argv[1] === 'addon')) {
755                 $settings_addons = "";
756
757                 $r = q("SELECT * FROM `hook` WHERE `hook` = 'plugin_settings' ");
758                 if (! dbm::is_result($r)) {
759                         $settings_addons = t('No Plugin settings configured');
760                 }
761
762                 call_hooks('plugin_settings', $settings_addons);
763
764
765                 $tpl = get_markup_template("settings_addons.tpl");
766                 $o .= replace_macros($tpl, array(
767                         '$form_security_token' => get_form_security_token("settings_addon"),
768                         '$title'        => t('Plugin Settings'),
769                         '$settings_addons' => $settings_addons
770                 ));
771                 return $o;
772         }
773
774         if (($a->argc > 1) && ($a->argv[1] === 'features')) {
775
776                 $arr = array();
777                 $features = get_features();
778                 foreach ($features as $fname => $fdata) {
779                         $arr[$fname] = array();
780                         $arr[$fname][0] = $fdata[0];
781                         foreach (array_slice($fdata,1) as $f) {
782                                 $arr[$fname][1][] = array('feature_' .$f[0],$f[1],((intval(feature_enabled(local_user(),$f[0]))) ? "1" : ''),$f[2],array(t('Off'), t('On')));
783                         }
784                 }
785
786
787                 $tpl = get_markup_template("settings_features.tpl");
788                 $o .= replace_macros($tpl, array(
789                         '$form_security_token' => get_form_security_token("settings_features"),
790                         '$title'               => t('Additional Features'),
791                         '$features'            => $arr,
792                         '$submit'              => t('Save Settings'),
793                 ));
794                 return $o;
795         }
796
797         if (($a->argc > 1) && ($a->argv[1] === 'connectors')) {
798
799                 $settings_connectors = '<span id="settings_general_inflated" class="settings-block fakelink" style="display: block;" onclick="openClose(\'settings_general_expanded\'); openClose(\'settings_general_inflated\');">';
800                 $settings_connectors .= '<h3 class="connector">'. t('General Social Media Settings').'</h3>';
801                 $settings_connectors .= '</span>';
802                 $settings_connectors .= '<div id="settings_general_expanded" class="settings-block" style="display: none;">';
803                 $settings_connectors .= '<span class="fakelink" onclick="openClose(\'settings_general_expanded\'); openClose(\'settings_general_inflated\');">';
804                 $settings_connectors .= '<h3 class="connector">'. t('General Social Media Settings').'</h3>';
805                 $settings_connectors .= '</span>';
806
807                 $checked = ((get_pconfig(local_user(), 'system', 'no_intelligent_shortening')) ? ' checked="checked" ' : '');
808
809                 $settings_connectors .= '<div id="no_intelligent_shortening" class="field checkbox">';
810                 $settings_connectors .= '<label id="no_intelligent_shortening-label" for="shortening-checkbox">'. t('Disable intelligent shortening'). '</label>';
811                 $settings_connectors .= '<input id="shortening-checkbox" type="checkbox" name="no_intelligent_shortening" value="1" ' . $checked . '/>';
812                 $settings_connectors .= '<span class="field_help">'.t('Normally the system tries to find the best link to add to shortened posts. If this option is enabled then every shortened post will always point to the original friendica post.').'</span>';
813                 $settings_connectors .= '</div>';
814
815                 $checked = ((get_pconfig(local_user(), 'system', 'ostatus_autofriend')) ? ' checked="checked" ' : '');
816
817                 $settings_connectors .= '<div id="snautofollow-wrapper" class="field checkbox">';
818                 $settings_connectors .= '<label id="snautofollow-label" for="snautofollow-checkbox">'. t('Automatically follow any GNU Social (OStatus) followers/mentioners'). '</label>';
819                 $settings_connectors .= '<input id="snautofollow-checkbox" type="checkbox" name="snautofollow" value="1" ' . $checked . '/>';
820                 $settings_connectors .= '<span class="field_help">'.t('If you receive a message from an unknown OStatus user, this option decides what to do. If it is checked, a new contact will be created for every unknown user.').'</span>';
821                 $settings_connectors .= '</div>';
822
823                 $default_group = get_pconfig(local_user(), 'ostatus', 'default_group');
824                 $legacy_contact = get_pconfig(local_user(), 'ostatus', 'legacy_contact');
825
826                 $settings_connectors .= mini_group_select(local_user(), $default_group, t("Default group for OStatus contacts"));
827
828                 /// @TODO Found to much different usage to test empty/non-empty strings (e.g. empty(), trim() == '' ) which is wanted?
829                 if ($legacy_contact != "") {
830                         $a->page['htmlhead'] = '<meta http-equiv="refresh" content="0; URL='.App::get_baseurl().'/ostatus_subscribe?url='.urlencode($legacy_contact).'">';
831                 }
832
833                 $settings_connectors .= '<div id="legacy-contact-wrapper" class="field input">';
834                 $settings_connectors .= '<label id="legacy-contact-label" for="snautofollow-checkbox">'. t('Your legacy GNU Social account'). '</label>';
835                 $settings_connectors .= '<input id="legacy-contact-checkbox" name="legacy_contact" value="'.$legacy_contact.'"/>';
836                 $settings_connectors .= '<span class="field_help">'.t('If you enter your old GNU Social/Statusnet account name here (in the format user@domain.tld), your contacts will be added automatically. The field will be emptied when done.').'</span>';
837                 $settings_connectors .= '</div>';
838
839                 $settings_connectors .= '<p><a href="'.App::get_baseurl().'/repair_ostatus">'.t("Repair OStatus subscriptions").'</a></p>';
840
841                 $settings_connectors .= '<div class="settings-submit-wrapper" ><input type="submit" name="general-submit" class="settings-submit" value="' . t('Save Settings') . '" /></div>';
842
843                 $settings_connectors .= '</div><div class="clear"></div>';
844
845                 call_hooks('connector_settings', $settings_connectors);
846
847                 if (is_site_admin()) {
848                         $diasp_enabled = sprintf( t('Built-in support for %s connectivity is %s'), t('Diaspora'), ((get_config('system','diaspora_enabled')) ? t('enabled') : t('disabled')));
849                         $ostat_enabled = sprintf( t('Built-in support for %s connectivity is %s'), t('GNU Social (OStatus)'), ((get_config('system','ostatus_disabled')) ? t('disabled') : t('enabled')));
850                 } else {
851                         $diasp_enabled = "";
852                         $ostat_enabled = "";
853                 }
854
855                 $mail_disabled = ((function_exists('imap_open') && (! get_config('system','imap_disabled'))) ? 0 : 1);
856                 if(get_config('system','dfrn_only'))
857                         $mail_disabled = 1;
858
859                 if(! $mail_disabled) {
860                         $r = q("SELECT * FROM `mailacct` WHERE `uid` = %d LIMIT 1",
861                                 local_user()
862                         );
863                 } else {
864                         $r = null;
865                 }
866
867                 $mail_server       = ((dbm::is_result($r)) ? $r[0]['server'] : '');
868                 $mail_port         = ((dbm::is_result($r) && intval($r[0]['port'])) ? intval($r[0]['port']) : '');
869                 $mail_ssl          = ((dbm::is_result($r)) ? $r[0]['ssltype'] : '');
870                 $mail_user         = ((dbm::is_result($r)) ? $r[0]['user'] : '');
871                 $mail_replyto      = ((dbm::is_result($r)) ? $r[0]['reply_to'] : '');
872                 $mail_pubmail      = ((dbm::is_result($r)) ? $r[0]['pubmail'] : 0);
873                 $mail_action       = ((dbm::is_result($r)) ? $r[0]['action'] : 0);
874                 $mail_movetofolder = ((dbm::is_result($r)) ? $r[0]['movetofolder'] : '');
875                 $mail_chk          = ((dbm::is_result($r)) ? $r[0]['last_check'] : NULL_DATE);
876
877
878                 $tpl = get_markup_template("settings_connectors.tpl");
879
880                 if (! service_class_allows(local_user(),'email_connect')) {
881                         $mail_disabled_message = upgrade_bool_message();
882                 } else {
883                         $mail_disabled_message = (($mail_disabled) ? t('Email access is disabled on this site.') : '');
884                 }
885
886
887                 $o .= replace_macros($tpl, array(
888                         '$form_security_token' => get_form_security_token("settings_connectors"),
889
890                         '$title'        => t('Social Networks'),
891
892                         '$diasp_enabled' => $diasp_enabled,
893                         '$ostat_enabled' => $ostat_enabled,
894
895                         '$h_imap' => t('Email/Mailbox Setup'),
896                         '$imap_desc' => t("If you wish to communicate with email contacts using this service \x28optional\x29, please specify how to connect to your mailbox."),
897                         '$imap_lastcheck' => array('imap_lastcheck', t('Last successful email check:'), $mail_chk,''),
898                         '$mail_disabled' => $mail_disabled_message,
899                         '$mail_server'  => array('mail_server',  t('IMAP server name:'), $mail_server, ''),
900                         '$mail_port'    => array('mail_port',    t('IMAP port:'), $mail_port, ''),
901                         '$mail_ssl'             => array('mail_ssl',     t('Security:'), strtoupper($mail_ssl), '', array( 'notls'=>t('None'), 'TLS'=>'TLS', 'SSL'=>'SSL')),
902                         '$mail_user'    => array('mail_user',    t('Email login name:'), $mail_user, ''),
903                         '$mail_pass'    => array('mail_pass',    t('Email password:'), '', ''),
904                         '$mail_replyto' => array('mail_replyto', t('Reply-to address:'), $mail_replyto, 'Optional'),
905                         '$mail_pubmail' => array('mail_pubmail', t('Send public posts to all email contacts:'), $mail_pubmail, ''),
906                         '$mail_action'  => array('mail_action',  t('Action after import:'), $mail_action, '', array(0=>t('None'), /*1=>t('Delete'),*/ 2=>t('Mark as seen'), 3=>t('Move to folder'))),
907                         '$mail_movetofolder'    => array('mail_movetofolder',    t('Move to folder:'), $mail_movetofolder, ''),
908                         '$submit' => t('Save Settings'),
909
910                         '$settings_connectors' => $settings_connectors
911                 ));
912
913                 call_hooks('display_settings', $o);
914                 return $o;
915         }
916
917         /*
918          * DISPLAY SETTINGS
919          */
920         if (($a->argc > 1) && ($a->argv[1] === 'display')) {
921                 $default_theme = get_config('system','theme');
922                 if (! $default_theme) {
923                         $default_theme = 'default';
924                 }
925                 $default_mobile_theme = get_config('system','mobile-theme');
926                 if (! $mobile_default_theme) {
927                         $mobile_default_theme = 'none';
928                 }
929
930                 $allowed_themes_str = get_config('system','allowed_themes');
931                 $allowed_themes_raw = explode(',',$allowed_themes_str);
932                 $allowed_themes = array();
933                 if (count($allowed_themes_raw)) {
934                         foreach ($allowed_themes_raw as $x) {
935                                 if (strlen(trim($x)) && is_dir("view/theme/$x")) {
936                                         $allowed_themes[] = trim($x);
937                                 }
938                         }
939                 }
940
941
942                 $themes = array();
943                 $mobile_themes = array("---" => t('No special theme for mobile devices'));
944                 $files = glob('view/theme/*'); /* */
945                 if ($allowed_themes) {
946                         foreach ($allowed_themes as $th) {
947                                 $f = $th;
948                                 $is_experimental = file_exists('view/theme/' . $th . '/experimental');
949                                 $unsupported = file_exists('view/theme/' . $th . '/unsupported');
950                                 $is_mobile = file_exists('view/theme/' . $th . '/mobile');
951                                 if (!$is_experimental or ($is_experimental && (get_config('experimentals','exp_themes')==1 or get_config('experimentals','exp_themes')===false))){
952                                         $theme_name = (($is_experimental) ?  sprintf("%s - \x28Experimental\x29", $f) : $f);
953                                         if ($is_mobile) {
954                                                 $mobile_themes[$f]=$theme_name;
955                                         } else {
956                                                 $themes[$f]=$theme_name;
957                                         }
958                                 }
959                         }
960                 }
961                 $theme_selected = (!x($_SESSION,'theme')? $default_theme : $_SESSION['theme']);
962                 $mobile_theme_selected = (!x($_SESSION,'mobile-theme')? $default_mobile_theme : $_SESSION['mobile-theme']);
963
964                 $nowarn_insecure = intval(get_pconfig(local_user(), 'system', 'nowarn_insecure'));
965
966                 $browser_update = intval(get_pconfig(local_user(), 'system','update_interval'));
967                 if (intval($browser_update) != -1) {
968                         $browser_update = (($browser_update == 0) ? 40 : $browser_update / 1000); // default if not set: 40 seconds
969                 }
970
971                 $itemspage_network = intval(get_pconfig(local_user(), 'system','itemspage_network'));
972                 $itemspage_network = (($itemspage_network > 0 && $itemspage_network < 101) ? $itemspage_network : 40); // default if not set: 40 items
973                 $itemspage_mobile_network = intval(get_pconfig(local_user(), 'system','itemspage_mobile_network'));
974                 $itemspage_mobile_network = (($itemspage_mobile_network > 0 && $itemspage_mobile_network < 101) ? $itemspage_mobile_network : 20); // default if not set: 20 items
975
976                 $nosmile = get_pconfig(local_user(),'system','no_smilies');
977                 $nosmile = (($nosmile===false)? '0': $nosmile); // default if not set: 0
978
979                 $first_day_of_week = get_pconfig(local_user(),'system','first_day_of_week');
980                 $first_day_of_week = (($first_day_of_week===false)? '0': $first_day_of_week); // default if not set: 0
981                 $weekdays = array(0 => t("Sunday"), 1 => t("Monday"));
982
983                 $noinfo = get_pconfig(local_user(),'system','ignore_info');
984                 $noinfo = (($noinfo===false)? '0': $noinfo); // default if not set: 0
985
986                 $infinite_scroll = get_pconfig(local_user(),'system','infinite_scroll');
987                 $infinite_scroll = (($infinite_scroll===false)? '0': $infinite_scroll); // default if not set: 0
988
989                 $no_auto_update = get_pconfig(local_user(),'system','no_auto_update');
990                 $no_auto_update = (($no_auto_update===false)? '0': $no_auto_update); // default if not set: 0
991
992                 $bandwidth_saver = get_pconfig(local_user(), 'system', 'bandwidth_saver');
993                 $bandwidth_saver = (($bandwidth_saver === false) ? '0' : $bandwidth_saver); // default if not set: 0
994
995                 $theme_config = "";
996                 if (($themeconfigfile = get_theme_config_file($theme_selected)) != null) {
997                         require_once($themeconfigfile);
998                         $theme_config = theme_content($a);
999                 }
1000
1001                 $tpl = get_markup_template("settings_display.tpl");
1002                 $o = replace_macros($tpl, array(
1003                         '$ptitle'       => t('Display Settings'),
1004                         '$form_security_token' => get_form_security_token("settings_display"),
1005                         '$submit'       => t('Save Settings'),
1006                         '$baseurl' => App::get_baseurl(true),
1007                         '$uid' => local_user(),
1008
1009                         '$theme'        => array('theme', t('Display Theme:'), $theme_selected, '', $themes, true),
1010                         '$mobile_theme' => array('mobile_theme', t('Mobile Theme:'), $mobile_theme_selected, '', $mobile_themes, false),
1011                         '$nowarn_insecure' => array('nowarn_insecure',  t('Suppress warning of insecure networks'), $nowarn_insecure, t("Should the system suppress the warning that the current group contains members of networks that can't receive non public postings.")),
1012                         '$ajaxint'   => array('browser_update',  t("Update browser every xx seconds"), $browser_update, t('Minimum of 10 seconds. Enter -1 to disable it.')),
1013                         '$itemspage_network'   => array('itemspage_network',  t("Number of items to display per page:"), $itemspage_network, t('Maximum of 100 items')),
1014                         '$itemspage_mobile_network'   => array('itemspage_mobile_network',  t("Number of items to display per page when viewed from mobile device:"), $itemspage_mobile_network, t('Maximum of 100 items')),
1015                         '$nosmile'      => array('nosmile', t("Don't show emoticons"), $nosmile, ''),
1016                         '$calendar_title' => t('Calendar'),
1017                         '$first_day_of_week'    => array('first_day_of_week', t('Beginning of week:'), $first_day_of_week, '', $weekdays, false),
1018                         '$noinfo'       => array('noinfo', t("Don't show notices"), $noinfo, ''),
1019                         '$infinite_scroll'      => array('infinite_scroll', t("Infinite scroll"), $infinite_scroll, ''),
1020                         '$no_auto_update'       => array('no_auto_update', t("Automatic updates only at the top of the network page"), $no_auto_update, 'When disabled, the network page is updated all the time, which could be confusing while reading.'),
1021                         '$bandwidth_saver' => array('bandwidth_saver', t('Bandwith Saver Mode'), $bandwidth_saver, t('When enabled, embedded content is not displayed on automatic updates, they only show on page reload.')),
1022
1023                         '$d_tset' => t('General Theme Settings'),
1024                         '$d_ctset' => t('Custom Theme Settings'),
1025                         '$d_cset' => t('Content Settings'),
1026                         'stitle' => t('Theme settings'),
1027                         '$theme_config' => $theme_config,
1028                 ));
1029
1030                 $tpl = get_markup_template("settings_display_end.tpl");
1031                 $a->page['end'] .= replace_macros($tpl, array(
1032                         '$theme'        => array('theme', t('Display Theme:'), $theme_selected, '', $themes)
1033                 ));
1034
1035                 return $o;
1036         }
1037
1038
1039         /*
1040          * ACCOUNT SETTINGS
1041          */
1042
1043         require_once('include/acl_selectors.php');
1044
1045         $p = q("SELECT * FROM `profile` WHERE `is-default` = 1 AND `uid` = %d LIMIT 1",
1046                 intval(local_user())
1047         );
1048         if (count($p)) {
1049                 $profile = $p[0];
1050         }
1051
1052         $username   = $a->user['username'];
1053         $email      = $a->user['email'];
1054         $nickname   = $a->user['nickname'];
1055         $timezone   = $a->user['timezone'];
1056         $language   = $a->user['language'];
1057         $notify     = $a->user['notify-flags'];
1058         $defloc     = $a->user['default-location'];
1059         $openid     = $a->user['openid'];
1060         $maxreq     = $a->user['maxreq'];
1061         $expire     = ((intval($a->user['expire'])) ? $a->user['expire'] : '');
1062         $blockwall  = $a->user['blockwall'];
1063         $blocktags  = $a->user['blocktags'];
1064         $unkmail    = $a->user['unkmail'];
1065         $cntunkmail = $a->user['cntunkmail'];
1066
1067         $expire_items = get_pconfig(local_user(), 'expire','items');
1068         $expire_items = (($expire_items===false)? '1' : $expire_items); // default if not set: 1
1069
1070         $expire_notes = get_pconfig(local_user(), 'expire','notes');
1071         $expire_notes = (($expire_notes===false)? '1' : $expire_notes); // default if not set: 1
1072
1073         $expire_starred = get_pconfig(local_user(), 'expire','starred');
1074         $expire_starred = (($expire_starred===false)? '1' : $expire_starred); // default if not set: 1
1075
1076         $expire_photos = get_pconfig(local_user(), 'expire','photos');
1077         $expire_photos = (($expire_photos===false)? '0' : $expire_photos); // default if not set: 0
1078
1079         $expire_network_only = get_pconfig(local_user(), 'expire','network_only');
1080         $expire_network_only = (($expire_network_only===false)? '0' : $expire_network_only); // default if not set: 0
1081
1082
1083         $suggestme = get_pconfig(local_user(), 'system','suggestme');
1084         $suggestme = (($suggestme===false)? '0': $suggestme); // default if not set: 0
1085
1086         $post_newfriend = get_pconfig(local_user(), 'system','post_newfriend');
1087         $post_newfriend = (($post_newfriend===false)? '0': $post_newfriend); // default if not set: 0
1088
1089         $post_joingroup = get_pconfig(local_user(), 'system','post_joingroup');
1090         $post_joingroup = (($post_joingroup===false)? '0': $post_joingroup); // default if not set: 0
1091
1092         $post_profilechange = get_pconfig(local_user(), 'system','post_profilechange');
1093         $post_profilechange = (($post_profilechange===false)? '0': $post_profilechange); // default if not set: 0
1094
1095         // nowarn_insecure
1096
1097         if (! strlen($a->user['timezone'])) {
1098                 $timezone = date_default_timezone_get();
1099         }
1100
1101         // Set the account type to "Community" when the page is a community page but the account type doesn't fit
1102         // This is only happening on the first visit after the update
1103         if (in_array($a->user['page-flags'], array(PAGE_COMMUNITY, PAGE_PRVGROUP)) AND
1104                 ($a->user['account-type'] != ACCOUNT_TYPE_COMMUNITY))
1105                 $a->user['account-type'] = ACCOUNT_TYPE_COMMUNITY;
1106
1107         $pageset_tpl = get_markup_template('settings_pagetypes.tpl');
1108
1109         $pagetype = replace_macros($pageset_tpl, array(
1110                 '$account_types'        => t("Account Types"),
1111                 '$user'                 => t("Personal Page Subtypes"),
1112                 '$community'            => t("Community Forum Subtypes"),
1113                 '$account_type'         => $a->user['account-type'],
1114                 '$type_person'          => ACCOUNT_TYPE_PERSON,
1115                 '$type_organisation'    => ACCOUNT_TYPE_ORGANISATION,
1116                 '$type_news'            => ACCOUNT_TYPE_NEWS,
1117                 '$type_community'       => ACCOUNT_TYPE_COMMUNITY,
1118
1119                 '$account_person'       => array('account-type', t('Personal Page'), ACCOUNT_TYPE_PERSON,
1120                                                                         t('This account is a regular personal profile'),
1121                                                                         ($a->user['account-type'] == ACCOUNT_TYPE_PERSON)),
1122
1123                 '$account_organisation' => array('account-type', t('Organisation Page'), ACCOUNT_TYPE_ORGANISATION,
1124                                                                         t('This account is a profile for an organisation'),
1125                                                                         ($a->user['account-type'] == ACCOUNT_TYPE_ORGANISATION)),
1126
1127                 '$account_news'         => array('account-type', t('News Page'), ACCOUNT_TYPE_NEWS,
1128                                                                         t('This account is a news account/reflector'),
1129                                                                         ($a->user['account-type'] == ACCOUNT_TYPE_NEWS)),
1130
1131                 '$account_community'    => array('account-type', t('Community Forum'), ACCOUNT_TYPE_COMMUNITY,
1132                                                                         t('This account is a community forum where people can discuss with each other'),
1133                                                                         ($a->user['account-type'] == ACCOUNT_TYPE_COMMUNITY)),
1134
1135                 '$page_normal'          => array('page-flags', t('Normal Account Page'), PAGE_NORMAL,
1136                                                                         t('This account is a normal personal profile'),
1137                                                                         ($a->user['page-flags'] == PAGE_NORMAL)),
1138
1139                 '$page_soapbox'         => array('page-flags', t('Soapbox Page'), PAGE_SOAPBOX,
1140                                                                         t('Automatically approve all connection/friend requests as read-only fans'),
1141                                                                         ($a->user['page-flags'] == PAGE_SOAPBOX)),
1142
1143                 '$page_community'       => array('page-flags', t('Public Forum'), PAGE_COMMUNITY,
1144                                                                         t('Automatically approve all contact requests'),
1145                                                                         ($a->user['page-flags'] == PAGE_COMMUNITY)),
1146
1147                 '$page_freelove'        => array('page-flags', t('Automatic Friend Page'), PAGE_FREELOVE,
1148                                                                         t('Automatically approve all connection/friend requests as friends'),
1149                                                                         ($a->user['page-flags'] == PAGE_FREELOVE)),
1150
1151                 '$page_prvgroup'        => array('page-flags', t('Private Forum [Experimental]'), PAGE_PRVGROUP,
1152                                                                         t('Private forum - approved members only'),
1153                                                                         ($a->user['page-flags'] == PAGE_PRVGROUP)),
1154
1155
1156         ));
1157
1158         $noid = get_config('system','no_openid');
1159
1160         if ($noid) {
1161                 $openid_field = false;
1162         } else {
1163                 $openid_field = array('openid_url', t('OpenID:'),$openid, t("\x28Optional\x29 Allow this OpenID to login to this account."), "", "", "url");
1164         }
1165
1166         $opt_tpl = get_markup_template("field_yesno.tpl");
1167         if (get_config('system','publish_all')) {
1168                 $profile_in_dir = '<input type="hidden" name="profile_in_directory" value="1" />';
1169         } else {
1170                 $profile_in_dir = replace_macros($opt_tpl, array(
1171                         '$field' => array('profile_in_directory', t('Publish your default profile in your local site directory?'), $profile['publish'], t("Your profile may be visible in public."), array(t('No'), t('Yes')))
1172                 ));
1173         }
1174
1175         if (strlen(get_config('system','directory'))) {
1176                 $profile_in_net_dir = replace_macros($opt_tpl, array(
1177                         '$field' => array('profile_in_netdirectory', t('Publish your default profile in the global social directory?'), $profile['net-publish'], '', array(t('No'), t('Yes')))
1178                 ));
1179         } else {
1180                 $profile_in_net_dir = '';
1181         }
1182
1183         $hide_friends = replace_macros($opt_tpl,array(
1184                         '$field'        => array('hide-friends', t('Hide your contact/friend list from viewers of your default profile?'), $profile['hide-friends'], '', array(t('No'), t('Yes'))),
1185         ));
1186
1187         $hide_wall = replace_macros($opt_tpl,array(
1188                         '$field'        => array('hidewall',  t('Hide your profile details from unknown viewers?'), $a->user['hidewall'], t("If enabled, posting public messages to Diaspora and other networks isn't possible."), array(t('No'), t('Yes'))),
1189
1190         ));
1191
1192         $blockwall = replace_macros($opt_tpl,array(
1193                         '$field'        => array('blockwall',  t('Allow friends to post to your profile page?'), (intval($a->user['blockwall']) ? '0' : '1'), '', array(t('No'), t('Yes'))),
1194
1195         ));
1196
1197         $blocktags = replace_macros($opt_tpl,array(
1198                         '$field'        => array('blocktags',  t('Allow friends to tag your posts?'), (intval($a->user['blocktags']) ? '0' : '1'), '', array(t('No'), t('Yes'))),
1199
1200         ));
1201
1202         $suggestme = replace_macros($opt_tpl,array(
1203                         '$field'        => array('suggestme',  t('Allow us to suggest you as a potential friend to new members?'), $suggestme, '', array(t('No'), t('Yes'))),
1204
1205         ));
1206
1207         $unkmail = replace_macros($opt_tpl,array(
1208                         '$field'        => array('unkmail',  t('Permit unknown people to send you private mail?'), $unkmail, '', array(t('No'), t('Yes'))),
1209
1210         ));
1211
1212         $invisible = (((! $profile['publish']) && (! $profile['net-publish']))
1213                 ? true : false);
1214
1215         if ($invisible) {
1216                 info( t('Profile is <strong>not published</strong>.') . EOL );
1217         }
1218
1219         //$subdir = ((strlen($a->get_path())) ? '<br />' . t('or') . ' ' . 'profile/' . $nickname : '');
1220
1221         $tpl_addr = get_markup_template("settings_nick_set.tpl");
1222
1223         $prof_addr = replace_macros($tpl_addr,array(
1224                 '$desc' => sprintf(t("Your Identity Address is <strong>'%s'</strong> or '%s'."), $nickname.'@'.$a->get_hostname().$a->get_path(), App::get_baseurl().'/profile/'.$nickname),
1225                 '$basepath' => $a->get_hostname()
1226         ));
1227
1228         $stpl = get_markup_template('settings.tpl');
1229
1230         $expire_arr = array(
1231                 'days' => array('expire',  t("Automatically expire posts after this many days:"), $expire, t('If empty, posts will not expire. Expired posts will be deleted')),
1232                 'advanced' => t('Advanced expiration settings'),
1233                 'label' => t('Advanced Expiration'),
1234                 'items' => array('expire_items',  t("Expire posts:"), $expire_items, '', array(t('No'), t('Yes'))),
1235                 'notes' => array('expire_notes',  t("Expire personal notes:"), $expire_notes, '', array(t('No'), t('Yes'))),
1236                 'starred' => array('expire_starred',  t("Expire starred posts:"), $expire_starred, '', array(t('No'), t('Yes'))),
1237                 'photos' => array('expire_photos',  t("Expire photos:"), $expire_photos, '', array(t('No'), t('Yes'))),
1238                 'network_only' => array('expire_network_only',  t("Only expire posts by others:"), $expire_network_only, '', array(t('No'), t('Yes'))),
1239         );
1240
1241         require_once('include/group.php');
1242         $group_select = mini_group_select(local_user(),$a->user['def_gid']);
1243
1244         // Private/public post links for the non-JS ACL form
1245         $private_post = 1;
1246         if ($_REQUEST['public']) {
1247                 $private_post = 0;
1248         }
1249
1250         $query_str = $a->query_string;
1251         if (strpos($query_str, 'public=1') !== false) {
1252                 $query_str = str_replace(array('?public=1', '&public=1'), array('', ''), $query_str);
1253         }
1254
1255         // I think $a->query_string may never have ? in it, but I could be wrong
1256         // It looks like it's from the index.php?q=[etc] rewrite that the web
1257         // server does, which converts any ? to &, e.g. suggest&ignore=61 for suggest?ignore=61
1258         if (strpos($query_str, '?') === false) {
1259                 $public_post_link = '?public=1';
1260         } else {
1261                 $public_post_link = '&public=1';
1262         }
1263
1264         /* Installed langs */
1265         $lang_choices = get_available_languages();
1266
1267         /// @TODO Fix indending (or so)
1268         $o .= replace_macros($stpl, array(
1269                 '$ptitle'       => t('Account Settings'),
1270
1271                 '$submit'       => t('Save Settings'),
1272                 '$baseurl' => App::get_baseurl(true),
1273                 '$uid' => local_user(),
1274                 '$form_security_token' => get_form_security_token("settings"),
1275                 '$nickname_block' => $prof_addr,
1276
1277                 '$h_pass'       => t('Password Settings'),
1278                 '$password1'=> array('password', t('New Password:'), '', ''),
1279                 '$password2'=> array('confirm', t('Confirm:'), '', t('Leave password fields blank unless changing')),
1280                 '$password3'=> array('opassword', t('Current Password:'), '', t('Your current password to confirm the changes')),
1281                 '$password4'=> array('mpassword', t('Password:'), '', t('Your current password to confirm the changes')),
1282                 '$oid_enable' => (! get_config('system','no_openid')),
1283                 '$openid'       => $openid_field,
1284
1285                 '$h_basic'      => t('Basic Settings'),
1286                 '$username' => array('username',  t('Full Name:'), $username,''),
1287                 '$email'        => array('email', t('Email Address:'), $email, '', '', '', 'email'),
1288                 '$timezone' => array('timezone_select' , t('Your Timezone:'), select_timezone($timezone), ''),
1289                 '$language' => array('language', t('Your Language:'), $language, t('Set the language we use to show you friendica interface and to send you emails'), $lang_choices),
1290                 '$defloc'       => array('defloc', t('Default Post Location:'), $defloc, ''),
1291                 '$allowloc' => array('allow_location', t('Use Browser Location:'), ($a->user['allow_location'] == 1), ''),
1292
1293
1294                 '$h_prv'        => t('Security and Privacy Settings'),
1295
1296                 '$maxreq'       => array('maxreq', t('Maximum Friend Requests/Day:'), $maxreq , t("\x28to prevent spam abuse\x29")),
1297                 '$permissions' => t('Default Post Permissions'),
1298                 '$permdesc' => t("\x28click to open/close\x29"),
1299                 '$visibility' => $profile['net-publish'],
1300                 '$aclselect' => populate_acl($a->user),
1301                 '$suggestme' => $suggestme,
1302                 '$blockwall'=> $blockwall, // array('blockwall', t('Allow friends to post to your profile page:'), !$blockwall, ''),
1303                 '$blocktags'=> $blocktags, // array('blocktags', t('Allow friends to tag your posts:'), !$blocktags, ''),
1304
1305                 // ACL permissions box
1306                 '$acl_data' => construct_acl_data($a, $a->user), // For non-Javascript ACL selector
1307                 '$group_perms' => t('Show to Groups'),
1308                 '$contact_perms' => t('Show to Contacts'),
1309                 '$private' => t('Default Private Post'),
1310                 '$public' => t('Default Public Post'),
1311                 '$is_private' => $private_post,
1312                 '$return_path' => $query_str,
1313                 '$public_link' => $public_post_link,
1314                 '$settings_perms' => t('Default Permissions for New Posts'),
1315
1316                 '$group_select' => $group_select,
1317
1318
1319                 '$expire'       => $expire_arr,
1320
1321                 '$profile_in_dir' => $profile_in_dir,
1322                 '$profile_in_net_dir' => $profile_in_net_dir,
1323                 '$hide_friends' => $hide_friends,
1324                 '$hide_wall' => $hide_wall,
1325                 '$unkmail' => $unkmail,
1326                 '$cntunkmail'   => array('cntunkmail', t('Maximum private messages per day from unknown people:'), $cntunkmail , t("\x28to prevent spam abuse\x29")),
1327
1328
1329                 '$h_not'        => t('Notification Settings'),
1330                 '$activity_options' => t('By default post a status message when:'),
1331                 '$post_newfriend' => array('post_newfriend',  t('accepting a friend request'), $post_newfriend, ''),
1332                 '$post_joingroup' => array('post_joingroup',  t('joining a forum/community'), $post_joingroup, ''),
1333                 '$post_profilechange' => array('post_profilechange',  t('making an <em>interesting</em> profile change'), $post_profilechange, ''),
1334                 '$lbl_not'      => t('Send a notification email when:'),
1335                 '$notify1'      => array('notify1', t('You receive an introduction'), ($notify & NOTIFY_INTRO), NOTIFY_INTRO, ''),
1336                 '$notify2'      => array('notify2', t('Your introductions are confirmed'), ($notify & NOTIFY_CONFIRM), NOTIFY_CONFIRM, ''),
1337                 '$notify3'      => array('notify3', t('Someone writes on your profile wall'), ($notify & NOTIFY_WALL), NOTIFY_WALL, ''),
1338                 '$notify4'      => array('notify4', t('Someone writes a followup comment'), ($notify & NOTIFY_COMMENT), NOTIFY_COMMENT, ''),
1339                 '$notify5'      => array('notify5', t('You receive a private message'), ($notify & NOTIFY_MAIL), NOTIFY_MAIL, ''),
1340                 '$notify6'  => array('notify6', t('You receive a friend suggestion'), ($notify & NOTIFY_SUGGEST), NOTIFY_SUGGEST, ''),
1341                 '$notify7'  => array('notify7', t('You are tagged in a post'), ($notify & NOTIFY_TAGSELF), NOTIFY_TAGSELF, ''),
1342                 '$notify8'  => array('notify8', t('You are poked/prodded/etc. in a post'), ($notify & NOTIFY_POKE), NOTIFY_POKE, ''),
1343
1344                 '$desktop_notifications' => array('desktop_notifications', t('Activate desktop notifications') , false, t('Show desktop popup on new notifications')),
1345
1346                 '$email_textonly' => array('email_textonly', t('Text-only notification emails'),
1347                                                                         get_pconfig(local_user(),'system','email_textonly'),
1348                                                                         t('Send text only notification emails, without the html part')),
1349
1350                 '$h_advn' => t('Advanced Account/Page Type Settings'),
1351                 '$h_descadvn' => t('Change the behaviour of this account for special situations'),
1352                 '$pagetype' => $pagetype,
1353
1354                 '$relocate' => t('Relocate'),
1355                 '$relocate_text' => t("If you have moved this profile from another server, and some of your contacts don't receive your updates, try pushing this button."),
1356                 '$relocate_button' => t("Resend relocate message to contacts"),
1357
1358         ));
1359
1360         call_hooks('settings_form',$o);
1361
1362         $o .= '</form>' . "\r\n";
1363
1364         return $o;
1365
1366 }