]> git.mxchange.org Git - friendica.git/blob - mod/settings.php
Revert using Config class in dba
[friendica.git] / mod / settings.php
1 <?php
2 /**
3  * @file mod/settings.php
4  */
5
6 use Friendica\App;
7 use Friendica\Content\Feature;
8 use Friendica\Content\Nav;
9 use Friendica\Core\ACL;
10 use Friendica\Core\Addon;
11 use Friendica\Core\Config;
12 use Friendica\Core\L10n;
13 use Friendica\Core\PConfig;
14 use Friendica\Core\System;
15 use Friendica\Core\Theme;
16 use Friendica\Core\Worker;
17 use Friendica\Database\DBM;
18 use Friendica\Model\Contact;
19 use Friendica\Model\GContact;
20 use Friendica\Model\Group;
21 use Friendica\Model\User;
22 use Friendica\Protocol\Email;
23 use Friendica\Util\Network;
24 use Friendica\Util\Temporal;
25
26 function get_theme_config_file($theme)
27 {
28         $a = get_app();
29         if (!empty($a->theme_info['extends'])) {
30                 $base_theme = $a->theme_info['extends'];
31         }
32
33         if (file_exists("view/theme/$theme/config.php")) {
34                 return "view/theme/$theme/config.php";
35         }
36         if (!empty($base_theme) && file_exists("view/theme/$base_theme/config.php")) {
37                 return "view/theme/$base_theme/config.php";
38         }
39         return null;
40 }
41
42 function settings_init(App $a)
43 {
44         if (!local_user()) {
45                 notice(L10n::t('Permission denied.') . EOL);
46                 return;
47         }
48
49         // These lines provide the javascript needed by the acl selector
50
51         $tpl = get_markup_template('settings/head.tpl');
52         $a->page['htmlhead'] .= replace_macros($tpl, [
53                 '$ispublic' => L10n::t('everybody')
54         ]);
55
56         $tabs = [
57                 [
58                         'label' => L10n::t('Account'),
59                         'url'   => 'settings',
60                         'selected'      =>  (($a->argc == 1) && ($a->argv[0] === 'settings')?'active':''),
61                         'accesskey' => 'o',
62                 ],
63         ];
64
65         if (Feature::get()) {
66                 $tabs[] =       [
67                                         'label' => L10n::t('Additional features'),
68                                         'url'   => 'settings/features',
69                                         'selected'      => (($a->argc > 1) && ($a->argv[1] === 'features') ? 'active' : ''),
70                                         'accesskey' => 't',
71                                 ];
72         }
73
74         $tabs[] =       [
75                 'label' => L10n::t('Display'),
76                 'url'   => 'settings/display',
77                 'selected'      => (($a->argc > 1) && ($a->argv[1] === 'display')?'active':''),
78                 'accesskey' => 'i',
79         ];
80
81         $tabs[] =       [
82                 'label' => L10n::t('Social Networks'),
83                 'url'   => 'settings/connectors',
84                 'selected'      => (($a->argc > 1) && ($a->argv[1] === 'connectors')?'active':''),
85                 'accesskey' => 'w',
86         ];
87
88         $tabs[] =       [
89                 'label' => L10n::t('Addons'),
90                 'url'   => 'settings/addon',
91                 'selected'      => (($a->argc > 1) && ($a->argv[1] === 'addon')?'active':''),
92                 'accesskey' => 'l',
93         ];
94
95         $tabs[] =       [
96                 'label' => L10n::t('Delegations'),
97                 'url'   => 'delegate',
98                 'selected'      => (($a->argc == 1) && ($a->argv[0] === 'delegate')?'active':''),
99                 'accesskey' => 'd',
100         ];
101
102         $tabs[] =       [
103                 'label' => L10n::t('Connected apps'),
104                 'url' => 'settings/oauth',
105                 'selected' => (($a->argc > 1) && ($a->argv[1] === 'oauth')?'active':''),
106                 'accesskey' => 'b',
107         ];
108
109         $tabs[] =       [
110                 'label' => L10n::t('Export personal data'),
111                 'url' => 'uexport',
112                 'selected' => (($a->argc == 1) && ($a->argv[0] === 'uexport')?'active':''),
113                 'accesskey' => 'e',
114         ];
115
116         $tabs[] =       [
117                 'label' => L10n::t('Remove account'),
118                 'url' => 'removeme',
119                 'selected' => (($a->argc == 1) && ($a->argv[0] === 'removeme')?'active':''),
120                 'accesskey' => 'r',
121         ];
122
123
124         $tabtpl = get_markup_template("generic_links_widget.tpl");
125         $a->page['aside'] = replace_macros($tabtpl, [
126                 '$title' => L10n::t('Settings'),
127                 '$class' => 'settings-widget',
128                 '$items' => $tabs,
129         ]);
130
131 }
132
133 function settings_post(App $a)
134 {
135         if (!local_user()) {
136                 return;
137         }
138
139         if (x($_SESSION, 'submanage') && intval($_SESSION['submanage'])) {
140                 return;
141         }
142
143         if (count($a->user) && x($a->user, 'uid') && $a->user['uid'] != local_user()) {
144                 notice(L10n::t('Permission denied.') . EOL);
145                 return;
146         }
147
148         $old_page_flags = $a->user['page-flags'];
149
150         if (($a->argc > 1) && ($a->argv[1] === 'oauth') && x($_POST, 'remove')) {
151                 check_form_security_token_redirectOnErr('/settings/oauth', 'settings_oauth');
152
153                 $key = $_POST['remove'];
154                 dba::delete('tokens', ['id' => $key, 'uid' => local_user()]);
155                 goaway(System::baseUrl(true)."/settings/oauth/");
156                 return;
157         }
158
159         if (($a->argc > 2) && ($a->argv[1] === 'oauth')  && ($a->argv[2] === 'edit'||($a->argv[2] === 'add')) && x($_POST, 'submit')) {
160                 check_form_security_token_redirectOnErr('/settings/oauth', 'settings_oauth');
161
162                 $name     = defaults($_POST, 'name'    , '');
163                 $key      = defaults($_POST, 'key'     , '');
164                 $secret   = defaults($_POST, 'secret'  , '');
165                 $redirect = defaults($_POST, 'redirect', '');
166                 $icon     = defaults($_POST, 'icon'    , '');
167
168                 if ($name == "" || $key == "" || $secret == "") {
169                         notice(L10n::t("Missing some important data!"));
170                 } else {
171                         if ($_POST['submit'] == L10n::t("Update")) {
172                                 q("UPDATE clients SET
173                                                         client_id='%s',
174                                                         pw='%s',
175                                                         name='%s',
176                                                         redirect_uri='%s',
177                                                         icon='%s',
178                                                         uid=%d
179                                                 WHERE client_id='%s'",
180                                         dbesc($key),
181                                         dbesc($secret),
182                                         dbesc($name),
183                                         dbesc($redirect),
184                                         dbesc($icon),
185                                         local_user(),
186                                         dbesc($key)
187                                 );
188                         } else {
189                                 q("INSERT INTO clients
190                                                         (client_id, pw, name, redirect_uri, icon, uid)
191                                                 VALUES ('%s', '%s', '%s', '%s', '%s',%d)",
192                                         dbesc($key),
193                                         dbesc($secret),
194                                         dbesc($name),
195                                         dbesc($redirect),
196                                         dbesc($icon),
197                                         local_user()
198                                 );
199                         }
200                 }
201                 goaway(System::baseUrl(true)."/settings/oauth/");
202                 return;
203         }
204
205         if (($a->argc > 1) && ($a->argv[1] == 'addon')) {
206                 check_form_security_token_redirectOnErr('/settings/addon', 'settings_addon');
207
208                 Addon::callHooks('addon_settings_post', $_POST);
209                 return;
210         }
211
212         if (($a->argc > 1) && ($a->argv[1] == 'connectors')) {
213                 check_form_security_token_redirectOnErr('/settings/connectors', 'settings_connectors');
214
215                 if (x($_POST, 'general-submit')) {
216                         PConfig::set(local_user(), 'system', 'disable_cw', intval($_POST['disable_cw']));
217                         PConfig::set(local_user(), 'system', 'no_intelligent_shortening', intval($_POST['no_intelligent_shortening']));
218                         PConfig::set(local_user(), 'system', 'ostatus_autofriend', intval($_POST['snautofollow']));
219                         PConfig::set(local_user(), 'ostatus', 'default_group', $_POST['group-selection']);
220                         PConfig::set(local_user(), 'ostatus', 'legacy_contact', $_POST['legacy_contact']);
221                 } elseif (x($_POST, 'imap-submit')) {
222
223                         $mail_server       = ((x($_POST, 'mail_server')) ? $_POST['mail_server'] : '');
224                         $mail_port         = ((x($_POST, 'mail_port')) ? $_POST['mail_port'] : '');
225                         $mail_ssl          = ((x($_POST, 'mail_ssl')) ? strtolower(trim($_POST['mail_ssl'])) : '');
226                         $mail_user         = ((x($_POST, 'mail_user')) ? $_POST['mail_user'] : '');
227                         $mail_pass         = ((x($_POST, 'mail_pass')) ? trim($_POST['mail_pass']) : '');
228                         $mail_action       = ((x($_POST, 'mail_action')) ? trim($_POST['mail_action']) : '');
229                         $mail_movetofolder = ((x($_POST, 'mail_movetofolder')) ? trim($_POST['mail_movetofolder']) : '');
230                         $mail_replyto      = ((x($_POST, 'mail_replyto')) ? $_POST['mail_replyto'] : '');
231                         $mail_pubmail      = ((x($_POST, 'mail_pubmail')) ? $_POST['mail_pubmail'] : '');
232
233
234                         $mail_disabled = ((function_exists('imap_open') && (!Config::get('system', 'imap_disabled'))) ? 0 : 1);
235                         if (Config::get('system', 'dfrn_only')) {
236                                 $mail_disabled = 1;
237                         }
238
239                         if (!$mail_disabled) {
240                                 $failed = false;
241                                 $r = q("SELECT * FROM `mailacct` WHERE `uid` = %d LIMIT 1",
242                                         intval(local_user())
243                                 );
244                                 if (!DBM::is_result($r)) {
245                                         dba::insert('mailacct', ['uid' => local_user()]);
246                                 }
247                                 if (strlen($mail_pass)) {
248                                         $pass = '';
249                                         openssl_public_encrypt($mail_pass, $pass, $a->user['pubkey']);
250                                         dba::update('mailacct', ['pass' => bin2hex($pass)], ['uid' => local_user()]);
251                                 }
252                                 $r = q("UPDATE `mailacct` SET `server` = '%s', `port` = %d, `ssltype` = '%s', `user` = '%s',
253                                         `action` = %d, `movetofolder` = '%s',
254                                         `mailbox` = 'INBOX', `reply_to` = '%s', `pubmail` = %d WHERE `uid` = %d",
255                                         dbesc($mail_server),
256                                         intval($mail_port),
257                                         dbesc($mail_ssl),
258                                         dbesc($mail_user),
259                                         intval($mail_action),
260                                         dbesc($mail_movetofolder),
261                                         dbesc($mail_replyto),
262                                         intval($mail_pubmail),
263                                         intval(local_user())
264                                 );
265                                 logger("mail: updating mailaccount. Response: ".print_r($r, true));
266                                 $r = q("SELECT * FROM `mailacct` WHERE `uid` = %d LIMIT 1",
267                                         intval(local_user())
268                                 );
269                                 if (DBM::is_result($r)) {
270                                         $eacct = $r[0];
271                                         $mb = Email::constructMailboxName($eacct);
272
273                                         if (strlen($eacct['server'])) {
274                                                 $dcrpass = '';
275                                                 openssl_private_decrypt(hex2bin($eacct['pass']), $dcrpass, $a->user['prvkey']);
276                                                 $mbox = Email::connect($mb, $mail_user, $dcrpass);
277                                                 unset($dcrpass);
278                                                 if (!$mbox) {
279                                                         $failed = true;
280                                                         notice(L10n::t('Failed to connect with email account using the settings provided.') . EOL);
281                                                 }
282                                         }
283                                 }
284                                 if (!$failed) {
285                                         info(L10n::t('Email settings updated.') . EOL);
286                                 }
287                         }
288                 }
289
290                 Addon::callHooks('connector_settings_post', $_POST);
291                 return;
292         }
293
294         if (($a->argc > 1) && ($a->argv[1] === 'features')) {
295                 check_form_security_token_redirectOnErr('/settings/features', 'settings_features');
296                 foreach ($_POST as $k => $v) {
297                         if (strpos($k, 'feature_') === 0) {
298                                 PConfig::set(local_user(), 'feature', substr($k, 8), ((intval($v)) ? 1 : 0));
299                         }
300                 }
301                 info(L10n::t('Features updated') . EOL);
302                 return;
303         }
304
305         if (($a->argc > 1) && ($a->argv[1] === 'display')) {
306                 check_form_security_token_redirectOnErr('/settings/display', 'settings_display');
307
308                 $theme             = x($_POST, 'theme')             ? notags(trim($_POST['theme']))        : $a->user['theme'];
309                 $mobile_theme      = x($_POST, 'mobile_theme')      ? notags(trim($_POST['mobile_theme'])) : '';
310                 $nosmile           = x($_POST, 'nosmile')           ? intval($_POST['nosmile'])            : 0;
311                 $first_day_of_week = x($_POST, 'first_day_of_week') ? intval($_POST['first_day_of_week'])  : 0;
312                 $noinfo            = x($_POST, 'noinfo')            ? intval($_POST['noinfo'])             : 0;
313                 $infinite_scroll   = x($_POST, 'infinite_scroll')   ? intval($_POST['infinite_scroll'])    : 0;
314                 $no_auto_update    = x($_POST, 'no_auto_update')    ? intval($_POST['no_auto_update'])     : 0;
315                 $bandwidth_saver   = x($_POST, 'bandwidth_saver')   ? intval($_POST['bandwidth_saver'])    : 0;
316                 $smart_threading   = x($_POST, 'smart_threading')   ? intval($_POST['smart_threading'])    : 0;
317                 $nowarn_insecure   = x($_POST, 'nowarn_insecure')   ? intval($_POST['nowarn_insecure'])    : 0;
318                 $browser_update    = x($_POST, 'browser_update')    ? intval($_POST['browser_update'])     : 0;
319                 if ($browser_update != -1) {
320                         $browser_update = $browser_update * 1000;
321                         if ($browser_update < 10000) {
322                                 $browser_update = 10000;
323                         }
324                 }
325
326                 $itemspage_network = x($_POST, 'itemspage_network')  ? intval($_POST['itemspage_network'])  : 40;
327                 if ($itemspage_network > 100) {
328                         $itemspage_network = 100;
329                 }
330                 $itemspage_mobile_network = x($_POST, 'itemspage_mobile_network') ? intval($_POST['itemspage_mobile_network']) : 20;
331                 if ($itemspage_mobile_network > 100) {
332                         $itemspage_mobile_network = 100;
333                 }
334
335                 if ($mobile_theme !== '') {
336                         PConfig::set(local_user(), 'system', 'mobile_theme', $mobile_theme);
337                 }
338
339                 PConfig::set(local_user(), 'system', 'nowarn_insecure'         , $nowarn_insecure);
340                 PConfig::set(local_user(), 'system', 'update_interval'         , $browser_update);
341                 PConfig::set(local_user(), 'system', 'itemspage_network'       , $itemspage_network);
342                 PConfig::set(local_user(), 'system', 'itemspage_mobile_network', $itemspage_mobile_network);
343                 PConfig::set(local_user(), 'system', 'no_smilies'              , $nosmile);
344                 PConfig::set(local_user(), 'system', 'first_day_of_week'       , $first_day_of_week);
345                 PConfig::set(local_user(), 'system', 'ignore_info'             , $noinfo);
346                 PConfig::set(local_user(), 'system', 'infinite_scroll'         , $infinite_scroll);
347                 PConfig::set(local_user(), 'system', 'no_auto_update'          , $no_auto_update);
348                 PConfig::set(local_user(), 'system', 'bandwidth_saver'         , $bandwidth_saver);
349                 PConfig::set(local_user(), 'system', 'smart_threading'         , $smart_threading);
350
351                 if ($theme == $a->user['theme']) {
352                         // call theme_post only if theme has not been changed
353                         if (($themeconfigfile = get_theme_config_file($theme)) !== null) {
354                                 require_once $themeconfigfile;
355                                 theme_post($a);
356                         }
357                 }
358                 Theme::install($theme);
359
360                 $r = q("UPDATE `user` SET `theme` = '%s' WHERE `uid` = %d",
361                                 dbesc($theme),
362                                 intval(local_user())
363                 );
364
365                 Addon::callHooks('display_settings_post', $_POST);
366                 goaway('settings/display');
367                 return; // NOTREACHED
368         }
369
370         check_form_security_token_redirectOnErr('/settings', 'settings');
371
372         if (x($_POST,'resend_relocate')) {
373                 Worker::add(PRIORITY_HIGH, 'Notifier', 'relocate', local_user());
374                 info(L10n::t("Relocate message has been send to your contacts"));
375                 goaway('settings');
376         }
377
378         Addon::callHooks('settings_post', $_POST);
379
380         if (x($_POST, 'password') || x($_POST, 'confirm')) {
381                 $newpass = $_POST['password'];
382                 $confirm = $_POST['confirm'];
383
384                 $err = false;
385                 if ($newpass != $confirm) {
386                         notice(L10n::t('Passwords do not match. Password unchanged.') . EOL);
387                         $err = true;
388                 }
389
390                 if (!x($newpass) || !x($confirm)) {
391                         notice(L10n::t('Empty passwords are not allowed. Password unchanged.') . EOL);
392                         $err = true;
393                 }
394
395                 if (!Config::get('system', 'disable_password_exposed', false) && User::isPasswordExposed($newpass)) {
396                         notice(L10n::t('The new password has been exposed in a public data dump, please choose another.') . EOL);
397                         $err = true;
398                 }
399
400                 //  check if the old password was supplied correctly before changing it to the new value
401                 if (!User::authenticate(intval(local_user()), $_POST['opassword'])) {
402                         notice(L10n::t('Wrong password.') . EOL);
403                         $err = true;
404                 }
405
406                 if (!$err) {
407                         $result = User::updatePassword(local_user(), $newpass);
408                         if (DBM::is_result($result)) {
409                                 info(L10n::t('Password changed.') . EOL);
410                         } else {
411                                 notice(L10n::t('Password update failed. Please try again.') . EOL);
412                         }
413                 }
414         }
415
416         $username         = ((x($_POST, 'username'))   ? notags(trim($_POST['username']))     : '');
417         $email            = ((x($_POST, 'email'))      ? notags(trim($_POST['email']))        : '');
418         $timezone         = ((x($_POST, 'timezone'))   ? notags(trim($_POST['timezone']))     : '');
419         $language         = ((x($_POST, 'language'))   ? notags(trim($_POST['language']))     : '');
420
421         $defloc           = ((x($_POST, 'defloc'))     ? notags(trim($_POST['defloc']))       : '');
422         $openid           = ((x($_POST, 'openid_url')) ? notags(trim($_POST['openid_url']))   : '');
423         $maxreq           = ((x($_POST, 'maxreq'))     ? intval($_POST['maxreq'])             : 0);
424         $expire           = ((x($_POST, 'expire'))     ? intval($_POST['expire'])             : 0);
425         $def_gid          = ((x($_POST, 'group-selection')) ? intval($_POST['group-selection']) : 0);
426
427
428         $expire_items     = ((x($_POST, 'expire_items')) ? intval($_POST['expire_items'])        : 0);
429         $expire_notes     = ((x($_POST, 'expire_notes')) ? intval($_POST['expire_notes'])        : 0);
430         $expire_starred   = ((x($_POST, 'expire_starred')) ? intval($_POST['expire_starred']) : 0);
431         $expire_photos    = ((x($_POST, 'expire_photos'))? intval($_POST['expire_photos'])       : 0);
432         $expire_network_only    = ((x($_POST, 'expire_network_only'))? intval($_POST['expire_network_only'])     : 0);
433
434         $allow_location   = (((x($_POST, 'allow_location')) && (intval($_POST['allow_location']) == 1)) ? 1: 0);
435         $publish          = (((x($_POST, 'profile_in_directory')) && (intval($_POST['profile_in_directory']) == 1)) ? 1: 0);
436         $net_publish      = (((x($_POST, 'profile_in_netdirectory')) && (intval($_POST['profile_in_netdirectory']) == 1)) ? 1: 0);
437         $old_visibility   = (((x($_POST, 'visibility')) && (intval($_POST['visibility']) == 1)) ? 1 : 0);
438         $account_type     = (((x($_POST, 'account-type')) && (intval($_POST['account-type']))) ? intval($_POST['account-type']) : 0);
439         $page_flags       = (((x($_POST, 'page-flags')) && (intval($_POST['page-flags']))) ? intval($_POST['page-flags']) : 0);
440         $blockwall        = (((x($_POST, 'blockwall')) && (intval($_POST['blockwall']) == 1)) ? 0: 1); // this setting is inverted!
441         $blocktags        = (((x($_POST, 'blocktags')) && (intval($_POST['blocktags']) == 1)) ? 0: 1); // this setting is inverted!
442         $unkmail          = (((x($_POST, 'unkmail')) && (intval($_POST['unkmail']) == 1)) ? 1: 0);
443         $cntunkmail       = ((x($_POST, 'cntunkmail')) ? intval($_POST['cntunkmail']) : 0);
444         $suggestme        = ((x($_POST, 'suggestme')) ? intval($_POST['suggestme'])  : 0);
445         $hide_friends     = (($_POST['hide-friends'] == 1) ? 1: 0);
446         $hidewall         = (($_POST['hidewall'] == 1) ? 1: 0);
447
448         $email_textonly   = (($_POST['email_textonly'] == 1) ? 1 : 0);
449         $detailed_notif   = (($_POST['detailed_notif'] == 1) ? 1 : 0);
450
451         $notify = 0;
452
453         if (x($_POST, 'notify1')) {
454                 $notify += intval($_POST['notify1']);
455         }
456         if (x($_POST, 'notify2')) {
457                 $notify += intval($_POST['notify2']);
458         }
459         if (x($_POST, 'notify3')) {
460                 $notify += intval($_POST['notify3']);
461         }
462         if (x($_POST, 'notify4')) {
463                 $notify += intval($_POST['notify4']);
464         }
465         if (x($_POST, 'notify5')) {
466                 $notify += intval($_POST['notify5']);
467         }
468         if (x($_POST, 'notify6')) {
469                 $notify += intval($_POST['notify6']);
470         }
471         if (x($_POST, 'notify7')) {
472                 $notify += intval($_POST['notify7']);
473         }
474         if (x($_POST, 'notify8')) {
475                 $notify += intval($_POST['notify8']);
476         }
477
478         // Adjust the page flag if the account type doesn't fit to the page flag.
479         if (($account_type == ACCOUNT_TYPE_PERSON) && !in_array($page_flags, [PAGE_NORMAL, PAGE_SOAPBOX, PAGE_FREELOVE])) {
480                 $page_flags = PAGE_NORMAL;
481         } elseif (($account_type == ACCOUNT_TYPE_ORGANISATION) && !in_array($page_flags, [PAGE_SOAPBOX])) {
482                 $page_flags = PAGE_SOAPBOX;
483         } elseif (($account_type == ACCOUNT_TYPE_NEWS) && !in_array($page_flags, [PAGE_SOAPBOX])) {
484                 $page_flags = PAGE_SOAPBOX;
485         } elseif (($account_type == ACCOUNT_TYPE_COMMUNITY) && !in_array($page_flags, [PAGE_COMMUNITY, PAGE_PRVGROUP])) {
486                 $page_flags = PAGE_COMMUNITY;
487         }
488
489         $email_changed = false;
490
491         $err = '';
492
493         if ($username != $a->user['username']) {
494                 if (strlen($username) > 40) {
495                         $err .= L10n::t(' Please use a shorter name.');
496                 }
497                 if (strlen($username) < 3) {
498                         $err .= L10n::t(' Name too short.');
499                 }
500         }
501
502         if ($email != $a->user['email']) {
503                 $email_changed = true;
504                 //  check for the correct password
505                 if (!User::authenticate(intval(local_user()), $_POST['mpassword'])) {
506                         $err .= L10n::t('Wrong Password') . EOL;
507                         $email = $a->user['email'];
508                 }
509                 //  check the email is valid
510                 if (!valid_email($email)) {
511                         $err .= L10n::t('Invalid email.');
512                 }
513                 //  ensure new email is not the admin mail
514                 if (Config::get('config', 'admin_email')) {
515                         $adminlist = explode(",", str_replace(" ", "", strtolower(Config::get('config', 'admin_email'))));
516                         if (in_array(strtolower($email), $adminlist)) {
517                                 $err .= L10n::t('Cannot change to that email.');
518                                 $email = $a->user['email'];
519                         }
520                 }
521         }
522
523         if (strlen($err)) {
524                 notice($err . EOL);
525                 return;
526         }
527
528         if (($timezone != $a->user['timezone']) && strlen($timezone)) {
529                 date_default_timezone_set($timezone);
530         }
531
532         $str_group_allow   = perms2str($_POST['group_allow']);
533         $str_contact_allow = perms2str($_POST['contact_allow']);
534         $str_group_deny    = perms2str($_POST['group_deny']);
535         $str_contact_deny  = perms2str($_POST['contact_deny']);
536
537         $openidserver = $a->user['openidserver'];
538         //$openid = normalise_openid($openid);
539
540         // If openid has changed or if there's an openid but no openidserver, try and discover it.
541         if ($openid != $a->user['openid'] || (strlen($openid) && (!strlen($openidserver)))) {
542                 if (Network::isUrlValid($openid)) {
543                         logger('updating openidserver');
544                         $open_id_obj = new LightOpenID($a->get_hostname());
545                         $open_id_obj->identity = $openid;
546                         $openidserver = $open_id_obj->discover($open_id_obj->identity);
547                 } else {
548                         $openidserver = '';
549                 }
550         }
551
552         PConfig::set(local_user(), 'expire', 'items', $expire_items);
553         PConfig::set(local_user(), 'expire', 'notes', $expire_notes);
554         PConfig::set(local_user(), 'expire', 'starred', $expire_starred);
555         PConfig::set(local_user(), 'expire', 'photos', $expire_photos);
556         PConfig::set(local_user(), 'expire', 'network_only', $expire_network_only);
557
558         PConfig::set(local_user(), 'system', 'suggestme', $suggestme);
559
560         PConfig::set(local_user(), 'system', 'email_textonly', $email_textonly);
561         PConfig::set(local_user(), 'system', 'detailed_notif', $detailed_notif);
562
563         if ($page_flags == PAGE_PRVGROUP) {
564                 $hidewall = 1;
565                 if (!$str_contact_allow && !$str_group_allow && !$str_contact_deny && !$str_group_deny) {
566                         if ($def_gid) {
567                                 info(L10n::t('Private forum has no privacy permissions. Using default privacy group.'). EOL);
568                                 $str_group_allow = '<' . $def_gid . '>';
569                         } else {
570                                 notice(L10n::t('Private forum has no privacy permissions and no default privacy group.') . EOL);
571                         }
572                 }
573         }
574
575
576         $r = q("UPDATE `user` SET `username` = '%s', `email` = '%s',
577                                 `openid` = '%s', `timezone` = '%s',
578                                 `allow_cid` = '%s', `allow_gid` = '%s', `deny_cid` = '%s', `deny_gid` = '%s',
579                                 `notify-flags` = %d, `page-flags` = %d, `account-type` = %d, `default-location` = '%s',
580                                 `allow_location` = %d, `maxreq` = %d, `expire` = %d, `openidserver` = '%s',
581                                 `def_gid` = %d, `blockwall` = %d, `hidewall` = %d, `blocktags` = %d,
582                                 `unkmail` = %d, `cntunkmail` = %d, `language` = '%s'
583                         WHERE `uid` = %d",
584                         dbesc($username),
585                         dbesc($email),
586                         dbesc($openid),
587                         dbesc($timezone),
588                         dbesc($str_contact_allow),
589                         dbesc($str_group_allow),
590                         dbesc($str_contact_deny),
591                         dbesc($str_group_deny),
592                         intval($notify),
593                         intval($page_flags),
594                         intval($account_type),
595                         dbesc($defloc),
596                         intval($allow_location),
597                         intval($maxreq),
598                         intval($expire),
599                         dbesc($openidserver),
600                         intval($def_gid),
601                         intval($blockwall),
602                         intval($hidewall),
603                         intval($blocktags),
604                         intval($unkmail),
605                         intval($cntunkmail),
606                         dbesc($language),
607                         intval(local_user())
608         );
609         if (DBM::is_result($r)) {
610                 info(L10n::t('Settings updated.') . EOL);
611         }
612
613         // clear session language
614         unset($_SESSION['language']);
615
616         $r = q("UPDATE `profile`
617                 SET `publish` = %d,
618                 `name` = '%s',
619                 `net-publish` = %d,
620                 `hide-friends` = %d
621                 WHERE `is-default` = 1 AND `uid` = %d",
622                 intval($publish),
623                 dbesc($username),
624                 intval($net_publish),
625                 intval($hide_friends),
626                 intval(local_user())
627         );
628
629         Contact::updateSelfFromUserID(local_user());
630
631         if (($old_visibility != $net_publish) || ($page_flags != $old_page_flags)) {
632                 // Update global directory in background
633                 $url = $_SESSION['my_url'];
634                 if ($url && strlen(Config::get('system', 'directory'))) {
635                         Worker::add(PRIORITY_LOW, "Directory", $url);
636                 }
637         }
638
639         Worker::add(PRIORITY_LOW, 'ProfileUpdate', local_user());
640
641         // Update the global contact for the user
642         GContact::updateForUser(local_user());
643
644         goaway('settings');
645         return; // NOTREACHED
646 }
647
648
649 function settings_content(App $a)
650 {
651         $o = '';
652         Nav::setSelected('settings');
653
654         if (!local_user()) {
655                 //notice(L10n::t('Permission denied.') . EOL);
656                 return;
657         }
658
659         if (x($_SESSION, 'submanage') && intval($_SESSION['submanage'])) {
660                 notice(L10n::t('Permission denied.') . EOL);
661                 return;
662         }
663
664         if (($a->argc > 1) && ($a->argv[1] === 'oauth')) {
665                 if (($a->argc > 2) && ($a->argv[2] === 'add')) {
666                         $tpl = get_markup_template('settings/oauth_edit.tpl');
667                         $o .= replace_macros($tpl, [
668                                 '$form_security_token' => get_form_security_token("settings_oauth"),
669                                 '$title'        => L10n::t('Add application'),
670                                 '$submit'       => L10n::t('Save Settings'),
671                                 '$cancel'       => L10n::t('Cancel'),
672                                 '$name'         => ['name', L10n::t('Name'), '', ''],
673                                 '$key'          => ['key', L10n::t('Consumer Key'), '', ''],
674                                 '$secret'       => ['secret', L10n::t('Consumer Secret'), '', ''],
675                                 '$redirect'     => ['redirect', L10n::t('Redirect'), '', ''],
676                                 '$icon'         => ['icon', L10n::t('Icon url'), '', ''],
677                         ]);
678                         return $o;
679                 }
680
681                 if (($a->argc > 3) && ($a->argv[2] === 'edit')) {
682                         $r = q("SELECT * FROM clients WHERE client_id='%s' AND uid=%d",
683                                         dbesc($a->argv[3]),
684                                         local_user());
685
686                         if (!DBM::is_result($r)) {
687                                 notice(L10n::t("You can't edit this application."));
688                                 return;
689                         }
690                         $app = $r[0];
691
692                         $tpl = get_markup_template('settings/oauth_edit.tpl');
693                         $o .= replace_macros($tpl, [
694                                 '$form_security_token' => get_form_security_token("settings_oauth"),
695                                 '$title'        => L10n::t('Add application'),
696                                 '$submit'       => L10n::t('Update'),
697                                 '$cancel'       => L10n::t('Cancel'),
698                                 '$name'         => ['name', L10n::t('Name'), $app['name'] , ''],
699                                 '$key'          => ['key', L10n::t('Consumer Key'), $app['client_id'], ''],
700                                 '$secret'       => ['secret', L10n::t('Consumer Secret'), $app['pw'], ''],
701                                 '$redirect'     => ['redirect', L10n::t('Redirect'), $app['redirect_uri'], ''],
702                                 '$icon'         => ['icon', L10n::t('Icon url'), $app['icon'], ''],
703                         ]);
704                         return $o;
705                 }
706
707                 if (($a->argc > 3) && ($a->argv[2] === 'delete')) {
708                         check_form_security_token_redirectOnErr('/settings/oauth', 'settings_oauth', 't');
709
710                         dba::delete('clients', ['client_id' => $a->argv[3], 'uid' => local_user()]);
711                         goaway(System::baseUrl(true)."/settings/oauth/");
712                         return;
713                 }
714
715                 /// @TODO validate result with DBM::is_result()
716                 $r = q("SELECT clients.*, tokens.id as oauth_token, (clients.uid=%d) AS my
717                                 FROM clients
718                                 LEFT JOIN tokens ON clients.client_id=tokens.client_id
719                                 WHERE clients.uid IN (%d, 0)",
720                                 local_user(),
721                                 local_user());
722
723
724                 $tpl = get_markup_template('settings/oauth.tpl');
725                 $o .= replace_macros($tpl, [
726                         '$form_security_token' => get_form_security_token("settings_oauth"),
727                         '$baseurl'      => System::baseUrl(true),
728                         '$title'        => L10n::t('Connected Apps'),
729                         '$add'          => L10n::t('Add application'),
730                         '$edit'         => L10n::t('Edit'),
731                         '$delete'               => L10n::t('Delete'),
732                         '$consumerkey' => L10n::t('Client key starts with'),
733                         '$noname'       => L10n::t('No name'),
734                         '$remove'       => L10n::t('Remove authorization'),
735                         '$apps'         => $r,
736                 ]);
737                 return $o;
738         }
739
740         if (($a->argc > 1) && ($a->argv[1] === 'addon')) {
741                 $settings_addons = "";
742
743                 $r = q("SELECT * FROM `hook` WHERE `hook` = 'addon_settings' ");
744                 if (!DBM::is_result($r)) {
745                         $settings_addons = L10n::t('No Addon settings configured');
746                 }
747
748                 Addon::callHooks('addon_settings', $settings_addons);
749
750
751                 $tpl = get_markup_template('settings/addons.tpl');
752                 $o .= replace_macros($tpl, [
753                         '$form_security_token' => get_form_security_token("settings_addon"),
754                         '$title'        => L10n::t('Addon Settings'),
755                         '$settings_addons' => $settings_addons
756                 ]);
757                 return $o;
758         }
759
760         if (($a->argc > 1) && ($a->argv[1] === 'features')) {
761
762                 $arr = [];
763                 $features = Feature::get();
764                 foreach ($features as $fname => $fdata) {
765                         $arr[$fname] = [];
766                         $arr[$fname][0] = $fdata[0];
767                         foreach (array_slice($fdata,1) as $f) {
768                                 $arr[$fname][1][] = ['feature_' .$f[0], $f[1],((intval(Feature::isEnabled(local_user(), $f[0]))) ? "1" : ''), $f[2],[L10n::t('Off'), L10n::t('On')]];
769                         }
770                 }
771
772                 $tpl = get_markup_template('settings/features.tpl');
773                 $o .= replace_macros($tpl, [
774                         '$form_security_token' => get_form_security_token("settings_features"),
775                         '$title'               => L10n::t('Additional Features'),
776                         '$features'            => $arr,
777                         '$submit'              => L10n::t('Save Settings'),
778                 ]);
779                 return $o;
780         }
781
782         if (($a->argc > 1) && ($a->argv[1] === 'connectors')) {
783                 $disable_cw                = intval(PConfig::get(local_user(), 'system', 'disable_cw'));
784                 $no_intelligent_shortening = intval(PConfig::get(local_user(), 'system', 'no_intelligent_shortening'));
785                 $ostatus_autofriend        = intval(PConfig::get(local_user(), 'system', 'ostatus_autofriend'));
786                 $default_group             = PConfig::get(local_user(), 'ostatus', 'default_group');
787                 $legacy_contact            = PConfig::get(local_user(), 'ostatus', 'legacy_contact');
788
789                 if (x($legacy_contact)) {
790                         /// @todo Isn't it supposed to be a goaway() call?
791                         $a->page['htmlhead'] = '<meta http-equiv="refresh" content="0; URL=' . System::baseUrl().'/ostatus_subscribe?url=' . urlencode($legacy_contact) . '">';
792                 }
793
794                 $settings_connectors = '';
795                 Addon::callHooks('connector_settings', $settings_connectors);
796
797                 if (is_site_admin()) {
798                         $diasp_enabled = L10n::t('Built-in support for %s connectivity is %s', L10n::t('Diaspora'), ((Config::get('system', 'diaspora_enabled')) ? L10n::t('enabled') : L10n::t('disabled')));
799                         $ostat_enabled = L10n::t('Built-in support for %s connectivity is %s', L10n::t("GNU Social \x28OStatus\x29"), ((Config::get('system', 'ostatus_disabled')) ? L10n::t('disabled') : L10n::t('enabled')));
800                 } else {
801                         $diasp_enabled = "";
802                         $ostat_enabled = "";
803                 }
804
805                 $mail_disabled = ((function_exists('imap_open') && (!Config::get('system', 'imap_disabled'))) ? 0 : 1);
806                 if (Config::get('system', 'dfrn_only')) {
807                         $mail_disabled = 1;
808                 }
809                 if (!$mail_disabled) {
810                         $r = q("SELECT * FROM `mailacct` WHERE `uid` = %d LIMIT 1",
811                                 local_user()
812                         );
813                 } else {
814                         $r = null;
815                 }
816
817                 $mail_server       = ((DBM::is_result($r)) ? $r[0]['server'] : '');
818                 $mail_port         = ((DBM::is_result($r) && intval($r[0]['port'])) ? intval($r[0]['port']) : '');
819                 $mail_ssl          = ((DBM::is_result($r)) ? $r[0]['ssltype'] : '');
820                 $mail_user         = ((DBM::is_result($r)) ? $r[0]['user'] : '');
821                 $mail_replyto      = ((DBM::is_result($r)) ? $r[0]['reply_to'] : '');
822                 $mail_pubmail      = ((DBM::is_result($r)) ? $r[0]['pubmail'] : 0);
823                 $mail_action       = ((DBM::is_result($r)) ? $r[0]['action'] : 0);
824                 $mail_movetofolder = ((DBM::is_result($r)) ? $r[0]['movetofolder'] : '');
825                 $mail_chk          = ((DBM::is_result($r)) ? $r[0]['last_check'] : NULL_DATE);
826
827
828                 $tpl = get_markup_template('settings/connectors.tpl');
829
830                 $mail_disabled_message = (($mail_disabled) ? L10n::t('Email access is disabled on this site.') : '');
831
832                 $o .= replace_macros($tpl, [
833                         '$form_security_token' => get_form_security_token("settings_connectors"),
834
835                         '$title'        => L10n::t('Social Networks'),
836
837                         '$diasp_enabled' => $diasp_enabled,
838                         '$ostat_enabled' => $ostat_enabled,
839
840                         '$general_settings' => L10n::t('General Social Media Settings'),
841                         '$disable_cw' => ['disable_cw', L10n::t('Disable Content Warning'), $disable_cw, L10n::t('Users on networks like Mastodon or Pleroma are able to set a content warning field which collapse their post by default. This disables the automatic collapsing and sets the content warning as the post title. Doesn\'t affect any other content filtering you eventually set up.')],
842                         '$no_intelligent_shortening' => ['no_intelligent_shortening', L10n::t('Disable intelligent shortening'), $no_intelligent_shortening, L10n::t('Normally the system tries to find the best link to add to shortened posts. If this option is enabled then every shortened post will always point to the original friendica post.')],
843                         '$ostatus_autofriend' => ['snautofollow', L10n::t("Automatically follow any GNU Social \x28OStatus\x29 followers/mentioners"), $ostatus_autofriend, L10n::t('If you receive a message from an unknown OStatus user, this option decides what to do. If it is checked, a new contact will be created for every unknown user.')],
844                         '$default_group' => Group::displayGroupSelection(local_user(), $default_group, L10n::t("Default group for OStatus contacts")),
845                         '$legacy_contact' => ['legacy_contact', L10n::t('Your legacy GNU Social account'), $legacy_contact, L10n::t("If you enter your old GNU Social/Statusnet account name here \x28in the format user@domain.tld\x29, your contacts will be added automatically. The field will be emptied when done.")],
846
847                         '$repair_ostatus_url' => System::baseUrl() . '/repair_ostatus',
848                         '$repair_ostatus_text' => L10n::t('Repair OStatus subscriptions'),
849
850                         '$settings_connectors' => $settings_connectors,
851
852                         '$h_imap' => L10n::t('Email/Mailbox Setup'),
853                         '$imap_desc' => L10n::t("If you wish to communicate with email contacts using this service \x28optional\x29, please specify how to connect to your mailbox."),
854                         '$imap_lastcheck' => ['imap_lastcheck', L10n::t('Last successful email check:'), $mail_chk, ''],
855                         '$mail_disabled' => $mail_disabled_message,
856                         '$mail_server'  => ['mail_server',  L10n::t('IMAP server name:'), $mail_server, ''],
857                         '$mail_port'    => ['mail_port',         L10n::t('IMAP port:'), $mail_port, ''],
858                         '$mail_ssl'             => ['mail_ssl',          L10n::t('Security:'), strtoupper($mail_ssl), '', ['notls'=>L10n::t('None'), 'TLS'=>'TLS', 'SSL'=>'SSL']],
859                         '$mail_user'    => ['mail_user',    L10n::t('Email login name:'), $mail_user, ''],
860                         '$mail_pass'    => ['mail_pass',         L10n::t('Email password:'), '', ''],
861                         '$mail_replyto' => ['mail_replyto', L10n::t('Reply-to address:'), $mail_replyto, 'Optional'],
862                         '$mail_pubmail' => ['mail_pubmail', L10n::t('Send public posts to all email contacts:'), $mail_pubmail, ''],
863                         '$mail_action'  => ['mail_action',       L10n::t('Action after import:'), $mail_action, '', [0=>L10n::t('None'), /*1=>L10n::t('Delete'),*/ 2=>L10n::t('Mark as seen'), 3=>L10n::t('Move to folder')]],
864                         '$mail_movetofolder'    => ['mail_movetofolder',         L10n::t('Move to folder:'), $mail_movetofolder, ''],
865                         '$submit' => L10n::t('Save Settings'),
866                 ]);
867
868                 Addon::callHooks('display_settings', $o);
869                 return $o;
870         }
871
872         /*
873          * DISPLAY SETTINGS
874          */
875         if (($a->argc > 1) && ($a->argv[1] === 'display')) {
876                 $default_theme = Config::get('system', 'theme');
877                 if (!$default_theme) {
878                         $default_theme = 'default';
879                 }
880                 $default_mobile_theme = Config::get('system', 'mobile-theme');
881                 if (!$default_mobile_theme) {
882                         $default_mobile_theme = 'none';
883                 }
884
885                 $allowed_themes_str = Config::get('system', 'allowed_themes');
886                 $allowed_themes_raw = explode(',', $allowed_themes_str);
887                 $allowed_themes = [];
888                 if (count($allowed_themes_raw)) {
889                         foreach ($allowed_themes_raw as $x) {
890                                 if (strlen(trim($x)) && is_dir("view/theme/$x")) {
891                                         $allowed_themes[] = trim($x);
892                                 }
893                         }
894                 }
895
896
897                 $themes = [];
898                 $mobile_themes = ["---" => L10n::t('No special theme for mobile devices')];
899                 if ($allowed_themes) {
900                         foreach ($allowed_themes as $theme) {
901                                 $is_experimental = file_exists('view/theme/' . $theme . '/experimental');
902                                 $is_unsupported  = file_exists('view/theme/' . $theme . '/unsupported');
903                                 $is_mobile       = file_exists('view/theme/' . $theme . '/mobile');
904                                 if (!$is_experimental || ($is_experimental && (Config::get('experimentals', 'exp_themes')==1 || is_null(Config::get('experimentals', 'exp_themes'))))) {
905                                         $theme_name = ucfirst($theme);
906                                         if ($is_unsupported) {
907                                                 $theme_name = L10n::t("%s - \x28Unsupported\x29", $theme_name);
908                                         } elseif ($is_experimental) {
909                                                 $theme_name = L10n::t("%s - \x28Experimental\x29", $theme_name);
910                                         }
911                                         if ($is_mobile) {
912                                                 $mobile_themes[$theme] = $theme_name;
913                                         } else {
914                                                 $themes[$theme] = $theme_name;
915                                         }
916                                 }
917                         }
918                 }
919                 $theme_selected        = defaults($_SESSION, 'theme'       , $default_theme);
920                 $mobile_theme_selected = defaults($_SESSION, 'mobile-theme', $default_mobile_theme);
921
922                 $nowarn_insecure = intval(PConfig::get(local_user(), 'system', 'nowarn_insecure'));
923
924                 $browser_update = intval(PConfig::get(local_user(), 'system', 'update_interval'));
925                 if (intval($browser_update) != -1) {
926                         $browser_update = (($browser_update == 0) ? 40 : $browser_update / 1000); // default if not set: 40 seconds
927                 }
928
929                 $itemspage_network = intval(PConfig::get(local_user(), 'system', 'itemspage_network'));
930                 $itemspage_network = (($itemspage_network > 0 && $itemspage_network < 101) ? $itemspage_network : 40); // default if not set: 40 items
931                 $itemspage_mobile_network = intval(PConfig::get(local_user(), 'system', 'itemspage_mobile_network'));
932                 $itemspage_mobile_network = (($itemspage_mobile_network > 0 && $itemspage_mobile_network < 101) ? $itemspage_mobile_network : 20); // default if not set: 20 items
933
934                 $nosmile = PConfig::get(local_user(), 'system', 'no_smilies', 0);
935                 $first_day_of_week = PConfig::get(local_user(), 'system', 'first_day_of_week', 0);
936                 $weekdays = [0 => L10n::t("Sunday"), 1 => L10n::t("Monday")];
937
938                 $noinfo = PConfig::get(local_user(), 'system', 'ignore_info', 0);
939                 $infinite_scroll = PConfig::get(local_user(), 'system', 'infinite_scroll', 0);
940                 $no_auto_update = PConfig::get(local_user(), 'system', 'no_auto_update', 0);
941                 $bandwidth_saver = PConfig::get(local_user(), 'system', 'bandwidth_saver', 0);
942                 $smart_threading = PConfig::get(local_user(), 'system', 'smart_threading', 0);
943
944                 $theme_config = "";
945                 if (($themeconfigfile = get_theme_config_file($theme_selected)) !== null) {
946                         require_once $themeconfigfile;
947                         $theme_config = theme_content($a);
948                 }
949
950                 $tpl = get_markup_template('settings/display.tpl');
951                 $o = replace_macros($tpl, [
952                         '$ptitle'       => L10n::t('Display Settings'),
953                         '$form_security_token' => get_form_security_token("settings_display"),
954                         '$submit'       => L10n::t('Save Settings'),
955                         '$baseurl' => System::baseUrl(true),
956                         '$uid' => local_user(),
957
958                         '$theme'        => ['theme', L10n::t('Display Theme:'), $theme_selected, '', $themes, true],
959                         '$mobile_theme' => ['mobile_theme', L10n::t('Mobile Theme:'), $mobile_theme_selected, '', $mobile_themes, false],
960                         '$nowarn_insecure' => ['nowarn_insecure',  L10n::t('Suppress warning of insecure networks'), $nowarn_insecure, L10n::t("Should the system suppress the warning that the current group contains members of networks that can't receive non public postings.")],
961                         '$ajaxint'   => ['browser_update',  L10n::t("Update browser every xx seconds"), $browser_update, L10n::t('Minimum of 10 seconds. Enter -1 to disable it.')],
962                         '$itemspage_network'   => ['itemspage_network',  L10n::t("Number of items to display per page:"), $itemspage_network, L10n::t('Maximum of 100 items')],
963                         '$itemspage_mobile_network'   => ['itemspage_mobile_network',  L10n::t("Number of items to display per page when viewed from mobile device:"), $itemspage_mobile_network, L10n::t('Maximum of 100 items')],
964                         '$nosmile'      => ['nosmile', L10n::t("Don't show emoticons"), $nosmile, ''],
965                         '$calendar_title' => L10n::t('Calendar'),
966                         '$first_day_of_week'    => ['first_day_of_week', L10n::t('Beginning of week:'), $first_day_of_week, '', $weekdays, false],
967                         '$noinfo'       => ['noinfo', L10n::t("Don't show notices"), $noinfo, ''],
968                         '$infinite_scroll'      => ['infinite_scroll', L10n::t("Infinite scroll"), $infinite_scroll, ''],
969                         '$no_auto_update'       => ['no_auto_update', L10n::t("Automatic updates only at the top of the network page"), $no_auto_update, L10n::t('When disabled, the network page is updated all the time, which could be confusing while reading.')],
970                         '$bandwidth_saver' => ['bandwidth_saver', L10n::t('Bandwidth Saver Mode'), $bandwidth_saver, L10n::t('When enabled, embedded content is not displayed on automatic updates, they only show on page reload.')],
971                         '$smart_threading' => ['smart_threading', L10n::t('Smart Threading'), $smart_threading, L10n::t('When enabled, suppress extraneous thread indentation while keeping it where it matters. Only works if threading is available and enabled.')],
972
973                         '$d_tset' => L10n::t('General Theme Settings'),
974                         '$d_ctset' => L10n::t('Custom Theme Settings'),
975                         '$d_cset' => L10n::t('Content Settings'),
976                         'stitle' => L10n::t('Theme settings'),
977                         '$theme_config' => $theme_config,
978                 ]);
979
980                 $tpl = get_markup_template('settings/display_end.tpl');
981                 $a->page['end'] .= replace_macros($tpl, [
982                         '$theme'        => ['theme', L10n::t('Display Theme:'), $theme_selected, '', $themes]
983                 ]);
984
985                 return $o;
986         }
987
988
989         /*
990          * ACCOUNT SETTINGS
991          */
992
993         $profile = dba::selectFirst('profile', [], ['is-default' => true, 'uid' => local_user()]);
994         if (!DBM::is_result($profile)) {
995                 notice(L10n::t('Unable to find your profile. Please contact your admin.') . EOL);
996                 return;
997         }
998
999         $username   = $a->user['username'];
1000         $email      = $a->user['email'];
1001         $nickname   = $a->user['nickname'];
1002         $timezone   = $a->user['timezone'];
1003         $language   = $a->user['language'];
1004         $notify     = $a->user['notify-flags'];
1005         $defloc     = $a->user['default-location'];
1006         $openid     = $a->user['openid'];
1007         $maxreq     = $a->user['maxreq'];
1008         $expire     = ((intval($a->user['expire'])) ? $a->user['expire'] : '');
1009         $unkmail    = $a->user['unkmail'];
1010         $cntunkmail = $a->user['cntunkmail'];
1011
1012         $expire_items = PConfig::get(local_user(), 'expire', 'items', true);
1013         $expire_notes = PConfig::get(local_user(), 'expire', 'notes', true);
1014         $expire_starred = PConfig::get(local_user(), 'expire', 'starred', true);
1015         $expire_photos = PConfig::get(local_user(), 'expire', 'photos', false);
1016         $expire_network_only = PConfig::get(local_user(), 'expire', 'network_only', false);
1017         $suggestme = PConfig::get(local_user(), 'system', 'suggestme', false);
1018
1019         // nowarn_insecure
1020
1021         if (!strlen($a->user['timezone'])) {
1022                 $timezone = date_default_timezone_get();
1023         }
1024
1025         // Set the account type to "Community" when the page is a community page but the account type doesn't fit
1026         // This is only happening on the first visit after the update
1027         if (in_array($a->user['page-flags'], [PAGE_COMMUNITY, PAGE_PRVGROUP]) &&
1028                 ($a->user['account-type'] != ACCOUNT_TYPE_COMMUNITY))
1029                 $a->user['account-type'] = ACCOUNT_TYPE_COMMUNITY;
1030
1031         $pageset_tpl = get_markup_template('settings/pagetypes.tpl');
1032
1033         $pagetype = replace_macros($pageset_tpl, [
1034                 '$account_types'        => L10n::t("Account Types"),
1035                 '$user'                 => L10n::t("Personal Page Subtypes"),
1036                 '$community'            => L10n::t("Community Forum Subtypes"),
1037                 '$account_type'         => $a->user['account-type'],
1038                 '$type_person'          => ACCOUNT_TYPE_PERSON,
1039                 '$type_organisation'    => ACCOUNT_TYPE_ORGANISATION,
1040                 '$type_news'            => ACCOUNT_TYPE_NEWS,
1041                 '$type_community'       => ACCOUNT_TYPE_COMMUNITY,
1042
1043                 '$account_person'       => ['account-type', L10n::t('Personal Page'), ACCOUNT_TYPE_PERSON,
1044                                                                         L10n::t('Account for a personal profile.'),
1045                                                                         ($a->user['account-type'] == ACCOUNT_TYPE_PERSON)],
1046
1047                 '$account_organisation' => ['account-type', L10n::t('Organisation Page'), ACCOUNT_TYPE_ORGANISATION,
1048                                                                         L10n::t('Account for an organisation that automatically approves contact requests as "Followers".'),
1049                                                                         ($a->user['account-type'] == ACCOUNT_TYPE_ORGANISATION)],
1050
1051                 '$account_news'         => ['account-type', L10n::t('News Page'), ACCOUNT_TYPE_NEWS,
1052                                                                         L10n::t('Account for a news reflector that automatically approves contact requests as "Followers".'),
1053                                                                         ($a->user['account-type'] == ACCOUNT_TYPE_NEWS)],
1054
1055                 '$account_community'    => ['account-type', L10n::t('Community Forum'), ACCOUNT_TYPE_COMMUNITY,
1056                                                                         L10n::t('Account for community discussions.'),
1057                                                                         ($a->user['account-type'] == ACCOUNT_TYPE_COMMUNITY)],
1058
1059                 '$page_normal'          => ['page-flags', L10n::t('Normal Account Page'), PAGE_NORMAL,
1060                                                                         L10n::t('Account for a regular personal profile that requires manual approval of "Friends" and "Followers".'),
1061                                                                         ($a->user['page-flags'] == PAGE_NORMAL)],
1062
1063                 '$page_soapbox'         => ['page-flags', L10n::t('Soapbox Page'), PAGE_SOAPBOX,
1064                                                                         L10n::t('Account for a public profile that automatically approves contact requests as "Followers".'),
1065                                                                         ($a->user['page-flags'] == PAGE_SOAPBOX)],
1066
1067                 '$page_community'       => ['page-flags', L10n::t('Public Forum'), PAGE_COMMUNITY,
1068                                                                         L10n::t('Automatically approves all contact requests.'),
1069                                                                         ($a->user['page-flags'] == PAGE_COMMUNITY)],
1070
1071                 '$page_freelove'        => ['page-flags', L10n::t('Automatic Friend Page'), PAGE_FREELOVE,
1072                                                                         L10n::t('Account for a popular profile that automatically approves contact requests as "Friends".'),
1073                                                                         ($a->user['page-flags'] == PAGE_FREELOVE)],
1074
1075                 '$page_prvgroup'        => ['page-flags', L10n::t('Private Forum [Experimental]'), PAGE_PRVGROUP,
1076                                                                         L10n::t('Requires manual approval of contact requests.'),
1077                                                                         ($a->user['page-flags'] == PAGE_PRVGROUP)],
1078
1079
1080         ]);
1081
1082         $noid = Config::get('system', 'no_openid');
1083
1084         if ($noid) {
1085                 $openid_field = false;
1086         } else {
1087                 $openid_field = ['openid_url', L10n::t('OpenID:'), $openid, L10n::t("\x28Optional\x29 Allow this OpenID to login to this account."), "", "", "url"];
1088         }
1089
1090         $opt_tpl = get_markup_template("field_yesno.tpl");
1091         if (Config::get('system', 'publish_all')) {
1092                 $profile_in_dir = '<input type="hidden" name="profile_in_directory" value="1" />';
1093         } else {
1094                 $profile_in_dir = replace_macros($opt_tpl, [
1095                         '$field' => ['profile_in_directory', L10n::t('Publish your default profile in your local site directory?'), $profile['publish'], L10n::t('Your profile will be published in this node\'s <a href="%s">local directory</a>. Your profile details may be publicly visible depending on the system settings.', System::baseUrl().'/directory'), [L10n::t('No'), L10n::t('Yes')]]
1096                 ]);
1097         }
1098
1099         if (strlen(Config::get('system', 'directory'))) {
1100                 $profile_in_net_dir = replace_macros($opt_tpl, [
1101                         '$field' => ['profile_in_netdirectory', L10n::t('Publish your default profile in the global social directory?'), $profile['net-publish'], L10n::t('Your profile will be published in the global friendica directories (e.g. <a href="%s">%s</a>). Your profile will be visible in public.', Config::get('system', 'directory'), Config::get('system', 'directory')), [L10n::t('No'), L10n::t('Yes')]]
1102                 ]);
1103         } else {
1104                 $profile_in_net_dir = '';
1105         }
1106
1107         $hide_friends = replace_macros($opt_tpl, [
1108                 '$field' => ['hide-friends', L10n::t('Hide your contact/friend list from viewers of your default profile?'), $profile['hide-friends'], L10n::t('Your contact list won\'t be shown in your default profile page. You can decide to show your contact list separately for each additional profile you create'), [L10n::t('No'), L10n::t('Yes')]],
1109         ]);
1110
1111         $hide_wall = replace_macros($opt_tpl, [
1112                 '$field' => ['hidewall', L10n::t('Hide your profile details from anonymous viewers?'), $a->user['hidewall'], L10n::t('Anonymous visitors will only see your profile picture, your display name and the nickname you are using on your profile page. Your public posts and replies will still be accessible by other means.'), [L10n::t('No'), L10n::t('Yes')]],
1113         ]);
1114
1115         $blockwall = replace_macros($opt_tpl, [
1116                 '$field' => ['blockwall', L10n::t('Allow friends to post to your profile page?'), (intval($a->user['blockwall']) ? '0' : '1'), L10n::t('Your contacts may write posts on your profile wall. These posts will be distributed to your contacts'), [L10n::t('No'), L10n::t('Yes')]],
1117         ]);
1118
1119         $blocktags = replace_macros($opt_tpl, [
1120                 '$field' => ['blocktags', L10n::t('Allow friends to tag your posts?'), (intval($a->user['blocktags']) ? '0' : '1'), L10n::t('Your contacts can add additional tags to your posts.'), [L10n::t('No'), L10n::t('Yes')]],
1121         ]);
1122
1123         $suggestme = replace_macros($opt_tpl, [
1124                 '$field' => ['suggestme', L10n::t('Allow us to suggest you as a potential friend to new members?'), $suggestme, L10n::t('If you like, Friendica may suggest new members to add you as a contact.'), [L10n::t('No'), L10n::t('Yes')]],
1125         ]);
1126
1127         $unkmail = replace_macros($opt_tpl, [
1128                 '$field' => ['unkmail', L10n::t('Permit unknown people to send you private mail?'), $unkmail, L10n::t('Friendica network users may send you private messages even if they are not in your contact list.'), [L10n::t('No'), L10n::t('Yes')]],
1129         ]);
1130
1131         if (!$profile['publish'] && !$profile['net-publish']) {
1132                 info(L10n::t('Profile is <strong>not published</strong>.') . EOL);
1133         }
1134
1135         $tpl_addr = get_markup_template('settings/nick_set.tpl');
1136
1137         $prof_addr = replace_macros($tpl_addr,[
1138                 '$desc' => L10n::t("Your Identity Address is <strong>'%s'</strong> or '%s'.", $nickname . '@' . $a->get_hostname() . $a->get_path(), System::baseUrl() . '/profile/' . $nickname),
1139                 '$basepath' => $a->get_hostname()
1140         ]);
1141
1142         $stpl = get_markup_template('settings/settings.tpl');
1143
1144         $expire_arr = [
1145                 'days' => ['expire',  L10n::t("Automatically expire posts after this many days:"), $expire, L10n::t('If empty, posts will not expire. Expired posts will be deleted')],
1146                 'advanced' => L10n::t('Advanced expiration settings'),
1147                 'label' => L10n::t('Advanced Expiration'),
1148                 'items' => ['expire_items',  L10n::t("Expire posts:"), $expire_items, '', [L10n::t('No'), L10n::t('Yes')]],
1149                 'notes' => ['expire_notes',  L10n::t("Expire personal notes:"), $expire_notes, '', [L10n::t('No'), L10n::t('Yes')]],
1150                 'starred' => ['expire_starred',  L10n::t("Expire starred posts:"), $expire_starred, '', [L10n::t('No'), L10n::t('Yes')]],
1151                 'photos' => ['expire_photos',  L10n::t("Expire photos:"), $expire_photos, '', [L10n::t('No'), L10n::t('Yes')]],
1152                 'network_only' => ['expire_network_only',  L10n::t("Only expire posts by others:"), $expire_network_only, '', [L10n::t('No'), L10n::t('Yes')]],
1153         ];
1154
1155         $group_select = Group::displayGroupSelection(local_user(), $a->user['def_gid']);
1156
1157         // Private/public post links for the non-JS ACL form
1158         $private_post = 1;
1159         if (!empty($_REQUEST['public']) && !$_REQUEST['public']) {
1160                 $private_post = 0;
1161         }
1162
1163         $query_str = $a->query_string;
1164         if (strpos($query_str, 'public=1') !== false) {
1165                 $query_str = str_replace(['?public=1', '&public=1'], ['', ''], $query_str);
1166         }
1167
1168         // I think $a->query_string may never have ? in it, but I could be wrong
1169         // It looks like it's from the index.php?q=[etc] rewrite that the web
1170         // server does, which converts any ? to &, e.g. suggest&ignore=61 for suggest?ignore=61
1171         if (strpos($query_str, '?') === false) {
1172                 $public_post_link = '?public=1';
1173         } else {
1174                 $public_post_link = '&public=1';
1175         }
1176
1177         /* Installed langs */
1178         $lang_choices = L10n::getAvailableLanguages();
1179
1180         /// @TODO Fix indending (or so)
1181         $o .= replace_macros($stpl, [
1182                 '$ptitle'       => L10n::t('Account Settings'),
1183
1184                 '$submit'       => L10n::t('Save Settings'),
1185                 '$baseurl' => System::baseUrl(true),
1186                 '$uid' => local_user(),
1187                 '$form_security_token' => get_form_security_token("settings"),
1188                 '$nickname_block' => $prof_addr,
1189
1190                 '$h_pass'       => L10n::t('Password Settings'),
1191                 '$password1'=> ['password', L10n::t('New Password:'), '', ''],
1192                 '$password2'=> ['confirm', L10n::t('Confirm:'), '', L10n::t('Leave password fields blank unless changing')],
1193                 '$password3'=> ['opassword', L10n::t('Current Password:'), '', L10n::t('Your current password to confirm the changes')],
1194                 '$password4'=> ['mpassword', L10n::t('Password:'), '', L10n::t('Your current password to confirm the changes')],
1195                 '$oid_enable' => (!Config::get('system', 'no_openid')),
1196                 '$openid'       => $openid_field,
1197
1198                 '$h_basic'      => L10n::t('Basic Settings'),
1199                 '$username' => ['username',  L10n::t('Full Name:'), $username, ''],
1200                 '$email'        => ['email', L10n::t('Email Address:'), $email, '', '', '', 'email'],
1201                 '$timezone' => ['timezone_select' , L10n::t('Your Timezone:'), Temporal::getTimezoneSelect($timezone), ''],
1202                 '$language' => ['language', L10n::t('Your Language:'), $language, L10n::t('Set the language we use to show you friendica interface and to send you emails'), $lang_choices],
1203                 '$defloc'       => ['defloc', L10n::t('Default Post Location:'), $defloc, ''],
1204                 '$allowloc' => ['allow_location', L10n::t('Use Browser Location:'), ($a->user['allow_location'] == 1), ''],
1205
1206
1207                 '$h_prv'        => L10n::t('Security and Privacy Settings'),
1208
1209                 '$maxreq'       => ['maxreq', L10n::t('Maximum Friend Requests/Day:'), $maxreq , L10n::t("\x28to prevent spam abuse\x29")],
1210                 '$permissions' => L10n::t('Default Post Permissions'),
1211                 '$permdesc' => L10n::t("\x28click to open/close\x29"),
1212                 '$visibility' => $profile['net-publish'],
1213                 '$aclselect' => ACL::getFullSelectorHTML($a->user),
1214                 '$suggestme' => $suggestme,
1215                 '$blockwall'=> $blockwall, // array('blockwall', L10n::t('Allow friends to post to your profile page:'), !$blockwall, ''),
1216                 '$blocktags'=> $blocktags, // array('blocktags', L10n::t('Allow friends to tag your posts:'), !$blocktags, ''),
1217
1218                 // ACL permissions box
1219                 '$group_perms' => L10n::t('Show to Groups'),
1220                 '$contact_perms' => L10n::t('Show to Contacts'),
1221                 '$private' => L10n::t('Default Private Post'),
1222                 '$public' => L10n::t('Default Public Post'),
1223                 '$is_private' => $private_post,
1224                 '$return_path' => $query_str,
1225                 '$public_link' => $public_post_link,
1226                 '$settings_perms' => L10n::t('Default Permissions for New Posts'),
1227
1228                 '$group_select' => $group_select,
1229
1230
1231                 '$expire'       => $expire_arr,
1232
1233                 '$profile_in_dir' => $profile_in_dir,
1234                 '$profile_in_net_dir' => $profile_in_net_dir,
1235                 '$hide_friends' => $hide_friends,
1236                 '$hide_wall' => $hide_wall,
1237                 '$unkmail' => $unkmail,
1238                 '$cntunkmail'   => ['cntunkmail', L10n::t('Maximum private messages per day from unknown people:'), $cntunkmail , L10n::t("\x28to prevent spam abuse\x29")],
1239
1240
1241                 '$h_not'        => L10n::t('Notification Settings'),
1242                 '$lbl_not'      => L10n::t('Send a notification email when:'),
1243                 '$notify1'      => ['notify1', L10n::t('You receive an introduction'), ($notify & NOTIFY_INTRO), NOTIFY_INTRO, ''],
1244                 '$notify2'      => ['notify2', L10n::t('Your introductions are confirmed'), ($notify & NOTIFY_CONFIRM), NOTIFY_CONFIRM, ''],
1245                 '$notify3'      => ['notify3', L10n::t('Someone writes on your profile wall'), ($notify & NOTIFY_WALL), NOTIFY_WALL, ''],
1246                 '$notify4'      => ['notify4', L10n::t('Someone writes a followup comment'), ($notify & NOTIFY_COMMENT), NOTIFY_COMMENT, ''],
1247                 '$notify5'      => ['notify5', L10n::t('You receive a private message'), ($notify & NOTIFY_MAIL), NOTIFY_MAIL, ''],
1248                 '$notify6'  => ['notify6', L10n::t('You receive a friend suggestion'), ($notify & NOTIFY_SUGGEST), NOTIFY_SUGGEST, ''],
1249                 '$notify7'  => ['notify7', L10n::t('You are tagged in a post'), ($notify & NOTIFY_TAGSELF), NOTIFY_TAGSELF, ''],
1250                 '$notify8'  => ['notify8', L10n::t('You are poked/prodded/etc. in a post'), ($notify & NOTIFY_POKE), NOTIFY_POKE, ''],
1251
1252                 '$desktop_notifications' => ['desktop_notifications', L10n::t('Activate desktop notifications') , false, L10n::t('Show desktop popup on new notifications')],
1253
1254                 '$email_textonly' => ['email_textonly', L10n::t('Text-only notification emails'),
1255                                                                         PConfig::get(local_user(), 'system', 'email_textonly'),
1256                                                                         L10n::t('Send text only notification emails, without the html part')],
1257
1258                 '$detailed_notif' => ['detailed_notif', L10n::t('Show detailled notifications'),
1259                                                                         PConfig::get(local_user(), 'system', 'detailed_notif'),
1260                                                                         L10n::t('Per default, notifications are condensed to a single notification per item. When enabled every notification is displayed.')],
1261
1262                 '$h_advn' => L10n::t('Advanced Account/Page Type Settings'),
1263                 '$h_descadvn' => L10n::t('Change the behaviour of this account for special situations'),
1264                 '$pagetype' => $pagetype,
1265
1266                 '$relocate' => L10n::t('Relocate'),
1267                 '$relocate_text' => L10n::t("If you have moved this profile from another server, and some of your contacts don't receive your updates, try pushing this button."),
1268                 '$relocate_button' => L10n::t("Resend relocate message to contacts"),
1269
1270         ]);
1271
1272         Addon::callHooks('settings_form', $o);
1273
1274         $o .= '</form>' . "\r\n";
1275
1276         return $o;
1277
1278 }