]> git.mxchange.org Git - friendica.git/blob - mod/settings.php
use config var in settings form
[friendica.git] / mod / settings.php
1 <?php
2 /**
3  * @file mod/settings.php
4  */
5
6 use Friendica\App;
7 use Friendica\BaseModule;
8 use Friendica\BaseObject;
9 use Friendica\Content\Feature;
10 use Friendica\Content\Nav;
11 use Friendica\Core\ACL;
12 use Friendica\Core\Config;
13 use Friendica\Core\Hook;
14 use Friendica\Core\L10n;
15 use Friendica\Core\Logger;
16 use Friendica\Core\PConfig;
17 use Friendica\Core\Renderer;
18 use Friendica\Core\Session;
19 use Friendica\Core\System;
20 use Friendica\Core\Theme;
21 use Friendica\Core\Worker;
22 use Friendica\Database\DBA;
23 use Friendica\Model\Contact;
24 use Friendica\Model\GContact;
25 use Friendica\Model\Group;
26 use Friendica\Model\User;
27 use Friendica\Module\Login;
28 use Friendica\Protocol\Email;
29 use Friendica\Util\ACLFormatter;
30 use Friendica\Util\Network;
31 use Friendica\Util\Strings;
32 use Friendica\Util\Temporal;
33 use Friendica\Worker\Delivery;
34
35 function get_theme_config_file($theme)
36 {
37         $theme = Strings::sanitizeFilePathItem($theme);
38
39         $a = \get_app();
40         $base_theme = $a->theme_info['extends'] ?? '';
41
42         if (file_exists("view/theme/$theme/config.php")) {
43                 return "view/theme/$theme/config.php";
44         }
45         if ($base_theme && file_exists("view/theme/$base_theme/config.php")) {
46                 return "view/theme/$base_theme/config.php";
47         }
48         return null;
49 }
50
51 function settings_init(App $a)
52 {
53         if (!local_user()) {
54                 notice(L10n::t('Permission denied.') . EOL);
55                 return;
56         }
57
58         // These lines provide the javascript needed by the acl selector
59
60         $tpl = Renderer::getMarkupTemplate('settings/head.tpl');
61         $a->page['htmlhead'] .= Renderer::replaceMacros($tpl, [
62                 '$ispublic' => L10n::t('everybody')
63         ]);
64
65         $tabs = [
66                 [
67                         'label' => L10n::t('Account'),
68                         'url'   => 'settings',
69                         'selected'      =>  (($a->argc == 1) && ($a->argv[0] === 'settings')?'active':''),
70                         'accesskey' => 'o',
71                 ],
72         ];
73
74         $tabs[] = [
75                 'label' => L10n::t('Two-factor authentication'),
76                 'url' => 'settings/2fa',
77                 'selected' => (($a->argc > 1) && ($a->argv[1] === '2fa') ? 'active' : ''),
78                 'accesskey' => 'o',
79         ];
80
81         $tabs[] =       [
82                 'label' => L10n::t('Profiles'),
83                 'url'   => 'profiles',
84                 'selected'      => (($a->argc == 1) && ($a->argv[0] === 'profiles')?'active':''),
85                 'accesskey' => 'p',
86         ];
87
88         if (Feature::get()) {
89                 $tabs[] =       [
90                                         'label' => L10n::t('Additional features'),
91                                         'url'   => 'settings/features',
92                                         'selected'      => (($a->argc > 1) && ($a->argv[1] === 'features') ? 'active' : ''),
93                                         'accesskey' => 't',
94                                 ];
95         }
96
97         $tabs[] =       [
98                 'label' => L10n::t('Display'),
99                 'url'   => 'settings/display',
100                 'selected'      => (($a->argc > 1) && ($a->argv[1] === 'display')?'active':''),
101                 'accesskey' => 'i',
102         ];
103
104         $tabs[] =       [
105                 'label' => L10n::t('Social Networks'),
106                 'url'   => 'settings/connectors',
107                 'selected'      => (($a->argc > 1) && ($a->argv[1] === 'connectors')?'active':''),
108                 'accesskey' => 'w',
109         ];
110
111         $tabs[] =       [
112                 'label' => L10n::t('Addons'),
113                 'url'   => 'settings/addon',
114                 'selected'      => (($a->argc > 1) && ($a->argv[1] === 'addon')?'active':''),
115                 'accesskey' => 'l',
116         ];
117
118         $tabs[] =       [
119                 'label' => L10n::t('Delegations'),
120                 'url'   => 'settings/delegation',
121                 'selected'      => (($a->argc > 1) && ($a->argv[1] === 'delegation')?'active':''),
122                 'accesskey' => 'd',
123         ];
124
125         $tabs[] =       [
126                 'label' => L10n::t('Connected apps'),
127                 'url' => 'settings/oauth',
128                 'selected' => (($a->argc > 1) && ($a->argv[1] === 'oauth')?'active':''),
129                 'accesskey' => 'b',
130         ];
131
132         $tabs[] =       [
133                 'label' => L10n::t('Export personal data'),
134                 'url' => 'settings/userexport',
135                 'selected' => (($a->argc > 1) && ($a->argv[1] === 'userexport')?'active':''),
136                 'accesskey' => 'e',
137         ];
138
139         $tabs[] =       [
140                 'label' => L10n::t('Remove account'),
141                 'url' => 'removeme',
142                 'selected' => (($a->argc == 1) && ($a->argv[0] === 'removeme')?'active':''),
143                 'accesskey' => 'r',
144         ];
145
146
147         $tabtpl = Renderer::getMarkupTemplate("generic_links_widget.tpl");
148         $a->page['aside'] = Renderer::replaceMacros($tabtpl, [
149                 '$title' => L10n::t('Settings'),
150                 '$class' => 'settings-widget',
151                 '$items' => $tabs,
152         ]);
153
154 }
155
156 function settings_post(App $a)
157 {
158         if (!local_user()) {
159                 return;
160         }
161
162         if (!empty($_SESSION['submanage'])) {
163                 return;
164         }
165
166         if (count($a->user) && !empty($a->user['uid']) && $a->user['uid'] != local_user()) {
167                 notice(L10n::t('Permission denied.') . EOL);
168                 return;
169         }
170
171         $old_page_flags = $a->user['page-flags'];
172
173         if (($a->argc > 1) && ($a->argv[1] === 'oauth') && !empty($_POST['remove'])) {
174                 BaseModule::checkFormSecurityTokenRedirectOnError('/settings/oauth', 'settings_oauth');
175
176                 $key = $_POST['remove'];
177                 DBA::delete('tokens', ['id' => $key, 'uid' => local_user()]);
178                 $a->internalRedirect('settings/oauth/', true);
179                 return;
180         }
181
182         if (($a->argc > 2) && ($a->argv[1] === 'oauth')  && ($a->argv[2] === 'edit'||($a->argv[2] === 'add')) && !empty($_POST['submit'])) {
183                 BaseModule::checkFormSecurityTokenRedirectOnError('/settings/oauth', 'settings_oauth');
184
185                 $name     = $_POST['name']     ?? '';
186                 $key      = $_POST['key']      ?? '';
187                 $secret   = $_POST['secret']   ?? '';
188                 $redirect = $_POST['redirect'] ?? '';
189                 $icon     = $_POST['icon']     ?? '';
190
191                 if ($name == "" || $key == "" || $secret == "") {
192                         notice(L10n::t("Missing some important data!"));
193                 } else {
194                         if ($_POST['submit'] == L10n::t("Update")) {
195                                 q("UPDATE clients SET
196                                                         client_id='%s',
197                                                         pw='%s',
198                                                         name='%s',
199                                                         redirect_uri='%s',
200                                                         icon='%s',
201                                                         uid=%d
202                                                 WHERE client_id='%s'",
203                                         DBA::escape($key),
204                                         DBA::escape($secret),
205                                         DBA::escape($name),
206                                         DBA::escape($redirect),
207                                         DBA::escape($icon),
208                                         local_user(),
209                                         DBA::escape($key)
210                                 );
211                         } else {
212                                 q("INSERT INTO clients
213                                                         (client_id, pw, name, redirect_uri, icon, uid)
214                                                 VALUES ('%s', '%s', '%s', '%s', '%s',%d)",
215                                         DBA::escape($key),
216                                         DBA::escape($secret),
217                                         DBA::escape($name),
218                                         DBA::escape($redirect),
219                                         DBA::escape($icon),
220                                         local_user()
221                                 );
222                         }
223                 }
224                 $a->internalRedirect('settings/oauth/', true);
225                 return;
226         }
227
228         if (($a->argc > 1) && ($a->argv[1] == 'addon')) {
229                 BaseModule::checkFormSecurityTokenRedirectOnError('/settings/addon', 'settings_addon');
230
231                 Hook::callAll('addon_settings_post', $_POST);
232                 return;
233         }
234
235         if (($a->argc > 1) && ($a->argv[1] == 'connectors')) {
236                 BaseModule::checkFormSecurityTokenRedirectOnError('/settings/connectors', 'settings_connectors');
237
238                 if (!empty($_POST['general-submit'])) {
239                         PConfig::set(local_user(), 'system', 'accept_only_sharer', intval($_POST['accept_only_sharer']));
240                         PConfig::set(local_user(), 'system', 'disable_cw', intval($_POST['disable_cw']));
241                         PConfig::set(local_user(), 'system', 'no_intelligent_shortening', intval($_POST['no_intelligent_shortening']));
242                         PConfig::set(local_user(), 'system', 'ostatus_autofriend', intval($_POST['snautofollow']));
243                         PConfig::set(local_user(), 'ostatus', 'default_group', $_POST['group-selection']);
244                         PConfig::set(local_user(), 'ostatus', 'legacy_contact', $_POST['legacy_contact']);
245                 } elseif (!empty($_POST['imap-submit'])) {
246                         $mail_server       =                 $_POST['mail_server']       ?? '';
247                         $mail_port         =                 $_POST['mail_port']         ?? '';
248                         $mail_ssl          = strtolower(trim($_POST['mail_ssl']          ?? ''));
249                         $mail_user         =                 $_POST['mail_user']         ?? '';
250                         $mail_pass         =            trim($_POST['mail_pass']         ?? '');
251                         $mail_action       =            trim($_POST['mail_action']       ?? '');
252                         $mail_movetofolder =            trim($_POST['mail_movetofolder'] ?? '');
253                         $mail_replyto      =                 $_POST['mail_replyto']      ?? '';
254                         $mail_pubmail      =                 $_POST['mail_pubmail']      ?? '';
255
256                         if (
257                                 !Config::get('system', 'dfrn_only')
258                                 && function_exists('imap_open')
259                                 && !Config::get('system', 'imap_disabled')
260                         ) {
261                                 $failed = false;
262                                 $r = q("SELECT * FROM `mailacct` WHERE `uid` = %d LIMIT 1",
263                                         intval(local_user())
264                                 );
265                                 if (!DBA::isResult($r)) {
266                                         DBA::insert('mailacct', ['uid' => local_user()]);
267                                 }
268                                 if (strlen($mail_pass)) {
269                                         $pass = '';
270                                         openssl_public_encrypt($mail_pass, $pass, $a->user['pubkey']);
271                                         DBA::update('mailacct', ['pass' => bin2hex($pass)], ['uid' => local_user()]);
272                                 }
273                                 $r = q("UPDATE `mailacct` SET `server` = '%s', `port` = %d, `ssltype` = '%s', `user` = '%s',
274                                         `action` = %d, `movetofolder` = '%s',
275                                         `mailbox` = 'INBOX', `reply_to` = '%s', `pubmail` = %d WHERE `uid` = %d",
276                                         DBA::escape($mail_server),
277                                         intval($mail_port),
278                                         DBA::escape($mail_ssl),
279                                         DBA::escape($mail_user),
280                                         intval($mail_action),
281                                         DBA::escape($mail_movetofolder),
282                                         DBA::escape($mail_replyto),
283                                         intval($mail_pubmail),
284                                         intval(local_user())
285                                 );
286                                 Logger::log("mail: updating mailaccount. Response: ".print_r($r, true));
287                                 $r = q("SELECT * FROM `mailacct` WHERE `uid` = %d LIMIT 1",
288                                         intval(local_user())
289                                 );
290                                 if (DBA::isResult($r)) {
291                                         $eacct = $r[0];
292                                         $mb = Email::constructMailboxName($eacct);
293
294                                         if (strlen($eacct['server'])) {
295                                                 $dcrpass = '';
296                                                 openssl_private_decrypt(hex2bin($eacct['pass']), $dcrpass, $a->user['prvkey']);
297                                                 $mbox = Email::connect($mb, $mail_user, $dcrpass);
298                                                 unset($dcrpass);
299                                                 if (!$mbox) {
300                                                         $failed = true;
301                                                         notice(L10n::t('Failed to connect with email account using the settings provided.') . EOL);
302                                                 }
303                                         }
304                                 }
305                                 if (!$failed) {
306                                         info(L10n::t('Email settings updated.') . EOL);
307                                 }
308                         }
309                 }
310
311                 Hook::callAll('connector_settings_post', $_POST);
312                 return;
313         }
314
315         if (($a->argc > 1) && ($a->argv[1] === 'features')) {
316                 BaseModule::checkFormSecurityTokenRedirectOnError('/settings/features', 'settings_features');
317                 foreach ($_POST as $k => $v) {
318                         if (strpos($k, 'feature_') === 0) {
319                                 PConfig::set(local_user(), 'feature', substr($k, 8), ((intval($v)) ? 1 : 0));
320                         }
321                 }
322                 info(L10n::t('Features updated') . EOL);
323                 return;
324         }
325
326         if (($a->argc > 1) && ($a->argv[1] === 'display')) {
327                 BaseModule::checkFormSecurityTokenRedirectOnError('/settings/display', 'settings_display');
328
329                 $theme             = !empty($_POST['theme'])             ? Strings::escapeTags(trim($_POST['theme']))        : $a->user['theme'];
330                 $mobile_theme      = !empty($_POST['mobile_theme'])      ? Strings::escapeTags(trim($_POST['mobile_theme'])) : '';
331                 $nosmile           = !empty($_POST['nosmile'])           ? intval($_POST['nosmile'])            : 0;
332                 $first_day_of_week = !empty($_POST['first_day_of_week']) ? intval($_POST['first_day_of_week'])  : 0;
333                 $noinfo            = !empty($_POST['noinfo'])            ? intval($_POST['noinfo'])             : 0;
334                 $infinite_scroll   = !empty($_POST['infinite_scroll'])   ? intval($_POST['infinite_scroll'])    : 0;
335                 $no_auto_update    = !empty($_POST['no_auto_update'])    ? intval($_POST['no_auto_update'])     : 0;
336                 $bandwidth_saver   = !empty($_POST['bandwidth_saver'])   ? intval($_POST['bandwidth_saver'])    : 0;
337                 $smart_threading   = !empty($_POST['smart_threading'])   ? intval($_POST['smart_threading'])    : 0;
338                 $nowarn_insecure   = !empty($_POST['nowarn_insecure'])   ? intval($_POST['nowarn_insecure'])    : 0;
339                 $browser_update    = !empty($_POST['browser_update'])    ? intval($_POST['browser_update'])     : 0;
340                 if ($browser_update != -1) {
341                         $browser_update = $browser_update * 1000;
342                         if ($browser_update < 10000) {
343                                 $browser_update = 10000;
344                         }
345                 }
346
347                 $itemspage_network = !empty($_POST['itemspage_network'])  ? intval($_POST['itemspage_network'])  : 40;
348                 if ($itemspage_network > 100) {
349                         $itemspage_network = 100;
350                 }
351                 $itemspage_mobile_network = !empty($_POST['itemspage_mobile_network']) ? intval($_POST['itemspage_mobile_network']) : 20;
352                 if ($itemspage_mobile_network > 100) {
353                         $itemspage_mobile_network = 100;
354                 }
355
356                 if ($mobile_theme !== '') {
357                         PConfig::set(local_user(), 'system', 'mobile_theme', $mobile_theme);
358                 }
359
360                 PConfig::set(local_user(), 'system', 'nowarn_insecure'         , $nowarn_insecure);
361                 PConfig::set(local_user(), 'system', 'update_interval'         , $browser_update);
362                 PConfig::set(local_user(), 'system', 'itemspage_network'       , $itemspage_network);
363                 PConfig::set(local_user(), 'system', 'itemspage_mobile_network', $itemspage_mobile_network);
364                 PConfig::set(local_user(), 'system', 'no_smilies'              , $nosmile);
365                 PConfig::set(local_user(), 'system', 'first_day_of_week'       , $first_day_of_week);
366                 PConfig::set(local_user(), 'system', 'ignore_info'             , $noinfo);
367                 PConfig::set(local_user(), 'system', 'infinite_scroll'         , $infinite_scroll);
368                 PConfig::set(local_user(), 'system', 'no_auto_update'          , $no_auto_update);
369                 PConfig::set(local_user(), 'system', 'bandwidth_saver'         , $bandwidth_saver);
370                 PConfig::set(local_user(), 'system', 'smart_threading'         , $smart_threading);
371
372                 if (in_array($theme, Theme::getAllowedList())) {
373                         if ($theme == $a->user['theme']) {
374                                 // call theme_post only if theme has not been changed
375                                 if (($themeconfigfile = get_theme_config_file($theme)) !== null) {
376                                         require_once $themeconfigfile;
377                                         theme_post($a);
378                                 }
379                         } else {
380                                 DBA::update('user', ['theme' => $theme], ['uid' => local_user()]);
381                         }
382                 } else {
383                         notice(L10n::t('The theme you chose isn\'t available.'));
384                 }
385
386                 Hook::callAll('display_settings_post', $_POST);
387                 $a->internalRedirect('settings/display');
388                 return; // NOTREACHED
389         }
390
391         BaseModule::checkFormSecurityTokenRedirectOnError('/settings', 'settings');
392
393         // Import Contacts from CSV file
394         if (!empty($_POST['importcontact-submit'])) {
395                 if (isset($_FILES['importcontact-filename'])) {
396                         // was there an error
397                         if ($_FILES['importcontact-filename']['error'] > 0) {
398                                 Logger::notice('Contact CSV file upload error');
399                                 info(L10n::t('Contact CSV file upload error'));
400                         } else {
401                                 $csvArray = array_map('str_getcsv', file($_FILES['importcontact-filename']['tmp_name']));
402                                 // import contacts
403                                 foreach ($csvArray as $csvRow) {
404                                         // The 1st row may, or may not contain the headers of the table
405                                         // We expect the 1st field of the row to contain either the URL
406                                         // or the handle of the account, therefore we check for either
407                                         // "http" or "@" to be present in the string.
408                                         // All other fields from the row will be ignored
409                                         if ((strpos($csvRow[0],'@') !== false) || (strpos($csvRow[0],'http') !== false)) {
410                                                 $arr = Contact::createFromProbe($_SESSION['uid'], $csvRow[0], '', false);
411                                         }
412                                 }
413                                 info(L10n::t('Importing Contacts done'));
414                                 // delete temp file
415                                 unlink($filename);
416                         }
417                 }
418         }
419
420         if (!empty($_POST['resend_relocate'])) {
421                 Worker::add(PRIORITY_HIGH, 'Notifier', Delivery::RELOCATION, local_user());
422                 info(L10n::t("Relocate message has been send to your contacts"));
423                 $a->internalRedirect('settings');
424         }
425
426         Hook::callAll('settings_post', $_POST);
427
428         if (!empty($_POST['password']) || !empty($_POST['confirm'])) {
429                 $newpass = $_POST['password'];
430                 $confirm = $_POST['confirm'];
431
432                 try {
433                         if ($newpass != $confirm) {
434                                 throw new Exception(L10n::t('Passwords do not match.'));
435                         }
436
437                         //  check if the old password was supplied correctly before changing it to the new value
438                         User::getIdFromPasswordAuthentication(local_user(), $_POST['opassword']);
439
440                         $result = User::updatePassword(local_user(), $newpass);
441                         if (!DBA::isResult($result)) {
442                                 throw new Exception(L10n::t('Password update failed. Please try again.'));
443                         }
444
445                         info(L10n::t('Password changed.'));
446                 } catch (Exception $e) {
447                         notice($e->getMessage());
448                         notice(L10n::t('Password unchanged.'));
449                 }
450         }
451
452         $username         = (!empty($_POST['username'])   ? Strings::escapeTags(trim($_POST['username']))     : '');
453         $email            = (!empty($_POST['email'])      ? Strings::escapeTags(trim($_POST['email']))        : '');
454         $timezone         = (!empty($_POST['timezone'])   ? Strings::escapeTags(trim($_POST['timezone']))     : '');
455         $language         = (!empty($_POST['language'])   ? Strings::escapeTags(trim($_POST['language']))     : '');
456
457         $defloc           = (!empty($_POST['defloc'])     ? Strings::escapeTags(trim($_POST['defloc']))       : '');
458         $maxreq           = (!empty($_POST['maxreq'])     ? intval($_POST['maxreq'])             : 0);
459         $expire           = (!empty($_POST['expire'])     ? intval($_POST['expire'])             : 0);
460         $def_gid          = (!empty($_POST['group-selection']) ? intval($_POST['group-selection']) : 0);
461
462
463         $expire_items     = (!empty($_POST['expire_items']) ? intval($_POST['expire_items'])     : 0);
464         $expire_notes     = (!empty($_POST['expire_notes']) ? intval($_POST['expire_notes'])     : 0);
465         $expire_starred   = (!empty($_POST['expire_starred']) ? intval($_POST['expire_starred']) : 0);
466         $expire_photos    = (!empty($_POST['expire_photos'])? intval($_POST['expire_photos'])    : 0);
467         $expire_network_only    = (!empty($_POST['expire_network_only'])? intval($_POST['expire_network_only'])  : 0);
468
469         $delete_openid    = ((!empty($_POST['delete_openid']) && (intval($_POST['delete_openid']) == 1)) ? 1: 0);
470
471         $allow_location   = ((!empty($_POST['allow_location']) && (intval($_POST['allow_location']) == 1)) ? 1: 0);
472         $publish          = ((!empty($_POST['profile_in_directory']) && (intval($_POST['profile_in_directory']) == 1)) ? 1: 0);
473         $net_publish      = ((!empty($_POST['profile_in_netdirectory']) && (intval($_POST['profile_in_netdirectory']) == 1)) ? 1: 0);
474         $old_visibility   = ((!empty($_POST['visibility']) && (intval($_POST['visibility']) == 1)) ? 1 : 0);
475         $account_type     = ((!empty($_POST['account-type']) && (intval($_POST['account-type']))) ? intval($_POST['account-type']) : 0);
476         $page_flags       = ((!empty($_POST['page-flags']) && (intval($_POST['page-flags']))) ? intval($_POST['page-flags']) : 0);
477         $blockwall        = ((!empty($_POST['blockwall']) && (intval($_POST['blockwall']) == 1)) ? 0: 1); // this setting is inverted!
478         $blocktags        = ((!empty($_POST['blocktags']) && (intval($_POST['blocktags']) == 1)) ? 0: 1); // this setting is inverted!
479         $unkmail          = ((!empty($_POST['unkmail']) && (intval($_POST['unkmail']) == 1)) ? 1: 0);
480         $cntunkmail       = (!empty($_POST['cntunkmail']) ? intval($_POST['cntunkmail']) : 0);
481         $suggestme        = (!empty($_POST['suggestme']) ? intval($_POST['suggestme'])  : 0);
482         $hide_friends     = (($_POST['hide-friends'] == 1) ? 1: 0);
483         $hidewall         = (($_POST['hidewall'] == 1) ? 1: 0);
484
485         $email_textonly   = (($_POST['email_textonly'] == 1) ? 1 : 0);
486         $detailed_notif   = (($_POST['detailed_notif'] == 1) ? 1 : 0);
487
488         $notify = 0;
489
490         if (!empty($_POST['notify1'])) {
491                 $notify += intval($_POST['notify1']);
492         }
493         if (!empty($_POST['notify2'])) {
494                 $notify += intval($_POST['notify2']);
495         }
496         if (!empty($_POST['notify3'])) {
497                 $notify += intval($_POST['notify3']);
498         }
499         if (!empty($_POST['notify4'])) {
500                 $notify += intval($_POST['notify4']);
501         }
502         if (!empty($_POST['notify5'])) {
503                 $notify += intval($_POST['notify5']);
504         }
505         if (!empty($_POST['notify6'])) {
506                 $notify += intval($_POST['notify6']);
507         }
508         if (!empty($_POST['notify7'])) {
509                 $notify += intval($_POST['notify7']);
510         }
511         if (!empty($_POST['notify8'])) {
512                 $notify += intval($_POST['notify8']);
513         }
514
515         // Adjust the page flag if the account type doesn't fit to the page flag.
516         if (($account_type == User::ACCOUNT_TYPE_PERSON) && !in_array($page_flags, [User::PAGE_FLAGS_NORMAL, User::PAGE_FLAGS_SOAPBOX, User::PAGE_FLAGS_FREELOVE])) {
517                 $page_flags = User::PAGE_FLAGS_NORMAL;
518         } elseif (($account_type == User::ACCOUNT_TYPE_ORGANISATION) && !in_array($page_flags, [User::PAGE_FLAGS_SOAPBOX])) {
519                 $page_flags = User::PAGE_FLAGS_SOAPBOX;
520         } elseif (($account_type == User::ACCOUNT_TYPE_NEWS) && !in_array($page_flags, [User::PAGE_FLAGS_SOAPBOX])) {
521                 $page_flags = User::PAGE_FLAGS_SOAPBOX;
522         } elseif (($account_type == User::ACCOUNT_TYPE_COMMUNITY) && !in_array($page_flags, [User::PAGE_FLAGS_COMMUNITY, User::PAGE_FLAGS_PRVGROUP])) {
523                 $page_flags = User::PAGE_FLAGS_COMMUNITY;
524         }
525
526         $err = '';
527
528         if ($username != $a->user['username']) {
529                 if (strlen($username) > 40) {
530                         $err .= L10n::t(' Please use a shorter name.');
531                 }
532                 if (strlen($username) < 3) {
533                         $err .= L10n::t(' Name too short.');
534                 }
535         }
536
537         if ($email != $a->user['email']) {
538                 //  check for the correct password
539                 if (!User::authenticate(intval(local_user()), $_POST['mpassword'])) {
540                         $err .= L10n::t('Wrong Password') . EOL;
541                         $email = $a->user['email'];
542                 }
543                 //  check the email is valid
544                 if (!filter_var($email, FILTER_VALIDATE_EMAIL)) {
545                         $err .= L10n::t('Invalid email.');
546                 }
547                 //  ensure new email is not the admin mail
548                 if (Config::get('config', 'admin_email')) {
549                         $adminlist = explode(",", str_replace(" ", "", strtolower(Config::get('config', 'admin_email'))));
550                         if (in_array(strtolower($email), $adminlist)) {
551                                 $err .= L10n::t('Cannot change to that email.');
552                                 $email = $a->user['email'];
553                         }
554                 }
555         }
556
557         if (strlen($err)) {
558                 notice($err . EOL);
559                 return;
560         }
561
562         if (($timezone != $a->user['timezone']) && strlen($timezone)) {
563                 date_default_timezone_set($timezone);
564         }
565
566         /** @var ACLFormatter $aclFormatter */
567         $aclFormatter = BaseObject::getClass(ACLFormatter::class);
568
569         $str_group_allow   = !empty($_POST['group_allow'])   ? $aclFormatter->toString($_POST['group_allow'])   : '';
570         $str_contact_allow = !empty($_POST['contact_allow']) ? $aclFormatter->toString($_POST['contact_allow']) : '';
571         $str_group_deny    = !empty($_POST['group_deny'])    ? $aclFormatter->toString($_POST['group_deny'])    : '';
572         $str_contact_deny  = !empty($_POST['contact_deny'])  ? $aclFormatter->toString($_POST['contact_deny'])  : '';
573
574         PConfig::set(local_user(), 'expire', 'items', $expire_items);
575         PConfig::set(local_user(), 'expire', 'notes', $expire_notes);
576         PConfig::set(local_user(), 'expire', 'starred', $expire_starred);
577         PConfig::set(local_user(), 'expire', 'photos', $expire_photos);
578         PConfig::set(local_user(), 'expire', 'network_only', $expire_network_only);
579
580         PConfig::set(local_user(), 'system', 'suggestme', $suggestme);
581
582         PConfig::set(local_user(), 'system', 'email_textonly', $email_textonly);
583         PConfig::set(local_user(), 'system', 'detailed_notif', $detailed_notif);
584
585         if ($page_flags == User::PAGE_FLAGS_PRVGROUP) {
586                 $hidewall = 1;
587                 if (!$str_contact_allow && !$str_group_allow && !$str_contact_deny && !$str_group_deny) {
588                         if ($def_gid) {
589                                 info(L10n::t('Private forum has no privacy permissions. Using default privacy group.'). EOL);
590                                 $str_group_allow = '<' . $def_gid . '>';
591                         } else {
592                                 notice(L10n::t('Private forum has no privacy permissions and no default privacy group.') . EOL);
593                         }
594                 }
595         }
596
597         $fields = ['username' => $username, 'email' => $email, 'timezone' => $timezone,
598                 'allow_cid' => $str_contact_allow, 'allow_gid' => $str_group_allow, 'deny_cid' => $str_contact_deny, 'deny_gid' => $str_group_deny,
599                 'notify-flags' => $notify, 'page-flags' => $notify, 'account-type' => $account_type, 'default-location' => $defloc,
600                 'allow_location' => $allow_location, 'maxreq' => $maxreq, 'expire' => $expire, 'def_gid' => $def_gid, 'blockwall' => $blockwall,
601                 'hidewall' => $hide_wall, 'blocktags' => $blocktags, 'unkmail' => $unkmail, 'cntunkmail' => $cntunkmail, 'language' => $language];
602
603         if ($delete_openid) {
604                 $fields['openid'] = '';
605                 $fields['openidserver'] = '';
606         }
607
608         if (DBA::update('user', $fields, ['uid' => local_user()])) {
609                 info(L10n::t('Settings updated.') . EOL);
610         }
611
612         // clear session language
613         unset($_SESSION['language']);
614
615         q("UPDATE `profile`
616                 SET `publish` = %d,
617                 `name` = '%s',
618                 `net-publish` = %d,
619                 `hide-friends` = %d
620                 WHERE `is-default` = 1 AND `uid` = %d",
621                 intval($publish),
622                 DBA::escape($username),
623                 intval($net_publish),
624                 intval($hide_friends),
625                 intval(local_user())
626         );
627
628         Contact::updateSelfFromUserID(local_user());
629
630         if (($old_visibility != $net_publish) || ($page_flags != $old_page_flags)) {
631                 // Update global directory in background
632                 $url = $_SESSION['my_url'];
633                 if ($url && strlen(Config::get('system', 'directory'))) {
634                         Worker::add(PRIORITY_LOW, "Directory", $url);
635                 }
636         }
637
638         Worker::add(PRIORITY_LOW, 'ProfileUpdate', local_user());
639
640         // Update the global contact for the user
641         GContact::updateForUser(local_user());
642
643         $a->internalRedirect('settings');
644         return; // NOTREACHED
645 }
646
647
648 function settings_content(App $a)
649 {
650         $o = '';
651         Nav::setSelected('settings');
652
653         if (!local_user()) {
654                 //notice(L10n::t('Permission denied.') . EOL);
655                 return Login::form();
656         }
657
658         if (!empty($_SESSION['submanage'])) {
659                 notice(L10n::t('Permission denied.') . EOL);
660                 return;
661         }
662
663         if (($a->argc > 1) && ($a->argv[1] === 'oauth')) {
664                 if (($a->argc > 2) && ($a->argv[2] === 'add')) {
665                         $tpl = Renderer::getMarkupTemplate('settings/oauth_edit.tpl');
666                         $o .= Renderer::replaceMacros($tpl, [
667                                 '$form_security_token' => BaseModule::getFormSecurityToken("settings_oauth"),
668                                 '$title'        => L10n::t('Add application'),
669                                 '$submit'       => L10n::t('Save Settings'),
670                                 '$cancel'       => L10n::t('Cancel'),
671                                 '$name'         => ['name', L10n::t('Name'), '', ''],
672                                 '$key'          => ['key', L10n::t('Consumer Key'), '', ''],
673                                 '$secret'       => ['secret', L10n::t('Consumer Secret'), '', ''],
674                                 '$redirect'     => ['redirect', L10n::t('Redirect'), '', ''],
675                                 '$icon'         => ['icon', L10n::t('Icon url'), '', ''],
676                         ]);
677                         return $o;
678                 }
679
680                 if (($a->argc > 3) && ($a->argv[2] === 'edit')) {
681                         $r = q("SELECT * FROM clients WHERE client_id='%s' AND uid=%d",
682                                         DBA::escape($a->argv[3]),
683                                         local_user());
684
685                         if (!DBA::isResult($r)) {
686                                 notice(L10n::t("You can't edit this application."));
687                                 return;
688                         }
689                         $app = $r[0];
690
691                         $tpl = Renderer::getMarkupTemplate('settings/oauth_edit.tpl');
692                         $o .= Renderer::replaceMacros($tpl, [
693                                 '$form_security_token' => BaseModule::getFormSecurityToken("settings_oauth"),
694                                 '$title'        => L10n::t('Add application'),
695                                 '$submit'       => L10n::t('Update'),
696                                 '$cancel'       => L10n::t('Cancel'),
697                                 '$name'         => ['name', L10n::t('Name'), $app['name'] , ''],
698                                 '$key'          => ['key', L10n::t('Consumer Key'), $app['client_id'], ''],
699                                 '$secret'       => ['secret', L10n::t('Consumer Secret'), $app['pw'], ''],
700                                 '$redirect'     => ['redirect', L10n::t('Redirect'), $app['redirect_uri'], ''],
701                                 '$icon'         => ['icon', L10n::t('Icon url'), $app['icon'], ''],
702                         ]);
703                         return $o;
704                 }
705
706                 if (($a->argc > 3) && ($a->argv[2] === 'delete')) {
707                         BaseModule::checkFormSecurityTokenRedirectOnError('/settings/oauth', 'settings_oauth', 't');
708
709                         DBA::delete('clients', ['client_id' => $a->argv[3], 'uid' => local_user()]);
710                         $a->internalRedirect('settings/oauth/', true);
711                         return;
712                 }
713
714                 /// @TODO validate result with DBA::isResult()
715                 $r = q("SELECT clients.*, tokens.id as oauth_token, (clients.uid=%d) AS my
716                                 FROM clients
717                                 LEFT JOIN tokens ON clients.client_id=tokens.client_id
718                                 WHERE clients.uid IN (%d, 0)",
719                                 local_user(),
720                                 local_user());
721
722
723                 $tpl = Renderer::getMarkupTemplate('settings/oauth.tpl');
724                 $o .= Renderer::replaceMacros($tpl, [
725                         '$form_security_token' => BaseModule::getFormSecurityToken("settings_oauth"),
726                         '$baseurl'      => $a->getBaseURL(true),
727                         '$title'        => L10n::t('Connected Apps'),
728                         '$add'          => L10n::t('Add application'),
729                         '$edit'         => L10n::t('Edit'),
730                         '$delete'               => L10n::t('Delete'),
731                         '$consumerkey' => L10n::t('Client key starts with'),
732                         '$noname'       => L10n::t('No name'),
733                         '$remove'       => L10n::t('Remove authorization'),
734                         '$apps'         => $r,
735                 ]);
736                 return $o;
737         }
738
739         if (($a->argc > 1) && ($a->argv[1] === 'addon')) {
740                 $settings_addons = "";
741
742                 $r = q("SELECT * FROM `hook` WHERE `hook` = 'addon_settings' ");
743                 if (!DBA::isResult($r)) {
744                         $settings_addons = L10n::t('No Addon settings configured');
745                 }
746
747                 Hook::callAll('addon_settings', $settings_addons);
748
749
750                 $tpl = Renderer::getMarkupTemplate('settings/addons.tpl');
751                 $o .= Renderer::replaceMacros($tpl, [
752                         '$form_security_token' => BaseModule::getFormSecurityToken("settings_addon"),
753                         '$title'        => L10n::t('Addon Settings'),
754                         '$settings_addons' => $settings_addons
755                 ]);
756                 return $o;
757         }
758
759         if (($a->argc > 1) && ($a->argv[1] === 'features')) {
760
761                 $arr = [];
762                 $features = Feature::get();
763                 foreach ($features as $fname => $fdata) {
764                         $arr[$fname] = [];
765                         $arr[$fname][0] = $fdata[0];
766                         foreach (array_slice($fdata,1) as $f) {
767                                 $arr[$fname][1][] = ['feature_' .$f[0], $f[1],((intval(Feature::isEnabled(local_user(), $f[0]))) ? "1" : ''), $f[2],[L10n::t('Off'), L10n::t('On')]];
768                         }
769                 }
770
771                 $tpl = Renderer::getMarkupTemplate('settings/features.tpl');
772                 $o .= Renderer::replaceMacros($tpl, [
773                         '$form_security_token' => BaseModule::getFormSecurityToken("settings_features"),
774                         '$title'               => L10n::t('Additional Features'),
775                         '$features'            => $arr,
776                         '$submit'              => L10n::t('Save Settings'),
777                 ]);
778                 return $o;
779         }
780
781         if (($a->argc > 1) && ($a->argv[1] === 'connectors')) {
782                 $accept_only_sharer        = intval(PConfig::get(local_user(), 'system', 'accept_only_sharer'));
783                 $disable_cw                = intval(PConfig::get(local_user(), 'system', 'disable_cw'));
784                 $no_intelligent_shortening = intval(PConfig::get(local_user(), 'system', 'no_intelligent_shortening'));
785                 $ostatus_autofriend        = intval(PConfig::get(local_user(), 'system', 'ostatus_autofriend'));
786                 $default_group             = PConfig::get(local_user(), 'ostatus', 'default_group');
787                 $legacy_contact            = PConfig::get(local_user(), 'ostatus', 'legacy_contact');
788
789                 if (!empty($legacy_contact)) {
790                         /// @todo Isn't it supposed to be a $a->internalRedirect() call?
791                         $a->page['htmlhead'] = '<meta http-equiv="refresh" content="0; URL=' . System::baseUrl().'/ostatus_subscribe?url=' . urlencode($legacy_contact) . '">';
792                 }
793
794                 $settings_connectors = '';
795                 Hook::callAll('connector_settings', $settings_connectors);
796
797                 if (is_site_admin()) {
798                         $diasp_enabled = L10n::t('Built-in support for %s connectivity is %s', L10n::t('Diaspora'), ((Config::get('system', 'diaspora_enabled')) ? L10n::t('enabled') : L10n::t('disabled')));
799                         $ostat_enabled = L10n::t('Built-in support for %s connectivity is %s', L10n::t("GNU Social \x28OStatus\x29"), ((Config::get('system', 'ostatus_disabled')) ? L10n::t('disabled') : L10n::t('enabled')));
800                 } else {
801                         $diasp_enabled = "";
802                         $ostat_enabled = "";
803                 }
804
805                 $mail_disabled = ((function_exists('imap_open') && (!Config::get('system', 'imap_disabled'))) ? 0 : 1);
806                 if (Config::get('system', 'dfrn_only')) {
807                         $mail_disabled = 1;
808                 }
809                 if (!$mail_disabled) {
810                         $r = q("SELECT * FROM `mailacct` WHERE `uid` = %d LIMIT 1",
811                                 local_user()
812                         );
813                 } else {
814                         $r = null;
815                 }
816
817                 $mail_server       = ((DBA::isResult($r)) ? $r[0]['server'] : '');
818                 $mail_port         = ((DBA::isResult($r) && intval($r[0]['port'])) ? intval($r[0]['port']) : '');
819                 $mail_ssl          = ((DBA::isResult($r)) ? $r[0]['ssltype'] : '');
820                 $mail_user         = ((DBA::isResult($r)) ? $r[0]['user'] : '');
821                 $mail_replyto      = ((DBA::isResult($r)) ? $r[0]['reply_to'] : '');
822                 $mail_pubmail      = ((DBA::isResult($r)) ? $r[0]['pubmail'] : 0);
823                 $mail_action       = ((DBA::isResult($r)) ? $r[0]['action'] : 0);
824                 $mail_movetofolder = ((DBA::isResult($r)) ? $r[0]['movetofolder'] : '');
825                 $mail_chk          = ((DBA::isResult($r)) ? $r[0]['last_check'] : DBA::NULL_DATETIME);
826
827
828                 $tpl = Renderer::getMarkupTemplate('settings/connectors.tpl');
829
830                 $mail_disabled_message = (($mail_disabled) ? L10n::t('Email access is disabled on this site.') : '');
831
832                 $o .= Renderer::replaceMacros($tpl, [
833                         '$form_security_token' => BaseModule::getFormSecurityToken("settings_connectors"),
834
835                         '$title'        => L10n::t('Social Networks'),
836
837                         '$diasp_enabled' => $diasp_enabled,
838                         '$ostat_enabled' => $ostat_enabled,
839
840                         '$general_settings' => L10n::t('General Social Media Settings'),
841                         '$accept_only_sharer' => ['accept_only_sharer', L10n::t('Accept only top level posts by contacts you follow'), $accept_only_sharer, L10n::t('The system does an auto completion of threads when a comment arrives. This has got the side effect that you can receive posts that had been started by a non-follower but had been commented by someone you follow. This setting deactivates this behaviour. When activated, you strictly only will receive posts from people you really do follow.')],
842                         '$disable_cw' => ['disable_cw', L10n::t('Disable Content Warning'), $disable_cw, L10n::t('Users on networks like Mastodon or Pleroma are able to set a content warning field which collapse their post by default. This disables the automatic collapsing and sets the content warning as the post title. Doesn\'t affect any other content filtering you eventually set up.')],
843                         '$no_intelligent_shortening' => ['no_intelligent_shortening', L10n::t('Disable intelligent shortening'), $no_intelligent_shortening, L10n::t('Normally the system tries to find the best link to add to shortened posts. If this option is enabled then every shortened post will always point to the original friendica post.')],
844                         '$ostatus_autofriend' => ['snautofollow', L10n::t("Automatically follow any GNU Social \x28OStatus\x29 followers/mentioners"), $ostatus_autofriend, L10n::t('If you receive a message from an unknown OStatus user, this option decides what to do. If it is checked, a new contact will be created for every unknown user.')],
845                         '$default_group' => Group::displayGroupSelection(local_user(), $default_group, L10n::t("Default group for OStatus contacts")),
846                         '$legacy_contact' => ['legacy_contact', L10n::t('Your legacy GNU Social account'), $legacy_contact, L10n::t("If you enter your old GNU Social/Statusnet account name here \x28in the format user@domain.tld\x29, your contacts will be added automatically. The field will be emptied when done.")],
847
848                         '$repair_ostatus_url' => System::baseUrl() . '/repair_ostatus',
849                         '$repair_ostatus_text' => L10n::t('Repair OStatus subscriptions'),
850
851                         '$settings_connectors' => $settings_connectors,
852
853                         '$h_imap' => L10n::t('Email/Mailbox Setup'),
854                         '$imap_desc' => L10n::t("If you wish to communicate with email contacts using this service \x28optional\x29, please specify how to connect to your mailbox."),
855                         '$imap_lastcheck' => ['imap_lastcheck', L10n::t('Last successful email check:'), $mail_chk, ''],
856                         '$mail_disabled' => $mail_disabled_message,
857                         '$mail_server'  => ['mail_server',  L10n::t('IMAP server name:'), $mail_server, ''],
858                         '$mail_port'    => ['mail_port',         L10n::t('IMAP port:'), $mail_port, ''],
859                         '$mail_ssl'             => ['mail_ssl',          L10n::t('Security:'), strtoupper($mail_ssl), '', ['notls'=>L10n::t('None'), 'TLS'=>'TLS', 'SSL'=>'SSL']],
860                         '$mail_user'    => ['mail_user',    L10n::t('Email login name:'), $mail_user, ''],
861                         '$mail_pass'    => ['mail_pass',         L10n::t('Email password:'), '', ''],
862                         '$mail_replyto' => ['mail_replyto', L10n::t('Reply-to address:'), $mail_replyto, 'Optional'],
863                         '$mail_pubmail' => ['mail_pubmail', L10n::t('Send public posts to all email contacts:'), $mail_pubmail, ''],
864                         '$mail_action'  => ['mail_action',       L10n::t('Action after import:'), $mail_action, '', [0=>L10n::t('None'), /*1=>L10n::t('Delete'),*/ 2=>L10n::t('Mark as seen'), 3=>L10n::t('Move to folder')]],
865                         '$mail_movetofolder'    => ['mail_movetofolder',         L10n::t('Move to folder:'), $mail_movetofolder, ''],
866                         '$submit' => L10n::t('Save Settings'),
867                 ]);
868
869                 Hook::callAll('display_settings', $o);
870                 return $o;
871         }
872
873         /*
874          * DISPLAY SETTINGS
875          */
876         if (($a->argc > 1) && ($a->argv[1] === 'display')) {
877                 $default_theme = Config::get('system', 'theme');
878                 if (!$default_theme) {
879                         $default_theme = 'default';
880                 }
881                 $default_mobile_theme = Config::get('system', 'mobile-theme');
882                 if (!$default_mobile_theme) {
883                         $default_mobile_theme = 'none';
884                 }
885
886                 $allowed_themes = Theme::getAllowedList();
887
888                 $themes = [];
889                 $mobile_themes = ["---" => L10n::t('No special theme for mobile devices')];
890                 foreach ($allowed_themes as $theme) {
891                         $is_experimental = file_exists('view/theme/' . $theme . '/experimental');
892                         $is_unsupported  = file_exists('view/theme/' . $theme . '/unsupported');
893                         $is_mobile       = file_exists('view/theme/' . $theme . '/mobile');
894                         if (!$is_experimental || ($is_experimental && (Config::get('experimentals', 'exp_themes')==1 || is_null(Config::get('experimentals', 'exp_themes'))))) {
895                                 $theme_name = ucfirst($theme);
896                                 if ($is_unsupported) {
897                                         $theme_name = L10n::t('%s - (Unsupported)', $theme_name);
898                                 } elseif ($is_experimental) {
899                                         $theme_name = L10n::t('%s - (Experimental)', $theme_name);
900                                 }
901
902                                 if ($is_mobile) {
903                                         $mobile_themes[$theme] = $theme_name;
904                                 } else {
905                                         $themes[$theme] = $theme_name;
906                                 }
907                         }
908                 }
909
910                 $theme_selected        = $a->user['theme'] ?: $default_theme;
911                 $mobile_theme_selected = Session::get('mobile-theme', $default_mobile_theme);
912
913                 $nowarn_insecure = intval(PConfig::get(local_user(), 'system', 'nowarn_insecure'));
914
915                 $browser_update = intval(PConfig::get(local_user(), 'system', 'update_interval'));
916                 if (intval($browser_update) != -1) {
917                         $browser_update = (($browser_update == 0) ? 40 : $browser_update / 1000); // default if not set: 40 seconds
918                 }
919
920                 $itemspage_network = intval(PConfig::get(local_user(), 'system', 'itemspage_network'));
921                 $itemspage_network = (($itemspage_network > 0 && $itemspage_network < 101) ? $itemspage_network : 40); // default if not set: 40 items
922                 $itemspage_mobile_network = intval(PConfig::get(local_user(), 'system', 'itemspage_mobile_network'));
923                 $itemspage_mobile_network = (($itemspage_mobile_network > 0 && $itemspage_mobile_network < 101) ? $itemspage_mobile_network : 20); // default if not set: 20 items
924
925                 $nosmile = PConfig::get(local_user(), 'system', 'no_smilies', 0);
926                 $first_day_of_week = PConfig::get(local_user(), 'system', 'first_day_of_week', 0);
927                 $weekdays = [0 => L10n::t("Sunday"), 1 => L10n::t("Monday")];
928
929                 $noinfo = PConfig::get(local_user(), 'system', 'ignore_info', 0);
930                 $infinite_scroll = PConfig::get(local_user(), 'system', 'infinite_scroll', 0);
931                 $no_auto_update = PConfig::get(local_user(), 'system', 'no_auto_update', 0);
932                 $bandwidth_saver = PConfig::get(local_user(), 'system', 'bandwidth_saver', 0);
933                 $smart_threading = PConfig::get(local_user(), 'system', 'smart_threading', 0);
934
935                 $theme_config = "";
936                 if (($themeconfigfile = get_theme_config_file($theme_selected)) !== null) {
937                         require_once $themeconfigfile;
938                         $theme_config = theme_content($a);
939                 }
940
941                 $tpl = Renderer::getMarkupTemplate('settings/display.tpl');
942                 $o = Renderer::replaceMacros($tpl, [
943                         '$ptitle'       => L10n::t('Display Settings'),
944                         '$form_security_token' => BaseModule::getFormSecurityToken("settings_display"),
945                         '$submit'       => L10n::t('Save Settings'),
946                         '$baseurl' => System::baseUrl(true),
947                         '$uid' => local_user(),
948
949                         '$theme'        => ['theme', L10n::t('Display Theme:'), $theme_selected, '', $themes, true],
950                         '$mobile_theme' => ['mobile_theme', L10n::t('Mobile Theme:'), $mobile_theme_selected, '', $mobile_themes, false],
951                         '$nowarn_insecure' => ['nowarn_insecure',  L10n::t('Suppress warning of insecure networks'), $nowarn_insecure, L10n::t("Should the system suppress the warning that the current group contains members of networks that can't receive non public postings.")],
952                         '$ajaxint'   => ['browser_update',  L10n::t("Update browser every xx seconds"), $browser_update, L10n::t('Minimum of 10 seconds. Enter -1 to disable it.')],
953                         '$itemspage_network'   => ['itemspage_network',  L10n::t("Number of items to display per page:"), $itemspage_network, L10n::t('Maximum of 100 items')],
954                         '$itemspage_mobile_network'   => ['itemspage_mobile_network',  L10n::t("Number of items to display per page when viewed from mobile device:"), $itemspage_mobile_network, L10n::t('Maximum of 100 items')],
955                         '$nosmile'      => ['nosmile', L10n::t("Don't show emoticons"), $nosmile, ''],
956                         '$calendar_title' => L10n::t('Calendar'),
957                         '$first_day_of_week'    => ['first_day_of_week', L10n::t('Beginning of week:'), $first_day_of_week, '', $weekdays, false],
958                         '$noinfo'       => ['noinfo', L10n::t("Don't show notices"), $noinfo, ''],
959                         '$infinite_scroll'      => ['infinite_scroll', L10n::t("Infinite scroll"), $infinite_scroll, ''],
960                         '$no_auto_update'       => ['no_auto_update', L10n::t("Automatic updates only at the top of the network page"), $no_auto_update, L10n::t('When disabled, the network page is updated all the time, which could be confusing while reading.')],
961                         '$bandwidth_saver' => ['bandwidth_saver', L10n::t('Bandwidth Saver Mode'), $bandwidth_saver, L10n::t('When enabled, embedded content is not displayed on automatic updates, they only show on page reload.')],
962                         '$smart_threading' => ['smart_threading', L10n::t('Smart Threading'), $smart_threading, L10n::t('When enabled, suppress extraneous thread indentation while keeping it where it matters. Only works if threading is available and enabled.')],
963
964                         '$d_tset' => L10n::t('General Theme Settings'),
965                         '$d_ctset' => L10n::t('Custom Theme Settings'),
966                         '$d_cset' => L10n::t('Content Settings'),
967                         'stitle' => L10n::t('Theme settings'),
968                         '$theme_config' => $theme_config,
969                 ]);
970
971                 return $o;
972         }
973
974
975         /*
976          * ACCOUNT SETTINGS
977          */
978
979         $profile = DBA::selectFirst('profile', [], ['is-default' => true, 'uid' => local_user()]);
980         if (!DBA::isResult($profile)) {
981                 notice(L10n::t('Unable to find your profile. Please contact your admin.') . EOL);
982                 return;
983         }
984
985         $username   = $a->user['username'];
986         $email      = $a->user['email'];
987         $nickname   = $a->user['nickname'];
988         $timezone   = $a->user['timezone'];
989         $language   = $a->user['language'];
990         $notify     = $a->user['notify-flags'];
991         $defloc     = $a->user['default-location'];
992         $openid     = $a->user['openid'];
993         $maxreq     = $a->user['maxreq'];
994         $expire     = ((intval($a->user['expire'])) ? $a->user['expire'] : '');
995         $unkmail    = $a->user['unkmail'];
996         $cntunkmail = $a->user['cntunkmail'];
997
998         $expire_items = PConfig::get(local_user(), 'expire', 'items', true);
999         $expire_notes = PConfig::get(local_user(), 'expire', 'notes', true);
1000         $expire_starred = PConfig::get(local_user(), 'expire', 'starred', true);
1001         $expire_photos = PConfig::get(local_user(), 'expire', 'photos', false);
1002         $expire_network_only = PConfig::get(local_user(), 'expire', 'network_only', false);
1003         $suggestme = PConfig::get(local_user(), 'system', 'suggestme', false);
1004
1005         // nowarn_insecure
1006
1007         if (!strlen($a->user['timezone'])) {
1008                 $timezone = date_default_timezone_get();
1009         }
1010
1011         // Set the account type to "Community" when the page is a community page but the account type doesn't fit
1012         // This is only happening on the first visit after the update
1013         if (in_array($a->user['page-flags'], [User::PAGE_FLAGS_COMMUNITY, User::PAGE_FLAGS_PRVGROUP]) &&
1014                 ($a->user['account-type'] != User::ACCOUNT_TYPE_COMMUNITY))
1015                 $a->user['account-type'] = User::ACCOUNT_TYPE_COMMUNITY;
1016
1017         $pageset_tpl = Renderer::getMarkupTemplate('settings/pagetypes.tpl');
1018
1019         $pagetype = Renderer::replaceMacros($pageset_tpl, [
1020                 '$account_types'        => L10n::t("Account Types"),
1021                 '$user'                 => L10n::t("Personal Page Subtypes"),
1022                 '$community'            => L10n::t("Community Forum Subtypes"),
1023                 '$account_type'         => $a->user['account-type'],
1024                 '$type_person'          => User::ACCOUNT_TYPE_PERSON,
1025                 '$type_organisation'    => User::ACCOUNT_TYPE_ORGANISATION,
1026                 '$type_news'            => User::ACCOUNT_TYPE_NEWS,
1027                 '$type_community'       => User::ACCOUNT_TYPE_COMMUNITY,
1028
1029                 '$account_person'       => ['account-type', L10n::t('Personal Page'), User::ACCOUNT_TYPE_PERSON,
1030                                                                         L10n::t('Account for a personal profile.'),
1031                                                                         ($a->user['account-type'] == User::ACCOUNT_TYPE_PERSON)],
1032
1033                 '$account_organisation' => ['account-type', L10n::t('Organisation Page'), User::ACCOUNT_TYPE_ORGANISATION,
1034                                                                         L10n::t('Account for an organisation that automatically approves contact requests as "Followers".'),
1035                                                                         ($a->user['account-type'] == User::ACCOUNT_TYPE_ORGANISATION)],
1036
1037                 '$account_news'         => ['account-type', L10n::t('News Page'), User::ACCOUNT_TYPE_NEWS,
1038                                                                         L10n::t('Account for a news reflector that automatically approves contact requests as "Followers".'),
1039                                                                         ($a->user['account-type'] == User::ACCOUNT_TYPE_NEWS)],
1040
1041                 '$account_community'    => ['account-type', L10n::t('Community Forum'), User::ACCOUNT_TYPE_COMMUNITY,
1042                                                                         L10n::t('Account for community discussions.'),
1043                                                                         ($a->user['account-type'] == User::ACCOUNT_TYPE_COMMUNITY)],
1044
1045                 '$page_normal'          => ['page-flags', L10n::t('Normal Account Page'), User::PAGE_FLAGS_NORMAL,
1046                                                                         L10n::t('Account for a regular personal profile that requires manual approval of "Friends" and "Followers".'),
1047                                                                         ($a->user['page-flags'] == User::PAGE_FLAGS_NORMAL)],
1048
1049                 '$page_soapbox'         => ['page-flags', L10n::t('Soapbox Page'), User::PAGE_FLAGS_SOAPBOX,
1050                                                                         L10n::t('Account for a public profile that automatically approves contact requests as "Followers".'),
1051                                                                         ($a->user['page-flags'] == User::PAGE_FLAGS_SOAPBOX)],
1052
1053                 '$page_community'       => ['page-flags', L10n::t('Public Forum'), User::PAGE_FLAGS_COMMUNITY,
1054                                                                         L10n::t('Automatically approves all contact requests.'),
1055                                                                         ($a->user['page-flags'] == User::PAGE_FLAGS_COMMUNITY)],
1056
1057                 '$page_freelove'        => ['page-flags', L10n::t('Automatic Friend Page'), User::PAGE_FLAGS_FREELOVE,
1058                                                                         L10n::t('Account for a popular profile that automatically approves contact requests as "Friends".'),
1059                                                                         ($a->user['page-flags'] == User::PAGE_FLAGS_FREELOVE)],
1060
1061                 '$page_prvgroup'        => ['page-flags', L10n::t('Private Forum [Experimental]'), User::PAGE_FLAGS_PRVGROUP,
1062                                                                         L10n::t('Requires manual approval of contact requests.'),
1063                                                                         ($a->user['page-flags'] == User::PAGE_FLAGS_PRVGROUP)],
1064
1065
1066         ]);
1067
1068         $noid = Config::get('system', 'no_openid');
1069
1070         if ($noid) {
1071                 $openid_field = false;
1072         } else {
1073                 $openid_field = ['openid_url', L10n::t('OpenID:'), $openid, L10n::t("\x28Optional\x29 Allow this OpenID to login to this account."), "", "readonly", "url"];
1074         }
1075
1076         $opt_tpl = Renderer::getMarkupTemplate("field_yesno.tpl");
1077         if (Config::get('system', 'publish_all')) {
1078                 $profile_in_dir = '<input type="hidden" name="profile_in_directory" value="1" />';
1079         } else {
1080                 $profile_in_dir = Renderer::replaceMacros($opt_tpl, [
1081                         '$field' => ['profile_in_directory', L10n::t('Publish your default profile in your local site directory?'), $profile['publish'], L10n::t('Your profile will be published in this node\'s <a href="%s">local directory</a>. Your profile details may be publicly visible depending on the system settings.', System::baseUrl().'/directory'), [L10n::t('No'), L10n::t('Yes')]]
1082                 ]);
1083         }
1084
1085         if (strlen(Config::get('system', 'directory'))) {
1086                 $profile_in_net_dir = Renderer::replaceMacros($opt_tpl, [
1087                         '$field' => ['profile_in_netdirectory', L10n::t('Publish your default profile in the global social directory?'), $profile['net-publish'], L10n::t('Your profile will be published in the global friendica directories (e.g. <a href="%s">%s</a>). Your profile will be visible in public.', Config::get('system', 'directory'), Config::get('system', 'directory'))     . " " . L10n::t("This setting also determines whether Friendica will inform search engines that your profile should be indexed or not. Third-party search engines may or may not respect this setting."), [L10n::t('No'), L10n::t('Yes')]]
1088                 ]);
1089         } else {
1090                 $profile_in_net_dir = '';
1091         }
1092
1093         $hide_friends = Renderer::replaceMacros($opt_tpl, [
1094                 '$field' => ['hide-friends', L10n::t('Hide your contact/friend list from viewers of your default profile?'), $profile['hide-friends'], L10n::t('Your contact list won\'t be shown in your default profile page. You can decide to show your contact list separately for each additional profile you create'), [L10n::t('No'), L10n::t('Yes')]],
1095         ]);
1096
1097         $hide_wall = Renderer::replaceMacros($opt_tpl, [
1098                 '$field' => ['hidewall', L10n::t('Hide your profile details from anonymous viewers?'), $a->user['hidewall'], L10n::t('Anonymous visitors will only see your profile picture, your display name and the nickname you are using on your profile page. Your public posts and replies will still be accessible by other means.'), [L10n::t('No'), L10n::t('Yes')]],
1099         ]);
1100
1101         $blockwall = Renderer::replaceMacros($opt_tpl, [
1102                 '$field' => ['blockwall', L10n::t('Allow friends to post to your profile page?'), (intval($a->user['blockwall']) ? '0' : '1'), L10n::t('Your contacts may write posts on your profile wall. These posts will be distributed to your contacts'), [L10n::t('No'), L10n::t('Yes')]],
1103         ]);
1104
1105         $blocktags = Renderer::replaceMacros($opt_tpl, [
1106                 '$field' => ['blocktags', L10n::t('Allow friends to tag your posts?'), (intval($a->user['blocktags']) ? '0' : '1'), L10n::t('Your contacts can add additional tags to your posts.'), [L10n::t('No'), L10n::t('Yes')]],
1107         ]);
1108
1109         $suggestme = Renderer::replaceMacros($opt_tpl, [
1110                 '$field' => ['suggestme', L10n::t('Allow us to suggest you as a potential friend to new members?'), $suggestme, L10n::t('If you like, Friendica may suggest new members to add you as a contact.'), [L10n::t('No'), L10n::t('Yes')]],
1111         ]);
1112
1113         $unkmail = Renderer::replaceMacros($opt_tpl, [
1114                 '$field' => ['unkmail', L10n::t('Permit unknown people to send you private mail?'), $unkmail, L10n::t('Friendica network users may send you private messages even if they are not in your contact list.'), [L10n::t('No'), L10n::t('Yes')]],
1115         ]);
1116
1117         if (!$profile['publish'] && !$profile['net-publish']) {
1118                 info(L10n::t('Profile is <strong>not published</strong>.') . EOL);
1119         }
1120
1121         $tpl_addr = Renderer::getMarkupTemplate('settings/nick_set.tpl');
1122
1123         $prof_addr = Renderer::replaceMacros($tpl_addr,[
1124                 '$desc' => L10n::t("Your Identity Address is <strong>'%s'</strong> or '%s'.", $nickname . '@' . $a->getHostName() . $a->getURLPath(), System::baseUrl() . '/profile/' . $nickname),
1125                 '$basepath' => $a->getHostName()
1126         ]);
1127
1128         $stpl = Renderer::getMarkupTemplate('settings/settings.tpl');
1129
1130         $expire_arr = [
1131                 'days' => ['expire',  L10n::t("Automatically expire posts after this many days:"), $expire, L10n::t('If empty, posts will not expire. Expired posts will be deleted')],
1132                 'advanced' => L10n::t('Advanced expiration settings'),
1133                 'label' => L10n::t('Advanced Expiration'),
1134                 'items' => ['expire_items',  L10n::t("Expire posts:"), $expire_items, '', [L10n::t('No'), L10n::t('Yes')]],
1135                 'notes' => ['expire_notes',  L10n::t("Expire personal notes:"), $expire_notes, '', [L10n::t('No'), L10n::t('Yes')]],
1136                 'starred' => ['expire_starred',  L10n::t("Expire starred posts:"), $expire_starred, '', [L10n::t('No'), L10n::t('Yes')]],
1137                 'photos' => ['expire_photos',  L10n::t("Expire photos:"), $expire_photos, '', [L10n::t('No'), L10n::t('Yes')]],
1138                 'network_only' => ['expire_network_only',  L10n::t("Only expire posts by others:"), $expire_network_only, '', [L10n::t('No'), L10n::t('Yes')]],
1139         ];
1140
1141         $group_select = Group::displayGroupSelection(local_user(), $a->user['def_gid']);
1142
1143         // Private/public post links for the non-JS ACL form
1144         $private_post = 1;
1145         if (!empty($_REQUEST['public']) && !$_REQUEST['public']) {
1146                 $private_post = 0;
1147         }
1148
1149         $query_str = $a->query_string;
1150         if (strpos($query_str, 'public=1') !== false) {
1151                 $query_str = str_replace(['?public=1', '&public=1'], ['', ''], $query_str);
1152         }
1153
1154         // I think $a->query_string may never have ? in it, but I could be wrong
1155         // It looks like it's from the index.php?q=[etc] rewrite that the web
1156         // server does, which converts any ? to &, e.g. suggest&ignore=61 for suggest?ignore=61
1157         if (strpos($query_str, '?') === false) {
1158                 $public_post_link = '?public=1';
1159         } else {
1160                 $public_post_link = '&public=1';
1161         }
1162
1163         /* Installed langs */
1164         $lang_choices = L10n::getAvailableLanguages();
1165
1166         /// @TODO Fix indending (or so)
1167         $o .= Renderer::replaceMacros($stpl, [
1168                 '$ptitle'       => L10n::t('Account Settings'),
1169
1170                 '$submit'       => L10n::t('Save Settings'),
1171                 '$baseurl' => System::baseUrl(true),
1172                 '$uid' => local_user(),
1173                 '$form_security_token' => BaseModule::getFormSecurityToken("settings"),
1174                 '$nickname_block' => $prof_addr,
1175
1176                 '$h_pass'       => L10n::t('Password Settings'),
1177                 '$password1'=> ['password', L10n::t('New Password:'), '', L10n::t('Allowed characters are a-z, A-Z, 0-9 and special characters except white spaces, accentuated letters and colon (:).')],
1178                 '$password2'=> ['confirm', L10n::t('Confirm:'), '', L10n::t('Leave password fields blank unless changing')],
1179                 '$password3'=> ['opassword', L10n::t('Current Password:'), '', L10n::t('Your current password to confirm the changes')],
1180                 '$password4'=> ['mpassword', L10n::t('Password:'), '', L10n::t('Your current password to confirm the changes')],
1181                 '$oid_enable' => (!Config::get('system', 'no_openid')),
1182                 '$openid'       => $openid_field,
1183                 '$delete_openid' => ['delete_openid', L10n::t('Delete OpenID URL'), false, ''],
1184
1185                 '$h_basic'      => L10n::t('Basic Settings'),
1186                 '$username' => ['username',  L10n::t('Full Name:'), $username, ''],
1187                 '$email'        => ['email', L10n::t('Email Address:'), $email, '', '', '', 'email'],
1188                 '$timezone' => ['timezone_select' , L10n::t('Your Timezone:'), Temporal::getTimezoneSelect($timezone), ''],
1189                 '$language' => ['language', L10n::t('Your Language:'), $language, L10n::t('Set the language we use to show you friendica interface and to send you emails'), $lang_choices],
1190                 '$defloc'       => ['defloc', L10n::t('Default Post Location:'), $defloc, ''],
1191                 '$allowloc' => ['allow_location', L10n::t('Use Browser Location:'), ($a->user['allow_location'] == 1), ''],
1192
1193
1194                 '$h_prv'        => L10n::t('Security and Privacy Settings'),
1195
1196                 '$maxreq'       => ['maxreq', L10n::t('Maximum Friend Requests/Day:'), $maxreq , L10n::t("\x28to prevent spam abuse\x29")],
1197                 '$permissions' => L10n::t('Default Post Permissions'),
1198                 '$permdesc' => L10n::t("\x28click to open/close\x29"),
1199                 '$visibility' => $profile['net-publish'],
1200                 '$aclselect' => ACL::getFullSelectorHTML($a->user),
1201                 '$suggestme' => $suggestme,
1202                 '$blockwall'=> $blockwall, // array('blockwall', L10n::t('Allow friends to post to your profile page:'), !$blockwall, ''),
1203                 '$blocktags'=> $blocktags, // array('blocktags', L10n::t('Allow friends to tag your posts:'), !$blocktags, ''),
1204
1205                 // ACL permissions box
1206                 '$group_perms' => L10n::t('Show to Groups'),
1207                 '$contact_perms' => L10n::t('Show to Contacts'),
1208                 '$private' => L10n::t('Default Private Post'),
1209                 '$public' => L10n::t('Default Public Post'),
1210                 '$is_private' => $private_post,
1211                 '$return_path' => $query_str,
1212                 '$public_link' => $public_post_link,
1213                 '$settings_perms' => L10n::t('Default Permissions for New Posts'),
1214
1215                 '$group_select' => $group_select,
1216
1217
1218                 '$expire'       => $expire_arr,
1219
1220                 '$profile_in_dir' => $profile_in_dir,
1221                 '$profile_in_net_dir' => $profile_in_net_dir,
1222                 '$hide_friends' => $hide_friends,
1223                 '$hide_wall' => $hide_wall,
1224                 '$unkmail' => $unkmail,
1225                 '$cntunkmail'   => ['cntunkmail', L10n::t('Maximum private messages per day from unknown people:'), $cntunkmail , L10n::t("\x28to prevent spam abuse\x29")],
1226
1227
1228                 '$h_not'        => L10n::t('Notification Settings'),
1229                 '$lbl_not'      => L10n::t('Send a notification email when:'),
1230                 '$notify1'      => ['notify1', L10n::t('You receive an introduction'), ($notify & NOTIFY_INTRO), NOTIFY_INTRO, ''],
1231                 '$notify2'      => ['notify2', L10n::t('Your introductions are confirmed'), ($notify & NOTIFY_CONFIRM), NOTIFY_CONFIRM, ''],
1232                 '$notify3'      => ['notify3', L10n::t('Someone writes on your profile wall'), ($notify & NOTIFY_WALL), NOTIFY_WALL, ''],
1233                 '$notify4'      => ['notify4', L10n::t('Someone writes a followup comment'), ($notify & NOTIFY_COMMENT), NOTIFY_COMMENT, ''],
1234                 '$notify5'      => ['notify5', L10n::t('You receive a private message'), ($notify & NOTIFY_MAIL), NOTIFY_MAIL, ''],
1235                 '$notify6'  => ['notify6', L10n::t('You receive a friend suggestion'), ($notify & NOTIFY_SUGGEST), NOTIFY_SUGGEST, ''],
1236                 '$notify7'  => ['notify7', L10n::t('You are tagged in a post'), ($notify & NOTIFY_TAGSELF), NOTIFY_TAGSELF, ''],
1237                 '$notify8'  => ['notify8', L10n::t('You are poked/prodded/etc. in a post'), ($notify & NOTIFY_POKE), NOTIFY_POKE, ''],
1238
1239                 '$desktop_notifications' => ['desktop_notifications', L10n::t('Activate desktop notifications') , false, L10n::t('Show desktop popup on new notifications')],
1240
1241                 '$email_textonly' => ['email_textonly', L10n::t('Text-only notification emails'),
1242                                                                         PConfig::get(local_user(), 'system', 'email_textonly'),
1243                                                                         L10n::t('Send text only notification emails, without the html part')],
1244
1245                 '$detailed_notif' => ['detailed_notif', L10n::t('Show detailled notifications'),
1246                                                                         PConfig::get(local_user(), 'system', 'detailed_notif'),
1247                                                                         L10n::t('Per default, notifications are condensed to a single notification per item. When enabled every notification is displayed.')],
1248
1249                 '$h_advn' => L10n::t('Advanced Account/Page Type Settings'),
1250                 '$h_descadvn' => L10n::t('Change the behaviour of this account for special situations'),
1251                 '$pagetype' => $pagetype,
1252
1253                 '$importcontact' => L10n::t('Import Contacts'),
1254                 '$importcontact_text' => L10n::t('Upload a CSV file that contains the handle of your followed accounts in the first column you exported from the old account.'),
1255                 '$importcontact_button' => L10n::t('Upload File'),
1256                 '$importcontact_maxsize' => Config::get('system', max_csv_file_size, 30720), 
1257                 '$relocate' => L10n::t('Relocate'),
1258                 '$relocate_text' => L10n::t("If you have moved this profile from another server, and some of your contacts don't receive your updates, try pushing this button."),
1259                 '$relocate_button' => L10n::t("Resend relocate message to contacts"),
1260
1261         ]);
1262
1263         Hook::callAll('settings_form', $o);
1264
1265         $o .= '</form>' . "\r\n";
1266
1267         return $o;
1268
1269 }