]> git.mxchange.org Git - friendica.git/blob - mod/settings.php
Remove deprecated App::cmd - replace with DI::args()->getCommand()
[friendica.git] / mod / settings.php
1 <?php
2 /**
3  * @file mod/settings.php
4  */
5
6 use Friendica\App;
7 use Friendica\BaseModule;
8 use Friendica\Content\Feature;
9 use Friendica\Content\Nav;
10 use Friendica\Core\ACL;
11 use Friendica\Core\Config;
12 use Friendica\Core\Hook;
13 use Friendica\Core\L10n;
14 use Friendica\Core\Logger;
15 use Friendica\Core\PConfig;
16 use Friendica\Core\Renderer;
17 use Friendica\Core\Session;
18 use Friendica\Core\System;
19 use Friendica\Core\Theme;
20 use Friendica\Core\Worker;
21 use Friendica\Database\DBA;
22 use Friendica\DI;
23 use Friendica\Model\Contact;
24 use Friendica\Model\GContact;
25 use Friendica\Model\Group;
26 use Friendica\Model\User;
27 use Friendica\Module\Security\Login;
28 use Friendica\Protocol\Email;
29 use Friendica\Util\Strings;
30 use Friendica\Util\Temporal;
31 use Friendica\Worker\Delivery;
32
33 function get_theme_config_file($theme)
34 {
35         $theme = Strings::sanitizeFilePathItem($theme);
36
37         $a = \get_app();
38         $base_theme = $a->theme_info['extends'] ?? '';
39
40         if (file_exists("view/theme/$theme/config.php")) {
41                 return "view/theme/$theme/config.php";
42         }
43         if ($base_theme && file_exists("view/theme/$base_theme/config.php")) {
44                 return "view/theme/$base_theme/config.php";
45         }
46         return null;
47 }
48
49 function settings_init(App $a)
50 {
51         if (!local_user()) {
52                 notice(L10n::t('Permission denied.') . EOL);
53                 return;
54         }
55
56         // These lines provide the javascript needed by the acl selector
57
58         $tpl = Renderer::getMarkupTemplate('settings/head.tpl');
59         $a->page['htmlhead'] .= Renderer::replaceMacros($tpl, [
60                 '$ispublic' => L10n::t('everybody')
61         ]);
62
63         $tabs = [
64                 [
65                         'label' => L10n::t('Account'),
66                         'url'   => 'settings',
67                         'selected'      =>  (($a->argc == 1) && ($a->argv[0] === 'settings')?'active':''),
68                         'accesskey' => 'o',
69                 ],
70         ];
71
72         $tabs[] = [
73                 'label' => L10n::t('Two-factor authentication'),
74                 'url' => 'settings/2fa',
75                 'selected' => (($a->argc > 1) && ($a->argv[1] === '2fa') ? 'active' : ''),
76                 'accesskey' => 'o',
77         ];
78
79         $tabs[] =       [
80                 'label' => L10n::t('Profiles'),
81                 'url'   => 'profiles',
82                 'selected'      => (($a->argc == 1) && ($a->argv[0] === 'profiles')?'active':''),
83                 'accesskey' => 'p',
84         ];
85
86         if (Feature::get()) {
87                 $tabs[] =       [
88                                         'label' => L10n::t('Additional features'),
89                                         'url'   => 'settings/features',
90                                         'selected'      => (($a->argc > 1) && ($a->argv[1] === 'features') ? 'active' : ''),
91                                         'accesskey' => 't',
92                                 ];
93         }
94
95         $tabs[] =       [
96                 'label' => L10n::t('Display'),
97                 'url'   => 'settings/display',
98                 'selected'      => (($a->argc > 1) && ($a->argv[1] === 'display')?'active':''),
99                 'accesskey' => 'i',
100         ];
101
102         $tabs[] =       [
103                 'label' => L10n::t('Social Networks'),
104                 'url'   => 'settings/connectors',
105                 'selected'      => (($a->argc > 1) && ($a->argv[1] === 'connectors')?'active':''),
106                 'accesskey' => 'w',
107         ];
108
109         $tabs[] =       [
110                 'label' => L10n::t('Addons'),
111                 'url'   => 'settings/addon',
112                 'selected'      => (($a->argc > 1) && ($a->argv[1] === 'addon')?'active':''),
113                 'accesskey' => 'l',
114         ];
115
116         $tabs[] =       [
117                 'label' => L10n::t('Delegations'),
118                 'url'   => 'settings/delegation',
119                 'selected'      => (($a->argc > 1) && ($a->argv[1] === 'delegation')?'active':''),
120                 'accesskey' => 'd',
121         ];
122
123         $tabs[] =       [
124                 'label' => L10n::t('Connected apps'),
125                 'url' => 'settings/oauth',
126                 'selected' => (($a->argc > 1) && ($a->argv[1] === 'oauth')?'active':''),
127                 'accesskey' => 'b',
128         ];
129
130         $tabs[] =       [
131                 'label' => L10n::t('Export personal data'),
132                 'url' => 'settings/userexport',
133                 'selected' => (($a->argc > 1) && ($a->argv[1] === 'userexport')?'active':''),
134                 'accesskey' => 'e',
135         ];
136
137         $tabs[] =       [
138                 'label' => L10n::t('Remove account'),
139                 'url' => 'removeme',
140                 'selected' => (($a->argc == 1) && ($a->argv[0] === 'removeme')?'active':''),
141                 'accesskey' => 'r',
142         ];
143
144
145         $tabtpl = Renderer::getMarkupTemplate("generic_links_widget.tpl");
146         $a->page['aside'] = Renderer::replaceMacros($tabtpl, [
147                 '$title' => L10n::t('Settings'),
148                 '$class' => 'settings-widget',
149                 '$items' => $tabs,
150         ]);
151
152 }
153
154 function settings_post(App $a)
155 {
156         if (!local_user()) {
157                 return;
158         }
159
160         if (!empty($_SESSION['submanage'])) {
161                 return;
162         }
163
164         if (count($a->user) && !empty($a->user['uid']) && $a->user['uid'] != local_user()) {
165                 notice(L10n::t('Permission denied.') . EOL);
166                 return;
167         }
168
169         $old_page_flags = $a->user['page-flags'];
170
171         if (($a->argc > 1) && ($a->argv[1] === 'oauth') && !empty($_POST['remove'])) {
172                 BaseModule::checkFormSecurityTokenRedirectOnError('/settings/oauth', 'settings_oauth');
173
174                 $key = $_POST['remove'];
175                 DBA::delete('tokens', ['id' => $key, 'uid' => local_user()]);
176                 DI::baseUrl()->redirect('settings/oauth/', true);
177                 return;
178         }
179
180         if (($a->argc > 2) && ($a->argv[1] === 'oauth')  && ($a->argv[2] === 'edit'||($a->argv[2] === 'add')) && !empty($_POST['submit'])) {
181                 BaseModule::checkFormSecurityTokenRedirectOnError('/settings/oauth', 'settings_oauth');
182
183                 $name     = $_POST['name']     ?? '';
184                 $key      = $_POST['key']      ?? '';
185                 $secret   = $_POST['secret']   ?? '';
186                 $redirect = $_POST['redirect'] ?? '';
187                 $icon     = $_POST['icon']     ?? '';
188
189                 if ($name == "" || $key == "" || $secret == "") {
190                         notice(L10n::t("Missing some important data!"));
191                 } else {
192                         if ($_POST['submit'] == L10n::t("Update")) {
193                                 q("UPDATE clients SET
194                                                         client_id='%s',
195                                                         pw='%s',
196                                                         name='%s',
197                                                         redirect_uri='%s',
198                                                         icon='%s',
199                                                         uid=%d
200                                                 WHERE client_id='%s'",
201                                         DBA::escape($key),
202                                         DBA::escape($secret),
203                                         DBA::escape($name),
204                                         DBA::escape($redirect),
205                                         DBA::escape($icon),
206                                         local_user(),
207                                         DBA::escape($key)
208                                 );
209                         } else {
210                                 q("INSERT INTO clients
211                                                         (client_id, pw, name, redirect_uri, icon, uid)
212                                                 VALUES ('%s', '%s', '%s', '%s', '%s',%d)",
213                                         DBA::escape($key),
214                                         DBA::escape($secret),
215                                         DBA::escape($name),
216                                         DBA::escape($redirect),
217                                         DBA::escape($icon),
218                                         local_user()
219                                 );
220                         }
221                 }
222                 DI::baseUrl()->redirect('settings/oauth/', true);
223                 return;
224         }
225
226         if (($a->argc > 1) && ($a->argv[1] == 'addon')) {
227                 BaseModule::checkFormSecurityTokenRedirectOnError('/settings/addon', 'settings_addon');
228
229                 Hook::callAll('addon_settings_post', $_POST);
230                 return;
231         }
232
233         if (($a->argc > 1) && ($a->argv[1] == 'connectors')) {
234                 BaseModule::checkFormSecurityTokenRedirectOnError('/settings/connectors', 'settings_connectors');
235
236                 if (!empty($_POST['general-submit'])) {
237                         PConfig::set(local_user(), 'system', 'accept_only_sharer', intval($_POST['accept_only_sharer']));
238                         PConfig::set(local_user(), 'system', 'disable_cw', intval($_POST['disable_cw']));
239                         PConfig::set(local_user(), 'system', 'no_intelligent_shortening', intval($_POST['no_intelligent_shortening']));
240                         PConfig::set(local_user(), 'system', 'attach_link_title', intval($_POST['attach_link_title']));
241                         PConfig::set(local_user(), 'system', 'ostatus_autofriend', intval($_POST['snautofollow']));
242                         PConfig::set(local_user(), 'ostatus', 'default_group', $_POST['group-selection']);
243                         PConfig::set(local_user(), 'ostatus', 'legacy_contact', $_POST['legacy_contact']);
244                 } elseif (!empty($_POST['imap-submit'])) {
245                         $mail_server       =                 $_POST['mail_server']       ?? '';
246                         $mail_port         =                 $_POST['mail_port']         ?? '';
247                         $mail_ssl          = strtolower(trim($_POST['mail_ssl']          ?? ''));
248                         $mail_user         =                 $_POST['mail_user']         ?? '';
249                         $mail_pass         =            trim($_POST['mail_pass']         ?? '');
250                         $mail_action       =            trim($_POST['mail_action']       ?? '');
251                         $mail_movetofolder =            trim($_POST['mail_movetofolder'] ?? '');
252                         $mail_replyto      =                 $_POST['mail_replyto']      ?? '';
253                         $mail_pubmail      =                 $_POST['mail_pubmail']      ?? '';
254
255                         if (
256                                 !Config::get('system', 'dfrn_only')
257                                 && function_exists('imap_open')
258                                 && !Config::get('system', 'imap_disabled')
259                         ) {
260                                 $failed = false;
261                                 $r = q("SELECT * FROM `mailacct` WHERE `uid` = %d LIMIT 1",
262                                         intval(local_user())
263                                 );
264                                 if (!DBA::isResult($r)) {
265                                         DBA::insert('mailacct', ['uid' => local_user()]);
266                                 }
267                                 if (strlen($mail_pass)) {
268                                         $pass = '';
269                                         openssl_public_encrypt($mail_pass, $pass, $a->user['pubkey']);
270                                         DBA::update('mailacct', ['pass' => bin2hex($pass)], ['uid' => local_user()]);
271                                 }
272                                 $r = q("UPDATE `mailacct` SET `server` = '%s', `port` = %d, `ssltype` = '%s', `user` = '%s',
273                                         `action` = %d, `movetofolder` = '%s',
274                                         `mailbox` = 'INBOX', `reply_to` = '%s', `pubmail` = %d WHERE `uid` = %d",
275                                         DBA::escape($mail_server),
276                                         intval($mail_port),
277                                         DBA::escape($mail_ssl),
278                                         DBA::escape($mail_user),
279                                         intval($mail_action),
280                                         DBA::escape($mail_movetofolder),
281                                         DBA::escape($mail_replyto),
282                                         intval($mail_pubmail),
283                                         intval(local_user())
284                                 );
285                                 Logger::log("mail: updating mailaccount. Response: ".print_r($r, true));
286                                 $r = q("SELECT * FROM `mailacct` WHERE `uid` = %d LIMIT 1",
287                                         intval(local_user())
288                                 );
289                                 if (DBA::isResult($r)) {
290                                         $eacct = $r[0];
291                                         $mb = Email::constructMailboxName($eacct);
292
293                                         if (strlen($eacct['server'])) {
294                                                 $dcrpass = '';
295                                                 openssl_private_decrypt(hex2bin($eacct['pass']), $dcrpass, $a->user['prvkey']);
296                                                 $mbox = Email::connect($mb, $mail_user, $dcrpass);
297                                                 unset($dcrpass);
298                                                 if (!$mbox) {
299                                                         $failed = true;
300                                                         notice(L10n::t('Failed to connect with email account using the settings provided.') . EOL);
301                                                 }
302                                         }
303                                 }
304                                 if (!$failed) {
305                                         info(L10n::t('Email settings updated.') . EOL);
306                                 }
307                         }
308                 }
309
310                 Hook::callAll('connector_settings_post', $_POST);
311                 return;
312         }
313
314         if (($a->argc > 1) && ($a->argv[1] === 'features')) {
315                 BaseModule::checkFormSecurityTokenRedirectOnError('/settings/features', 'settings_features');
316                 foreach ($_POST as $k => $v) {
317                         if (strpos($k, 'feature_') === 0) {
318                                 PConfig::set(local_user(), 'feature', substr($k, 8), ((intval($v)) ? 1 : 0));
319                         }
320                 }
321                 info(L10n::t('Features updated') . EOL);
322                 return;
323         }
324
325         if (($a->argc > 1) && ($a->argv[1] === 'display')) {
326                 BaseModule::checkFormSecurityTokenRedirectOnError('/settings/display', 'settings_display');
327
328                 $theme              = !empty($_POST['theme'])              ? Strings::escapeTags(trim($_POST['theme']))        : $a->user['theme'];
329                 $mobile_theme       = !empty($_POST['mobile_theme'])       ? Strings::escapeTags(trim($_POST['mobile_theme'])) : '';
330                 $nosmile            = !empty($_POST['nosmile'])            ? intval($_POST['nosmile'])            : 0;
331                 $first_day_of_week  = !empty($_POST['first_day_of_week'])  ? intval($_POST['first_day_of_week'])  : 0;
332                 $noinfo             = !empty($_POST['noinfo'])             ? intval($_POST['noinfo'])             : 0;
333                 $infinite_scroll    = !empty($_POST['infinite_scroll'])    ? intval($_POST['infinite_scroll'])    : 0;
334                 $no_auto_update     = !empty($_POST['no_auto_update'])     ? intval($_POST['no_auto_update'])     : 0;
335                 $bandwidth_saver    = !empty($_POST['bandwidth_saver'])    ? intval($_POST['bandwidth_saver'])    : 0;
336                 $no_smart_threading = !empty($_POST['no_smart_threading']) ? intval($_POST['no_smart_threading']) : 0;
337                 $nowarn_insecure    = !empty($_POST['nowarn_insecure'])    ? intval($_POST['nowarn_insecure'])    : 0;
338                 $browser_update     = !empty($_POST['browser_update'])     ? intval($_POST['browser_update'])     : 0;
339                 if ($browser_update != -1) {
340                         $browser_update = $browser_update * 1000;
341                         if ($browser_update < 10000) {
342                                 $browser_update = 10000;
343                         }
344                 }
345
346                 $itemspage_network = !empty($_POST['itemspage_network'])  ? intval($_POST['itemspage_network'])  : 40;
347                 if ($itemspage_network > 100) {
348                         $itemspage_network = 100;
349                 }
350                 $itemspage_mobile_network = !empty($_POST['itemspage_mobile_network']) ? intval($_POST['itemspage_mobile_network']) : 20;
351                 if ($itemspage_mobile_network > 100) {
352                         $itemspage_mobile_network = 100;
353                 }
354
355                 if ($mobile_theme !== '') {
356                         PConfig::set(local_user(), 'system', 'mobile_theme', $mobile_theme);
357                 }
358
359                 PConfig::set(local_user(), 'system', 'nowarn_insecure'         , $nowarn_insecure);
360                 PConfig::set(local_user(), 'system', 'update_interval'         , $browser_update);
361                 PConfig::set(local_user(), 'system', 'itemspage_network'       , $itemspage_network);
362                 PConfig::set(local_user(), 'system', 'itemspage_mobile_network', $itemspage_mobile_network);
363                 PConfig::set(local_user(), 'system', 'no_smilies'              , $nosmile);
364                 PConfig::set(local_user(), 'system', 'first_day_of_week'       , $first_day_of_week);
365                 PConfig::set(local_user(), 'system', 'ignore_info'             , $noinfo);
366                 PConfig::set(local_user(), 'system', 'infinite_scroll'         , $infinite_scroll);
367                 PConfig::set(local_user(), 'system', 'no_auto_update'          , $no_auto_update);
368                 PConfig::set(local_user(), 'system', 'bandwidth_saver'         , $bandwidth_saver);
369                 PConfig::set(local_user(), 'system', 'no_smart_threading'      , $no_smart_threading);
370
371                 if (in_array($theme, Theme::getAllowedList())) {
372                         if ($theme == $a->user['theme']) {
373                                 // call theme_post only if theme has not been changed
374                                 if (($themeconfigfile = get_theme_config_file($theme)) !== null) {
375                                         require_once $themeconfigfile;
376                                         theme_post($a);
377                                 }
378                         } else {
379                                 DBA::update('user', ['theme' => $theme], ['uid' => local_user()]);
380                         }
381                 } else {
382                         notice(L10n::t('The theme you chose isn\'t available.'));
383                 }
384
385                 Hook::callAll('display_settings_post', $_POST);
386                 DI::baseUrl()->redirect('settings/display');
387                 return; // NOTREACHED
388         }
389
390         BaseModule::checkFormSecurityTokenRedirectOnError('/settings', 'settings');
391
392         // Import Contacts from CSV file
393         if (!empty($_POST['importcontact-submit'])) {
394                 if (isset($_FILES['importcontact-filename'])) {
395                         // was there an error
396                         if ($_FILES['importcontact-filename']['error'] > 0) {
397                                 Logger::notice('Contact CSV file upload error');
398                                 info(L10n::t('Contact CSV file upload error'));
399                         } else {
400                                 $csvArray = array_map('str_getcsv', file($_FILES['importcontact-filename']['tmp_name']));
401                                 // import contacts
402                                 foreach ($csvArray as $csvRow) {
403                                         // The 1st row may, or may not contain the headers of the table
404                                         // We expect the 1st field of the row to contain either the URL
405                                         // or the handle of the account, therefore we check for either
406                                         // "http" or "@" to be present in the string.
407                                         // All other fields from the row will be ignored
408                                         if ((strpos($csvRow[0],'@') !== false) || (strpos($csvRow[0],'http') !== false)) {
409                                                 $arr = Contact::createFromProbe($_SESSION['uid'], $csvRow[0], '', false);
410                                         }
411                                 }
412                                 info(L10n::t('Importing Contacts done'));
413                                 // delete temp file
414                                 unlink($filename);
415                         }
416                 }
417         }
418
419         if (!empty($_POST['resend_relocate'])) {
420                 Worker::add(PRIORITY_HIGH, 'Notifier', Delivery::RELOCATION, local_user());
421                 info(L10n::t("Relocate message has been send to your contacts"));
422                 DI::baseUrl()->redirect('settings');
423         }
424
425         Hook::callAll('settings_post', $_POST);
426
427         if (!empty($_POST['password']) || !empty($_POST['confirm'])) {
428                 $newpass = $_POST['password'];
429                 $confirm = $_POST['confirm'];
430
431                 try {
432                         if ($newpass != $confirm) {
433                                 throw new Exception(L10n::t('Passwords do not match.'));
434                         }
435
436                         //  check if the old password was supplied correctly before changing it to the new value
437                         User::getIdFromPasswordAuthentication(local_user(), $_POST['opassword']);
438
439                         $result = User::updatePassword(local_user(), $newpass);
440                         if (!DBA::isResult($result)) {
441                                 throw new Exception(L10n::t('Password update failed. Please try again.'));
442                         }
443
444                         info(L10n::t('Password changed.'));
445                 } catch (Exception $e) {
446                         notice($e->getMessage());
447                         notice(L10n::t('Password unchanged.'));
448                 }
449         }
450
451         $username         = (!empty($_POST['username'])   ? Strings::escapeTags(trim($_POST['username']))     : '');
452         $email            = (!empty($_POST['email'])      ? Strings::escapeTags(trim($_POST['email']))        : '');
453         $timezone         = (!empty($_POST['timezone'])   ? Strings::escapeTags(trim($_POST['timezone']))     : '');
454         $language         = (!empty($_POST['language'])   ? Strings::escapeTags(trim($_POST['language']))     : '');
455
456         $defloc           = (!empty($_POST['defloc'])     ? Strings::escapeTags(trim($_POST['defloc']))       : '');
457         $maxreq           = (!empty($_POST['maxreq'])     ? intval($_POST['maxreq'])             : 0);
458         $expire           = (!empty($_POST['expire'])     ? intval($_POST['expire'])             : 0);
459         $def_gid          = (!empty($_POST['group-selection']) ? intval($_POST['group-selection']) : 0);
460
461
462         $expire_items     = (!empty($_POST['expire_items']) ? intval($_POST['expire_items'])     : 0);
463         $expire_notes     = (!empty($_POST['expire_notes']) ? intval($_POST['expire_notes'])     : 0);
464         $expire_starred   = (!empty($_POST['expire_starred']) ? intval($_POST['expire_starred']) : 0);
465         $expire_photos    = (!empty($_POST['expire_photos'])? intval($_POST['expire_photos'])    : 0);
466         $expire_network_only    = (!empty($_POST['expire_network_only'])? intval($_POST['expire_network_only'])  : 0);
467
468         $delete_openid    = ((!empty($_POST['delete_openid']) && (intval($_POST['delete_openid']) == 1)) ? 1: 0);
469
470         $allow_location   = ((!empty($_POST['allow_location']) && (intval($_POST['allow_location']) == 1)) ? 1: 0);
471         $publish          = ((!empty($_POST['profile_in_directory']) && (intval($_POST['profile_in_directory']) == 1)) ? 1: 0);
472         $net_publish      = ((!empty($_POST['profile_in_netdirectory']) && (intval($_POST['profile_in_netdirectory']) == 1)) ? 1: 0);
473         $old_visibility   = ((!empty($_POST['visibility']) && (intval($_POST['visibility']) == 1)) ? 1 : 0);
474         $account_type     = ((!empty($_POST['account-type']) && (intval($_POST['account-type']))) ? intval($_POST['account-type']) : 0);
475         $page_flags       = ((!empty($_POST['page-flags']) && (intval($_POST['page-flags']))) ? intval($_POST['page-flags']) : 0);
476         $blockwall        = ((!empty($_POST['blockwall']) && (intval($_POST['blockwall']) == 1)) ? 0: 1); // this setting is inverted!
477         $blocktags        = ((!empty($_POST['blocktags']) && (intval($_POST['blocktags']) == 1)) ? 0: 1); // this setting is inverted!
478         $unkmail          = ((!empty($_POST['unkmail']) && (intval($_POST['unkmail']) == 1)) ? 1: 0);
479         $cntunkmail       = (!empty($_POST['cntunkmail']) ? intval($_POST['cntunkmail']) : 0);
480         $suggestme        = (!empty($_POST['suggestme']) ? intval($_POST['suggestme'])  : 0);
481         $hide_friends     = (($_POST['hide-friends'] == 1) ? 1: 0);
482         $hidewall         = (($_POST['hidewall'] == 1) ? 1: 0);
483
484         $email_textonly   = (($_POST['email_textonly'] == 1) ? 1 : 0);
485         $detailed_notif   = (($_POST['detailed_notif'] == 1) ? 1 : 0);
486
487         $notify = 0;
488
489         if (!empty($_POST['notify1'])) {
490                 $notify += intval($_POST['notify1']);
491         }
492         if (!empty($_POST['notify2'])) {
493                 $notify += intval($_POST['notify2']);
494         }
495         if (!empty($_POST['notify3'])) {
496                 $notify += intval($_POST['notify3']);
497         }
498         if (!empty($_POST['notify4'])) {
499                 $notify += intval($_POST['notify4']);
500         }
501         if (!empty($_POST['notify5'])) {
502                 $notify += intval($_POST['notify5']);
503         }
504         if (!empty($_POST['notify6'])) {
505                 $notify += intval($_POST['notify6']);
506         }
507         if (!empty($_POST['notify7'])) {
508                 $notify += intval($_POST['notify7']);
509         }
510         if (!empty($_POST['notify8'])) {
511                 $notify += intval($_POST['notify8']);
512         }
513
514         // Adjust the page flag if the account type doesn't fit to the page flag.
515         if (($account_type == User::ACCOUNT_TYPE_PERSON) && !in_array($page_flags, [User::PAGE_FLAGS_NORMAL, User::PAGE_FLAGS_SOAPBOX, User::PAGE_FLAGS_FREELOVE])) {
516                 $page_flags = User::PAGE_FLAGS_NORMAL;
517         } elseif (($account_type == User::ACCOUNT_TYPE_ORGANISATION) && !in_array($page_flags, [User::PAGE_FLAGS_SOAPBOX])) {
518                 $page_flags = User::PAGE_FLAGS_SOAPBOX;
519         } elseif (($account_type == User::ACCOUNT_TYPE_NEWS) && !in_array($page_flags, [User::PAGE_FLAGS_SOAPBOX])) {
520                 $page_flags = User::PAGE_FLAGS_SOAPBOX;
521         } elseif (($account_type == User::ACCOUNT_TYPE_COMMUNITY) && !in_array($page_flags, [User::PAGE_FLAGS_COMMUNITY, User::PAGE_FLAGS_PRVGROUP])) {
522                 $page_flags = User::PAGE_FLAGS_COMMUNITY;
523         }
524
525         $err = '';
526
527         if ($username != $a->user['username']) {
528                 if (strlen($username) > 40) {
529                         $err .= L10n::t(' Please use a shorter name.');
530                 }
531                 if (strlen($username) < 3) {
532                         $err .= L10n::t(' Name too short.');
533                 }
534         }
535
536         if ($email != $a->user['email']) {
537                 //  check for the correct password
538                 if (!User::authenticate(intval(local_user()), $_POST['mpassword'])) {
539                         $err .= L10n::t('Wrong Password') . EOL;
540                         $email = $a->user['email'];
541                 }
542                 //  check the email is valid
543                 if (!filter_var($email, FILTER_VALIDATE_EMAIL)) {
544                         $err .= L10n::t('Invalid email.');
545                 }
546                 //  ensure new email is not the admin mail
547                 if (Config::get('config', 'admin_email')) {
548                         $adminlist = explode(",", str_replace(" ", "", strtolower(Config::get('config', 'admin_email'))));
549                         if (in_array(strtolower($email), $adminlist)) {
550                                 $err .= L10n::t('Cannot change to that email.');
551                                 $email = $a->user['email'];
552                         }
553                 }
554         }
555
556         if (strlen($err)) {
557                 notice($err . EOL);
558                 return;
559         }
560
561         if (($timezone != $a->user['timezone']) && strlen($timezone)) {
562                 date_default_timezone_set($timezone);
563         }
564
565         $aclFormatter = DI::aclFormatter();
566
567         $str_group_allow   = !empty($_POST['group_allow'])   ? $aclFormatter->toString($_POST['group_allow'])   : '';
568         $str_contact_allow = !empty($_POST['contact_allow']) ? $aclFormatter->toString($_POST['contact_allow']) : '';
569         $str_group_deny    = !empty($_POST['group_deny'])    ? $aclFormatter->toString($_POST['group_deny'])    : '';
570         $str_contact_deny  = !empty($_POST['contact_deny'])  ? $aclFormatter->toString($_POST['contact_deny'])  : '';
571
572         PConfig::set(local_user(), 'expire', 'items', $expire_items);
573         PConfig::set(local_user(), 'expire', 'notes', $expire_notes);
574         PConfig::set(local_user(), 'expire', 'starred', $expire_starred);
575         PConfig::set(local_user(), 'expire', 'photos', $expire_photos);
576         PConfig::set(local_user(), 'expire', 'network_only', $expire_network_only);
577
578         PConfig::set(local_user(), 'system', 'suggestme', $suggestme);
579
580         PConfig::set(local_user(), 'system', 'email_textonly', $email_textonly);
581         PConfig::set(local_user(), 'system', 'detailed_notif', $detailed_notif);
582
583         if ($page_flags == User::PAGE_FLAGS_PRVGROUP) {
584                 $hidewall = 1;
585                 if (!$str_contact_allow && !$str_group_allow && !$str_contact_deny && !$str_group_deny) {
586                         if ($def_gid) {
587                                 info(L10n::t('Private forum has no privacy permissions. Using default privacy group.'). EOL);
588                                 $str_group_allow = '<' . $def_gid . '>';
589                         } else {
590                                 notice(L10n::t('Private forum has no privacy permissions and no default privacy group.') . EOL);
591                         }
592                 }
593         }
594
595         $fields = ['username' => $username, 'email' => $email, 'timezone' => $timezone,
596                 'allow_cid' => $str_contact_allow, 'allow_gid' => $str_group_allow, 'deny_cid' => $str_contact_deny, 'deny_gid' => $str_group_deny,
597                 'notify-flags' => $notify, 'page-flags' => $page_flags, 'account-type' => $account_type, 'default-location' => $defloc,
598                 'allow_location' => $allow_location, 'maxreq' => $maxreq, 'expire' => $expire, 'def_gid' => $def_gid, 'blockwall' => $blockwall,
599                 'hidewall' => $hidewall, 'blocktags' => $blocktags, 'unkmail' => $unkmail, 'cntunkmail' => $cntunkmail, 'language' => $language];
600
601         if ($delete_openid) {
602                 $fields['openid'] = '';
603                 $fields['openidserver'] = '';
604         }
605
606         if (DBA::update('user', $fields, ['uid' => local_user()])) {
607                 info(L10n::t('Settings updated.') . EOL);
608         }
609
610         // clear session language
611         unset($_SESSION['language']);
612
613         q("UPDATE `profile`
614                 SET `publish` = %d,
615                 `name` = '%s',
616                 `net-publish` = %d,
617                 `hide-friends` = %d
618                 WHERE `is-default` = 1 AND `uid` = %d",
619                 intval($publish),
620                 DBA::escape($username),
621                 intval($net_publish),
622                 intval($hide_friends),
623                 intval(local_user())
624         );
625
626         Contact::updateSelfFromUserID(local_user());
627
628         if (($old_visibility != $net_publish) || ($page_flags != $old_page_flags)) {
629                 // Update global directory in background
630                 $url = $_SESSION['my_url'];
631                 if ($url && strlen(Config::get('system', 'directory'))) {
632                         Worker::add(PRIORITY_LOW, "Directory", $url);
633                 }
634         }
635
636         Worker::add(PRIORITY_LOW, 'ProfileUpdate', local_user());
637
638         // Update the global contact for the user
639         GContact::updateForUser(local_user());
640
641         DI::baseUrl()->redirect('settings');
642         return; // NOTREACHED
643 }
644
645
646 function settings_content(App $a)
647 {
648         $o = '';
649         Nav::setSelected('settings');
650
651         if (!local_user()) {
652                 //notice(L10n::t('Permission denied.') . EOL);
653                 return Login::form();
654         }
655
656         if (!empty($_SESSION['submanage'])) {
657                 notice(L10n::t('Permission denied.') . EOL);
658                 return;
659         }
660
661         if (($a->argc > 1) && ($a->argv[1] === 'oauth')) {
662                 if (($a->argc > 2) && ($a->argv[2] === 'add')) {
663                         $tpl = Renderer::getMarkupTemplate('settings/oauth_edit.tpl');
664                         $o .= Renderer::replaceMacros($tpl, [
665                                 '$form_security_token' => BaseModule::getFormSecurityToken("settings_oauth"),
666                                 '$title'        => L10n::t('Add application'),
667                                 '$submit'       => L10n::t('Save Settings'),
668                                 '$cancel'       => L10n::t('Cancel'),
669                                 '$name'         => ['name', L10n::t('Name'), '', ''],
670                                 '$key'          => ['key', L10n::t('Consumer Key'), '', ''],
671                                 '$secret'       => ['secret', L10n::t('Consumer Secret'), '', ''],
672                                 '$redirect'     => ['redirect', L10n::t('Redirect'), '', ''],
673                                 '$icon'         => ['icon', L10n::t('Icon url'), '', ''],
674                         ]);
675                         return $o;
676                 }
677
678                 if (($a->argc > 3) && ($a->argv[2] === 'edit')) {
679                         $r = q("SELECT * FROM clients WHERE client_id='%s' AND uid=%d",
680                                         DBA::escape($a->argv[3]),
681                                         local_user());
682
683                         if (!DBA::isResult($r)) {
684                                 notice(L10n::t("You can't edit this application."));
685                                 return;
686                         }
687                         $app = $r[0];
688
689                         $tpl = Renderer::getMarkupTemplate('settings/oauth_edit.tpl');
690                         $o .= Renderer::replaceMacros($tpl, [
691                                 '$form_security_token' => BaseModule::getFormSecurityToken("settings_oauth"),
692                                 '$title'        => L10n::t('Add application'),
693                                 '$submit'       => L10n::t('Update'),
694                                 '$cancel'       => L10n::t('Cancel'),
695                                 '$name'         => ['name', L10n::t('Name'), $app['name'] , ''],
696                                 '$key'          => ['key', L10n::t('Consumer Key'), $app['client_id'], ''],
697                                 '$secret'       => ['secret', L10n::t('Consumer Secret'), $app['pw'], ''],
698                                 '$redirect'     => ['redirect', L10n::t('Redirect'), $app['redirect_uri'], ''],
699                                 '$icon'         => ['icon', L10n::t('Icon url'), $app['icon'], ''],
700                         ]);
701                         return $o;
702                 }
703
704                 if (($a->argc > 3) && ($a->argv[2] === 'delete')) {
705                         BaseModule::checkFormSecurityTokenRedirectOnError('/settings/oauth', 'settings_oauth', 't');
706
707                         DBA::delete('clients', ['client_id' => $a->argv[3], 'uid' => local_user()]);
708                         DI::baseUrl()->redirect('settings/oauth/', true);
709                         return;
710                 }
711
712                 /// @TODO validate result with DBA::isResult()
713                 $r = q("SELECT clients.*, tokens.id as oauth_token, (clients.uid=%d) AS my
714                                 FROM clients
715                                 LEFT JOIN tokens ON clients.client_id=tokens.client_id
716                                 WHERE clients.uid IN (%d, 0)",
717                                 local_user(),
718                                 local_user());
719
720
721                 $tpl = Renderer::getMarkupTemplate('settings/oauth.tpl');
722                 $o .= Renderer::replaceMacros($tpl, [
723                         '$form_security_token' => BaseModule::getFormSecurityToken("settings_oauth"),
724                         '$baseurl'      => DI::baseUrl()->get(true),
725                         '$title'        => L10n::t('Connected Apps'),
726                         '$add'          => L10n::t('Add application'),
727                         '$edit'         => L10n::t('Edit'),
728                         '$delete'               => L10n::t('Delete'),
729                         '$consumerkey' => L10n::t('Client key starts with'),
730                         '$noname'       => L10n::t('No name'),
731                         '$remove'       => L10n::t('Remove authorization'),
732                         '$apps'         => $r,
733                 ]);
734                 return $o;
735         }
736
737         if (($a->argc > 1) && ($a->argv[1] === 'addon')) {
738                 $settings_addons = "";
739
740                 $r = q("SELECT * FROM `hook` WHERE `hook` = 'addon_settings' ");
741                 if (!DBA::isResult($r)) {
742                         $settings_addons = L10n::t('No Addon settings configured');
743                 }
744
745                 Hook::callAll('addon_settings', $settings_addons);
746
747
748                 $tpl = Renderer::getMarkupTemplate('settings/addons.tpl');
749                 $o .= Renderer::replaceMacros($tpl, [
750                         '$form_security_token' => BaseModule::getFormSecurityToken("settings_addon"),
751                         '$title'        => L10n::t('Addon Settings'),
752                         '$settings_addons' => $settings_addons
753                 ]);
754                 return $o;
755         }
756
757         if (($a->argc > 1) && ($a->argv[1] === 'features')) {
758
759                 $arr = [];
760                 $features = Feature::get();
761                 foreach ($features as $fname => $fdata) {
762                         $arr[$fname] = [];
763                         $arr[$fname][0] = $fdata[0];
764                         foreach (array_slice($fdata,1) as $f) {
765                                 $arr[$fname][1][] = ['feature_' .$f[0], $f[1],((intval(Feature::isEnabled(local_user(), $f[0]))) ? "1" : ''), $f[2],[L10n::t('Off'), L10n::t('On')]];
766                         }
767                 }
768
769                 $tpl = Renderer::getMarkupTemplate('settings/features.tpl');
770                 $o .= Renderer::replaceMacros($tpl, [
771                         '$form_security_token' => BaseModule::getFormSecurityToken("settings_features"),
772                         '$title'               => L10n::t('Additional Features'),
773                         '$features'            => $arr,
774                         '$submit'              => L10n::t('Save Settings'),
775                 ]);
776                 return $o;
777         }
778
779         if (($a->argc > 1) && ($a->argv[1] === 'connectors')) {
780                 $accept_only_sharer        = intval(PConfig::get(local_user(), 'system', 'accept_only_sharer'));
781                 $disable_cw                = intval(PConfig::get(local_user(), 'system', 'disable_cw'));
782                 $no_intelligent_shortening = intval(PConfig::get(local_user(), 'system', 'no_intelligent_shortening'));
783                 $attach_link_title         = intval(PConfig::get(local_user(), 'system', 'attach_link_title'));
784                 $ostatus_autofriend        = intval(PConfig::get(local_user(), 'system', 'ostatus_autofriend'));
785                 $default_group             = PConfig::get(local_user(), 'ostatus', 'default_group');
786                 $legacy_contact            = PConfig::get(local_user(), 'ostatus', 'legacy_contact');
787
788                 if (!empty($legacy_contact)) {
789                         /// @todo Isn't it supposed to be a $a->internalRedirect() call?
790                         $a->page['htmlhead'] = '<meta http-equiv="refresh" content="0; URL=' . System::baseUrl().'/ostatus_subscribe?url=' . urlencode($legacy_contact) . '">';
791                 }
792
793                 $settings_connectors = '';
794                 Hook::callAll('connector_settings', $settings_connectors);
795
796                 if (is_site_admin()) {
797                         $diasp_enabled = L10n::t('Built-in support for %s connectivity is %s', L10n::t('Diaspora'), ((Config::get('system', 'diaspora_enabled')) ? L10n::t('enabled') : L10n::t('disabled')));
798                         $ostat_enabled = L10n::t('Built-in support for %s connectivity is %s', L10n::t("GNU Social \x28OStatus\x29"), ((Config::get('system', 'ostatus_disabled')) ? L10n::t('disabled') : L10n::t('enabled')));
799                 } else {
800                         $diasp_enabled = "";
801                         $ostat_enabled = "";
802                 }
803
804                 $mail_disabled = ((function_exists('imap_open') && (!Config::get('system', 'imap_disabled'))) ? 0 : 1);
805                 if (Config::get('system', 'dfrn_only')) {
806                         $mail_disabled = 1;
807                 }
808                 if (!$mail_disabled) {
809                         $r = q("SELECT * FROM `mailacct` WHERE `uid` = %d LIMIT 1",
810                                 local_user()
811                         );
812                 } else {
813                         $r = null;
814                 }
815
816                 $mail_server       = ((DBA::isResult($r)) ? $r[0]['server'] : '');
817                 $mail_port         = ((DBA::isResult($r) && intval($r[0]['port'])) ? intval($r[0]['port']) : '');
818                 $mail_ssl          = ((DBA::isResult($r)) ? $r[0]['ssltype'] : '');
819                 $mail_user         = ((DBA::isResult($r)) ? $r[0]['user'] : '');
820                 $mail_replyto      = ((DBA::isResult($r)) ? $r[0]['reply_to'] : '');
821                 $mail_pubmail      = ((DBA::isResult($r)) ? $r[0]['pubmail'] : 0);
822                 $mail_action       = ((DBA::isResult($r)) ? $r[0]['action'] : 0);
823                 $mail_movetofolder = ((DBA::isResult($r)) ? $r[0]['movetofolder'] : '');
824                 $mail_chk          = ((DBA::isResult($r)) ? $r[0]['last_check'] : DBA::NULL_DATETIME);
825
826
827                 $tpl = Renderer::getMarkupTemplate('settings/connectors.tpl');
828
829                 $mail_disabled_message = ($mail_disabled ? L10n::t('Email access is disabled on this site.') : '');
830
831                 $ssl_options = ['TLS' => 'TLS', 'SSL' => 'SSL'];
832
833                 if (Config::get('system', 'insecure_imap')) {
834                         $ssl_options['notls'] = L10n::t('None');
835                 }
836
837                 $o .= Renderer::replaceMacros($tpl, [
838                         '$form_security_token' => BaseModule::getFormSecurityToken("settings_connectors"),
839
840                         '$title'        => L10n::t('Social Networks'),
841
842                         '$diasp_enabled' => $diasp_enabled,
843                         '$ostat_enabled' => $ostat_enabled,
844
845                         '$general_settings' => L10n::t('General Social Media Settings'),
846                         '$accept_only_sharer' => ['accept_only_sharer', L10n::t('Accept only top level posts by contacts you follow'), $accept_only_sharer, L10n::t('The system does an auto completion of threads when a comment arrives. This has got the side effect that you can receive posts that had been started by a non-follower but had been commented by someone you follow. This setting deactivates this behaviour. When activated, you strictly only will receive posts from people you really do follow.')],
847                         '$disable_cw' => ['disable_cw', L10n::t('Disable Content Warning'), $disable_cw, L10n::t('Users on networks like Mastodon or Pleroma are able to set a content warning field which collapse their post by default. This disables the automatic collapsing and sets the content warning as the post title. Doesn\'t affect any other content filtering you eventually set up.')],
848                         '$no_intelligent_shortening' => ['no_intelligent_shortening', L10n::t('Disable intelligent shortening'), $no_intelligent_shortening, L10n::t('Normally the system tries to find the best link to add to shortened posts. If this option is enabled then every shortened post will always point to the original friendica post.')],
849                         '$attach_link_title' => ['attach_link_title', L10n::t('Attach the link title'), $attach_link_title, L10n::t('When activated, the title of the attached link will be added as a title on posts to Diaspora. This is mostly helpful with "remote-self" contacts that share feed content.')],
850                         '$ostatus_autofriend' => ['snautofollow', L10n::t("Automatically follow any GNU Social \x28OStatus\x29 followers/mentioners"), $ostatus_autofriend, L10n::t('If you receive a message from an unknown OStatus user, this option decides what to do. If it is checked, a new contact will be created for every unknown user.')],
851                         '$default_group' => Group::displayGroupSelection(local_user(), $default_group, L10n::t("Default group for OStatus contacts")),
852                         '$legacy_contact' => ['legacy_contact', L10n::t('Your legacy GNU Social account'), $legacy_contact, L10n::t("If you enter your old GNU Social/Statusnet account name here \x28in the format user@domain.tld\x29, your contacts will be added automatically. The field will be emptied when done.")],
853
854                         '$repair_ostatus_url' => System::baseUrl() . '/repair_ostatus',
855                         '$repair_ostatus_text' => L10n::t('Repair OStatus subscriptions'),
856
857                         '$settings_connectors' => $settings_connectors,
858
859                         '$h_imap' => L10n::t('Email/Mailbox Setup'),
860                         '$imap_desc' => L10n::t("If you wish to communicate with email contacts using this service \x28optional\x29, please specify how to connect to your mailbox."),
861                         '$imap_lastcheck' => ['imap_lastcheck', L10n::t('Last successful email check:'), $mail_chk, ''],
862                         '$mail_disabled' => $mail_disabled_message,
863                         '$mail_server'  => ['mail_server',      L10n::t('IMAP server name:'), $mail_server, ''],
864                         '$mail_port'    => ['mail_port',        L10n::t('IMAP port:'), $mail_port, ''],
865                         '$mail_ssl'     => ['mail_ssl',         L10n::t('Security:'), strtoupper($mail_ssl), '', $ssl_options],
866                         '$mail_user'    => ['mail_user',        L10n::t('Email login name:'), $mail_user, ''],
867                         '$mail_pass'    => ['mail_pass',        L10n::t('Email password:'), '', ''],
868                         '$mail_replyto' => ['mail_replyto',     L10n::t('Reply-to address:'), $mail_replyto, 'Optional'],
869                         '$mail_pubmail' => ['mail_pubmail',     L10n::t('Send public posts to all email contacts:'), $mail_pubmail, ''],
870                         '$mail_action'  => ['mail_action',      L10n::t('Action after import:'), $mail_action, '', [0 => L10n::t('None'), 1 => L10n::t('Delete'), 2 => L10n::t('Mark as seen'), 3 => L10n::t('Move to folder')]],
871                         '$mail_movetofolder' => ['mail_movetofolder', L10n::t('Move to folder:'), $mail_movetofolder, ''],
872                         '$submit' => L10n::t('Save Settings'),
873                 ]);
874
875                 Hook::callAll('display_settings', $o);
876                 return $o;
877         }
878
879         /*
880          * DISPLAY SETTINGS
881          */
882         if (($a->argc > 1) && ($a->argv[1] === 'display')) {
883                 $default_theme = Config::get('system', 'theme');
884                 if (!$default_theme) {
885                         $default_theme = 'default';
886                 }
887                 $default_mobile_theme = Config::get('system', 'mobile-theme');
888                 if (!$default_mobile_theme) {
889                         $default_mobile_theme = 'none';
890                 }
891
892                 $allowed_themes = Theme::getAllowedList();
893
894                 $themes = [];
895                 $mobile_themes = ["---" => L10n::t('No special theme for mobile devices')];
896                 foreach ($allowed_themes as $theme) {
897                         $is_experimental = file_exists('view/theme/' . $theme . '/experimental');
898                         $is_unsupported  = file_exists('view/theme/' . $theme . '/unsupported');
899                         $is_mobile       = file_exists('view/theme/' . $theme . '/mobile');
900                         if (!$is_experimental || ($is_experimental && (Config::get('experimentals', 'exp_themes')==1 || is_null(Config::get('experimentals', 'exp_themes'))))) {
901                                 $theme_name = ucfirst($theme);
902                                 if ($is_unsupported) {
903                                         $theme_name = L10n::t('%s - (Unsupported)', $theme_name);
904                                 } elseif ($is_experimental) {
905                                         $theme_name = L10n::t('%s - (Experimental)', $theme_name);
906                                 }
907
908                                 if ($is_mobile) {
909                                         $mobile_themes[$theme] = $theme_name;
910                                 } else {
911                                         $themes[$theme] = $theme_name;
912                                 }
913                         }
914                 }
915
916                 $theme_selected        = $a->user['theme'] ?: $default_theme;
917                 $mobile_theme_selected = Session::get('mobile-theme', $default_mobile_theme);
918
919                 $nowarn_insecure = intval(PConfig::get(local_user(), 'system', 'nowarn_insecure'));
920
921                 $browser_update = intval(PConfig::get(local_user(), 'system', 'update_interval'));
922                 if (intval($browser_update) != -1) {
923                         $browser_update = (($browser_update == 0) ? 40 : $browser_update / 1000); // default if not set: 40 seconds
924                 }
925
926                 $itemspage_network = intval(PConfig::get(local_user(), 'system', 'itemspage_network'));
927                 $itemspage_network = (($itemspage_network > 0 && $itemspage_network < 101) ? $itemspage_network : 40); // default if not set: 40 items
928                 $itemspage_mobile_network = intval(PConfig::get(local_user(), 'system', 'itemspage_mobile_network'));
929                 $itemspage_mobile_network = (($itemspage_mobile_network > 0 && $itemspage_mobile_network < 101) ? $itemspage_mobile_network : 20); // default if not set: 20 items
930
931                 $nosmile = PConfig::get(local_user(), 'system', 'no_smilies', 0);
932                 $first_day_of_week = PConfig::get(local_user(), 'system', 'first_day_of_week', 0);
933                 $weekdays = [0 => L10n::t("Sunday"), 1 => L10n::t("Monday")];
934
935                 $noinfo = PConfig::get(local_user(), 'system', 'ignore_info', 0);
936                 $infinite_scroll = PConfig::get(local_user(), 'system', 'infinite_scroll', 0);
937                 $no_auto_update = PConfig::get(local_user(), 'system', 'no_auto_update', 0);
938                 $bandwidth_saver = PConfig::get(local_user(), 'system', 'bandwidth_saver', 0);
939                 $no_smart_threading = PConfig::get(local_user(), 'system', 'no_smart_threading', 0);
940
941                 $theme_config = "";
942                 if (($themeconfigfile = get_theme_config_file($theme_selected)) !== null) {
943                         require_once $themeconfigfile;
944                         $theme_config = theme_content($a);
945                 }
946
947                 $tpl = Renderer::getMarkupTemplate('settings/display.tpl');
948                 $o = Renderer::replaceMacros($tpl, [
949                         '$ptitle'       => L10n::t('Display Settings'),
950                         '$form_security_token' => BaseModule::getFormSecurityToken("settings_display"),
951                         '$submit'       => L10n::t('Save Settings'),
952                         '$baseurl' => System::baseUrl(true),
953                         '$uid' => local_user(),
954
955                         '$theme'        => ['theme', L10n::t('Display Theme:'), $theme_selected, '', $themes, true],
956                         '$mobile_theme' => ['mobile_theme', L10n::t('Mobile Theme:'), $mobile_theme_selected, '', $mobile_themes, false],
957                         '$nowarn_insecure' => ['nowarn_insecure',  L10n::t('Suppress warning of insecure networks'), $nowarn_insecure, L10n::t("Should the system suppress the warning that the current group contains members of networks that can't receive non public postings.")],
958                         '$ajaxint'   => ['browser_update',  L10n::t("Update browser every xx seconds"), $browser_update, L10n::t('Minimum of 10 seconds. Enter -1 to disable it.')],
959                         '$itemspage_network'   => ['itemspage_network',  L10n::t("Number of items to display per page:"), $itemspage_network, L10n::t('Maximum of 100 items')],
960                         '$itemspage_mobile_network'   => ['itemspage_mobile_network',  L10n::t("Number of items to display per page when viewed from mobile device:"), $itemspage_mobile_network, L10n::t('Maximum of 100 items')],
961                         '$nosmile'      => ['nosmile', L10n::t("Don't show emoticons"), $nosmile, ''],
962                         '$calendar_title' => L10n::t('Calendar'),
963                         '$first_day_of_week'    => ['first_day_of_week', L10n::t('Beginning of week:'), $first_day_of_week, '', $weekdays, false],
964                         '$noinfo'       => ['noinfo', L10n::t("Don't show notices"), $noinfo, ''],
965                         '$infinite_scroll'      => ['infinite_scroll', L10n::t("Infinite scroll"), $infinite_scroll, ''],
966                         '$no_auto_update'       => ['no_auto_update', L10n::t("Automatic updates only at the top of the network page"), $no_auto_update, L10n::t('When disabled, the network page is updated all the time, which could be confusing while reading.')],
967                         '$bandwidth_saver' => ['bandwidth_saver', L10n::t('Bandwidth Saver Mode'), $bandwidth_saver, L10n::t('When enabled, embedded content is not displayed on automatic updates, they only show on page reload.')],
968                         '$no_smart_threading' => ['no_smart_threading', L10n::t('Disable Smart Threading'), $no_smart_threading, L10n::t('Disable the automatic suppression of extraneous thread indentation.')],
969
970                         '$d_tset' => L10n::t('General Theme Settings'),
971                         '$d_ctset' => L10n::t('Custom Theme Settings'),
972                         '$d_cset' => L10n::t('Content Settings'),
973                         'stitle' => L10n::t('Theme settings'),
974                         '$theme_config' => $theme_config,
975                 ]);
976
977                 return $o;
978         }
979
980
981         /*
982          * ACCOUNT SETTINGS
983          */
984
985         $profile = DBA::selectFirst('profile', [], ['is-default' => true, 'uid' => local_user()]);
986         if (!DBA::isResult($profile)) {
987                 notice(L10n::t('Unable to find your profile. Please contact your admin.') . EOL);
988                 return;
989         }
990
991         $username   = $a->user['username'];
992         $email      = $a->user['email'];
993         $nickname   = $a->user['nickname'];
994         $timezone   = $a->user['timezone'];
995         $language   = $a->user['language'];
996         $notify     = $a->user['notify-flags'];
997         $defloc     = $a->user['default-location'];
998         $openid     = $a->user['openid'];
999         $maxreq     = $a->user['maxreq'];
1000         $expire     = ((intval($a->user['expire'])) ? $a->user['expire'] : '');
1001         $unkmail    = $a->user['unkmail'];
1002         $cntunkmail = $a->user['cntunkmail'];
1003
1004         $expire_items = PConfig::get(local_user(), 'expire', 'items', true);
1005         $expire_notes = PConfig::get(local_user(), 'expire', 'notes', true);
1006         $expire_starred = PConfig::get(local_user(), 'expire', 'starred', true);
1007         $expire_photos = PConfig::get(local_user(), 'expire', 'photos', false);
1008         $expire_network_only = PConfig::get(local_user(), 'expire', 'network_only', false);
1009         $suggestme = PConfig::get(local_user(), 'system', 'suggestme', false);
1010
1011         // nowarn_insecure
1012
1013         if (!strlen($a->user['timezone'])) {
1014                 $timezone = date_default_timezone_get();
1015         }
1016
1017         // Set the account type to "Community" when the page is a community page but the account type doesn't fit
1018         // This is only happening on the first visit after the update
1019         if (in_array($a->user['page-flags'], [User::PAGE_FLAGS_COMMUNITY, User::PAGE_FLAGS_PRVGROUP]) &&
1020                 ($a->user['account-type'] != User::ACCOUNT_TYPE_COMMUNITY))
1021                 $a->user['account-type'] = User::ACCOUNT_TYPE_COMMUNITY;
1022
1023         $pageset_tpl = Renderer::getMarkupTemplate('settings/pagetypes.tpl');
1024
1025         $pagetype = Renderer::replaceMacros($pageset_tpl, [
1026                 '$account_types'        => L10n::t("Account Types"),
1027                 '$user'                 => L10n::t("Personal Page Subtypes"),
1028                 '$community'            => L10n::t("Community Forum Subtypes"),
1029                 '$account_type'         => $a->user['account-type'],
1030                 '$type_person'          => User::ACCOUNT_TYPE_PERSON,
1031                 '$type_organisation'    => User::ACCOUNT_TYPE_ORGANISATION,
1032                 '$type_news'            => User::ACCOUNT_TYPE_NEWS,
1033                 '$type_community'       => User::ACCOUNT_TYPE_COMMUNITY,
1034
1035                 '$account_person'       => ['account-type', L10n::t('Personal Page'), User::ACCOUNT_TYPE_PERSON,
1036                                                                         L10n::t('Account for a personal profile.'),
1037                                                                         ($a->user['account-type'] == User::ACCOUNT_TYPE_PERSON)],
1038
1039                 '$account_organisation' => ['account-type', L10n::t('Organisation Page'), User::ACCOUNT_TYPE_ORGANISATION,
1040                                                                         L10n::t('Account for an organisation that automatically approves contact requests as "Followers".'),
1041                                                                         ($a->user['account-type'] == User::ACCOUNT_TYPE_ORGANISATION)],
1042
1043                 '$account_news'         => ['account-type', L10n::t('News Page'), User::ACCOUNT_TYPE_NEWS,
1044                                                                         L10n::t('Account for a news reflector that automatically approves contact requests as "Followers".'),
1045                                                                         ($a->user['account-type'] == User::ACCOUNT_TYPE_NEWS)],
1046
1047                 '$account_community'    => ['account-type', L10n::t('Community Forum'), User::ACCOUNT_TYPE_COMMUNITY,
1048                                                                         L10n::t('Account for community discussions.'),
1049                                                                         ($a->user['account-type'] == User::ACCOUNT_TYPE_COMMUNITY)],
1050
1051                 '$page_normal'          => ['page-flags', L10n::t('Normal Account Page'), User::PAGE_FLAGS_NORMAL,
1052                                                                         L10n::t('Account for a regular personal profile that requires manual approval of "Friends" and "Followers".'),
1053                                                                         ($a->user['page-flags'] == User::PAGE_FLAGS_NORMAL)],
1054
1055                 '$page_soapbox'         => ['page-flags', L10n::t('Soapbox Page'), User::PAGE_FLAGS_SOAPBOX,
1056                                                                         L10n::t('Account for a public profile that automatically approves contact requests as "Followers".'),
1057                                                                         ($a->user['page-flags'] == User::PAGE_FLAGS_SOAPBOX)],
1058
1059                 '$page_community'       => ['page-flags', L10n::t('Public Forum'), User::PAGE_FLAGS_COMMUNITY,
1060                                                                         L10n::t('Automatically approves all contact requests.'),
1061                                                                         ($a->user['page-flags'] == User::PAGE_FLAGS_COMMUNITY)],
1062
1063                 '$page_freelove'        => ['page-flags', L10n::t('Automatic Friend Page'), User::PAGE_FLAGS_FREELOVE,
1064                                                                         L10n::t('Account for a popular profile that automatically approves contact requests as "Friends".'),
1065                                                                         ($a->user['page-flags'] == User::PAGE_FLAGS_FREELOVE)],
1066
1067                 '$page_prvgroup'        => ['page-flags', L10n::t('Private Forum [Experimental]'), User::PAGE_FLAGS_PRVGROUP,
1068                                                                         L10n::t('Requires manual approval of contact requests.'),
1069                                                                         ($a->user['page-flags'] == User::PAGE_FLAGS_PRVGROUP)],
1070
1071
1072         ]);
1073
1074         $noid = Config::get('system', 'no_openid');
1075
1076         if ($noid) {
1077                 $openid_field = false;
1078         } else {
1079                 $openid_field = ['openid_url', L10n::t('OpenID:'), $openid, L10n::t("\x28Optional\x29 Allow this OpenID to login to this account."), "", "readonly", "url"];
1080         }
1081
1082         $opt_tpl = Renderer::getMarkupTemplate("field_yesno.tpl");
1083         if (Config::get('system', 'publish_all')) {
1084                 $profile_in_dir = '<input type="hidden" name="profile_in_directory" value="1" />';
1085         } else {
1086                 $profile_in_dir = Renderer::replaceMacros($opt_tpl, [
1087                         '$field' => ['profile_in_directory', L10n::t('Publish your default profile in your local site directory?'), $profile['publish'], L10n::t('Your profile will be published in this node\'s <a href="%s">local directory</a>. Your profile details may be publicly visible depending on the system settings.', System::baseUrl().'/directory'), [L10n::t('No'), L10n::t('Yes')]]
1088                 ]);
1089         }
1090
1091         if (strlen(Config::get('system', 'directory'))) {
1092                 $profile_in_net_dir = Renderer::replaceMacros($opt_tpl, [
1093                         '$field' => ['profile_in_netdirectory', L10n::t('Publish your default profile in the global social directory?'), $profile['net-publish'], L10n::t('Your profile will be published in the global friendica directories (e.g. <a href="%s">%s</a>). Your profile will be visible in public.', Config::get('system', 'directory'), Config::get('system', 'directory'))     . " " . L10n::t("This setting also determines whether Friendica will inform search engines that your profile should be indexed or not. Third-party search engines may or may not respect this setting."), [L10n::t('No'), L10n::t('Yes')]]
1094                 ]);
1095         } else {
1096                 $profile_in_net_dir = '';
1097         }
1098
1099         $hide_friends = Renderer::replaceMacros($opt_tpl, [
1100                 '$field' => ['hide-friends', L10n::t('Hide your contact/friend list from viewers of your default profile?'), $profile['hide-friends'], L10n::t('Your contact list won\'t be shown in your default profile page. You can decide to show your contact list separately for each additional profile you create'), [L10n::t('No'), L10n::t('Yes')]],
1101         ]);
1102
1103         $hide_wall = Renderer::replaceMacros($opt_tpl, [
1104                 '$field' => ['hidewall', L10n::t('Hide your profile details from anonymous viewers?'), $a->user['hidewall'], L10n::t('Anonymous visitors will only see your profile picture, your display name and the nickname you are using on your profile page. Your public posts and replies will still be accessible by other means.'), [L10n::t('No'), L10n::t('Yes')]],
1105         ]);
1106
1107         $blockwall = Renderer::replaceMacros($opt_tpl, [
1108                 '$field' => ['blockwall', L10n::t('Allow friends to post to your profile page?'), (intval($a->user['blockwall']) ? '0' : '1'), L10n::t('Your contacts may write posts on your profile wall. These posts will be distributed to your contacts'), [L10n::t('No'), L10n::t('Yes')]],
1109         ]);
1110
1111         $blocktags = Renderer::replaceMacros($opt_tpl, [
1112                 '$field' => ['blocktags', L10n::t('Allow friends to tag your posts?'), (intval($a->user['blocktags']) ? '0' : '1'), L10n::t('Your contacts can add additional tags to your posts.'), [L10n::t('No'), L10n::t('Yes')]],
1113         ]);
1114
1115         $suggestme = Renderer::replaceMacros($opt_tpl, [
1116                 '$field' => ['suggestme', L10n::t('Allow us to suggest you as a potential friend to new members?'), $suggestme, L10n::t('If you like, Friendica may suggest new members to add you as a contact.'), [L10n::t('No'), L10n::t('Yes')]],
1117         ]);
1118
1119         $unkmail = Renderer::replaceMacros($opt_tpl, [
1120                 '$field' => ['unkmail', L10n::t('Permit unknown people to send you private mail?'), $unkmail, L10n::t('Friendica network users may send you private messages even if they are not in your contact list.'), [L10n::t('No'), L10n::t('Yes')]],
1121         ]);
1122
1123         if (!$profile['publish'] && !$profile['net-publish']) {
1124                 info(L10n::t('Profile is <strong>not published</strong>.') . EOL);
1125         }
1126
1127         $tpl_addr = Renderer::getMarkupTemplate('settings/nick_set.tpl');
1128
1129         $prof_addr = Renderer::replaceMacros($tpl_addr,[
1130                 '$desc' => L10n::t("Your Identity Address is <strong>'%s'</strong> or '%s'.", $nickname . '@' . DI::baseUrl()->getHostname() . DI::baseUrl()->getUrlPath(), System::baseUrl() . '/profile/' . $nickname),
1131                 '$basepath' => DI::baseUrl()->getHostname()
1132         ]);
1133
1134         $stpl = Renderer::getMarkupTemplate('settings/settings.tpl');
1135
1136         $expire_arr = [
1137                 'days' => ['expire',  L10n::t("Automatically expire posts after this many days:"), $expire, L10n::t('If empty, posts will not expire. Expired posts will be deleted')],
1138                 'advanced' => L10n::t('Advanced expiration settings'),
1139                 'label' => L10n::t('Advanced Expiration'),
1140                 'items' => ['expire_items',  L10n::t("Expire posts:"), $expire_items, '', [L10n::t('No'), L10n::t('Yes')]],
1141                 'notes' => ['expire_notes',  L10n::t("Expire personal notes:"), $expire_notes, '', [L10n::t('No'), L10n::t('Yes')]],
1142                 'starred' => ['expire_starred',  L10n::t("Expire starred posts:"), $expire_starred, '', [L10n::t('No'), L10n::t('Yes')]],
1143                 'photos' => ['expire_photos',  L10n::t("Expire photos:"), $expire_photos, '', [L10n::t('No'), L10n::t('Yes')]],
1144                 'network_only' => ['expire_network_only',  L10n::t("Only expire posts by others:"), $expire_network_only, '', [L10n::t('No'), L10n::t('Yes')]],
1145         ];
1146
1147         $group_select = Group::displayGroupSelection(local_user(), $a->user['def_gid']);
1148
1149         // Private/public post links for the non-JS ACL form
1150         $private_post = 1;
1151         if (!empty($_REQUEST['public']) && !$_REQUEST['public']) {
1152                 $private_post = 0;
1153         }
1154
1155         $query_str = DI::args()->getQueryString();
1156         if (strpos($query_str, 'public=1') !== false) {
1157                 $query_str = str_replace(['?public=1', '&public=1'], ['', ''], $query_str);
1158         }
1159
1160         // I think $a->query_string may never have ? in it, but I could be wrong
1161         // It looks like it's from the index.php?q=[etc] rewrite that the web
1162         // server does, which converts any ? to &, e.g. suggest&ignore=61 for suggest?ignore=61
1163         if (strpos($query_str, '?') === false) {
1164                 $public_post_link = '?public=1';
1165         } else {
1166                 $public_post_link = '&public=1';
1167         }
1168
1169         /* Installed langs */
1170         $lang_choices = L10n::getAvailableLanguages();
1171
1172         /// @TODO Fix indending (or so)
1173         $o .= Renderer::replaceMacros($stpl, [
1174                 '$ptitle'       => L10n::t('Account Settings'),
1175
1176                 '$submit'       => L10n::t('Save Settings'),
1177                 '$baseurl' => System::baseUrl(true),
1178                 '$uid' => local_user(),
1179                 '$form_security_token' => BaseModule::getFormSecurityToken("settings"),
1180                 '$nickname_block' => $prof_addr,
1181
1182                 '$h_pass'       => L10n::t('Password Settings'),
1183                 '$password1'=> ['password', L10n::t('New Password:'), '', L10n::t('Allowed characters are a-z, A-Z, 0-9 and special characters except white spaces, accentuated letters and colon (:).')],
1184                 '$password2'=> ['confirm', L10n::t('Confirm:'), '', L10n::t('Leave password fields blank unless changing')],
1185                 '$password3'=> ['opassword', L10n::t('Current Password:'), '', L10n::t('Your current password to confirm the changes')],
1186                 '$password4'=> ['mpassword', L10n::t('Password:'), '', L10n::t('Your current password to confirm the changes')],
1187                 '$oid_enable' => (!Config::get('system', 'no_openid')),
1188                 '$openid'       => $openid_field,
1189                 '$delete_openid' => ['delete_openid', L10n::t('Delete OpenID URL'), false, ''],
1190
1191                 '$h_basic'      => L10n::t('Basic Settings'),
1192                 '$username' => ['username',  L10n::t('Full Name:'), $username, ''],
1193                 '$email'        => ['email', L10n::t('Email Address:'), $email, '', '', '', 'email'],
1194                 '$timezone' => ['timezone_select' , L10n::t('Your Timezone:'), Temporal::getTimezoneSelect($timezone), ''],
1195                 '$language' => ['language', L10n::t('Your Language:'), $language, L10n::t('Set the language we use to show you friendica interface and to send you emails'), $lang_choices],
1196                 '$defloc'       => ['defloc', L10n::t('Default Post Location:'), $defloc, ''],
1197                 '$allowloc' => ['allow_location', L10n::t('Use Browser Location:'), ($a->user['allow_location'] == 1), ''],
1198
1199
1200                 '$h_prv'        => L10n::t('Security and Privacy Settings'),
1201
1202                 '$maxreq'       => ['maxreq', L10n::t('Maximum Friend Requests/Day:'), $maxreq , L10n::t("\x28to prevent spam abuse\x29")],
1203                 '$permissions' => L10n::t('Default Post Permissions'),
1204                 '$permdesc' => L10n::t("\x28click to open/close\x29"),
1205                 '$visibility' => $profile['net-publish'],
1206                 '$aclselect' => ACL::getFullSelectorHTML($a->page, $a->user),
1207                 '$suggestme' => $suggestme,
1208                 '$blockwall'=> $blockwall, // array('blockwall', L10n::t('Allow friends to post to your profile page:'), !$blockwall, ''),
1209                 '$blocktags'=> $blocktags, // array('blocktags', L10n::t('Allow friends to tag your posts:'), !$blocktags, ''),
1210
1211                 // ACL permissions box
1212                 '$group_perms' => L10n::t('Show to Groups'),
1213                 '$contact_perms' => L10n::t('Show to Contacts'),
1214                 '$private' => L10n::t('Default Private Post'),
1215                 '$public' => L10n::t('Default Public Post'),
1216                 '$is_private' => $private_post,
1217                 '$return_path' => $query_str,
1218                 '$public_link' => $public_post_link,
1219                 '$settings_perms' => L10n::t('Default Permissions for New Posts'),
1220
1221                 '$group_select' => $group_select,
1222
1223
1224                 '$expire'       => $expire_arr,
1225
1226                 '$profile_in_dir' => $profile_in_dir,
1227                 '$profile_in_net_dir' => $profile_in_net_dir,
1228                 '$hide_friends' => $hide_friends,
1229                 '$hide_wall' => $hide_wall,
1230                 '$unkmail' => $unkmail,
1231                 '$cntunkmail'   => ['cntunkmail', L10n::t('Maximum private messages per day from unknown people:'), $cntunkmail , L10n::t("\x28to prevent spam abuse\x29")],
1232
1233
1234                 '$h_not'        => L10n::t('Notification Settings'),
1235                 '$lbl_not'      => L10n::t('Send a notification email when:'),
1236                 '$notify1'      => ['notify1', L10n::t('You receive an introduction'), ($notify & NOTIFY_INTRO), NOTIFY_INTRO, ''],
1237                 '$notify2'      => ['notify2', L10n::t('Your introductions are confirmed'), ($notify & NOTIFY_CONFIRM), NOTIFY_CONFIRM, ''],
1238                 '$notify3'      => ['notify3', L10n::t('Someone writes on your profile wall'), ($notify & NOTIFY_WALL), NOTIFY_WALL, ''],
1239                 '$notify4'      => ['notify4', L10n::t('Someone writes a followup comment'), ($notify & NOTIFY_COMMENT), NOTIFY_COMMENT, ''],
1240                 '$notify5'      => ['notify5', L10n::t('You receive a private message'), ($notify & NOTIFY_MAIL), NOTIFY_MAIL, ''],
1241                 '$notify6'  => ['notify6', L10n::t('You receive a friend suggestion'), ($notify & NOTIFY_SUGGEST), NOTIFY_SUGGEST, ''],
1242                 '$notify7'  => ['notify7', L10n::t('You are tagged in a post'), ($notify & NOTIFY_TAGSELF), NOTIFY_TAGSELF, ''],
1243                 '$notify8'  => ['notify8', L10n::t('You are poked/prodded/etc. in a post'), ($notify & NOTIFY_POKE), NOTIFY_POKE, ''],
1244
1245                 '$desktop_notifications' => ['desktop_notifications', L10n::t('Activate desktop notifications') , false, L10n::t('Show desktop popup on new notifications')],
1246
1247                 '$email_textonly' => ['email_textonly', L10n::t('Text-only notification emails'),
1248                                                                         PConfig::get(local_user(), 'system', 'email_textonly'),
1249                                                                         L10n::t('Send text only notification emails, without the html part')],
1250
1251                 '$detailed_notif' => ['detailed_notif', L10n::t('Show detailled notifications'),
1252                                                                         PConfig::get(local_user(), 'system', 'detailed_notif'),
1253                                                                         L10n::t('Per default, notifications are condensed to a single notification per item. When enabled every notification is displayed.')],
1254
1255                 '$h_advn' => L10n::t('Advanced Account/Page Type Settings'),
1256                 '$h_descadvn' => L10n::t('Change the behaviour of this account for special situations'),
1257                 '$pagetype' => $pagetype,
1258
1259                 '$importcontact' => L10n::t('Import Contacts'),
1260                 '$importcontact_text' => L10n::t('Upload a CSV file that contains the handle of your followed accounts in the first column you exported from the old account.'),
1261                 '$importcontact_button' => L10n::t('Upload File'),
1262                 '$importcontact_maxsize' => Config::get('system', 'max_csv_file_size', 30720), 
1263                 '$relocate' => L10n::t('Relocate'),
1264                 '$relocate_text' => L10n::t("If you have moved this profile from another server, and some of your contacts don't receive your updates, try pushing this button."),
1265                 '$relocate_button' => L10n::t("Resend relocate message to contacts"),
1266
1267         ]);
1268
1269         Hook::callAll('settings_form', $o);
1270
1271         $o .= '</form>' . "\r\n";
1272
1273         return $o;
1274
1275 }