]> git.mxchange.org Git - friendica.git/blob - mod/settings.php
6a32b7ed0d32bcf78ce70fba05eb39df7d547fa9
[friendica.git] / mod / settings.php
1 <?php
2 /**
3  * @file mod/settings.php
4  */
5 use Friendica\App;
6 use Friendica\Core\System;
7 use Friendica\Core\Worker;
8 use Friendica\Core\Config;
9 use Friendica\Core\PConfig;
10 use Friendica\Database\DBM;
11 use Friendica\Model\GlobalContact;
12
13 require_once 'include/group.php';
14
15 function get_theme_config_file($theme) {
16         $a = get_app();
17         $base_theme = $a->theme_info['extends'];
18
19         if (file_exists("view/theme/$theme/config.php")) {
20                 return "view/theme/$theme/config.php";
21         }
22         if (file_exists("view/theme/$base_theme/config.php")) {
23                 return "view/theme/$base_theme/config.php";
24         }
25         return null;
26 }
27
28 function settings_init(App $a) {
29
30         if (!local_user()) {
31                 notice(t('Permission denied.') . EOL);
32                 return;
33         }
34
35         // These lines provide the javascript needed by the acl selector
36
37         $tpl = get_markup_template("settings-head.tpl");
38         $a->page['htmlhead'] .= replace_macros($tpl,array(
39                 '$ispublic' => t('everybody')
40         ));
41
42
43
44         $tabs = array(
45                 array(
46                         'label' => t('Account'),
47                         'url'   => 'settings',
48                         'selected'      =>  (($a->argc == 1) && ($a->argv[0] === 'settings')?'active':''),
49                         'accesskey' => 'o',
50                 ),
51         );
52
53         if (get_features()) {
54                 $tabs[] =       array(
55                                         'label' => t('Additional features'),
56                                         'url'   => 'settings/features',
57                                         'selected'      => (($a->argc > 1) && ($a->argv[1] === 'features') ? 'active' : ''),
58                                         'accesskey' => 't',
59                                 );
60         }
61
62         $tabs[] =       array(
63                 'label' => t('Display'),
64                 'url'   => 'settings/display',
65                 'selected'      => (($a->argc > 1) && ($a->argv[1] === 'display')?'active':''),
66                 'accesskey' => 'i',
67         );
68
69         $tabs[] =       array(
70                 'label' => t('Social Networks'),
71                 'url'   => 'settings/connectors',
72                 'selected'      => (($a->argc > 1) && ($a->argv[1] === 'connectors')?'active':''),
73                 'accesskey' => 'w',
74         );
75
76         $tabs[] =       array(
77                 'label' => t('Plugins'),
78                 'url'   => 'settings/addon',
79                 'selected'      => (($a->argc > 1) && ($a->argv[1] === 'addon')?'active':''),
80                 'accesskey' => 'l',
81         );
82
83         $tabs[] =       array(
84                 'label' => t('Delegations'),
85                 'url'   => 'delegate',
86                 'selected'      => (($a->argc == 1) && ($a->argv[0] === 'delegate')?'active':''),
87                 'accesskey' => 'd',
88         );
89
90         $tabs[] =       array(
91                 'label' => t('Connected apps'),
92                 'url' => 'settings/oauth',
93                 'selected' => (($a->argc > 1) && ($a->argv[1] === 'oauth')?'active':''),
94                 'accesskey' => 'b',
95         );
96
97         $tabs[] =       array(
98                 'label' => t('Export personal data'),
99                 'url' => 'uexport',
100                 'selected' => (($a->argc == 1) && ($a->argv[0] === 'uexport')?'active':''),
101                 'accesskey' => 'e',
102         );
103
104         $tabs[] =       array(
105                 'label' => t('Remove account'),
106                 'url' => 'removeme',
107                 'selected' => (($a->argc == 1) && ($a->argv[0] === 'removeme')?'active':''),
108                 'accesskey' => 'r',
109         );
110
111
112         $tabtpl = get_markup_template("generic_links_widget.tpl");
113         $a->page['aside'] = replace_macros($tabtpl, array(
114                 '$title' => t('Settings'),
115                 '$class' => 'settings-widget',
116                 '$items' => $tabs,
117         ));
118
119 }
120
121
122 function settings_post(App $a) {
123
124         if (!local_user()) {
125                 return;
126         }
127
128         if (x($_SESSION, 'submanage') && intval($_SESSION['submanage'])) {
129                 return;
130         }
131
132         if (count($a->user) && x($a->user, 'uid') && $a->user['uid'] != local_user()) {
133                 notice(t('Permission denied.') . EOL);
134                 return;
135         }
136
137         $old_page_flags = $a->user['page-flags'];
138
139         if (($a->argc > 1) && ($a->argv[1] === 'oauth') && x($_POST, 'remove')) {
140                 check_form_security_token_redirectOnErr('/settings/oauth', 'settings_oauth');
141
142                 $key = $_POST['remove'];
143                 q("DELETE FROM tokens WHERE id='%s' AND uid=%d",
144                         dbesc($key),
145                         local_user());
146                 goaway(System::baseUrl(true)."/settings/oauth/");
147                 return;
148         }
149
150         if (($a->argc > 2) && ($a->argv[1] === 'oauth')  && ($a->argv[2] === 'edit'||($a->argv[2] === 'add')) && x($_POST, 'submit')) {
151
152                 check_form_security_token_redirectOnErr('/settings/oauth', 'settings_oauth');
153
154                 $name           = ((x($_POST, 'name')) ? $_POST['name'] : '');
155                 $key            = ((x($_POST, 'key')) ? $_POST['key'] : '');
156                 $secret         = ((x($_POST, 'secret')) ? $_POST['secret'] : '');
157                 $redirect       = ((x($_POST, 'redirect')) ? $_POST['redirect'] : '');
158                 $icon           = ((x($_POST, 'icon')) ? $_POST['icon'] : '');
159                 if ($name=="" || $key=="" || $secret=="") {
160                         notice(t("Missing some important data!"));
161
162                 } else {
163                         if ($_POST['submit']==t("Update")) {
164                                 $r = q("UPDATE clients SET
165                                                         client_id='%s',
166                                                         pw='%s',
167                                                         name='%s',
168                                                         redirect_uri='%s',
169                                                         icon='%s',
170                                                         uid=%d
171                                                 WHERE client_id='%s'",
172                                                 dbesc($key),
173                                                 dbesc($secret),
174                                                 dbesc($name),
175                                                 dbesc($redirect),
176                                                 dbesc($icon),
177                                                 local_user(),
178                                                 dbesc($key));
179                         } else {
180                                 $r = q("INSERT INTO clients
181                                                         (client_id, pw, name, redirect_uri, icon, uid)
182                                                 VALUES ('%s', '%s', '%s', '%s', '%s',%d)",
183                                                 dbesc($key),
184                                                 dbesc($secret),
185                                                 dbesc($name),
186                                                 dbesc($redirect),
187                                                 dbesc($icon),
188                                                 local_user());
189                         }
190                 }
191                 goaway(System::baseUrl(true)."/settings/oauth/");
192                 return;
193         }
194
195         if (($a->argc > 1) && ($a->argv[1] == 'addon')) {
196                 check_form_security_token_redirectOnErr('/settings/addon', 'settings_addon');
197
198                 call_hooks('plugin_settings_post', $_POST);
199                 return;
200         }
201
202         if (($a->argc > 1) && ($a->argv[1] == 'connectors')) {
203
204                 check_form_security_token_redirectOnErr('/settings/connectors', 'settings_connectors');
205
206                 if (x($_POST, 'general-submit')) {
207                         PConfig::set(local_user(), 'system', 'no_intelligent_shortening', intval($_POST['no_intelligent_shortening']));
208                         PConfig::set(local_user(), 'system', 'ostatus_autofriend', intval($_POST['snautofollow']));
209                         PConfig::set(local_user(), 'ostatus', 'default_group', $_POST['group-selection']);
210                         PConfig::set(local_user(), 'ostatus', 'legacy_contact', $_POST['legacy_contact']);
211                 } elseif (x($_POST, 'imap-submit')) {
212
213                         $mail_server       = ((x($_POST, 'mail_server')) ? $_POST['mail_server'] : '');
214                         $mail_port         = ((x($_POST, 'mail_port')) ? $_POST['mail_port'] : '');
215                         $mail_ssl          = ((x($_POST, 'mail_ssl')) ? strtolower(trim($_POST['mail_ssl'])) : '');
216                         $mail_user         = ((x($_POST, 'mail_user')) ? $_POST['mail_user'] : '');
217                         $mail_pass         = ((x($_POST, 'mail_pass')) ? trim($_POST['mail_pass']) : '');
218                         $mail_action       = ((x($_POST, 'mail_action')) ? trim($_POST['mail_action']) : '');
219                         $mail_movetofolder = ((x($_POST, 'mail_movetofolder')) ? trim($_POST['mail_movetofolder']) : '');
220                         $mail_replyto      = ((x($_POST, 'mail_replyto')) ? $_POST['mail_replyto'] : '');
221                         $mail_pubmail      = ((x($_POST, 'mail_pubmail')) ? $_POST['mail_pubmail'] : '');
222
223
224                         $mail_disabled = ((function_exists('imap_open') && (!Config::get('system', 'imap_disabled'))) ? 0 : 1);
225                         if (Config::get('system', 'dfrn_only')) {
226                                 $mail_disabled = 1;
227                         }
228
229                         if (!$mail_disabled) {
230                                 $failed = false;
231                                 $r = q("SELECT * FROM `mailacct` WHERE `uid` = %d LIMIT 1",
232                                         intval(local_user())
233                                 );
234                                 if (!DBM::is_result($r)) {
235                                         dba::insert('mailacct', array('uid' => local_user()));
236                                 }
237                                 if (strlen($mail_pass)) {
238                                         $pass = '';
239                                         openssl_public_encrypt($mail_pass, $pass, $a->user['pubkey']);
240                                         dba::update('mailacct', array('pass' => bin2hex($pass)), array('uid' => local_user()));
241                                 }
242                                 $r = q("UPDATE `mailacct` SET `server` = '%s', `port` = %d, `ssltype` = '%s', `user` = '%s',
243                                         `action` = %d, `movetofolder` = '%s',
244                                         `mailbox` = 'INBOX', `reply_to` = '%s', `pubmail` = %d WHERE `uid` = %d",
245                                         dbesc($mail_server),
246                                         intval($mail_port),
247                                         dbesc($mail_ssl),
248                                         dbesc($mail_user),
249                                         intval($mail_action),
250                                         dbesc($mail_movetofolder),
251                                         dbesc($mail_replyto),
252                                         intval($mail_pubmail),
253                                         intval(local_user())
254                                 );
255                                 logger("mail: updating mailaccount. Response: ".print_r($r, true));
256                                 $r = q("SELECT * FROM `mailacct` WHERE `uid` = %d LIMIT 1",
257                                         intval(local_user())
258                                 );
259                                 if (DBM::is_result($r)) {
260                                         $eacct = $r[0];
261                                         require_once('include/email.php');
262                                         $mb = construct_mailbox_name($eacct);
263                                         if (strlen($eacct['server'])) {
264                                                 $dcrpass = '';
265                                                 openssl_private_decrypt(hex2bin($eacct['pass']), $dcrpass, $a->user['prvkey']);
266                                                 $mbox = email_connect($mb, $mail_user, $dcrpass);
267                                                 unset($dcrpass);
268                                                 if (!$mbox) {
269                                                         $failed = true;
270                                                         notice(t('Failed to connect with email account using the settings provided.') . EOL);
271                                                 }
272                                         }
273                                 }
274                                 if (!$failed) {
275                                         info(t('Email settings updated.') . EOL);
276                                 }
277                         }
278                 }
279
280                 call_hooks('connector_settings_post', $_POST);
281                 return;
282         }
283
284         if (($a->argc > 1) && ($a->argv[1] === 'features')) {
285                 check_form_security_token_redirectOnErr('/settings/features', 'settings_features');
286                 foreach ($_POST as $k => $v) {
287                         if (strpos($k, 'feature_') === 0) {
288                                 PConfig::set(local_user(), 'feature', substr($k, 8), ((intval($v)) ? 1 : 0));
289                         }
290                 }
291                 info(t('Features updated') . EOL);
292                 return;
293         }
294
295         if (($a->argc > 1) && ($a->argv[1] === 'display')) {
296                 check_form_security_token_redirectOnErr('/settings/display', 'settings_display');
297
298                 $theme             = x($_POST, 'theme')             ? notags(trim($_POST['theme']))        : $a->user['theme'];
299                 $mobile_theme      = x($_POST, 'mobile_theme')      ? notags(trim($_POST['mobile_theme'])) : '';
300                 $nosmile           = x($_POST, 'nosmile')           ? intval($_POST['nosmile'])            : 0;
301                 $first_day_of_week = x($_POST, 'first_day_of_week') ? intval($_POST['first_day_of_week'])  : 0;
302                 $noinfo            = x($_POST, 'noinfo')            ? intval($_POST['noinfo'])             : 0;
303                 $infinite_scroll   = x($_POST, 'infinite_scroll')   ? intval($_POST['infinite_scroll'])    : 0;
304                 $no_auto_update    = x($_POST, 'no_auto_update')    ? intval($_POST['no_auto_update'])     : 0;
305                 $bandwidth_saver   = x($_POST, 'bandwidth_saver')   ? intval($_POST['bandwidth_saver'])    : 0;
306                 $smart_threading   = x($_POST, 'smart_threading')   ? intval($_POST['smart_threading'])    : 0;
307                 $nowarn_insecure   = x($_POST, 'nowarn_insecure')   ? intval($_POST['nowarn_insecure'])    : 0;
308                 $browser_update    = x($_POST, 'browser_update')    ? intval($_POST['browser_update'])     : 0;
309                 if ($browser_update != -1) {
310                         $browser_update = $browser_update * 1000;
311                         if ($browser_update < 10000) {
312                                 $browser_update = 10000;
313                         }
314                 }
315
316                 $itemspage_network = x($_POST, 'itemspage_network')  ? intval($_POST['itemspage_network'])  : 40;
317                 if ($itemspage_network > 100) {
318                         $itemspage_network = 100;
319                 }
320                 $itemspage_mobile_network = x($_POST, 'itemspage_mobile_network') ? intval($_POST['itemspage_mobile_network']) : 20;
321                 if ($itemspage_mobile_network > 100) {
322                         $itemspage_mobile_network = 100;
323                 }
324
325                 if ($mobile_theme !== '') {
326                         PConfig::set(local_user(), 'system', 'mobile_theme', $mobile_theme);
327                 }
328
329                 PConfig::set(local_user(), 'system', 'nowarn_insecure'         , $nowarn_insecure);
330                 PConfig::set(local_user(), 'system', 'update_interval'         , $browser_update);
331                 PConfig::set(local_user(), 'system', 'itemspage_network'       , $itemspage_network);
332                 PConfig::set(local_user(), 'system', 'itemspage_mobile_network', $itemspage_mobile_network);
333                 PConfig::set(local_user(), 'system', 'no_smilies'              , $nosmile);
334                 PConfig::set(local_user(), 'system', 'first_day_of_week'       , $first_day_of_week);
335                 PConfig::set(local_user(), 'system', 'ignore_info'             , $noinfo);
336                 PConfig::set(local_user(), 'system', 'infinite_scroll'         , $infinite_scroll);
337                 PConfig::set(local_user(), 'system', 'no_auto_update'          , $no_auto_update);
338                 PConfig::set(local_user(), 'system', 'bandwidth_saver'         , $bandwidth_saver);
339                 PConfig::set(local_user(), 'system', 'smart_threading'         , $smart_threading);
340
341                 if ($theme == $a->user['theme']) {
342                         // call theme_post only if theme has not been changed
343                         if (($themeconfigfile = get_theme_config_file($theme)) != null) {
344                                 require_once($themeconfigfile);
345                                 theme_post($a);
346                         }
347                 }
348
349
350                 $r = q("UPDATE `user` SET `theme` = '%s' WHERE `uid` = %d",
351                                 dbesc($theme),
352                                 intval(local_user())
353                 );
354
355                 call_hooks('display_settings_post', $_POST);
356                 goaway('settings/display');
357                 return; // NOTREACHED
358         }
359
360         check_form_security_token_redirectOnErr('/settings', 'settings');
361
362         if (x($_POST,'resend_relocate')) {
363                 Worker::add(PRIORITY_HIGH, 'Notifier', 'relocate', local_user());
364                 info(t("Relocate message has been send to your contacts"));
365                 goaway('settings');
366         }
367
368         call_hooks('settings_post', $_POST);
369
370         if (x($_POST, 'password') || x($_POST, 'confirm')) {
371
372                 $newpass = $_POST['password'];
373                 $confirm = $_POST['confirm'];
374                 $oldpass = hash('whirlpool', $_POST['opassword']);
375
376                 $err = false;
377                 if ($newpass != $confirm) {
378                         notice(t('Passwords do not match. Password unchanged.') . EOL);
379                         $err = true;
380                 }
381
382                 if (!x($newpass) || !x($confirm)) {
383                         notice(t('Empty passwords are not allowed. Password unchanged.') . EOL);
384                         $err = true;
385         }
386
387         //  check if the old password was supplied correctly before
388         //  changing it to the new value
389         $r = q("SELECT `password` FROM `user`WHERE `uid` = %d LIMIT 1", intval(local_user()));
390         if ($oldpass != $r[0]['password']) {
391             notice(t('Wrong password.') . EOL);
392             $err = true;
393         }
394
395                 if (!$err) {
396                         $password = hash('whirlpool', $newpass);
397                         $r = q("UPDATE `user` SET `password` = '%s' WHERE `uid` = %d",
398                                 dbesc($password),
399                                 intval(local_user())
400                         );
401                         if ($r)
402                                 info(t('Password changed.') . EOL);
403                         else
404                                 notice(t('Password update failed. Please try again.') . EOL);
405                 }
406         }
407
408
409         $username         = ((x($_POST, 'username'))   ? notags(trim($_POST['username']))     : '');
410         $email            = ((x($_POST, 'email'))      ? notags(trim($_POST['email']))        : '');
411         $timezone         = ((x($_POST, 'timezone'))   ? notags(trim($_POST['timezone']))     : '');
412         $language         = ((x($_POST, 'language'))   ? notags(trim($_POST['language']))     : '');
413
414         $defloc           = ((x($_POST, 'defloc'))     ? notags(trim($_POST['defloc']))       : '');
415         $openid           = ((x($_POST, 'openid_url')) ? notags(trim($_POST['openid_url']))   : '');
416         $maxreq           = ((x($_POST, 'maxreq'))     ? intval($_POST['maxreq'])             : 0);
417         $expire           = ((x($_POST, 'expire'))     ? intval($_POST['expire'])             : 0);
418         $def_gid          = ((x($_POST, 'group-selection')) ? intval($_POST['group-selection']) : 0);
419
420
421         $expire_items     = ((x($_POST, 'expire_items')) ? intval($_POST['expire_items'])        : 0);
422         $expire_notes     = ((x($_POST, 'expire_notes')) ? intval($_POST['expire_notes'])        : 0);
423         $expire_starred   = ((x($_POST, 'expire_starred')) ? intval($_POST['expire_starred']) : 0);
424         $expire_photos    = ((x($_POST, 'expire_photos'))? intval($_POST['expire_photos'])       : 0);
425         $expire_network_only    = ((x($_POST, 'expire_network_only'))? intval($_POST['expire_network_only'])     : 0);
426
427         $allow_location   = (((x($_POST, 'allow_location')) && (intval($_POST['allow_location']) == 1)) ? 1: 0);
428         $publish          = (((x($_POST, 'profile_in_directory')) && (intval($_POST['profile_in_directory']) == 1)) ? 1: 0);
429         $net_publish      = (((x($_POST, 'profile_in_netdirectory')) && (intval($_POST['profile_in_netdirectory']) == 1)) ? 1: 0);
430         $old_visibility   = (((x($_POST, 'visibility')) && (intval($_POST['visibility']) == 1)) ? 1 : 0);
431         $account_type     = (((x($_POST, 'account-type')) && (intval($_POST['account-type']))) ? intval($_POST['account-type']) : 0);
432         $page_flags       = (((x($_POST, 'page-flags')) && (intval($_POST['page-flags']))) ? intval($_POST['page-flags']) : 0);
433         $blockwall        = (((x($_POST, 'blockwall')) && (intval($_POST['blockwall']) == 1)) ? 0: 1); // this setting is inverted!
434         $blocktags        = (((x($_POST, 'blocktags')) && (intval($_POST['blocktags']) == 1)) ? 0: 1); // this setting is inverted!
435         $unkmail          = (((x($_POST, 'unkmail')) && (intval($_POST['unkmail']) == 1)) ? 1: 0);
436         $cntunkmail       = ((x($_POST, 'cntunkmail')) ? intval($_POST['cntunkmail']) : 0);
437         $suggestme        = ((x($_POST, 'suggestme')) ? intval($_POST['suggestme'])  : 0);
438         $hide_friends     = (($_POST['hide-friends'] == 1) ? 1: 0);
439         $hidewall         = (($_POST['hidewall'] == 1) ? 1: 0);
440         $post_newfriend   = (($_POST['post_newfriend'] == 1) ? 1: 0);
441         $post_joingroup   = (($_POST['post_joingroup'] == 1) ? 1: 0);
442         $post_profilechange   = (($_POST['post_profilechange'] == 1) ? 1: 0);
443
444         $email_textonly   = (($_POST['email_textonly'] == 1) ? 1 : 0);
445         $detailed_notif   = (($_POST['detailed_notif'] == 1) ? 1 : 0);
446
447         $notify = 0;
448
449         if (x($_POST, 'notify1')) {
450                 $notify += intval($_POST['notify1']);
451         }
452         if (x($_POST, 'notify2')) {
453                 $notify += intval($_POST['notify2']);
454         }
455         if (x($_POST, 'notify3')) {
456                 $notify += intval($_POST['notify3']);
457         }
458         if (x($_POST, 'notify4')) {
459                 $notify += intval($_POST['notify4']);
460         }
461         if (x($_POST, 'notify5')) {
462                 $notify += intval($_POST['notify5']);
463         }
464         if (x($_POST, 'notify6')) {
465                 $notify += intval($_POST['notify6']);
466         }
467         if (x($_POST, 'notify7')) {
468                 $notify += intval($_POST['notify7']);
469         }
470         if (x($_POST, 'notify8')) {
471                 $notify += intval($_POST['notify8']);
472         }
473
474         // Adjust the page flag if the account type doesn't fit to the page flag.
475         if (($account_type == ACCOUNT_TYPE_PERSON) && !in_array($page_flags, array(PAGE_NORMAL, PAGE_SOAPBOX, PAGE_FREELOVE))) {
476                 $page_flags = PAGE_NORMAL;
477         } elseif (($account_type == ACCOUNT_TYPE_ORGANISATION) && !in_array($page_flags, array(PAGE_SOAPBOX))) {
478                 $page_flags = PAGE_SOAPBOX;
479         } elseif (($account_type == ACCOUNT_TYPE_NEWS) && !in_array($page_flags, array(PAGE_SOAPBOX))) {
480                 $page_flags = PAGE_SOAPBOX;
481         } elseif (($account_type == ACCOUNT_TYPE_COMMUNITY) && !in_array($page_flags, array(PAGE_COMMUNITY, PAGE_PRVGROUP))) {
482                 $page_flags = PAGE_COMMUNITY;
483         }
484
485         $email_changed = false;
486
487         $err = '';
488
489         $name_change = false;
490
491         if ($username != $a->user['username']) {
492                 $name_change = true;
493                 if (strlen($username) > 40) {
494                         $err .= t(' Please use a shorter name.');
495                 }
496                 if (strlen($username) < 3) {
497                         $err .= t(' Name too short.');
498                 }
499         }
500
501         if ($email != $a->user['email']) {
502                 $email_changed = true;
503                 //  check for the correct password
504                 $r = q("SELECT `password` FROM `user`WHERE `uid` = %d LIMIT 1", intval(local_user()));
505                 $password = hash('whirlpool', $_POST['mpassword']);
506                 if ($password != $r[0]['password']) {
507                         $err .= t('Wrong Password') . EOL;
508                         $email = $a->user['email'];
509                 }
510                 //  check the email is valid
511                 if (!valid_email($email)) {
512                         $err .= t(' Not valid email.');
513                 }
514                 //  ensure new email is not the admin mail
515                 //if ((x($a->config, 'admin_email')) && (strcasecmp($email, $a->config['admin_email']) == 0)) {
516                 if (x($a->config, 'admin_email')) {
517                         $adminlist = explode(",", str_replace(" ", "", strtolower($a->config['admin_email'])));
518                         if (in_array(strtolower($email), $adminlist)) {
519                                 $err .= t(' Cannot change to that email.');
520                                 $email = $a->user['email'];
521                         }
522                 }
523         }
524
525         if (strlen($err)) {
526                 notice($err . EOL);
527                 return;
528         }
529
530         if (($timezone != $a->user['timezone']) && strlen($timezone)) {
531                 date_default_timezone_set($timezone);
532         }
533
534         $str_group_allow   = perms2str($_POST['group_allow']);
535         $str_contact_allow = perms2str($_POST['contact_allow']);
536         $str_group_deny    = perms2str($_POST['group_deny']);
537         $str_contact_deny  = perms2str($_POST['contact_deny']);
538
539         $openidserver = $a->user['openidserver'];
540         //$openid = normalise_openid($openid);
541
542         // If openid has changed or if there's an openid but no openidserver, try and discover it.
543
544         if ($openid != $a->user['openid'] || (strlen($openid) && (!strlen($openidserver)))) {
545                 $tmp_str = $openid;
546                 if (strlen($tmp_str) && validate_url($tmp_str)) {
547                         logger('updating openidserver');
548                         require_once('library/openid.php');
549                         $open_id_obj = new LightOpenID;
550                         $open_id_obj->identity = $openid;
551                         $openidserver = $open_id_obj->discover($open_id_obj->identity);
552                 } else {
553                         $openidserver = '';
554                 }
555         }
556
557         PConfig::set(local_user(), 'expire', 'items', $expire_items);
558         PConfig::set(local_user(), 'expire', 'notes', $expire_notes);
559         PConfig::set(local_user(), 'expire', 'starred', $expire_starred);
560         PConfig::set(local_user(), 'expire', 'photos', $expire_photos);
561         PConfig::set(local_user(), 'expire', 'network_only', $expire_network_only);
562
563         PConfig::set(local_user(), 'system', 'suggestme', $suggestme);
564         PConfig::set(local_user(), 'system', 'post_newfriend', $post_newfriend);
565         PConfig::set(local_user(), 'system', 'post_joingroup', $post_joingroup);
566         PConfig::set(local_user(), 'system', 'post_profilechange', $post_profilechange);
567
568         PConfig::set(local_user(), 'system', 'email_textonly', $email_textonly);
569         PConfig::set(local_user(), 'system', 'detailed_notif', $detailed_notif);
570
571         if ($page_flags == PAGE_PRVGROUP) {
572                 $hidewall = 1;
573                 if (!$str_contact_allow && !$str_group_allow && !$str_contact_deny && !$str_group_deny) {
574                         if ($def_gid) {
575                                 info(t('Private forum has no privacy permissions. Using default privacy group.'). EOL);
576                                 $str_group_allow = '<' . $def_gid . '>';
577                         } else {
578                                 notice(t('Private forum has no privacy permissions and no default privacy group.') . EOL);
579                         }
580                 }
581         }
582
583
584         $r = q("UPDATE `user` SET `username` = '%s', `email` = '%s',
585                                 `openid` = '%s', `timezone` = '%s',
586                                 `allow_cid` = '%s', `allow_gid` = '%s', `deny_cid` = '%s', `deny_gid` = '%s',
587                                 `notify-flags` = %d, `page-flags` = %d, `account-type` = %d, `default-location` = '%s',
588                                 `allow_location` = %d, `maxreq` = %d, `expire` = %d, `openidserver` = '%s',
589                                 `def_gid` = %d, `blockwall` = %d, `hidewall` = %d, `blocktags` = %d,
590                                 `unkmail` = %d, `cntunkmail` = %d, `language` = '%s'
591                         WHERE `uid` = %d",
592                         dbesc($username),
593                         dbesc($email),
594                         dbesc($openid),
595                         dbesc($timezone),
596                         dbesc($str_contact_allow),
597                         dbesc($str_group_allow),
598                         dbesc($str_contact_deny),
599                         dbesc($str_group_deny),
600                         intval($notify),
601                         intval($page_flags),
602                         intval($account_type),
603                         dbesc($defloc),
604                         intval($allow_location),
605                         intval($maxreq),
606                         intval($expire),
607                         dbesc($openidserver),
608                         intval($def_gid),
609                         intval($blockwall),
610                         intval($hidewall),
611                         intval($blocktags),
612                         intval($unkmail),
613                         intval($cntunkmail),
614                         dbesc($language),
615                         intval(local_user())
616         );
617         if ($r) {
618                 info(t('Settings updated.') . EOL);
619         }
620
621         // clear session language
622         unset($_SESSION['language']);
623
624         $r = q("UPDATE `profile`
625                 SET `publish` = %d,
626                 `name` = '%s',
627                 `net-publish` = %d,
628                 `hide-friends` = %d
629                 WHERE `is-default` = 1 AND `uid` = %d",
630                 intval($publish),
631                 dbesc($username),
632                 intval($net_publish),
633                 intval($hide_friends),
634                 intval(local_user())
635         );
636
637
638         if ($name_change) {
639                 q("UPDATE `contact` SET `name` = '%s', `name-date` = '%s' WHERE `uid` = %d AND `self`",
640                         dbesc($username),
641                         dbesc(datetime_convert()),
642                         intval(local_user())
643                 );
644         }
645
646         if (($old_visibility != $net_publish) || ($page_flags != $old_page_flags)) {
647                 // Update global directory in background
648                 $url = $_SESSION['my_url'];
649                 if ($url && strlen(Config::get('system', 'directory'))) {
650                         Worker::add(PRIORITY_LOW, "Directory", $url);
651                 }
652         }
653
654         Worker::add(PRIORITY_LOW, 'ProfileUpdate', local_user());
655
656         // Update the global contact for the user
657         GlobalContact::updateForUser(local_user());
658
659         //$_SESSION['theme'] = $theme;
660         if ($email_changed && $a->config['register_policy'] == REGISTER_VERIFY) {
661
662                 /// @TODO set to un-verified, blocked and redirect to logout
663                 /// @TODO Why? Are we verifying people or email addresses?
664
665         }
666
667         goaway('settings');
668         return; // NOTREACHED
669 }
670
671
672 function settings_content(App $a) {
673
674         $o = '';
675         nav_set_selected('settings');
676
677         if (!local_user()) {
678                 //notice(t('Permission denied.') . EOL);
679                 return;
680         }
681
682         if (x($_SESSION, 'submanage') && intval($_SESSION['submanage'])) {
683                 notice(t('Permission denied.') . EOL);
684                 return;
685         }
686
687
688
689         if (($a->argc > 1) && ($a->argv[1] === 'oauth')) {
690
691                 if (($a->argc > 2) && ($a->argv[2] === 'add')) {
692                         $tpl = get_markup_template("settings_oauth_edit.tpl");
693                         $o .= replace_macros($tpl, array(
694                                 '$form_security_token' => get_form_security_token("settings_oauth"),
695                                 '$title'        => t('Add application'),
696                                 '$submit'       => t('Save Settings'),
697                                 '$cancel'       => t('Cancel'),
698                                 '$name'         => array('name', t('Name'), '', ''),
699                                 '$key'          => array('key', t('Consumer Key'), '', ''),
700                                 '$secret'       => array('secret', t('Consumer Secret'), '', ''),
701                                 '$redirect'     => array('redirect', t('Redirect'), '', ''),
702                                 '$icon'         => array('icon', t('Icon url'), '', ''),
703                         ));
704                         return $o;
705                 }
706
707                 if (($a->argc > 3) && ($a->argv[2] === 'edit')) {
708                         $r = q("SELECT * FROM clients WHERE client_id='%s' AND uid=%d",
709                                         dbesc($a->argv[3]),
710                                         local_user());
711
712                         if (!DBM::is_result($r)) {
713                                 notice(t("You can't edit this application."));
714                                 return;
715                         }
716                         $app = $r[0];
717
718                         $tpl = get_markup_template("settings_oauth_edit.tpl");
719                         $o .= replace_macros($tpl, array(
720                                 '$form_security_token' => get_form_security_token("settings_oauth"),
721                                 '$title'        => t('Add application'),
722                                 '$submit'       => t('Update'),
723                                 '$cancel'       => t('Cancel'),
724                                 '$name'         => array('name', t('Name'), $app['name'] , ''),
725                                 '$key'          => array('key', t('Consumer Key'), $app['client_id'], ''),
726                                 '$secret'       => array('secret', t('Consumer Secret'), $app['pw'], ''),
727                                 '$redirect'     => array('redirect', t('Redirect'), $app['redirect_uri'], ''),
728                                 '$icon'         => array('icon', t('Icon url'), $app['icon'], ''),
729                         ));
730                         return $o;
731                 }
732
733                 if (($a->argc > 3) && ($a->argv[2] === 'delete')) {
734                         check_form_security_token_redirectOnErr('/settings/oauth', 'settings_oauth', 't');
735
736                         $r = q("DELETE FROM clients WHERE client_id='%s' AND uid=%d",
737                                         dbesc($a->argv[3]),
738                                         local_user());
739                         goaway(System::baseUrl(true)."/settings/oauth/");
740                         return;
741                 }
742
743                 /// @TODO validate result with DBM::is_result()
744                 $r = q("SELECT clients.*, tokens.id as oauth_token, (clients.uid=%d) AS my
745                                 FROM clients
746                                 LEFT JOIN tokens ON clients.client_id=tokens.client_id
747                                 WHERE clients.uid IN (%d, 0)",
748                                 local_user(),
749                                 local_user());
750
751
752                 $tpl = get_markup_template("settings_oauth.tpl");
753                 $o .= replace_macros($tpl, array(
754                         '$form_security_token' => get_form_security_token("settings_oauth"),
755                         '$baseurl'      => System::baseUrl(true),
756                         '$title'        => t('Connected Apps'),
757                         '$add'          => t('Add application'),
758                         '$edit'         => t('Edit'),
759                         '$delete'               => t('Delete'),
760                         '$consumerkey' => t('Client key starts with'),
761                         '$noname'       => t('No name'),
762                         '$remove'       => t('Remove authorization'),
763                         '$apps'         => $r,
764                 ));
765                 return $o;
766
767         }
768
769         if (($a->argc > 1) && ($a->argv[1] === 'addon')) {
770                 $settings_addons = "";
771
772                 $r = q("SELECT * FROM `hook` WHERE `hook` = 'plugin_settings' ");
773                 if (!DBM::is_result($r)) {
774                         $settings_addons = t('No Plugin settings configured');
775                 }
776
777                 call_hooks('plugin_settings', $settings_addons);
778
779
780                 $tpl = get_markup_template("settings_addons.tpl");
781                 $o .= replace_macros($tpl, array(
782                         '$form_security_token' => get_form_security_token("settings_addon"),
783                         '$title'        => t('Plugin Settings'),
784                         '$settings_addons' => $settings_addons
785                 ));
786                 return $o;
787         }
788
789         if (($a->argc > 1) && ($a->argv[1] === 'features')) {
790
791                 $arr = array();
792                 $features = get_features();
793                 foreach ($features as $fname => $fdata) {
794                         $arr[$fname] = array();
795                         $arr[$fname][0] = $fdata[0];
796                         foreach (array_slice($fdata,1) as $f) {
797                                 $arr[$fname][1][] = array('feature_' .$f[0], $f[1],((intval(feature_enabled(local_user(), $f[0]))) ? "1" : ''), $f[2],array(t('Off'), t('On')));
798                         }
799                 }
800
801
802                 $tpl = get_markup_template("settings_features.tpl");
803                 $o .= replace_macros($tpl, array(
804                         '$form_security_token' => get_form_security_token("settings_features"),
805                         '$title'               => t('Additional Features'),
806                         '$features'            => $arr,
807                         '$submit'              => t('Save Settings'),
808                 ));
809                 return $o;
810         }
811
812         if (($a->argc > 1) && ($a->argv[1] === 'connectors')) {
813
814                 $settings_connectors = '<span id="settings_general_inflated" class="settings-block fakelink" style="display: block;" onclick="openClose(\'settings_general_expanded\'); openClose(\'settings_general_inflated\');">';
815                 $settings_connectors .= '<h3 class="connector">'. t('General Social Media Settings').'</h3>';
816                 $settings_connectors .= '</span>';
817                 $settings_connectors .= '<div id="settings_general_expanded" class="settings-block" style="display: none;">';
818                 $settings_connectors .= '<span class="fakelink" onclick="openClose(\'settings_general_expanded\'); openClose(\'settings_general_inflated\');">';
819                 $settings_connectors .= '<h3 class="connector">'. t('General Social Media Settings').'</h3>';
820                 $settings_connectors .= '</span>';
821
822                 $checked = ((PConfig::get(local_user(), 'system', 'no_intelligent_shortening')) ? ' checked="checked" ' : '');
823
824                 $settings_connectors .= '<div id="no_intelligent_shortening" class="field checkbox">';
825                 $settings_connectors .= '<label id="no_intelligent_shortening-label" for="shortening-checkbox">'. t('Disable intelligent shortening'). '</label>';
826                 $settings_connectors .= '<input id="shortening-checkbox" type="checkbox" name="no_intelligent_shortening" value="1" ' . $checked . '/>';
827                 $settings_connectors .= '<span class="field_help">'.t('Normally the system tries to find the best link to add to shortened posts. If this option is enabled then every shortened post will always point to the original friendica post.').'</span>';
828                 $settings_connectors .= '</div>';
829
830                 $checked = ((PConfig::get(local_user(), 'system', 'ostatus_autofriend')) ? ' checked="checked" ' : '');
831
832                 $settings_connectors .= '<div id="snautofollow-wrapper" class="field checkbox">';
833                 $settings_connectors .= '<label id="snautofollow-label" for="snautofollow-checkbox">'. t('Automatically follow any GNU Social (OStatus) followers/mentioners'). '</label>';
834                 $settings_connectors .= '<input id="snautofollow-checkbox" type="checkbox" name="snautofollow" value="1" ' . $checked . '/>';
835                 $settings_connectors .= '<span class="field_help">'.t('If you receive a message from an unknown OStatus user, this option decides what to do. If it is checked, a new contact will be created for every unknown user.').'</span>';
836                 $settings_connectors .= '</div>';
837
838                 $default_group = PConfig::get(local_user(), 'ostatus', 'default_group');
839                 $legacy_contact = PConfig::get(local_user(), 'ostatus', 'legacy_contact');
840
841                 $settings_connectors .= mini_group_select(local_user(), $default_group, t("Default group for OStatus contacts"));
842
843                 /// @TODO Found to much different usage to test empty/non-empty strings (e.g. empty(), trim() == '') which is wanted?
844                 if ($legacy_contact != "") {
845                         $a->page['htmlhead'] = '<meta http-equiv="refresh" content="0; URL='.System::baseUrl().'/ostatus_subscribe?url='.urlencode($legacy_contact).'">';
846                 }
847
848                 $settings_connectors .= '<div id="legacy-contact-wrapper" class="field input">';
849                 $settings_connectors .= '<label id="legacy-contact-label" for="snautofollow-checkbox">'. t('Your legacy GNU Social account'). '</label>';
850                 $settings_connectors .= '<input id="legacy-contact-checkbox" name="legacy_contact" value="'.$legacy_contact.'"/>';
851                 $settings_connectors .= '<span class="field_help">'.t('If you enter your old GNU Social/Statusnet account name here (in the format user@domain.tld), your contacts will be added automatically. The field will be emptied when done.').'</span>';
852                 $settings_connectors .= '</div>';
853
854                 $settings_connectors .= '<p><a href="'.System::baseUrl().'/repair_ostatus">'.t("Repair OStatus subscriptions").'</a></p>';
855
856                 $settings_connectors .= '<div class="settings-submit-wrapper" ><input type="submit" name="general-submit" class="settings-submit" value="' . t('Save Settings') . '" /></div>';
857
858                 $settings_connectors .= '</div><div class="clear"></div>';
859
860                 call_hooks('connector_settings', $settings_connectors);
861
862                 if (is_site_admin()) {
863                         $diasp_enabled = sprintf(t('Built-in support for %s connectivity is %s'), t('Diaspora'), ((Config::get('system', 'diaspora_enabled')) ? t('enabled') : t('disabled')));
864                         $ostat_enabled = sprintf(t('Built-in support for %s connectivity is %s'), t('GNU Social (OStatus)'), ((Config::get('system', 'ostatus_disabled')) ? t('disabled') : t('enabled')));
865                 } else {
866                         $diasp_enabled = "";
867                         $ostat_enabled = "";
868                 }
869
870                 $mail_disabled = ((function_exists('imap_open') && (!Config::get('system', 'imap_disabled'))) ? 0 : 1);
871                 if (Config::get('system', 'dfrn_only')) {
872                         $mail_disabled = 1;
873                 }
874                 if (!$mail_disabled) {
875                         $r = q("SELECT * FROM `mailacct` WHERE `uid` = %d LIMIT 1",
876                                 local_user()
877                         );
878                 } else {
879                         $r = null;
880                 }
881
882                 $mail_server       = ((DBM::is_result($r)) ? $r[0]['server'] : '');
883                 $mail_port         = ((DBM::is_result($r) && intval($r[0]['port'])) ? intval($r[0]['port']) : '');
884                 $mail_ssl          = ((DBM::is_result($r)) ? $r[0]['ssltype'] : '');
885                 $mail_user         = ((DBM::is_result($r)) ? $r[0]['user'] : '');
886                 $mail_replyto      = ((DBM::is_result($r)) ? $r[0]['reply_to'] : '');
887                 $mail_pubmail      = ((DBM::is_result($r)) ? $r[0]['pubmail'] : 0);
888                 $mail_action       = ((DBM::is_result($r)) ? $r[0]['action'] : 0);
889                 $mail_movetofolder = ((DBM::is_result($r)) ? $r[0]['movetofolder'] : '');
890                 $mail_chk          = ((DBM::is_result($r)) ? $r[0]['last_check'] : NULL_DATE);
891
892
893                 $tpl = get_markup_template("settings_connectors.tpl");
894
895                 $mail_disabled_message = (($mail_disabled) ? t('Email access is disabled on this site.') : '');
896
897                 $o .= replace_macros($tpl, array(
898                         '$form_security_token' => get_form_security_token("settings_connectors"),
899
900                         '$title'        => t('Social Networks'),
901
902                         '$diasp_enabled' => $diasp_enabled,
903                         '$ostat_enabled' => $ostat_enabled,
904
905                         '$h_imap' => t('Email/Mailbox Setup'),
906                         '$imap_desc' => t("If you wish to communicate with email contacts using this service \x28optional\x29, please specify how to connect to your mailbox."),
907                         '$imap_lastcheck' => array('imap_lastcheck', t('Last successful email check:'), $mail_chk, ''),
908                         '$mail_disabled' => $mail_disabled_message,
909                         '$mail_server'  => array('mail_server',  t('IMAP server name:'), $mail_server, ''),
910                         '$mail_port'    => array('mail_port',    t('IMAP port:'), $mail_port, ''),
911                         '$mail_ssl'             => array('mail_ssl',     t('Security:'), strtoupper($mail_ssl), '', array('notls'=>t('None'), 'TLS'=>'TLS', 'SSL'=>'SSL')),
912                         '$mail_user'    => array('mail_user',    t('Email login name:'), $mail_user, ''),
913                         '$mail_pass'    => array('mail_pass',    t('Email password:'), '', ''),
914                         '$mail_replyto' => array('mail_replyto', t('Reply-to address:'), $mail_replyto, 'Optional'),
915                         '$mail_pubmail' => array('mail_pubmail', t('Send public posts to all email contacts:'), $mail_pubmail, ''),
916                         '$mail_action'  => array('mail_action',  t('Action after import:'), $mail_action, '', array(0=>t('None'), /*1=>t('Delete'),*/ 2=>t('Mark as seen'), 3=>t('Move to folder'))),
917                         '$mail_movetofolder'    => array('mail_movetofolder',    t('Move to folder:'), $mail_movetofolder, ''),
918                         '$submit' => t('Save Settings'),
919
920                         '$settings_connectors' => $settings_connectors
921                 ));
922
923                 call_hooks('display_settings', $o);
924                 return $o;
925         }
926
927         /*
928          * DISPLAY SETTINGS
929          */
930         if (($a->argc > 1) && ($a->argv[1] === 'display')) {
931                 $default_theme = Config::get('system', 'theme');
932                 if (!$default_theme) {
933                         $default_theme = 'default';
934                 }
935                 $default_mobile_theme = Config::get('system', 'mobile-theme');
936                 if (!$mobile_default_theme) {
937                         $mobile_default_theme = 'none';
938                 }
939
940                 $allowed_themes_str = Config::get('system', 'allowed_themes');
941                 $allowed_themes_raw = explode(',', $allowed_themes_str);
942                 $allowed_themes = array();
943                 if (count($allowed_themes_raw)) {
944                         foreach ($allowed_themes_raw as $x) {
945                                 if (strlen(trim($x)) && is_dir("view/theme/$x")) {
946                                         $allowed_themes[] = trim($x);
947                                 }
948                         }
949                 }
950
951
952                 $themes = array();
953                 $mobile_themes = array("---" => t('No special theme for mobile devices'));
954                 $files = glob('view/theme/*'); /* */
955                 if ($allowed_themes) {
956                         foreach ($allowed_themes as $th) {
957                                 $f = $th;
958                                 $is_experimental = file_exists('view/theme/' . $th . '/experimental');
959                                 $unsupported = file_exists('view/theme/' . $th . '/unsupported');
960                                 $is_mobile = file_exists('view/theme/' . $th . '/mobile');
961                                 if (!$is_experimental || ($is_experimental && (Config::get('experimentals', 'exp_themes')==1 || is_null(Config::get('experimentals', 'exp_themes'))))) {
962                                         $theme_name = (($is_experimental) ?  sprintf("%s - \x28Experimental\x29", $f) : $f);
963                                         if ($is_mobile) {
964                                                 $mobile_themes[$f]=$theme_name;
965                                         } else {
966                                                 $themes[$f]=$theme_name;
967                                         }
968                                 }
969                         }
970                 }
971                 $theme_selected = (!x($_SESSION, 'theme')? $default_theme : $_SESSION['theme']);
972                 $mobile_theme_selected = (!x($_SESSION, 'mobile-theme')? $default_mobile_theme : $_SESSION['mobile-theme']);
973
974                 $nowarn_insecure = intval(PConfig::get(local_user(), 'system', 'nowarn_insecure'));
975
976                 $browser_update = intval(PConfig::get(local_user(), 'system', 'update_interval'));
977                 if (intval($browser_update) != -1) {
978                         $browser_update = (($browser_update == 0) ? 40 : $browser_update / 1000); // default if not set: 40 seconds
979                 }
980
981                 $itemspage_network = intval(PConfig::get(local_user(), 'system', 'itemspage_network'));
982                 $itemspage_network = (($itemspage_network > 0 && $itemspage_network < 101) ? $itemspage_network : 40); // default if not set: 40 items
983                 $itemspage_mobile_network = intval(PConfig::get(local_user(), 'system', 'itemspage_mobile_network'));
984                 $itemspage_mobile_network = (($itemspage_mobile_network > 0 && $itemspage_mobile_network < 101) ? $itemspage_mobile_network : 20); // default if not set: 20 items
985
986                 $nosmile = PConfig::get(local_user(), 'system', 'no_smilies', 0);
987                 $first_day_of_week = PConfig::get(local_user(), 'system', 'first_day_of_week', 0);
988                 $weekdays = array(0 => t("Sunday"), 1 => t("Monday"));
989
990                 $noinfo = PConfig::get(local_user(), 'system', 'ignore_info', 0);
991                 $infinite_scroll = PConfig::get(local_user(), 'system', 'infinite_scroll', 0);
992                 $no_auto_update = PConfig::get(local_user(), 'system', 'no_auto_update', 0);
993                 $bandwidth_saver = PConfig::get(local_user(), 'system', 'bandwidth_saver', 0);
994                 $smart_threading = PConfig::get(local_user(), 'system', 'smart_threading', 0);
995
996                 $theme_config = "";
997                 if (($themeconfigfile = get_theme_config_file($theme_selected)) != null) {
998                         require_once($themeconfigfile);
999                         $theme_config = theme_content($a);
1000                 }
1001
1002                 $tpl = get_markup_template("settings_display.tpl");
1003                 $o = replace_macros($tpl, array(
1004                         '$ptitle'       => t('Display Settings'),
1005                         '$form_security_token' => get_form_security_token("settings_display"),
1006                         '$submit'       => t('Save Settings'),
1007                         '$baseurl' => System::baseUrl(true),
1008                         '$uid' => local_user(),
1009
1010                         '$theme'        => array('theme', t('Display Theme:'), $theme_selected, '', $themes, true),
1011                         '$mobile_theme' => array('mobile_theme', t('Mobile Theme:'), $mobile_theme_selected, '', $mobile_themes, false),
1012                         '$nowarn_insecure' => array('nowarn_insecure',  t('Suppress warning of insecure networks'), $nowarn_insecure, t("Should the system suppress the warning that the current group contains members of networks that can't receive non public postings.")),
1013                         '$ajaxint'   => array('browser_update',  t("Update browser every xx seconds"), $browser_update, t('Minimum of 10 seconds. Enter -1 to disable it.')),
1014                         '$itemspage_network'   => array('itemspage_network',  t("Number of items to display per page:"), $itemspage_network, t('Maximum of 100 items')),
1015                         '$itemspage_mobile_network'   => array('itemspage_mobile_network',  t("Number of items to display per page when viewed from mobile device:"), $itemspage_mobile_network, t('Maximum of 100 items')),
1016                         '$nosmile'      => array('nosmile', t("Don't show emoticons"), $nosmile, ''),
1017                         '$calendar_title' => t('Calendar'),
1018                         '$first_day_of_week'    => array('first_day_of_week', t('Beginning of week:'), $first_day_of_week, '', $weekdays, false),
1019                         '$noinfo'       => array('noinfo', t("Don't show notices"), $noinfo, ''),
1020                         '$infinite_scroll'      => array('infinite_scroll', t("Infinite scroll"), $infinite_scroll, ''),
1021                         '$no_auto_update'       => array('no_auto_update', t("Automatic updates only at the top of the network page"), $no_auto_update, t('When disabled, the network page is updated all the time, which could be confusing while reading.')),
1022                         '$bandwidth_saver' => array('bandwidth_saver', t('Bandwith Saver Mode'), $bandwidth_saver, t('When enabled, embedded content is not displayed on automatic updates, they only show on page reload.')),
1023                         '$smart_threading' => array('smart_threading', t('Smart Threading'), $smart_threading, t('When enabled, suppress extraneous thread indentation while keeping it where it matters. Only works if threading is available and enabled.')),
1024
1025                         '$d_tset' => t('General Theme Settings'),
1026                         '$d_ctset' => t('Custom Theme Settings'),
1027                         '$d_cset' => t('Content Settings'),
1028                         'stitle' => t('Theme settings'),
1029                         '$theme_config' => $theme_config,
1030                 ));
1031
1032                 $tpl = get_markup_template("settings_display_end.tpl");
1033                 $a->page['end'] .= replace_macros($tpl, array(
1034                         '$theme'        => array('theme', t('Display Theme:'), $theme_selected, '', $themes)
1035                 ));
1036
1037                 return $o;
1038         }
1039
1040
1041         /*
1042          * ACCOUNT SETTINGS
1043          */
1044
1045         require_once('include/acl_selectors.php');
1046
1047         $p = q("SELECT * FROM `profile` WHERE `is-default` = 1 AND `uid` = %d LIMIT 1",
1048                 intval(local_user())
1049         );
1050         if (count($p)) {
1051                 $profile = $p[0];
1052         }
1053
1054         $username   = $a->user['username'];
1055         $email      = $a->user['email'];
1056         $nickname   = $a->user['nickname'];
1057         $timezone   = $a->user['timezone'];
1058         $language   = $a->user['language'];
1059         $notify     = $a->user['notify-flags'];
1060         $defloc     = $a->user['default-location'];
1061         $openid     = $a->user['openid'];
1062         $maxreq     = $a->user['maxreq'];
1063         $expire     = ((intval($a->user['expire'])) ? $a->user['expire'] : '');
1064         $blockwall  = $a->user['blockwall'];
1065         $blocktags  = $a->user['blocktags'];
1066         $unkmail    = $a->user['unkmail'];
1067         $cntunkmail = $a->user['cntunkmail'];
1068
1069         $expire_items = PConfig::get(local_user(), 'expire', 'items', true);
1070         $expire_notes = PConfig::get(local_user(), 'expire', 'notes', true);
1071         $expire_starred = PConfig::get(local_user(), 'expire', 'starred', true);
1072         $expire_photos = PConfig::get(local_user(), 'expire', 'photos', false);
1073         $expire_network_only = PConfig::get(local_user(), 'expire', 'network_only', false);
1074         $suggestme = PConfig::get(local_user(), 'system', 'suggestme', false);
1075         $post_newfriend = PConfig::get(local_user(), 'system', 'post_newfriend', false);
1076         $post_joingroup = PConfig::get(local_user(), 'system', 'post_joingroup', false);
1077         $post_profilechange = PConfig::get(local_user(), 'system', 'post_profilechange', false);
1078
1079         // nowarn_insecure
1080
1081         if (!strlen($a->user['timezone'])) {
1082                 $timezone = date_default_timezone_get();
1083         }
1084
1085         // Set the account type to "Community" when the page is a community page but the account type doesn't fit
1086         // This is only happening on the first visit after the update
1087         if (in_array($a->user['page-flags'], array(PAGE_COMMUNITY, PAGE_PRVGROUP)) &&
1088                 ($a->user['account-type'] != ACCOUNT_TYPE_COMMUNITY))
1089                 $a->user['account-type'] = ACCOUNT_TYPE_COMMUNITY;
1090
1091         $pageset_tpl = get_markup_template('settings_pagetypes.tpl');
1092
1093         $pagetype = replace_macros($pageset_tpl, array(
1094                 '$account_types'        => t("Account Types"),
1095                 '$user'                 => t("Personal Page Subtypes"),
1096                 '$community'            => t("Community Forum Subtypes"),
1097                 '$account_type'         => $a->user['account-type'],
1098                 '$type_person'          => ACCOUNT_TYPE_PERSON,
1099                 '$type_organisation'    => ACCOUNT_TYPE_ORGANISATION,
1100                 '$type_news'            => ACCOUNT_TYPE_NEWS,
1101                 '$type_community'       => ACCOUNT_TYPE_COMMUNITY,
1102
1103                 '$account_person'       => array('account-type', t('Personal Page'), ACCOUNT_TYPE_PERSON,
1104                                                                         t('Account for a personal profile.'),
1105                                                                         ($a->user['account-type'] == ACCOUNT_TYPE_PERSON)),
1106
1107                 '$account_organisation' => array('account-type', t('Organisation Page'), ACCOUNT_TYPE_ORGANISATION,
1108                                                                         t('Account for an organisation that automatically approves contact requests as "Followers".'),
1109                                                                         ($a->user['account-type'] == ACCOUNT_TYPE_ORGANISATION)),
1110
1111                 '$account_news'         => array('account-type', t('News Page'), ACCOUNT_TYPE_NEWS,
1112                                                                         t('Account for a news reflector that automatically approves contact requests as "Followers".'),
1113                                                                         ($a->user['account-type'] == ACCOUNT_TYPE_NEWS)),
1114
1115                 '$account_community'    => array('account-type', t('Community Forum'), ACCOUNT_TYPE_COMMUNITY,
1116                                                                         t('Account for community discussions.'),
1117                                                                         ($a->user['account-type'] == ACCOUNT_TYPE_COMMUNITY)),
1118
1119                 '$page_normal'          => array('page-flags', t('Normal Account Page'), PAGE_NORMAL,
1120                                                                         t('Account for a regular personal profile that requires manual approval of "Friends" and "Followers".'),
1121                                                                         ($a->user['page-flags'] == PAGE_NORMAL)),
1122
1123                 '$page_soapbox'         => array('page-flags', t('Soapbox Page'), PAGE_SOAPBOX,
1124                                                                         t('Account for a public profile that automatically approves contact requests as "Followers".'),
1125                                                                         ($a->user['page-flags'] == PAGE_SOAPBOX)),
1126
1127                 '$page_community'       => array('page-flags', t('Public Forum'), PAGE_COMMUNITY,
1128                                                                         t('Automatically approves all contact requests.'),
1129                                                                         ($a->user['page-flags'] == PAGE_COMMUNITY)),
1130
1131                 '$page_freelove'        => array('page-flags', t('Automatic Friend Page'), PAGE_FREELOVE,
1132                                                                         t('Account for a popular profile that automatically approves contact requests as "Friends".'),
1133                                                                         ($a->user['page-flags'] == PAGE_FREELOVE)),
1134
1135                 '$page_prvgroup'        => array('page-flags', t('Private Forum [Experimental]'), PAGE_PRVGROUP,
1136                                                                         t('Requires manual approval of contact requests.'),
1137                                                                         ($a->user['page-flags'] == PAGE_PRVGROUP)),
1138
1139
1140         ));
1141
1142         $noid = Config::get('system', 'no_openid');
1143
1144         if ($noid) {
1145                 $openid_field = false;
1146         } else {
1147                 $openid_field = array('openid_url', t('OpenID:'), $openid, t("\x28Optional\x29 Allow this OpenID to login to this account."), "", "", "url");
1148         }
1149
1150         $opt_tpl = get_markup_template("field_yesno.tpl");
1151         if (Config::get('system', 'publish_all')) {
1152                 $profile_in_dir = '<input type="hidden" name="profile_in_directory" value="1" />';
1153         } else {
1154                 $profile_in_dir = replace_macros($opt_tpl, array(
1155                         '$field' => array('profile_in_directory', t('Publish your default profile in your local site directory?'), $profile['publish'], t("Your profile may be visible in public."), array(t('No'), t('Yes')))
1156                 ));
1157         }
1158
1159         if (strlen(Config::get('system', 'directory'))) {
1160                 $profile_in_net_dir = replace_macros($opt_tpl, array(
1161                         '$field' => array('profile_in_netdirectory', t('Publish your default profile in the global social directory?'), $profile['net-publish'], '', array(t('No'), t('Yes')))
1162                 ));
1163         } else {
1164                 $profile_in_net_dir = '';
1165         }
1166
1167         $hide_friends = replace_macros($opt_tpl,array(
1168                         '$field'        => array('hide-friends', t('Hide your contact/friend list from viewers of your default profile?'), $profile['hide-friends'], '', array(t('No'), t('Yes'))),
1169         ));
1170
1171         $hide_wall = replace_macros($opt_tpl,array(
1172                         '$field'        => array('hidewall',  t('Hide your profile details from unknown viewers?'), $a->user['hidewall'], t("If enabled, posting public messages to Diaspora and other networks isn't possible."), array(t('No'), t('Yes'))),
1173
1174         ));
1175
1176         $blockwall = replace_macros($opt_tpl,array(
1177                         '$field'        => array('blockwall',  t('Allow friends to post to your profile page?'), (intval($a->user['blockwall']) ? '0' : '1'), '', array(t('No'), t('Yes'))),
1178
1179         ));
1180
1181         $blocktags = replace_macros($opt_tpl,array(
1182                         '$field'        => array('blocktags',  t('Allow friends to tag your posts?'), (intval($a->user['blocktags']) ? '0' : '1'), '', array(t('No'), t('Yes'))),
1183
1184         ));
1185
1186         $suggestme = replace_macros($opt_tpl,array(
1187                         '$field'        => array('suggestme',  t('Allow us to suggest you as a potential friend to new members?'), $suggestme, '', array(t('No'), t('Yes'))),
1188
1189         ));
1190
1191         $unkmail = replace_macros($opt_tpl,array(
1192                         '$field'        => array('unkmail',  t('Permit unknown people to send you private mail?'), $unkmail, '', array(t('No'), t('Yes'))),
1193
1194         ));
1195
1196         $invisible = (((!$profile['publish']) && (!$profile['net-publish']))
1197                 ? true : false);
1198
1199         if ($invisible) {
1200                 info(t('Profile is <strong>not published</strong>.') . EOL);
1201         }
1202
1203         //$subdir = ((strlen($a->get_path())) ? '<br />' . t('or') . ' ' . 'profile/' . $nickname : '');
1204
1205         $tpl_addr = get_markup_template("settings_nick_set.tpl");
1206
1207         $prof_addr = replace_macros($tpl_addr,array(
1208                 '$desc' => sprintf(t("Your Identity Address is <strong>'%s'</strong> or '%s'."), $nickname.'@'.$a->get_hostname().$a->get_path(), System::baseUrl().'/profile/'.$nickname),
1209                 '$basepath' => $a->get_hostname()
1210         ));
1211
1212         $stpl = get_markup_template('settings.tpl');
1213
1214         $expire_arr = array(
1215                 'days' => array('expire',  t("Automatically expire posts after this many days:"), $expire, t('If empty, posts will not expire. Expired posts will be deleted')),
1216                 'advanced' => t('Advanced expiration settings'),
1217                 'label' => t('Advanced Expiration'),
1218                 'items' => array('expire_items',  t("Expire posts:"), $expire_items, '', array(t('No'), t('Yes'))),
1219                 'notes' => array('expire_notes',  t("Expire personal notes:"), $expire_notes, '', array(t('No'), t('Yes'))),
1220                 'starred' => array('expire_starred',  t("Expire starred posts:"), $expire_starred, '', array(t('No'), t('Yes'))),
1221                 'photos' => array('expire_photos',  t("Expire photos:"), $expire_photos, '', array(t('No'), t('Yes'))),
1222                 'network_only' => array('expire_network_only',  t("Only expire posts by others:"), $expire_network_only, '', array(t('No'), t('Yes'))),
1223         );
1224
1225         require_once('include/group.php');
1226         $group_select = mini_group_select(local_user(), $a->user['def_gid']);
1227
1228         // Private/public post links for the non-JS ACL form
1229         $private_post = 1;
1230         if ($_REQUEST['public']) {
1231                 $private_post = 0;
1232         }
1233
1234         $query_str = $a->query_string;
1235         if (strpos($query_str, 'public=1') !== false) {
1236                 $query_str = str_replace(array('?public=1', '&public=1'), array('', ''), $query_str);
1237         }
1238
1239         // I think $a->query_string may never have ? in it, but I could be wrong
1240         // It looks like it's from the index.php?q=[etc] rewrite that the web
1241         // server does, which converts any ? to &, e.g. suggest&ignore=61 for suggest?ignore=61
1242         if (strpos($query_str, '?') === false) {
1243                 $public_post_link = '?public=1';
1244         } else {
1245                 $public_post_link = '&public=1';
1246         }
1247
1248         /* Installed langs */
1249         $lang_choices = get_available_languages();
1250
1251         /// @TODO Fix indending (or so)
1252         $o .= replace_macros($stpl, array(
1253                 '$ptitle'       => t('Account Settings'),
1254
1255                 '$submit'       => t('Save Settings'),
1256                 '$baseurl' => System::baseUrl(true),
1257                 '$uid' => local_user(),
1258                 '$form_security_token' => get_form_security_token("settings"),
1259                 '$nickname_block' => $prof_addr,
1260
1261                 '$h_pass'       => t('Password Settings'),
1262                 '$password1'=> array('password', t('New Password:'), '', ''),
1263                 '$password2'=> array('confirm', t('Confirm:'), '', t('Leave password fields blank unless changing')),
1264                 '$password3'=> array('opassword', t('Current Password:'), '', t('Your current password to confirm the changes')),
1265                 '$password4'=> array('mpassword', t('Password:'), '', t('Your current password to confirm the changes')),
1266                 '$oid_enable' => (!Config::get('system', 'no_openid')),
1267                 '$openid'       => $openid_field,
1268
1269                 '$h_basic'      => t('Basic Settings'),
1270                 '$username' => array('username',  t('Full Name:'), $username, ''),
1271                 '$email'        => array('email', t('Email Address:'), $email, '', '', '', 'email'),
1272                 '$timezone' => array('timezone_select' , t('Your Timezone:'), select_timezone($timezone), ''),
1273                 '$language' => array('language', t('Your Language:'), $language, t('Set the language we use to show you friendica interface and to send you emails'), $lang_choices),
1274                 '$defloc'       => array('defloc', t('Default Post Location:'), $defloc, ''),
1275                 '$allowloc' => array('allow_location', t('Use Browser Location:'), ($a->user['allow_location'] == 1), ''),
1276
1277
1278                 '$h_prv'        => t('Security and Privacy Settings'),
1279
1280                 '$maxreq'       => array('maxreq', t('Maximum Friend Requests/Day:'), $maxreq , t("\x28to prevent spam abuse\x29")),
1281                 '$permissions' => t('Default Post Permissions'),
1282                 '$permdesc' => t("\x28click to open/close\x29"),
1283                 '$visibility' => $profile['net-publish'],
1284                 '$aclselect' => populate_acl($a->user),
1285                 '$suggestme' => $suggestme,
1286                 '$blockwall'=> $blockwall, // array('blockwall', t('Allow friends to post to your profile page:'), !$blockwall, ''),
1287                 '$blocktags'=> $blocktags, // array('blocktags', t('Allow friends to tag your posts:'), !$blocktags, ''),
1288
1289                 // ACL permissions box
1290                 '$acl_data' => construct_acl_data($a, $a->user), // For non-Javascript ACL selector
1291                 '$group_perms' => t('Show to Groups'),
1292                 '$contact_perms' => t('Show to Contacts'),
1293                 '$private' => t('Default Private Post'),
1294                 '$public' => t('Default Public Post'),
1295                 '$is_private' => $private_post,
1296                 '$return_path' => $query_str,
1297                 '$public_link' => $public_post_link,
1298                 '$settings_perms' => t('Default Permissions for New Posts'),
1299
1300                 '$group_select' => $group_select,
1301
1302
1303                 '$expire'       => $expire_arr,
1304
1305                 '$profile_in_dir' => $profile_in_dir,
1306                 '$profile_in_net_dir' => $profile_in_net_dir,
1307                 '$hide_friends' => $hide_friends,
1308                 '$hide_wall' => $hide_wall,
1309                 '$unkmail' => $unkmail,
1310                 '$cntunkmail'   => array('cntunkmail', t('Maximum private messages per day from unknown people:'), $cntunkmail , t("\x28to prevent spam abuse\x29")),
1311
1312
1313                 '$h_not'        => t('Notification Settings'),
1314                 '$activity_options' => t('By default post a status message when:'),
1315                 '$post_newfriend' => array('post_newfriend',  t('accepting a friend request'), $post_newfriend, ''),
1316                 '$post_joingroup' => array('post_joingroup',  t('joining a forum/community'), $post_joingroup, ''),
1317                 '$post_profilechange' => array('post_profilechange',  t('making an <em>interesting</em> profile change'), $post_profilechange, ''),
1318                 '$lbl_not'      => t('Send a notification email when:'),
1319                 '$notify1'      => array('notify1', t('You receive an introduction'), ($notify & NOTIFY_INTRO), NOTIFY_INTRO, ''),
1320                 '$notify2'      => array('notify2', t('Your introductions are confirmed'), ($notify & NOTIFY_CONFIRM), NOTIFY_CONFIRM, ''),
1321                 '$notify3'      => array('notify3', t('Someone writes on your profile wall'), ($notify & NOTIFY_WALL), NOTIFY_WALL, ''),
1322                 '$notify4'      => array('notify4', t('Someone writes a followup comment'), ($notify & NOTIFY_COMMENT), NOTIFY_COMMENT, ''),
1323                 '$notify5'      => array('notify5', t('You receive a private message'), ($notify & NOTIFY_MAIL), NOTIFY_MAIL, ''),
1324                 '$notify6'  => array('notify6', t('You receive a friend suggestion'), ($notify & NOTIFY_SUGGEST), NOTIFY_SUGGEST, ''),
1325                 '$notify7'  => array('notify7', t('You are tagged in a post'), ($notify & NOTIFY_TAGSELF), NOTIFY_TAGSELF, ''),
1326                 '$notify8'  => array('notify8', t('You are poked/prodded/etc. in a post'), ($notify & NOTIFY_POKE), NOTIFY_POKE, ''),
1327
1328                 '$desktop_notifications' => array('desktop_notifications', t('Activate desktop notifications') , false, t('Show desktop popup on new notifications')),
1329
1330                 '$email_textonly' => array('email_textonly', t('Text-only notification emails'),
1331                                                                         PConfig::get(local_user(), 'system', 'email_textonly'),
1332                                                                         t('Send text only notification emails, without the html part')),
1333
1334                 '$detailed_notif' => array('detailed_notif', t('Show detailled notifications'),
1335                                                                         PConfig::get(local_user(), 'system', 'detailed_notif'),
1336                                                                         t('Per default the notificiation are condensed to a single notification per item. When enabled, every notification is displayed.')),
1337
1338                 '$h_advn' => t('Advanced Account/Page Type Settings'),
1339                 '$h_descadvn' => t('Change the behaviour of this account for special situations'),
1340                 '$pagetype' => $pagetype,
1341
1342                 '$relocate' => t('Relocate'),
1343                 '$relocate_text' => t("If you have moved this profile from another server, and some of your contacts don't receive your updates, try pushing this button."),
1344                 '$relocate_button' => t("Resend relocate message to contacts"),
1345
1346         ));
1347
1348         call_hooks('settings_form', $o);
1349
1350         $o .= '</form>' . "\r\n";
1351
1352         return $o;
1353
1354 }