]> git.mxchange.org Git - friendica.git/blob - mod/settings.php
Merge branch 'master' into develop
[friendica.git] / mod / settings.php
1 <?php
2 /**
3  * @file mod/settings.php
4  */
5
6 use Friendica\App;
7 use Friendica\Content\Feature;
8 use Friendica\Content\Nav;
9 use Friendica\Core\ACL;
10 use Friendica\Core\Addon;
11 use Friendica\Core\Config;
12 use Friendica\Core\L10n;
13 use Friendica\Core\PConfig;
14 use Friendica\Core\System;
15 use Friendica\Core\Worker;
16 use Friendica\Database\DBM;
17 use Friendica\Model\GContact;
18 use Friendica\Model\Group;
19 use Friendica\Model\User;
20 use Friendica\Protocol\Email;
21 use Friendica\Util\DateTimeFormat;
22 use Friendica\Util\Network;
23 use Friendica\Util\Temporal;
24
25 function get_theme_config_file($theme)
26 {
27         $a = get_app();
28         $base_theme = $a->theme_info['extends'];
29
30         if (file_exists("view/theme/$theme/config.php")) {
31                 return "view/theme/$theme/config.php";
32         }
33         if (file_exists("view/theme/$base_theme/config.php")) {
34                 return "view/theme/$base_theme/config.php";
35         }
36         return null;
37 }
38
39 function settings_init(App $a)
40 {
41         if (!local_user()) {
42                 notice(L10n::t('Permission denied.') . EOL);
43                 return;
44         }
45
46         // These lines provide the javascript needed by the acl selector
47
48         $tpl = get_markup_template('settings/head.tpl');
49         $a->page['htmlhead'] .= replace_macros($tpl, [
50                 '$ispublic' => L10n::t('everybody')
51         ]);
52
53         $tabs = [
54                 [
55                         'label' => L10n::t('Account'),
56                         'url'   => 'settings',
57                         'selected'      =>  (($a->argc == 1) && ($a->argv[0] === 'settings')?'active':''),
58                         'accesskey' => 'o',
59                 ],
60         ];
61
62         if (Feature::get()) {
63                 $tabs[] =       [
64                                         'label' => L10n::t('Additional features'),
65                                         'url'   => 'settings/features',
66                                         'selected'      => (($a->argc > 1) && ($a->argv[1] === 'features') ? 'active' : ''),
67                                         'accesskey' => 't',
68                                 ];
69         }
70
71         $tabs[] =       [
72                 'label' => L10n::t('Display'),
73                 'url'   => 'settings/display',
74                 'selected'      => (($a->argc > 1) && ($a->argv[1] === 'display')?'active':''),
75                 'accesskey' => 'i',
76         ];
77
78         $tabs[] =       [
79                 'label' => L10n::t('Social Networks'),
80                 'url'   => 'settings/connectors',
81                 'selected'      => (($a->argc > 1) && ($a->argv[1] === 'connectors')?'active':''),
82                 'accesskey' => 'w',
83         ];
84
85         $tabs[] =       [
86                 'label' => L10n::t('Addons'),
87                 'url'   => 'settings/addon',
88                 'selected'      => (($a->argc > 1) && ($a->argv[1] === 'addon')?'active':''),
89                 'accesskey' => 'l',
90         ];
91
92         $tabs[] =       [
93                 'label' => L10n::t('Delegations'),
94                 'url'   => 'delegate',
95                 'selected'      => (($a->argc == 1) && ($a->argv[0] === 'delegate')?'active':''),
96                 'accesskey' => 'd',
97         ];
98
99         $tabs[] =       [
100                 'label' => L10n::t('Connected apps'),
101                 'url' => 'settings/oauth',
102                 'selected' => (($a->argc > 1) && ($a->argv[1] === 'oauth')?'active':''),
103                 'accesskey' => 'b',
104         ];
105
106         $tabs[] =       [
107                 'label' => L10n::t('Export personal data'),
108                 'url' => 'uexport',
109                 'selected' => (($a->argc == 1) && ($a->argv[0] === 'uexport')?'active':''),
110                 'accesskey' => 'e',
111         ];
112
113         $tabs[] =       [
114                 'label' => L10n::t('Remove account'),
115                 'url' => 'removeme',
116                 'selected' => (($a->argc == 1) && ($a->argv[0] === 'removeme')?'active':''),
117                 'accesskey' => 'r',
118         ];
119
120
121         $tabtpl = get_markup_template("generic_links_widget.tpl");
122         $a->page['aside'] = replace_macros($tabtpl, [
123                 '$title' => L10n::t('Settings'),
124                 '$class' => 'settings-widget',
125                 '$items' => $tabs,
126         ]);
127
128 }
129
130 function settings_post(App $a)
131 {
132         if (!local_user()) {
133                 return;
134         }
135
136         if (x($_SESSION, 'submanage') && intval($_SESSION['submanage'])) {
137                 return;
138         }
139
140         if (count($a->user) && x($a->user, 'uid') && $a->user['uid'] != local_user()) {
141                 notice(L10n::t('Permission denied.') . EOL);
142                 return;
143         }
144
145         $old_page_flags = $a->user['page-flags'];
146
147         if (($a->argc > 1) && ($a->argv[1] === 'oauth') && x($_POST, 'remove')) {
148                 check_form_security_token_redirectOnErr('/settings/oauth', 'settings_oauth');
149
150                 $key = $_POST['remove'];
151                 q("DELETE FROM tokens WHERE id='%s' AND uid=%d",
152                         dbesc($key),
153                         local_user());
154                 goaway(System::baseUrl(true)."/settings/oauth/");
155                 return;
156         }
157
158         if (($a->argc > 2) && ($a->argv[1] === 'oauth')  && ($a->argv[2] === 'edit'||($a->argv[2] === 'add')) && x($_POST, 'submit')) {
159                 check_form_security_token_redirectOnErr('/settings/oauth', 'settings_oauth');
160
161                 $name     = defaults($_POST, 'name'    , '');
162                 $key      = defaults($_POST, 'key'     , '');
163                 $secret   = defaults($_POST, 'secret'  , '');
164                 $redirect = defaults($_POST, 'redirect', '');
165                 $icon     = defaults($_POST, 'icon'    , '');
166
167                 if ($name == "" || $key == "" || $secret == "") {
168                         notice(L10n::t("Missing some important data!"));
169                 } else {
170                         if ($_POST['submit'] == L10n::t("Update")) {
171                                 q("UPDATE clients SET
172                                                         client_id='%s',
173                                                         pw='%s',
174                                                         name='%s',
175                                                         redirect_uri='%s',
176                                                         icon='%s',
177                                                         uid=%d
178                                                 WHERE client_id='%s'",
179                                         dbesc($key),
180                                         dbesc($secret),
181                                         dbesc($name),
182                                         dbesc($redirect),
183                                         dbesc($icon),
184                                         local_user(),
185                                         dbesc($key)
186                                 );
187                         } else {
188                                 q("INSERT INTO clients
189                                                         (client_id, pw, name, redirect_uri, icon, uid)
190                                                 VALUES ('%s', '%s', '%s', '%s', '%s',%d)",
191                                         dbesc($key),
192                                         dbesc($secret),
193                                         dbesc($name),
194                                         dbesc($redirect),
195                                         dbesc($icon),
196                                         local_user()
197                                 );
198                         }
199                 }
200                 goaway(System::baseUrl(true)."/settings/oauth/");
201                 return;
202         }
203
204         if (($a->argc > 1) && ($a->argv[1] == 'addon')) {
205                 check_form_security_token_redirectOnErr('/settings/addon', 'settings_addon');
206
207                 Addon::callHooks('addon_settings_post', $_POST);
208                 return;
209         }
210
211         if (($a->argc > 1) && ($a->argv[1] == 'connectors')) {
212                 check_form_security_token_redirectOnErr('/settings/connectors', 'settings_connectors');
213
214                 if (x($_POST, 'general-submit')) {
215                         PConfig::set(local_user(), 'system', 'no_intelligent_shortening', intval($_POST['no_intelligent_shortening']));
216                         PConfig::set(local_user(), 'system', 'ostatus_autofriend', intval($_POST['snautofollow']));
217                         PConfig::set(local_user(), 'ostatus', 'default_group', $_POST['group-selection']);
218                         PConfig::set(local_user(), 'ostatus', 'legacy_contact', $_POST['legacy_contact']);
219                 } elseif (x($_POST, 'imap-submit')) {
220
221                         $mail_server       = ((x($_POST, 'mail_server')) ? $_POST['mail_server'] : '');
222                         $mail_port         = ((x($_POST, 'mail_port')) ? $_POST['mail_port'] : '');
223                         $mail_ssl          = ((x($_POST, 'mail_ssl')) ? strtolower(trim($_POST['mail_ssl'])) : '');
224                         $mail_user         = ((x($_POST, 'mail_user')) ? $_POST['mail_user'] : '');
225                         $mail_pass         = ((x($_POST, 'mail_pass')) ? trim($_POST['mail_pass']) : '');
226                         $mail_action       = ((x($_POST, 'mail_action')) ? trim($_POST['mail_action']) : '');
227                         $mail_movetofolder = ((x($_POST, 'mail_movetofolder')) ? trim($_POST['mail_movetofolder']) : '');
228                         $mail_replyto      = ((x($_POST, 'mail_replyto')) ? $_POST['mail_replyto'] : '');
229                         $mail_pubmail      = ((x($_POST, 'mail_pubmail')) ? $_POST['mail_pubmail'] : '');
230
231
232                         $mail_disabled = ((function_exists('imap_open') && (!Config::get('system', 'imap_disabled'))) ? 0 : 1);
233                         if (Config::get('system', 'dfrn_only')) {
234                                 $mail_disabled = 1;
235                         }
236
237                         if (!$mail_disabled) {
238                                 $failed = false;
239                                 $r = q("SELECT * FROM `mailacct` WHERE `uid` = %d LIMIT 1",
240                                         intval(local_user())
241                                 );
242                                 if (!DBM::is_result($r)) {
243                                         dba::insert('mailacct', ['uid' => local_user()]);
244                                 }
245                                 if (strlen($mail_pass)) {
246                                         $pass = '';
247                                         openssl_public_encrypt($mail_pass, $pass, $a->user['pubkey']);
248                                         dba::update('mailacct', ['pass' => bin2hex($pass)], ['uid' => local_user()]);
249                                 }
250                                 $r = q("UPDATE `mailacct` SET `server` = '%s', `port` = %d, `ssltype` = '%s', `user` = '%s',
251                                         `action` = %d, `movetofolder` = '%s',
252                                         `mailbox` = 'INBOX', `reply_to` = '%s', `pubmail` = %d WHERE `uid` = %d",
253                                         dbesc($mail_server),
254                                         intval($mail_port),
255                                         dbesc($mail_ssl),
256                                         dbesc($mail_user),
257                                         intval($mail_action),
258                                         dbesc($mail_movetofolder),
259                                         dbesc($mail_replyto),
260                                         intval($mail_pubmail),
261                                         intval(local_user())
262                                 );
263                                 logger("mail: updating mailaccount. Response: ".print_r($r, true));
264                                 $r = q("SELECT * FROM `mailacct` WHERE `uid` = %d LIMIT 1",
265                                         intval(local_user())
266                                 );
267                                 if (DBM::is_result($r)) {
268                                         $eacct = $r[0];
269                                         $mb = Email::constructMailboxName($eacct);
270
271                                         if (strlen($eacct['server'])) {
272                                                 $dcrpass = '';
273                                                 openssl_private_decrypt(hex2bin($eacct['pass']), $dcrpass, $a->user['prvkey']);
274                                                 $mbox = Email::connect($mb, $mail_user, $dcrpass);
275                                                 unset($dcrpass);
276                                                 if (!$mbox) {
277                                                         $failed = true;
278                                                         notice(L10n::t('Failed to connect with email account using the settings provided.') . EOL);
279                                                 }
280                                         }
281                                 }
282                                 if (!$failed) {
283                                         info(L10n::t('Email settings updated.') . EOL);
284                                 }
285                         }
286                 }
287
288                 Addon::callHooks('connector_settings_post', $_POST);
289                 return;
290         }
291
292         if (($a->argc > 1) && ($a->argv[1] === 'features')) {
293                 check_form_security_token_redirectOnErr('/settings/features', 'settings_features');
294                 foreach ($_POST as $k => $v) {
295                         if (strpos($k, 'feature_') === 0) {
296                                 PConfig::set(local_user(), 'feature', substr($k, 8), ((intval($v)) ? 1 : 0));
297                         }
298                 }
299                 info(L10n::t('Features updated') . EOL);
300                 return;
301         }
302
303         if (($a->argc > 1) && ($a->argv[1] === 'display')) {
304                 check_form_security_token_redirectOnErr('/settings/display', 'settings_display');
305
306                 $theme             = x($_POST, 'theme')             ? notags(trim($_POST['theme']))        : $a->user['theme'];
307                 $mobile_theme      = x($_POST, 'mobile_theme')      ? notags(trim($_POST['mobile_theme'])) : '';
308                 $nosmile           = x($_POST, 'nosmile')           ? intval($_POST['nosmile'])            : 0;
309                 $first_day_of_week = x($_POST, 'first_day_of_week') ? intval($_POST['first_day_of_week'])  : 0;
310                 $noinfo            = x($_POST, 'noinfo')            ? intval($_POST['noinfo'])             : 0;
311                 $infinite_scroll   = x($_POST, 'infinite_scroll')   ? intval($_POST['infinite_scroll'])    : 0;
312                 $no_auto_update    = x($_POST, 'no_auto_update')    ? intval($_POST['no_auto_update'])     : 0;
313                 $bandwidth_saver   = x($_POST, 'bandwidth_saver')   ? intval($_POST['bandwidth_saver'])    : 0;
314                 $smart_threading   = x($_POST, 'smart_threading')   ? intval($_POST['smart_threading'])    : 0;
315                 $nowarn_insecure   = x($_POST, 'nowarn_insecure')   ? intval($_POST['nowarn_insecure'])    : 0;
316                 $browser_update    = x($_POST, 'browser_update')    ? intval($_POST['browser_update'])     : 0;
317                 if ($browser_update != -1) {
318                         $browser_update = $browser_update * 1000;
319                         if ($browser_update < 10000) {
320                                 $browser_update = 10000;
321                         }
322                 }
323
324                 $itemspage_network = x($_POST, 'itemspage_network')  ? intval($_POST['itemspage_network'])  : 40;
325                 if ($itemspage_network > 100) {
326                         $itemspage_network = 100;
327                 }
328                 $itemspage_mobile_network = x($_POST, 'itemspage_mobile_network') ? intval($_POST['itemspage_mobile_network']) : 20;
329                 if ($itemspage_mobile_network > 100) {
330                         $itemspage_mobile_network = 100;
331                 }
332
333                 if ($mobile_theme !== '') {
334                         PConfig::set(local_user(), 'system', 'mobile_theme', $mobile_theme);
335                 }
336
337                 PConfig::set(local_user(), 'system', 'nowarn_insecure'         , $nowarn_insecure);
338                 PConfig::set(local_user(), 'system', 'update_interval'         , $browser_update);
339                 PConfig::set(local_user(), 'system', 'itemspage_network'       , $itemspage_network);
340                 PConfig::set(local_user(), 'system', 'itemspage_mobile_network', $itemspage_mobile_network);
341                 PConfig::set(local_user(), 'system', 'no_smilies'              , $nosmile);
342                 PConfig::set(local_user(), 'system', 'first_day_of_week'       , $first_day_of_week);
343                 PConfig::set(local_user(), 'system', 'ignore_info'             , $noinfo);
344                 PConfig::set(local_user(), 'system', 'infinite_scroll'         , $infinite_scroll);
345                 PConfig::set(local_user(), 'system', 'no_auto_update'          , $no_auto_update);
346                 PConfig::set(local_user(), 'system', 'bandwidth_saver'         , $bandwidth_saver);
347                 PConfig::set(local_user(), 'system', 'smart_threading'         , $smart_threading);
348
349                 if ($theme == $a->user['theme']) {
350                         // call theme_post only if theme has not been changed
351                         if (($themeconfigfile = get_theme_config_file($theme)) !== null) {
352                                 require_once $themeconfigfile;
353                                 theme_post($a);
354                         }
355                 }
356
357                 $r = q("UPDATE `user` SET `theme` = '%s' WHERE `uid` = %d",
358                                 dbesc($theme),
359                                 intval(local_user())
360                 );
361
362                 Addon::callHooks('display_settings_post', $_POST);
363                 goaway('settings/display');
364                 return; // NOTREACHED
365         }
366
367         check_form_security_token_redirectOnErr('/settings', 'settings');
368
369         if (x($_POST,'resend_relocate')) {
370                 Worker::add(PRIORITY_HIGH, 'Notifier', 'relocate', local_user());
371                 info(L10n::t("Relocate message has been send to your contacts"));
372                 goaway('settings');
373         }
374
375         Addon::callHooks('settings_post', $_POST);
376
377         if (x($_POST, 'password') || x($_POST, 'confirm')) {
378                 $newpass = $_POST['password'];
379                 $confirm = $_POST['confirm'];
380
381                 $err = false;
382                 if ($newpass != $confirm) {
383                         notice(L10n::t('Passwords do not match. Password unchanged.') . EOL);
384                         $err = true;
385                 }
386
387                 if (!x($newpass) || !x($confirm)) {
388                         notice(L10n::t('Empty passwords are not allowed. Password unchanged.') . EOL);
389                         $err = true;
390                 }
391
392                 if (!Config::get('system', 'disable_password_exposed', false) && User::isPasswordExposed($newpass)) {
393                         notice(L10n::t('The new password has been exposed in a public data dump, please choose another.') . EOL);
394                         $err = true;
395                 }
396
397                 //  check if the old password was supplied correctly before changing it to the new value
398                 if (!User::authenticate(intval(local_user()), $_POST['opassword'])) {
399                         notice(L10n::t('Wrong password.') . EOL);
400                         $err = true;
401                 }
402
403                 if (!$err) {
404                         $result = User::updatePassword(local_user(), $newpass);
405                         if (DBM::is_result($result)) {
406                                 info(L10n::t('Password changed.') . EOL);
407                         } else {
408                                 notice(L10n::t('Password update failed. Please try again.') . EOL);
409                         }
410                 }
411         }
412
413         $username         = ((x($_POST, 'username'))   ? notags(trim($_POST['username']))     : '');
414         $email            = ((x($_POST, 'email'))      ? notags(trim($_POST['email']))        : '');
415         $timezone         = ((x($_POST, 'timezone'))   ? notags(trim($_POST['timezone']))     : '');
416         $language         = ((x($_POST, 'language'))   ? notags(trim($_POST['language']))     : '');
417
418         $defloc           = ((x($_POST, 'defloc'))     ? notags(trim($_POST['defloc']))       : '');
419         $openid           = ((x($_POST, 'openid_url')) ? notags(trim($_POST['openid_url']))   : '');
420         $maxreq           = ((x($_POST, 'maxreq'))     ? intval($_POST['maxreq'])             : 0);
421         $expire           = ((x($_POST, 'expire'))     ? intval($_POST['expire'])             : 0);
422         $def_gid          = ((x($_POST, 'group-selection')) ? intval($_POST['group-selection']) : 0);
423
424
425         $expire_items     = ((x($_POST, 'expire_items')) ? intval($_POST['expire_items'])        : 0);
426         $expire_notes     = ((x($_POST, 'expire_notes')) ? intval($_POST['expire_notes'])        : 0);
427         $expire_starred   = ((x($_POST, 'expire_starred')) ? intval($_POST['expire_starred']) : 0);
428         $expire_photos    = ((x($_POST, 'expire_photos'))? intval($_POST['expire_photos'])       : 0);
429         $expire_network_only    = ((x($_POST, 'expire_network_only'))? intval($_POST['expire_network_only'])     : 0);
430
431         $allow_location   = (((x($_POST, 'allow_location')) && (intval($_POST['allow_location']) == 1)) ? 1: 0);
432         $publish          = (((x($_POST, 'profile_in_directory')) && (intval($_POST['profile_in_directory']) == 1)) ? 1: 0);
433         $net_publish      = (((x($_POST, 'profile_in_netdirectory')) && (intval($_POST['profile_in_netdirectory']) == 1)) ? 1: 0);
434         $old_visibility   = (((x($_POST, 'visibility')) && (intval($_POST['visibility']) == 1)) ? 1 : 0);
435         $account_type     = (((x($_POST, 'account-type')) && (intval($_POST['account-type']))) ? intval($_POST['account-type']) : 0);
436         $page_flags       = (((x($_POST, 'page-flags')) && (intval($_POST['page-flags']))) ? intval($_POST['page-flags']) : 0);
437         $blockwall        = (((x($_POST, 'blockwall')) && (intval($_POST['blockwall']) == 1)) ? 0: 1); // this setting is inverted!
438         $blocktags        = (((x($_POST, 'blocktags')) && (intval($_POST['blocktags']) == 1)) ? 0: 1); // this setting is inverted!
439         $unkmail          = (((x($_POST, 'unkmail')) && (intval($_POST['unkmail']) == 1)) ? 1: 0);
440         $cntunkmail       = ((x($_POST, 'cntunkmail')) ? intval($_POST['cntunkmail']) : 0);
441         $suggestme        = ((x($_POST, 'suggestme')) ? intval($_POST['suggestme'])  : 0);
442         $hide_friends     = (($_POST['hide-friends'] == 1) ? 1: 0);
443         $hidewall         = (($_POST['hidewall'] == 1) ? 1: 0);
444         $post_newfriend   = (($_POST['post_newfriend'] == 1) ? 1: 0);
445         $post_joingroup   = (($_POST['post_joingroup'] == 1) ? 1: 0);
446         $post_profilechange   = (($_POST['post_profilechange'] == 1) ? 1: 0);
447
448         $email_textonly   = (($_POST['email_textonly'] == 1) ? 1 : 0);
449         $detailed_notif   = (($_POST['detailed_notif'] == 1) ? 1 : 0);
450
451         $notify = 0;
452
453         if (x($_POST, 'notify1')) {
454                 $notify += intval($_POST['notify1']);
455         }
456         if (x($_POST, 'notify2')) {
457                 $notify += intval($_POST['notify2']);
458         }
459         if (x($_POST, 'notify3')) {
460                 $notify += intval($_POST['notify3']);
461         }
462         if (x($_POST, 'notify4')) {
463                 $notify += intval($_POST['notify4']);
464         }
465         if (x($_POST, 'notify5')) {
466                 $notify += intval($_POST['notify5']);
467         }
468         if (x($_POST, 'notify6')) {
469                 $notify += intval($_POST['notify6']);
470         }
471         if (x($_POST, 'notify7')) {
472                 $notify += intval($_POST['notify7']);
473         }
474         if (x($_POST, 'notify8')) {
475                 $notify += intval($_POST['notify8']);
476         }
477
478         // Adjust the page flag if the account type doesn't fit to the page flag.
479         if (($account_type == ACCOUNT_TYPE_PERSON) && !in_array($page_flags, [PAGE_NORMAL, PAGE_SOAPBOX, PAGE_FREELOVE])) {
480                 $page_flags = PAGE_NORMAL;
481         } elseif (($account_type == ACCOUNT_TYPE_ORGANISATION) && !in_array($page_flags, [PAGE_SOAPBOX])) {
482                 $page_flags = PAGE_SOAPBOX;
483         } elseif (($account_type == ACCOUNT_TYPE_NEWS) && !in_array($page_flags, [PAGE_SOAPBOX])) {
484                 $page_flags = PAGE_SOAPBOX;
485         } elseif (($account_type == ACCOUNT_TYPE_COMMUNITY) && !in_array($page_flags, [PAGE_COMMUNITY, PAGE_PRVGROUP])) {
486                 $page_flags = PAGE_COMMUNITY;
487         }
488
489         $email_changed = false;
490
491         $err = '';
492
493         $name_change = false;
494
495         if ($username != $a->user['username']) {
496                 $name_change = true;
497                 if (strlen($username) > 40) {
498                         $err .= L10n::t(' Please use a shorter name.');
499                 }
500                 if (strlen($username) < 3) {
501                         $err .= L10n::t(' Name too short.');
502                 }
503         }
504
505         if ($email != $a->user['email']) {
506                 $email_changed = true;
507                 //  check for the correct password
508                 if (!User::authenticate(intval(local_user()), $_POST['mpassword'])) {
509                         $err .= L10n::t('Wrong Password') . EOL;
510                         $email = $a->user['email'];
511                 }
512                 //  check the email is valid
513                 if (!valid_email($email)) {
514                         $err .= L10n::t('Invalid email.');
515                 }
516                 //  ensure new email is not the admin mail
517                 //if ((x($a->config, 'admin_email')) && (strcasecmp($email, $a->config['admin_email']) == 0)) {
518                 if (x($a->config, 'admin_email')) {
519                         $adminlist = explode(",", str_replace(" ", "", strtolower($a->config['admin_email'])));
520                         if (in_array(strtolower($email), $adminlist)) {
521                                 $err .= L10n::t('Cannot change to that email.');
522                                 $email = $a->user['email'];
523                         }
524                 }
525         }
526
527         if (strlen($err)) {
528                 notice($err . EOL);
529                 return;
530         }
531
532         if (($timezone != $a->user['timezone']) && strlen($timezone)) {
533                 date_default_timezone_set($timezone);
534         }
535
536         $str_group_allow   = perms2str($_POST['group_allow']);
537         $str_contact_allow = perms2str($_POST['contact_allow']);
538         $str_group_deny    = perms2str($_POST['group_deny']);
539         $str_contact_deny  = perms2str($_POST['contact_deny']);
540
541         $openidserver = $a->user['openidserver'];
542         //$openid = normalise_openid($openid);
543
544         // If openid has changed or if there's an openid but no openidserver, try and discover it.
545         if ($openid != $a->user['openid'] || (strlen($openid) && (!strlen($openidserver)))) {
546                 if (Network::isUrlValid($openid)) {
547                         logger('updating openidserver');
548                         $open_id_obj = new LightOpenID;
549                         $open_id_obj->identity = $openid;
550                         $openidserver = $open_id_obj->discover($open_id_obj->identity);
551                 } else {
552                         $openidserver = '';
553                 }
554         }
555
556         PConfig::set(local_user(), 'expire', 'items', $expire_items);
557         PConfig::set(local_user(), 'expire', 'notes', $expire_notes);
558         PConfig::set(local_user(), 'expire', 'starred', $expire_starred);
559         PConfig::set(local_user(), 'expire', 'photos', $expire_photos);
560         PConfig::set(local_user(), 'expire', 'network_only', $expire_network_only);
561
562         PConfig::set(local_user(), 'system', 'suggestme', $suggestme);
563         PConfig::set(local_user(), 'system', 'post_newfriend', $post_newfriend);
564         PConfig::set(local_user(), 'system', 'post_joingroup', $post_joingroup);
565         PConfig::set(local_user(), 'system', 'post_profilechange', $post_profilechange);
566
567         PConfig::set(local_user(), 'system', 'email_textonly', $email_textonly);
568         PConfig::set(local_user(), 'system', 'detailed_notif', $detailed_notif);
569
570         if ($page_flags == PAGE_PRVGROUP) {
571                 $hidewall = 1;
572                 if (!$str_contact_allow && !$str_group_allow && !$str_contact_deny && !$str_group_deny) {
573                         if ($def_gid) {
574                                 info(L10n::t('Private forum has no privacy permissions. Using default privacy group.'). EOL);
575                                 $str_group_allow = '<' . $def_gid . '>';
576                         } else {
577                                 notice(L10n::t('Private forum has no privacy permissions and no default privacy group.') . EOL);
578                         }
579                 }
580         }
581
582
583         $r = q("UPDATE `user` SET `username` = '%s', `email` = '%s',
584                                 `openid` = '%s', `timezone` = '%s',
585                                 `allow_cid` = '%s', `allow_gid` = '%s', `deny_cid` = '%s', `deny_gid` = '%s',
586                                 `notify-flags` = %d, `page-flags` = %d, `account-type` = %d, `default-location` = '%s',
587                                 `allow_location` = %d, `maxreq` = %d, `expire` = %d, `openidserver` = '%s',
588                                 `def_gid` = %d, `blockwall` = %d, `hidewall` = %d, `blocktags` = %d,
589                                 `unkmail` = %d, `cntunkmail` = %d, `language` = '%s'
590                         WHERE `uid` = %d",
591                         dbesc($username),
592                         dbesc($email),
593                         dbesc($openid),
594                         dbesc($timezone),
595                         dbesc($str_contact_allow),
596                         dbesc($str_group_allow),
597                         dbesc($str_contact_deny),
598                         dbesc($str_group_deny),
599                         intval($notify),
600                         intval($page_flags),
601                         intval($account_type),
602                         dbesc($defloc),
603                         intval($allow_location),
604                         intval($maxreq),
605                         intval($expire),
606                         dbesc($openidserver),
607                         intval($def_gid),
608                         intval($blockwall),
609                         intval($hidewall),
610                         intval($blocktags),
611                         intval($unkmail),
612                         intval($cntunkmail),
613                         dbesc($language),
614                         intval(local_user())
615         );
616         if (DBM::is_result($r)) {
617                 info(L10n::t('Settings updated.') . EOL);
618         }
619
620         // clear session language
621         unset($_SESSION['language']);
622
623         $r = q("UPDATE `profile`
624                 SET `publish` = %d,
625                 `name` = '%s',
626                 `net-publish` = %d,
627                 `hide-friends` = %d
628                 WHERE `is-default` = 1 AND `uid` = %d",
629                 intval($publish),
630                 dbesc($username),
631                 intval($net_publish),
632                 intval($hide_friends),
633                 intval(local_user())
634         );
635
636
637         if ($name_change) {
638                 q("UPDATE `contact` SET `name` = '%s', `name-date` = '%s' WHERE `uid` = %d AND `self`",
639                         dbesc($username),
640                         dbesc(DateTimeFormat::utcNow()),
641                         intval(local_user())
642                 );
643         }
644
645         if (($old_visibility != $net_publish) || ($page_flags != $old_page_flags)) {
646                 // Update global directory in background
647                 $url = $_SESSION['my_url'];
648                 if ($url && strlen(Config::get('system', 'directory'))) {
649                         Worker::add(PRIORITY_LOW, "Directory", $url);
650                 }
651         }
652
653         Worker::add(PRIORITY_LOW, 'ProfileUpdate', local_user());
654
655         // Update the global contact for the user
656         GContact::updateForUser(local_user());
657
658         goaway('settings');
659         return; // NOTREACHED
660 }
661
662
663 function settings_content(App $a)
664 {
665         $o = '';
666         Nav::setSelected('settings');
667
668         if (!local_user()) {
669                 //notice(L10n::t('Permission denied.') . EOL);
670                 return;
671         }
672
673         if (x($_SESSION, 'submanage') && intval($_SESSION['submanage'])) {
674                 notice(L10n::t('Permission denied.') . EOL);
675                 return;
676         }
677
678         if (($a->argc > 1) && ($a->argv[1] === 'oauth')) {
679                 if (($a->argc > 2) && ($a->argv[2] === 'add')) {
680                         $tpl = get_markup_template('settings/oauth_edit.tpl');
681                         $o .= replace_macros($tpl, [
682                                 '$form_security_token' => get_form_security_token("settings_oauth"),
683                                 '$title'        => L10n::t('Add application'),
684                                 '$submit'       => L10n::t('Save Settings'),
685                                 '$cancel'       => L10n::t('Cancel'),
686                                 '$name'         => ['name', L10n::t('Name'), '', ''],
687                                 '$key'          => ['key', L10n::t('Consumer Key'), '', ''],
688                                 '$secret'       => ['secret', L10n::t('Consumer Secret'), '', ''],
689                                 '$redirect'     => ['redirect', L10n::t('Redirect'), '', ''],
690                                 '$icon'         => ['icon', L10n::t('Icon url'), '', ''],
691                         ]);
692                         return $o;
693                 }
694
695                 if (($a->argc > 3) && ($a->argv[2] === 'edit')) {
696                         $r = q("SELECT * FROM clients WHERE client_id='%s' AND uid=%d",
697                                         dbesc($a->argv[3]),
698                                         local_user());
699
700                         if (!DBM::is_result($r)) {
701                                 notice(L10n::t("You can't edit this application."));
702                                 return;
703                         }
704                         $app = $r[0];
705
706                         $tpl = get_markup_template('settings/oauth_edit.tpl');
707                         $o .= replace_macros($tpl, [
708                                 '$form_security_token' => get_form_security_token("settings_oauth"),
709                                 '$title'        => L10n::t('Add application'),
710                                 '$submit'       => L10n::t('Update'),
711                                 '$cancel'       => L10n::t('Cancel'),
712                                 '$name'         => ['name', L10n::t('Name'), $app['name'] , ''],
713                                 '$key'          => ['key', L10n::t('Consumer Key'), $app['client_id'], ''],
714                                 '$secret'       => ['secret', L10n::t('Consumer Secret'), $app['pw'], ''],
715                                 '$redirect'     => ['redirect', L10n::t('Redirect'), $app['redirect_uri'], ''],
716                                 '$icon'         => ['icon', L10n::t('Icon url'), $app['icon'], ''],
717                         ]);
718                         return $o;
719                 }
720
721                 if (($a->argc > 3) && ($a->argv[2] === 'delete')) {
722                         check_form_security_token_redirectOnErr('/settings/oauth', 'settings_oauth', 't');
723
724                         q("DELETE FROM clients WHERE client_id='%s' AND uid=%d",
725                                         dbesc($a->argv[3]),
726                                         local_user());
727                         goaway(System::baseUrl(true)."/settings/oauth/");
728                         return;
729                 }
730
731                 /// @TODO validate result with DBM::is_result()
732                 $r = q("SELECT clients.*, tokens.id as oauth_token, (clients.uid=%d) AS my
733                                 FROM clients
734                                 LEFT JOIN tokens ON clients.client_id=tokens.client_id
735                                 WHERE clients.uid IN (%d, 0)",
736                                 local_user(),
737                                 local_user());
738
739
740                 $tpl = get_markup_template('settings/oauth.tpl');
741                 $o .= replace_macros($tpl, [
742                         '$form_security_token' => get_form_security_token("settings_oauth"),
743                         '$baseurl'      => System::baseUrl(true),
744                         '$title'        => L10n::t('Connected Apps'),
745                         '$add'          => L10n::t('Add application'),
746                         '$edit'         => L10n::t('Edit'),
747                         '$delete'               => L10n::t('Delete'),
748                         '$consumerkey' => L10n::t('Client key starts with'),
749                         '$noname'       => L10n::t('No name'),
750                         '$remove'       => L10n::t('Remove authorization'),
751                         '$apps'         => $r,
752                 ]);
753                 return $o;
754         }
755
756         if (($a->argc > 1) && ($a->argv[1] === 'addon')) {
757                 $settings_addons = "";
758
759                 $r = q("SELECT * FROM `hook` WHERE `hook` = 'addon_settings' ");
760                 if (!DBM::is_result($r)) {
761                         $settings_addons = L10n::t('No Addon settings configured');
762                 }
763
764                 Addon::callHooks('addon_settings', $settings_addons);
765
766
767                 $tpl = get_markup_template('settings/addons.tpl');
768                 $o .= replace_macros($tpl, [
769                         '$form_security_token' => get_form_security_token("settings_addon"),
770                         '$title'        => L10n::t('Addon Settings'),
771                         '$settings_addons' => $settings_addons
772                 ]);
773                 return $o;
774         }
775
776         if (($a->argc > 1) && ($a->argv[1] === 'features')) {
777
778                 $arr = [];
779                 $features = Feature::get();
780                 foreach ($features as $fname => $fdata) {
781                         $arr[$fname] = [];
782                         $arr[$fname][0] = $fdata[0];
783                         foreach (array_slice($fdata,1) as $f) {
784                                 $arr[$fname][1][] = ['feature_' .$f[0], $f[1],((intval(Feature::isEnabled(local_user(), $f[0]))) ? "1" : ''), $f[2],[L10n::t('Off'), L10n::t('On')]];
785                         }
786                 }
787
788                 $tpl = get_markup_template('settings/features.tpl');
789                 $o .= replace_macros($tpl, [
790                         '$form_security_token' => get_form_security_token("settings_features"),
791                         '$title'               => L10n::t('Additional Features'),
792                         '$features'            => $arr,
793                         '$submit'              => L10n::t('Save Settings'),
794                 ]);
795                 return $o;
796         }
797
798         if (($a->argc > 1) && ($a->argv[1] === 'connectors')) {
799                 $no_intelligent_shortening = intval(PConfig::get(local_user(), 'system', 'no_intelligent_shortening'));
800                 $ostatus_autofriend        = intval(PConfig::get(local_user(), 'system', 'ostatus_autofriend'));
801                 $default_group             = PConfig::get(local_user(), 'ostatus', 'default_group');
802                 $legacy_contact            = PConfig::get(local_user(), 'ostatus', 'legacy_contact');
803
804                 if (x($legacy_contact)) {
805                         /// @todo Isn't it supposed to be a goaway() call?
806                         $a->page['htmlhead'] = '<meta http-equiv="refresh" content="0; URL=' . System::baseUrl().'/ostatus_subscribe?url=' . urlencode($legacy_contact) . '">';
807                 }
808
809                 $settings_connectors = '';
810                 Addon::callHooks('connector_settings', $settings_connectors);
811
812                 if (is_site_admin()) {
813                         $diasp_enabled = L10n::t('Built-in support for %s connectivity is %s', L10n::t('Diaspora'), ((Config::get('system', 'diaspora_enabled')) ? L10n::t('enabled') : L10n::t('disabled')));
814                         $ostat_enabled = L10n::t('Built-in support for %s connectivity is %s', L10n::t("GNU Social \x28OStatus\x29"), ((Config::get('system', 'ostatus_disabled')) ? L10n::t('disabled') : L10n::t('enabled')));
815                 } else {
816                         $diasp_enabled = "";
817                         $ostat_enabled = "";
818                 }
819
820                 $mail_disabled = ((function_exists('imap_open') && (!Config::get('system', 'imap_disabled'))) ? 0 : 1);
821                 if (Config::get('system', 'dfrn_only')) {
822                         $mail_disabled = 1;
823                 }
824                 if (!$mail_disabled) {
825                         $r = q("SELECT * FROM `mailacct` WHERE `uid` = %d LIMIT 1",
826                                 local_user()
827                         );
828                 } else {
829                         $r = null;
830                 }
831
832                 $mail_server       = ((DBM::is_result($r)) ? $r[0]['server'] : '');
833                 $mail_port         = ((DBM::is_result($r) && intval($r[0]['port'])) ? intval($r[0]['port']) : '');
834                 $mail_ssl          = ((DBM::is_result($r)) ? $r[0]['ssltype'] : '');
835                 $mail_user         = ((DBM::is_result($r)) ? $r[0]['user'] : '');
836                 $mail_replyto      = ((DBM::is_result($r)) ? $r[0]['reply_to'] : '');
837                 $mail_pubmail      = ((DBM::is_result($r)) ? $r[0]['pubmail'] : 0);
838                 $mail_action       = ((DBM::is_result($r)) ? $r[0]['action'] : 0);
839                 $mail_movetofolder = ((DBM::is_result($r)) ? $r[0]['movetofolder'] : '');
840                 $mail_chk          = ((DBM::is_result($r)) ? $r[0]['last_check'] : NULL_DATE);
841
842
843                 $tpl = get_markup_template('settings/connectors.tpl');
844
845                 $mail_disabled_message = (($mail_disabled) ? L10n::t('Email access is disabled on this site.') : '');
846
847                 $o .= replace_macros($tpl, [
848                         '$form_security_token' => get_form_security_token("settings_connectors"),
849
850                         '$title'        => L10n::t('Social Networks'),
851
852                         '$diasp_enabled' => $diasp_enabled,
853                         '$ostat_enabled' => $ostat_enabled,
854
855                         '$general_settings' => L10n::t('General Social Media Settings'),
856                         '$no_intelligent_shortening' => ['no_intelligent_shortening', L10n::t('Disable intelligent shortening'), $no_intelligent_shortening, L10n::t('Normally the system tries to find the best link to add to shortened posts. If this option is enabled then every shortened post will always point to the original friendica post.')],
857                         '$ostatus_autofriend' => ['snautofollow', L10n::t("Automatically follow any GNU Social \x28OStatus\x29 followers/mentioners"), $ostatus_autofriend, L10n::t('If you receive a message from an unknown OStatus user, this option decides what to do. If it is checked, a new contact will be created for every unknown user.')],
858                         '$default_group' => Group::displayGroupSelection(local_user(), $default_group, L10n::t("Default group for OStatus contacts")),
859                         '$legacy_contact' => ['legacy_contact', L10n::t('Your legacy GNU Social account'), $legacy_contact, L10n::t("If you enter your old GNU Social/Statusnet account name here \x28in the format user@domain.tld\x29, your contacts will be added automatically. The field will be emptied when done.")],
860
861                         '$repair_ostatus_url' => System::baseUrl() . '/repair_ostatus',
862                         '$repair_ostatus_text' => L10n::t('Repair OStatus subscriptions'),
863
864                         '$settings_connectors' => $settings_connectors,
865
866                         '$h_imap' => L10n::t('Email/Mailbox Setup'),
867                         '$imap_desc' => L10n::t("If you wish to communicate with email contacts using this service \x28optional\x29, please specify how to connect to your mailbox."),
868                         '$imap_lastcheck' => ['imap_lastcheck', L10n::t('Last successful email check:'), $mail_chk, ''],
869                         '$mail_disabled' => $mail_disabled_message,
870                         '$mail_server'  => ['mail_server',  L10n::t('IMAP server name:'), $mail_server, ''],
871                         '$mail_port'    => ['mail_port',         L10n::t('IMAP port:'), $mail_port, ''],
872                         '$mail_ssl'             => ['mail_ssl',          L10n::t('Security:'), strtoupper($mail_ssl), '', ['notls'=>L10n::t('None'), 'TLS'=>'TLS', 'SSL'=>'SSL']],
873                         '$mail_user'    => ['mail_user',    L10n::t('Email login name:'), $mail_user, ''],
874                         '$mail_pass'    => ['mail_pass',         L10n::t('Email password:'), '', ''],
875                         '$mail_replyto' => ['mail_replyto', L10n::t('Reply-to address:'), $mail_replyto, 'Optional'],
876                         '$mail_pubmail' => ['mail_pubmail', L10n::t('Send public posts to all email contacts:'), $mail_pubmail, ''],
877                         '$mail_action'  => ['mail_action',       L10n::t('Action after import:'), $mail_action, '', [0=>L10n::t('None'), /*1=>L10n::t('Delete'),*/ 2=>L10n::t('Mark as seen'), 3=>L10n::t('Move to folder')]],
878                         '$mail_movetofolder'    => ['mail_movetofolder',         L10n::t('Move to folder:'), $mail_movetofolder, ''],
879                         '$submit' => L10n::t('Save Settings'),
880                 ]);
881
882                 Addon::callHooks('display_settings', $o);
883                 return $o;
884         }
885
886         /*
887          * DISPLAY SETTINGS
888          */
889         if (($a->argc > 1) && ($a->argv[1] === 'display')) {
890                 $default_theme = Config::get('system', 'theme');
891                 if (!$default_theme) {
892                         $default_theme = 'default';
893                 }
894                 $default_mobile_theme = Config::get('system', 'mobile-theme');
895                 if (!$default_mobile_theme) {
896                         $default_mobile_theme = 'none';
897                 }
898
899                 $allowed_themes_str = Config::get('system', 'allowed_themes');
900                 $allowed_themes_raw = explode(',', $allowed_themes_str);
901                 $allowed_themes = [];
902                 if (count($allowed_themes_raw)) {
903                         foreach ($allowed_themes_raw as $x) {
904                                 if (strlen(trim($x)) && is_dir("view/theme/$x")) {
905                                         $allowed_themes[] = trim($x);
906                                 }
907                         }
908                 }
909
910
911                 $themes = [];
912                 $mobile_themes = ["---" => L10n::t('No special theme for mobile devices')];
913                 if ($allowed_themes) {
914                         foreach ($allowed_themes as $theme) {
915                                 $is_experimental = file_exists('view/theme/' . $theme . '/experimental');
916                                 $is_unsupported  = file_exists('view/theme/' . $theme . '/unsupported');
917                                 $is_mobile       = file_exists('view/theme/' . $theme . '/mobile');
918                                 if (!$is_experimental || ($is_experimental && (Config::get('experimentals', 'exp_themes')==1 || is_null(Config::get('experimentals', 'exp_themes'))))) {
919                                         $theme_name = ucfirst($theme);
920                                         if ($is_unsupported) {
921                                                 $theme_name = L10n::t("%s - \x28Unsupported\x29", $theme_name);
922                                         } elseif ($is_experimental) {
923                                                 $theme_name = L10n::t("%s - \x28Experimental\x29", $theme_name);
924                                         }
925                                         if ($is_mobile) {
926                                                 $mobile_themes[$theme] = $theme_name;
927                                         } else {
928                                                 $themes[$theme] = $theme_name;
929                                         }
930                                 }
931                         }
932                 }
933                 $theme_selected        = defaults($_SESSION, 'theme'       , $default_theme);
934                 $mobile_theme_selected = defaults($_SESSION, 'mobile-theme', $default_mobile_theme);
935
936                 $nowarn_insecure = intval(PConfig::get(local_user(), 'system', 'nowarn_insecure'));
937
938                 $browser_update = intval(PConfig::get(local_user(), 'system', 'update_interval'));
939                 if (intval($browser_update) != -1) {
940                         $browser_update = (($browser_update == 0) ? 40 : $browser_update / 1000); // default if not set: 40 seconds
941                 }
942
943                 $itemspage_network = intval(PConfig::get(local_user(), 'system', 'itemspage_network'));
944                 $itemspage_network = (($itemspage_network > 0 && $itemspage_network < 101) ? $itemspage_network : 40); // default if not set: 40 items
945                 $itemspage_mobile_network = intval(PConfig::get(local_user(), 'system', 'itemspage_mobile_network'));
946                 $itemspage_mobile_network = (($itemspage_mobile_network > 0 && $itemspage_mobile_network < 101) ? $itemspage_mobile_network : 20); // default if not set: 20 items
947
948                 $nosmile = PConfig::get(local_user(), 'system', 'no_smilies', 0);
949                 $first_day_of_week = PConfig::get(local_user(), 'system', 'first_day_of_week', 0);
950                 $weekdays = [0 => L10n::t("Sunday"), 1 => L10n::t("Monday")];
951
952                 $noinfo = PConfig::get(local_user(), 'system', 'ignore_info', 0);
953                 $infinite_scroll = PConfig::get(local_user(), 'system', 'infinite_scroll', 0);
954                 $no_auto_update = PConfig::get(local_user(), 'system', 'no_auto_update', 0);
955                 $bandwidth_saver = PConfig::get(local_user(), 'system', 'bandwidth_saver', 0);
956                 $smart_threading = PConfig::get(local_user(), 'system', 'smart_threading', 0);
957
958                 $theme_config = "";
959                 if (($themeconfigfile = get_theme_config_file($theme_selected)) !== null) {
960                         require_once $themeconfigfile;
961                         $theme_config = theme_content($a);
962                 }
963
964                 $tpl = get_markup_template('settings/display.tpl');
965                 $o = replace_macros($tpl, [
966                         '$ptitle'       => L10n::t('Display Settings'),
967                         '$form_security_token' => get_form_security_token("settings_display"),
968                         '$submit'       => L10n::t('Save Settings'),
969                         '$baseurl' => System::baseUrl(true),
970                         '$uid' => local_user(),
971
972                         '$theme'        => ['theme', L10n::t('Display Theme:'), $theme_selected, '', $themes, true],
973                         '$mobile_theme' => ['mobile_theme', L10n::t('Mobile Theme:'), $mobile_theme_selected, '', $mobile_themes, false],
974                         '$nowarn_insecure' => ['nowarn_insecure',  L10n::t('Suppress warning of insecure networks'), $nowarn_insecure, L10n::t("Should the system suppress the warning that the current group contains members of networks that can't receive non public postings.")],
975                         '$ajaxint'   => ['browser_update',  L10n::t("Update browser every xx seconds"), $browser_update, L10n::t('Minimum of 10 seconds. Enter -1 to disable it.')],
976                         '$itemspage_network'   => ['itemspage_network',  L10n::t("Number of items to display per page:"), $itemspage_network, L10n::t('Maximum of 100 items')],
977                         '$itemspage_mobile_network'   => ['itemspage_mobile_network',  L10n::t("Number of items to display per page when viewed from mobile device:"), $itemspage_mobile_network, L10n::t('Maximum of 100 items')],
978                         '$nosmile'      => ['nosmile', L10n::t("Don't show emoticons"), $nosmile, ''],
979                         '$calendar_title' => L10n::t('Calendar'),
980                         '$first_day_of_week'    => ['first_day_of_week', L10n::t('Beginning of week:'), $first_day_of_week, '', $weekdays, false],
981                         '$noinfo'       => ['noinfo', L10n::t("Don't show notices"), $noinfo, ''],
982                         '$infinite_scroll'      => ['infinite_scroll', L10n::t("Infinite scroll"), $infinite_scroll, ''],
983                         '$no_auto_update'       => ['no_auto_update', L10n::t("Automatic updates only at the top of the network page"), $no_auto_update, L10n::t('When disabled, the network page is updated all the time, which could be confusing while reading.')],
984                         '$bandwidth_saver' => ['bandwidth_saver', L10n::t('Bandwith Saver Mode'), $bandwidth_saver, L10n::t('When enabled, embedded content is not displayed on automatic updates, they only show on page reload.')],
985                         '$smart_threading' => ['smart_threading', L10n::t('Smart Threading'), $smart_threading, L10n::t('When enabled, suppress extraneous thread indentation while keeping it where it matters. Only works if threading is available and enabled.')],
986
987                         '$d_tset' => L10n::t('General Theme Settings'),
988                         '$d_ctset' => L10n::t('Custom Theme Settings'),
989                         '$d_cset' => L10n::t('Content Settings'),
990                         'stitle' => L10n::t('Theme settings'),
991                         '$theme_config' => $theme_config,
992                 ]);
993
994                 $tpl = get_markup_template('settings/display_end.tpl');
995                 $a->page['end'] .= replace_macros($tpl, [
996                         '$theme'        => ['theme', L10n::t('Display Theme:'), $theme_selected, '', $themes]
997                 ]);
998
999                 return $o;
1000         }
1001
1002
1003         /*
1004          * ACCOUNT SETTINGS
1005          */
1006
1007         $profile = dba::selectFirst('profile', [], ['is-default' => true, 'uid' => local_user()]);
1008         if (!DBM::is_result($profile)) {
1009                 notice(L10n::t('Unable to find your profile. Please contact your admin.') . EOL);
1010                 return;
1011         }
1012
1013         $username   = $a->user['username'];
1014         $email      = $a->user['email'];
1015         $nickname   = $a->user['nickname'];
1016         $timezone   = $a->user['timezone'];
1017         $language   = $a->user['language'];
1018         $notify     = $a->user['notify-flags'];
1019         $defloc     = $a->user['default-location'];
1020         $openid     = $a->user['openid'];
1021         $maxreq     = $a->user['maxreq'];
1022         $expire     = ((intval($a->user['expire'])) ? $a->user['expire'] : '');
1023         $unkmail    = $a->user['unkmail'];
1024         $cntunkmail = $a->user['cntunkmail'];
1025
1026         $expire_items = PConfig::get(local_user(), 'expire', 'items', true);
1027         $expire_notes = PConfig::get(local_user(), 'expire', 'notes', true);
1028         $expire_starred = PConfig::get(local_user(), 'expire', 'starred', true);
1029         $expire_photos = PConfig::get(local_user(), 'expire', 'photos', false);
1030         $expire_network_only = PConfig::get(local_user(), 'expire', 'network_only', false);
1031         $suggestme = PConfig::get(local_user(), 'system', 'suggestme', false);
1032         $post_newfriend = PConfig::get(local_user(), 'system', 'post_newfriend', false);
1033         $post_joingroup = PConfig::get(local_user(), 'system', 'post_joingroup', false);
1034         $post_profilechange = PConfig::get(local_user(), 'system', 'post_profilechange', false);
1035
1036         // nowarn_insecure
1037
1038         if (!strlen($a->user['timezone'])) {
1039                 $timezone = date_default_timezone_get();
1040         }
1041
1042         // Set the account type to "Community" when the page is a community page but the account type doesn't fit
1043         // This is only happening on the first visit after the update
1044         if (in_array($a->user['page-flags'], [PAGE_COMMUNITY, PAGE_PRVGROUP]) &&
1045                 ($a->user['account-type'] != ACCOUNT_TYPE_COMMUNITY))
1046                 $a->user['account-type'] = ACCOUNT_TYPE_COMMUNITY;
1047
1048         $pageset_tpl = get_markup_template('settings/pagetypes.tpl');
1049
1050         $pagetype = replace_macros($pageset_tpl, [
1051                 '$account_types'        => L10n::t("Account Types"),
1052                 '$user'                 => L10n::t("Personal Page Subtypes"),
1053                 '$community'            => L10n::t("Community Forum Subtypes"),
1054                 '$account_type'         => $a->user['account-type'],
1055                 '$type_person'          => ACCOUNT_TYPE_PERSON,
1056                 '$type_organisation'    => ACCOUNT_TYPE_ORGANISATION,
1057                 '$type_news'            => ACCOUNT_TYPE_NEWS,
1058                 '$type_community'       => ACCOUNT_TYPE_COMMUNITY,
1059
1060                 '$account_person'       => ['account-type', L10n::t('Personal Page'), ACCOUNT_TYPE_PERSON,
1061                                                                         L10n::t('Account for a personal profile.'),
1062                                                                         ($a->user['account-type'] == ACCOUNT_TYPE_PERSON)],
1063
1064                 '$account_organisation' => ['account-type', L10n::t('Organisation Page'), ACCOUNT_TYPE_ORGANISATION,
1065                                                                         L10n::t('Account for an organisation that automatically approves contact requests as "Followers".'),
1066                                                                         ($a->user['account-type'] == ACCOUNT_TYPE_ORGANISATION)],
1067
1068                 '$account_news'         => ['account-type', L10n::t('News Page'), ACCOUNT_TYPE_NEWS,
1069                                                                         L10n::t('Account for a news reflector that automatically approves contact requests as "Followers".'),
1070                                                                         ($a->user['account-type'] == ACCOUNT_TYPE_NEWS)],
1071
1072                 '$account_community'    => ['account-type', L10n::t('Community Forum'), ACCOUNT_TYPE_COMMUNITY,
1073                                                                         L10n::t('Account for community discussions.'),
1074                                                                         ($a->user['account-type'] == ACCOUNT_TYPE_COMMUNITY)],
1075
1076                 '$page_normal'          => ['page-flags', L10n::t('Normal Account Page'), PAGE_NORMAL,
1077                                                                         L10n::t('Account for a regular personal profile that requires manual approval of "Friends" and "Followers".'),
1078                                                                         ($a->user['page-flags'] == PAGE_NORMAL)],
1079
1080                 '$page_soapbox'         => ['page-flags', L10n::t('Soapbox Page'), PAGE_SOAPBOX,
1081                                                                         L10n::t('Account for a public profile that automatically approves contact requests as "Followers".'),
1082                                                                         ($a->user['page-flags'] == PAGE_SOAPBOX)],
1083
1084                 '$page_community'       => ['page-flags', L10n::t('Public Forum'), PAGE_COMMUNITY,
1085                                                                         L10n::t('Automatically approves all contact requests.'),
1086                                                                         ($a->user['page-flags'] == PAGE_COMMUNITY)],
1087
1088                 '$page_freelove'        => ['page-flags', L10n::t('Automatic Friend Page'), PAGE_FREELOVE,
1089                                                                         L10n::t('Account for a popular profile that automatically approves contact requests as "Friends".'),
1090                                                                         ($a->user['page-flags'] == PAGE_FREELOVE)],
1091
1092                 '$page_prvgroup'        => ['page-flags', L10n::t('Private Forum [Experimental]'), PAGE_PRVGROUP,
1093                                                                         L10n::t('Requires manual approval of contact requests.'),
1094                                                                         ($a->user['page-flags'] == PAGE_PRVGROUP)],
1095
1096
1097         ]);
1098
1099         $noid = Config::get('system', 'no_openid');
1100
1101         if ($noid) {
1102                 $openid_field = false;
1103         } else {
1104                 $openid_field = ['openid_url', L10n::t('OpenID:'), $openid, L10n::t("\x28Optional\x29 Allow this OpenID to login to this account."), "", "", "url"];
1105         }
1106
1107         $opt_tpl = get_markup_template("field_yesno.tpl");
1108         if (Config::get('system', 'publish_all')) {
1109                 $profile_in_dir = '<input type="hidden" name="profile_in_directory" value="1" />';
1110         } else {
1111                 $profile_in_dir = replace_macros($opt_tpl, [
1112                         '$field' => ['profile_in_directory', L10n::t('Publish your default profile in your local site directory?'), $profile['publish'], L10n::t('Your profile will be published in the global friendica directories (e.g. <a href="%s">%s</a>). Your profile will be visible in public.', Config::get('system', 'directory'), Config::get('system', 'directory')), [L10n::t('No'), L10n::t('Yes')]]
1113                 ]);
1114         }
1115
1116         if (strlen(Config::get('system', 'directory'))) {
1117                 $profile_in_net_dir = replace_macros($opt_tpl, [
1118                         '$field' => ['profile_in_netdirectory', L10n::t('Publish your default profile in the global social directory?'), $profile['net-publish'], L10n::t('Your profile will be published in this node\'s <a href="%s">local directory</a>. Your profile details may be publicly visible depending on the system settings.', System::baseUrl().'/directory'), [L10n::t('No'), L10n::t('Yes')]]
1119                 ]);
1120         } else {
1121                 $profile_in_net_dir = '';
1122         }
1123
1124         $hide_friends = replace_macros($opt_tpl, [
1125                 '$field' => ['hide-friends', L10n::t('Hide your contact/friend list from viewers of your default profile?'), $profile['hide-friends'], L10n::t('Your contact list won\'t be shown in your default profile page. You can decide to show your contact list separately for each additional profile you create'), [L10n::t('No'), L10n::t('Yes')]],
1126         ]);
1127
1128         $hide_wall = replace_macros($opt_tpl, [
1129                 '$field' => ['hidewall', L10n::t('Hide your profile details from anonymous viewers?'), $a->user['hidewall'], L10n::t('Anonymous visitors will only see your profile picture, your display name and the nickname you are using on your profile page. Disables posting public messages to Diaspora and other networks.'), [L10n::t('No'), L10n::t('Yes')]],
1130         ]);
1131
1132         $blockwall = replace_macros($opt_tpl, [
1133                 '$field' => ['blockwall', L10n::t('Allow friends to post to your profile page?'), (intval($a->user['blockwall']) ? '0' : '1'), L10n::t('Your contacts may write posts on your profile wall. These posts will be distributed to your contacts'), [L10n::t('No'), L10n::t('Yes')]],
1134         ]);
1135
1136         $blocktags = replace_macros($opt_tpl, [
1137                 '$field' => ['blocktags', L10n::t('Allow friends to tag your posts?'), (intval($a->user['blocktags']) ? '0' : '1'), L10n::t('Your contacts can add additional tags to your posts.'), [L10n::t('No'), L10n::t('Yes')]],
1138         ]);
1139
1140         $suggestme = replace_macros($opt_tpl, [
1141                 '$field' => ['suggestme', L10n::t('Allow us to suggest you as a potential friend to new members?'), $suggestme, L10n::t('If you like, Friendica may suggest new members to add you as a contact.'), [L10n::t('No'), L10n::t('Yes')]],
1142         ]);
1143
1144         $unkmail = replace_macros($opt_tpl, [
1145                 '$field' => ['unkmail', L10n::t('Permit unknown people to send you private mail?'), $unkmail, L10n::t('Friendica network users may send you private messages even if they are not in your contact list.'), [L10n::t('No'), L10n::t('Yes')]],
1146         ]);
1147
1148         if (!$profile['publish'] && !$profile['net-publish']) {
1149                 info(L10n::t('Profile is <strong>not published</strong>.') . EOL);
1150         }
1151
1152         $tpl_addr = get_markup_template('settings/nick_set.tpl');
1153
1154         $prof_addr = replace_macros($tpl_addr,[
1155                 '$desc' => L10n::t("Your Identity Address is <strong>'%s'</strong> or '%s'.", $nickname . '@' . $a->get_hostname() . $a->get_path(), System::baseUrl() . '/profile/' . $nickname),
1156                 '$basepath' => $a->get_hostname()
1157         ]);
1158
1159         $stpl = get_markup_template('settings/settings.tpl');
1160
1161         $expire_arr = [
1162                 'days' => ['expire',  L10n::t("Automatically expire posts after this many days:"), $expire, L10n::t('If empty, posts will not expire. Expired posts will be deleted')],
1163                 'advanced' => L10n::t('Advanced expiration settings'),
1164                 'label' => L10n::t('Advanced Expiration'),
1165                 'items' => ['expire_items',  L10n::t("Expire posts:"), $expire_items, '', [L10n::t('No'), L10n::t('Yes')]],
1166                 'notes' => ['expire_notes',  L10n::t("Expire personal notes:"), $expire_notes, '', [L10n::t('No'), L10n::t('Yes')]],
1167                 'starred' => ['expire_starred',  L10n::t("Expire starred posts:"), $expire_starred, '', [L10n::t('No'), L10n::t('Yes')]],
1168                 'photos' => ['expire_photos',  L10n::t("Expire photos:"), $expire_photos, '', [L10n::t('No'), L10n::t('Yes')]],
1169                 'network_only' => ['expire_network_only',  L10n::t("Only expire posts by others:"), $expire_network_only, '', [L10n::t('No'), L10n::t('Yes')]],
1170         ];
1171
1172         $group_select = Group::displayGroupSelection(local_user(), $a->user['def_gid']);
1173
1174         // Private/public post links for the non-JS ACL form
1175         $private_post = 1;
1176         if ($_REQUEST['public']) {
1177                 $private_post = 0;
1178         }
1179
1180         $query_str = $a->query_string;
1181         if (strpos($query_str, 'public=1') !== false) {
1182                 $query_str = str_replace(['?public=1', '&public=1'], ['', ''], $query_str);
1183         }
1184
1185         // I think $a->query_string may never have ? in it, but I could be wrong
1186         // It looks like it's from the index.php?q=[etc] rewrite that the web
1187         // server does, which converts any ? to &, e.g. suggest&ignore=61 for suggest?ignore=61
1188         if (strpos($query_str, '?') === false) {
1189                 $public_post_link = '?public=1';
1190         } else {
1191                 $public_post_link = '&public=1';
1192         }
1193
1194         /* Installed langs */
1195         $lang_choices = L10n::getAvailableLanguages();
1196
1197         /// @TODO Fix indending (or so)
1198         $o .= replace_macros($stpl, [
1199                 '$ptitle'       => L10n::t('Account Settings'),
1200
1201                 '$submit'       => L10n::t('Save Settings'),
1202                 '$baseurl' => System::baseUrl(true),
1203                 '$uid' => local_user(),
1204                 '$form_security_token' => get_form_security_token("settings"),
1205                 '$nickname_block' => $prof_addr,
1206
1207                 '$h_pass'       => L10n::t('Password Settings'),
1208                 '$password1'=> ['password', L10n::t('New Password:'), '', ''],
1209                 '$password2'=> ['confirm', L10n::t('Confirm:'), '', L10n::t('Leave password fields blank unless changing')],
1210                 '$password3'=> ['opassword', L10n::t('Current Password:'), '', L10n::t('Your current password to confirm the changes')],
1211                 '$password4'=> ['mpassword', L10n::t('Password:'), '', L10n::t('Your current password to confirm the changes')],
1212                 '$oid_enable' => (!Config::get('system', 'no_openid')),
1213                 '$openid'       => $openid_field,
1214
1215                 '$h_basic'      => L10n::t('Basic Settings'),
1216                 '$username' => ['username',  L10n::t('Full Name:'), $username, ''],
1217                 '$email'        => ['email', L10n::t('Email Address:'), $email, '', '', '', 'email'],
1218                 '$timezone' => ['timezone_select' , L10n::t('Your Timezone:'), Temporal::getTimezoneSelect($timezone), ''],
1219                 '$language' => ['language', L10n::t('Your Language:'), $language, L10n::t('Set the language we use to show you friendica interface and to send you emails'), $lang_choices],
1220                 '$defloc'       => ['defloc', L10n::t('Default Post Location:'), $defloc, ''],
1221                 '$allowloc' => ['allow_location', L10n::t('Use Browser Location:'), ($a->user['allow_location'] == 1), ''],
1222
1223
1224                 '$h_prv'        => L10n::t('Security and Privacy Settings'),
1225
1226                 '$maxreq'       => ['maxreq', L10n::t('Maximum Friend Requests/Day:'), $maxreq , L10n::t("\x28to prevent spam abuse\x29")],
1227                 '$permissions' => L10n::t('Default Post Permissions'),
1228                 '$permdesc' => L10n::t("\x28click to open/close\x29"),
1229                 '$visibility' => $profile['net-publish'],
1230                 '$aclselect' => ACL::getFullSelectorHTML($a->user),
1231                 '$suggestme' => $suggestme,
1232                 '$blockwall'=> $blockwall, // array('blockwall', L10n::t('Allow friends to post to your profile page:'), !$blockwall, ''),
1233                 '$blocktags'=> $blocktags, // array('blocktags', L10n::t('Allow friends to tag your posts:'), !$blocktags, ''),
1234
1235                 // ACL permissions box
1236                 '$group_perms' => L10n::t('Show to Groups'),
1237                 '$contact_perms' => L10n::t('Show to Contacts'),
1238                 '$private' => L10n::t('Default Private Post'),
1239                 '$public' => L10n::t('Default Public Post'),
1240                 '$is_private' => $private_post,
1241                 '$return_path' => $query_str,
1242                 '$public_link' => $public_post_link,
1243                 '$settings_perms' => L10n::t('Default Permissions for New Posts'),
1244
1245                 '$group_select' => $group_select,
1246
1247
1248                 '$expire'       => $expire_arr,
1249
1250                 '$profile_in_dir' => $profile_in_dir,
1251                 '$profile_in_net_dir' => $profile_in_net_dir,
1252                 '$hide_friends' => $hide_friends,
1253                 '$hide_wall' => $hide_wall,
1254                 '$unkmail' => $unkmail,
1255                 '$cntunkmail'   => ['cntunkmail', L10n::t('Maximum private messages per day from unknown people:'), $cntunkmail , L10n::t("\x28to prevent spam abuse\x29")],
1256
1257
1258                 '$h_not'        => L10n::t('Notification Settings'),
1259                 '$activity_options' => L10n::t('By default post a status message when:'),
1260                 '$post_newfriend' => ['post_newfriend',  L10n::t('accepting a friend request'), $post_newfriend, ''],
1261                 '$post_joingroup' => ['post_joingroup',  L10n::t('joining a forum/community'), $post_joingroup, ''],
1262                 '$post_profilechange' => ['post_profilechange',  L10n::t('making an <em>interesting</em> profile change'), $post_profilechange, ''],
1263                 '$lbl_not'      => L10n::t('Send a notification email when:'),
1264                 '$notify1'      => ['notify1', L10n::t('You receive an introduction'), ($notify & NOTIFY_INTRO), NOTIFY_INTRO, ''],
1265                 '$notify2'      => ['notify2', L10n::t('Your introductions are confirmed'), ($notify & NOTIFY_CONFIRM), NOTIFY_CONFIRM, ''],
1266                 '$notify3'      => ['notify3', L10n::t('Someone writes on your profile wall'), ($notify & NOTIFY_WALL), NOTIFY_WALL, ''],
1267                 '$notify4'      => ['notify4', L10n::t('Someone writes a followup comment'), ($notify & NOTIFY_COMMENT), NOTIFY_COMMENT, ''],
1268                 '$notify5'      => ['notify5', L10n::t('You receive a private message'), ($notify & NOTIFY_MAIL), NOTIFY_MAIL, ''],
1269                 '$notify6'  => ['notify6', L10n::t('You receive a friend suggestion'), ($notify & NOTIFY_SUGGEST), NOTIFY_SUGGEST, ''],
1270                 '$notify7'  => ['notify7', L10n::t('You are tagged in a post'), ($notify & NOTIFY_TAGSELF), NOTIFY_TAGSELF, ''],
1271                 '$notify8'  => ['notify8', L10n::t('You are poked/prodded/etc. in a post'), ($notify & NOTIFY_POKE), NOTIFY_POKE, ''],
1272
1273                 '$desktop_notifications' => ['desktop_notifications', L10n::t('Activate desktop notifications') , false, L10n::t('Show desktop popup on new notifications')],
1274
1275                 '$email_textonly' => ['email_textonly', L10n::t('Text-only notification emails'),
1276                                                                         PConfig::get(local_user(), 'system', 'email_textonly'),
1277                                                                         L10n::t('Send text only notification emails, without the html part')],
1278
1279                 '$detailed_notif' => ['detailed_notif', L10n::t('Show detailled notifications'),
1280                                                                         PConfig::get(local_user(), 'system', 'detailed_notif'),
1281                                                                         L10n::t('Per default, notifications are condensed to a single notification per item. When enabled every notification is displayed.')],
1282
1283                 '$h_advn' => L10n::t('Advanced Account/Page Type Settings'),
1284                 '$h_descadvn' => L10n::t('Change the behaviour of this account for special situations'),
1285                 '$pagetype' => $pagetype,
1286
1287                 '$relocate' => L10n::t('Relocate'),
1288                 '$relocate_text' => L10n::t("If you have moved this profile from another server, and some of your contacts don't receive your updates, try pushing this button."),
1289                 '$relocate_button' => L10n::t("Resend relocate message to contacts"),
1290
1291         ]);
1292
1293         Addon::callHooks('settings_form', $o);
1294
1295         $o .= '</form>' . "\r\n";
1296
1297         return $o;
1298
1299 }