]> git.mxchange.org Git - friendica.git/blob - mod/settings.php
b39ee0b51f7a9c9c8385a3f15fa4c61f8d8e5f4b
[friendica.git] / mod / settings.php
1 <?php
2 /**
3  * @file mod/settings.php
4  */
5
6 use Friendica\App;
7 use Friendica\Content\Feature;
8 use Friendica\Content\Nav;
9 use Friendica\Core\ACL;
10 use Friendica\Core\Addon;
11 use Friendica\Core\Config;
12 use Friendica\Core\L10n;
13 use Friendica\Core\PConfig;
14 use Friendica\Core\System;
15 use Friendica\Core\Worker;
16 use Friendica\Database\DBM;
17 use Friendica\Model\GContact;
18 use Friendica\Model\Group;
19 use Friendica\Model\User;
20 use Friendica\Protocol\Email;
21 use Friendica\Util\DateTimeFormat;
22 use Friendica\Util\Network;
23 use Friendica\Util\Temporal;
24
25 function get_theme_config_file($theme)
26 {
27         $a = get_app();
28         $base_theme = $a->theme_info['extends'];
29
30         if (file_exists("view/theme/$theme/config.php")) {
31                 return "view/theme/$theme/config.php";
32         }
33         if (file_exists("view/theme/$base_theme/config.php")) {
34                 return "view/theme/$base_theme/config.php";
35         }
36         return null;
37 }
38
39 function settings_init(App $a)
40 {
41         if (!local_user()) {
42                 notice(L10n::t('Permission denied.') . EOL);
43                 return;
44         }
45
46         // These lines provide the javascript needed by the acl selector
47
48         $tpl = get_markup_template('settings/head.tpl');
49         $a->page['htmlhead'] .= replace_macros($tpl, [
50                 '$ispublic' => L10n::t('everybody')
51         ]);
52
53         $tabs = [
54                 [
55                         'label' => L10n::t('Account'),
56                         'url'   => 'settings',
57                         'selected'      =>  (($a->argc == 1) && ($a->argv[0] === 'settings')?'active':''),
58                         'accesskey' => 'o',
59                 ],
60         ];
61
62         if (Feature::get()) {
63                 $tabs[] =       [
64                                         'label' => L10n::t('Additional features'),
65                                         'url'   => 'settings/features',
66                                         'selected'      => (($a->argc > 1) && ($a->argv[1] === 'features') ? 'active' : ''),
67                                         'accesskey' => 't',
68                                 ];
69         }
70
71         $tabs[] =       [
72                 'label' => L10n::t('Display'),
73                 'url'   => 'settings/display',
74                 'selected'      => (($a->argc > 1) && ($a->argv[1] === 'display')?'active':''),
75                 'accesskey' => 'i',
76         ];
77
78         $tabs[] =       [
79                 'label' => L10n::t('Social Networks'),
80                 'url'   => 'settings/connectors',
81                 'selected'      => (($a->argc > 1) && ($a->argv[1] === 'connectors')?'active':''),
82                 'accesskey' => 'w',
83         ];
84
85         $tabs[] =       [
86                 'label' => L10n::t('Addons'),
87                 'url'   => 'settings/addon',
88                 'selected'      => (($a->argc > 1) && ($a->argv[1] === 'addon')?'active':''),
89                 'accesskey' => 'l',
90         ];
91
92         $tabs[] =       [
93                 'label' => L10n::t('Delegations'),
94                 'url'   => 'delegate',
95                 'selected'      => (($a->argc == 1) && ($a->argv[0] === 'delegate')?'active':''),
96                 'accesskey' => 'd',
97         ];
98
99         $tabs[] =       [
100                 'label' => L10n::t('Connected apps'),
101                 'url' => 'settings/oauth',
102                 'selected' => (($a->argc > 1) && ($a->argv[1] === 'oauth')?'active':''),
103                 'accesskey' => 'b',
104         ];
105
106         $tabs[] =       [
107                 'label' => L10n::t('Export personal data'),
108                 'url' => 'uexport',
109                 'selected' => (($a->argc == 1) && ($a->argv[0] === 'uexport')?'active':''),
110                 'accesskey' => 'e',
111         ];
112
113         $tabs[] =       [
114                 'label' => L10n::t('Remove account'),
115                 'url' => 'removeme',
116                 'selected' => (($a->argc == 1) && ($a->argv[0] === 'removeme')?'active':''),
117                 'accesskey' => 'r',
118         ];
119
120
121         $tabtpl = get_markup_template("generic_links_widget.tpl");
122         $a->page['aside'] = replace_macros($tabtpl, [
123                 '$title' => L10n::t('Settings'),
124                 '$class' => 'settings-widget',
125                 '$items' => $tabs,
126         ]);
127
128 }
129
130 function settings_post(App $a)
131 {
132         if (!local_user()) {
133                 return;
134         }
135
136         if (x($_SESSION, 'submanage') && intval($_SESSION['submanage'])) {
137                 return;
138         }
139
140         if (count($a->user) && x($a->user, 'uid') && $a->user['uid'] != local_user()) {
141                 notice(L10n::t('Permission denied.') . EOL);
142                 return;
143         }
144
145         $old_page_flags = $a->user['page-flags'];
146
147         if (($a->argc > 1) && ($a->argv[1] === 'oauth') && x($_POST, 'remove')) {
148                 check_form_security_token_redirectOnErr('/settings/oauth', 'settings_oauth');
149
150                 $key = $_POST['remove'];
151                 q("DELETE FROM tokens WHERE id='%s' AND uid=%d",
152                         dbesc($key),
153                         local_user());
154                 goaway(System::baseUrl(true)."/settings/oauth/");
155                 return;
156         }
157
158         if (($a->argc > 2) && ($a->argv[1] === 'oauth')  && ($a->argv[2] === 'edit'||($a->argv[2] === 'add')) && x($_POST, 'submit')) {
159                 check_form_security_token_redirectOnErr('/settings/oauth', 'settings_oauth');
160
161                 $name     = defaults($_POST, 'name'    , '');
162                 $key      = defaults($_POST, 'key'     , '');
163                 $secret   = defaults($_POST, 'secret'  , '');
164                 $redirect = defaults($_POST, 'redirect', '');
165                 $icon     = defaults($_POST, 'icon'    , '');
166
167                 if ($name == "" || $key == "" || $secret == "") {
168                         notice(L10n::t("Missing some important data!"));
169                 } else {
170                         if ($_POST['submit'] == L10n::t("Update")) {
171                                 q("UPDATE clients SET
172                                                         client_id='%s',
173                                                         pw='%s',
174                                                         name='%s',
175                                                         redirect_uri='%s',
176                                                         icon='%s',
177                                                         uid=%d
178                                                 WHERE client_id='%s'",
179                                         dbesc($key),
180                                         dbesc($secret),
181                                         dbesc($name),
182                                         dbesc($redirect),
183                                         dbesc($icon),
184                                         local_user(),
185                                         dbesc($key)
186                                 );
187                         } else {
188                                 q("INSERT INTO clients
189                                                         (client_id, pw, name, redirect_uri, icon, uid)
190                                                 VALUES ('%s', '%s', '%s', '%s', '%s',%d)",
191                                         dbesc($key),
192                                         dbesc($secret),
193                                         dbesc($name),
194                                         dbesc($redirect),
195                                         dbesc($icon),
196                                         local_user()
197                                 );
198                         }
199                 }
200                 goaway(System::baseUrl(true)."/settings/oauth/");
201                 return;
202         }
203
204         if (($a->argc > 1) && ($a->argv[1] == 'addon')) {
205                 check_form_security_token_redirectOnErr('/settings/addon', 'settings_addon');
206
207                 Addon::callHooks('addon_settings_post', $_POST);
208                 return;
209         }
210
211         if (($a->argc > 1) && ($a->argv[1] == 'connectors'))
212         {
213                 check_form_security_token_redirectOnErr('/settings/connectors', 'settings_connectors');
214
215                 if (x($_POST, 'general-submit')) {
216                         PConfig::set(local_user(), 'system', 'no_intelligent_shortening', intval($_POST['no_intelligent_shortening']));
217                         PConfig::set(local_user(), 'system', 'ostatus_autofriend', intval($_POST['snautofollow']));
218                         PConfig::set(local_user(), 'ostatus', 'default_group', $_POST['group-selection']);
219                         PConfig::set(local_user(), 'ostatus', 'legacy_contact', $_POST['legacy_contact']);
220                 } elseif (x($_POST, 'imap-submit')) {
221
222                         $mail_server       = ((x($_POST, 'mail_server')) ? $_POST['mail_server'] : '');
223                         $mail_port         = ((x($_POST, 'mail_port')) ? $_POST['mail_port'] : '');
224                         $mail_ssl          = ((x($_POST, 'mail_ssl')) ? strtolower(trim($_POST['mail_ssl'])) : '');
225                         $mail_user         = ((x($_POST, 'mail_user')) ? $_POST['mail_user'] : '');
226                         $mail_pass         = ((x($_POST, 'mail_pass')) ? trim($_POST['mail_pass']) : '');
227                         $mail_action       = ((x($_POST, 'mail_action')) ? trim($_POST['mail_action']) : '');
228                         $mail_movetofolder = ((x($_POST, 'mail_movetofolder')) ? trim($_POST['mail_movetofolder']) : '');
229                         $mail_replyto      = ((x($_POST, 'mail_replyto')) ? $_POST['mail_replyto'] : '');
230                         $mail_pubmail      = ((x($_POST, 'mail_pubmail')) ? $_POST['mail_pubmail'] : '');
231
232
233                         $mail_disabled = ((function_exists('imap_open') && (!Config::get('system', 'imap_disabled'))) ? 0 : 1);
234                         if (Config::get('system', 'dfrn_only')) {
235                                 $mail_disabled = 1;
236                         }
237
238                         if (!$mail_disabled) {
239                                 $failed = false;
240                                 $r = q("SELECT * FROM `mailacct` WHERE `uid` = %d LIMIT 1",
241                                         intval(local_user())
242                                 );
243                                 if (!DBM::is_result($r)) {
244                                         dba::insert('mailacct', ['uid' => local_user()]);
245                                 }
246                                 if (strlen($mail_pass)) {
247                                         $pass = '';
248                                         openssl_public_encrypt($mail_pass, $pass, $a->user['pubkey']);
249                                         dba::update('mailacct', ['pass' => bin2hex($pass)], ['uid' => local_user()]);
250                                 }
251                                 $r = q("UPDATE `mailacct` SET `server` = '%s', `port` = %d, `ssltype` = '%s', `user` = '%s',
252                                         `action` = %d, `movetofolder` = '%s',
253                                         `mailbox` = 'INBOX', `reply_to` = '%s', `pubmail` = %d WHERE `uid` = %d",
254                                         dbesc($mail_server),
255                                         intval($mail_port),
256                                         dbesc($mail_ssl),
257                                         dbesc($mail_user),
258                                         intval($mail_action),
259                                         dbesc($mail_movetofolder),
260                                         dbesc($mail_replyto),
261                                         intval($mail_pubmail),
262                                         intval(local_user())
263                                 );
264                                 logger("mail: updating mailaccount. Response: ".print_r($r, true));
265                                 $r = q("SELECT * FROM `mailacct` WHERE `uid` = %d LIMIT 1",
266                                         intval(local_user())
267                                 );
268                                 if (DBM::is_result($r)) {
269                                         $eacct = $r[0];
270                                         $mb = Email::constructMailboxName($eacct);
271
272                                         if (strlen($eacct['server'])) {
273                                                 $dcrpass = '';
274                                                 openssl_private_decrypt(hex2bin($eacct['pass']), $dcrpass, $a->user['prvkey']);
275                                                 $mbox = Email::connect($mb, $mail_user, $dcrpass);
276                                                 unset($dcrpass);
277                                                 if (!$mbox) {
278                                                         $failed = true;
279                                                         notice(L10n::t('Failed to connect with email account using the settings provided.') . EOL);
280                                                 }
281                                         }
282                                 }
283                                 if (!$failed) {
284                                         info(L10n::t('Email settings updated.') . EOL);
285                                 }
286                         }
287                 }
288
289                 Addon::callHooks('connector_settings_post', $_POST);
290                 return;
291         }
292
293         if (($a->argc > 1) && ($a->argv[1] === 'features')) {
294                 check_form_security_token_redirectOnErr('/settings/features', 'settings_features');
295                 foreach ($_POST as $k => $v) {
296                         if (strpos($k, 'feature_') === 0) {
297                                 PConfig::set(local_user(), 'feature', substr($k, 8), ((intval($v)) ? 1 : 0));
298                         }
299                 }
300                 info(L10n::t('Features updated') . EOL);
301                 return;
302         }
303
304         if (($a->argc > 1) && ($a->argv[1] === 'display')) {
305                 check_form_security_token_redirectOnErr('/settings/display', 'settings_display');
306
307                 $theme             = x($_POST, 'theme')             ? notags(trim($_POST['theme']))        : $a->user['theme'];
308                 $mobile_theme      = x($_POST, 'mobile_theme')      ? notags(trim($_POST['mobile_theme'])) : '';
309                 $nosmile           = x($_POST, 'nosmile')           ? intval($_POST['nosmile'])            : 0;
310                 $first_day_of_week = x($_POST, 'first_day_of_week') ? intval($_POST['first_day_of_week'])  : 0;
311                 $noinfo            = x($_POST, 'noinfo')            ? intval($_POST['noinfo'])             : 0;
312                 $infinite_scroll   = x($_POST, 'infinite_scroll')   ? intval($_POST['infinite_scroll'])    : 0;
313                 $no_auto_update    = x($_POST, 'no_auto_update')    ? intval($_POST['no_auto_update'])     : 0;
314                 $bandwidth_saver   = x($_POST, 'bandwidth_saver')   ? intval($_POST['bandwidth_saver'])    : 0;
315                 $smart_threading   = x($_POST, 'smart_threading')   ? intval($_POST['smart_threading'])    : 0;
316                 $nowarn_insecure   = x($_POST, 'nowarn_insecure')   ? intval($_POST['nowarn_insecure'])    : 0;
317                 $browser_update    = x($_POST, 'browser_update')    ? intval($_POST['browser_update'])     : 0;
318                 if ($browser_update != -1) {
319                         $browser_update = $browser_update * 1000;
320                         if ($browser_update < 10000) {
321                                 $browser_update = 10000;
322                         }
323                 }
324
325                 $itemspage_network = x($_POST, 'itemspage_network')  ? intval($_POST['itemspage_network'])  : 40;
326                 if ($itemspage_network > 100) {
327                         $itemspage_network = 100;
328                 }
329                 $itemspage_mobile_network = x($_POST, 'itemspage_mobile_network') ? intval($_POST['itemspage_mobile_network']) : 20;
330                 if ($itemspage_mobile_network > 100) {
331                         $itemspage_mobile_network = 100;
332                 }
333
334                 if ($mobile_theme !== '') {
335                         PConfig::set(local_user(), 'system', 'mobile_theme', $mobile_theme);
336                 }
337
338                 PConfig::set(local_user(), 'system', 'nowarn_insecure'         , $nowarn_insecure);
339                 PConfig::set(local_user(), 'system', 'update_interval'         , $browser_update);
340                 PConfig::set(local_user(), 'system', 'itemspage_network'       , $itemspage_network);
341                 PConfig::set(local_user(), 'system', 'itemspage_mobile_network', $itemspage_mobile_network);
342                 PConfig::set(local_user(), 'system', 'no_smilies'              , $nosmile);
343                 PConfig::set(local_user(), 'system', 'first_day_of_week'       , $first_day_of_week);
344                 PConfig::set(local_user(), 'system', 'ignore_info'             , $noinfo);
345                 PConfig::set(local_user(), 'system', 'infinite_scroll'         , $infinite_scroll);
346                 PConfig::set(local_user(), 'system', 'no_auto_update'          , $no_auto_update);
347                 PConfig::set(local_user(), 'system', 'bandwidth_saver'         , $bandwidth_saver);
348                 PConfig::set(local_user(), 'system', 'smart_threading'         , $smart_threading);
349
350                 if ($theme == $a->user['theme']) {
351                         // call theme_post only if theme has not been changed
352                         if (($themeconfigfile = get_theme_config_file($theme)) !== null) {
353                                 require_once $themeconfigfile;
354                                 theme_post($a);
355                         }
356                 }
357
358                 $r = q("UPDATE `user` SET `theme` = '%s' WHERE `uid` = %d",
359                                 dbesc($theme),
360                                 intval(local_user())
361                 );
362
363                 Addon::callHooks('display_settings_post', $_POST);
364                 goaway('settings/display');
365                 return; // NOTREACHED
366         }
367
368         check_form_security_token_redirectOnErr('/settings', 'settings');
369
370         if (x($_POST,'resend_relocate')) {
371                 Worker::add(PRIORITY_HIGH, 'Notifier', 'relocate', local_user());
372                 info(L10n::t("Relocate message has been send to your contacts"));
373                 goaway('settings');
374         }
375
376         Addon::callHooks('settings_post', $_POST);
377
378         if (x($_POST, 'password') || x($_POST, 'confirm')) {
379                 $newpass = $_POST['password'];
380                 $confirm = $_POST['confirm'];
381
382                 $err = false;
383                 if ($newpass != $confirm) {
384                         notice(L10n::t('Passwords do not match. Password unchanged.') . EOL);
385                         $err = true;
386                 }
387
388                 if (!x($newpass) || !x($confirm)) {
389                         notice(L10n::t('Empty passwords are not allowed. Password unchanged.') . EOL);
390                         $err = true;
391         }
392
393                 if (User::checkPasswordExposed($newpass)) {
394                         notice(L10n::t('The new password has been exposed in a public data dump, please choose another.') . EOL);
395                         $err = true;
396                 }
397
398         //  check if the old password was supplied correctly before changing it to the new value
399         if (!User::authenticate(intval(local_user()), $_POST['opassword'])) {
400             notice(L10n::t('Wrong password.') . EOL);
401             $err = true;
402         }
403
404                 if (!$err) {
405                         $result = User::updatePassword(local_user(), $newpass);
406                         if (DBM::is_result($result)) {
407                                 info(L10n::t('Password changed.') . EOL);
408                         } else {
409                                 notice(L10n::t('Password update failed. Please try again.') . EOL);
410                         }
411                 }
412         }
413
414         $username         = ((x($_POST, 'username'))   ? notags(trim($_POST['username']))     : '');
415         $email            = ((x($_POST, 'email'))      ? notags(trim($_POST['email']))        : '');
416         $timezone         = ((x($_POST, 'timezone'))   ? notags(trim($_POST['timezone']))     : '');
417         $language         = ((x($_POST, 'language'))   ? notags(trim($_POST['language']))     : '');
418
419         $defloc           = ((x($_POST, 'defloc'))     ? notags(trim($_POST['defloc']))       : '');
420         $openid           = ((x($_POST, 'openid_url')) ? notags(trim($_POST['openid_url']))   : '');
421         $maxreq           = ((x($_POST, 'maxreq'))     ? intval($_POST['maxreq'])             : 0);
422         $expire           = ((x($_POST, 'expire'))     ? intval($_POST['expire'])             : 0);
423         $def_gid          = ((x($_POST, 'group-selection')) ? intval($_POST['group-selection']) : 0);
424
425
426         $expire_items     = ((x($_POST, 'expire_items')) ? intval($_POST['expire_items'])        : 0);
427         $expire_notes     = ((x($_POST, 'expire_notes')) ? intval($_POST['expire_notes'])        : 0);
428         $expire_starred   = ((x($_POST, 'expire_starred')) ? intval($_POST['expire_starred']) : 0);
429         $expire_photos    = ((x($_POST, 'expire_photos'))? intval($_POST['expire_photos'])       : 0);
430         $expire_network_only    = ((x($_POST, 'expire_network_only'))? intval($_POST['expire_network_only'])     : 0);
431
432         $allow_location   = (((x($_POST, 'allow_location')) && (intval($_POST['allow_location']) == 1)) ? 1: 0);
433         $publish          = (((x($_POST, 'profile_in_directory')) && (intval($_POST['profile_in_directory']) == 1)) ? 1: 0);
434         $net_publish      = (((x($_POST, 'profile_in_netdirectory')) && (intval($_POST['profile_in_netdirectory']) == 1)) ? 1: 0);
435         $old_visibility   = (((x($_POST, 'visibility')) && (intval($_POST['visibility']) == 1)) ? 1 : 0);
436         $account_type     = (((x($_POST, 'account-type')) && (intval($_POST['account-type']))) ? intval($_POST['account-type']) : 0);
437         $page_flags       = (((x($_POST, 'page-flags')) && (intval($_POST['page-flags']))) ? intval($_POST['page-flags']) : 0);
438         $blockwall        = (((x($_POST, 'blockwall')) && (intval($_POST['blockwall']) == 1)) ? 0: 1); // this setting is inverted!
439         $blocktags        = (((x($_POST, 'blocktags')) && (intval($_POST['blocktags']) == 1)) ? 0: 1); // this setting is inverted!
440         $unkmail          = (((x($_POST, 'unkmail')) && (intval($_POST['unkmail']) == 1)) ? 1: 0);
441         $cntunkmail       = ((x($_POST, 'cntunkmail')) ? intval($_POST['cntunkmail']) : 0);
442         $suggestme        = ((x($_POST, 'suggestme')) ? intval($_POST['suggestme'])  : 0);
443         $hide_friends     = (($_POST['hide-friends'] == 1) ? 1: 0);
444         $hidewall         = (($_POST['hidewall'] == 1) ? 1: 0);
445         $post_newfriend   = (($_POST['post_newfriend'] == 1) ? 1: 0);
446         $post_joingroup   = (($_POST['post_joingroup'] == 1) ? 1: 0);
447         $post_profilechange   = (($_POST['post_profilechange'] == 1) ? 1: 0);
448
449         $email_textonly   = (($_POST['email_textonly'] == 1) ? 1 : 0);
450         $detailed_notif   = (($_POST['detailed_notif'] == 1) ? 1 : 0);
451
452         $notify = 0;
453
454         if (x($_POST, 'notify1')) {
455                 $notify += intval($_POST['notify1']);
456         }
457         if (x($_POST, 'notify2')) {
458                 $notify += intval($_POST['notify2']);
459         }
460         if (x($_POST, 'notify3')) {
461                 $notify += intval($_POST['notify3']);
462         }
463         if (x($_POST, 'notify4')) {
464                 $notify += intval($_POST['notify4']);
465         }
466         if (x($_POST, 'notify5')) {
467                 $notify += intval($_POST['notify5']);
468         }
469         if (x($_POST, 'notify6')) {
470                 $notify += intval($_POST['notify6']);
471         }
472         if (x($_POST, 'notify7')) {
473                 $notify += intval($_POST['notify7']);
474         }
475         if (x($_POST, 'notify8')) {
476                 $notify += intval($_POST['notify8']);
477         }
478
479         // Adjust the page flag if the account type doesn't fit to the page flag.
480         if (($account_type == ACCOUNT_TYPE_PERSON) && !in_array($page_flags, [PAGE_NORMAL, PAGE_SOAPBOX, PAGE_FREELOVE])) {
481                 $page_flags = PAGE_NORMAL;
482         } elseif (($account_type == ACCOUNT_TYPE_ORGANISATION) && !in_array($page_flags, [PAGE_SOAPBOX])) {
483                 $page_flags = PAGE_SOAPBOX;
484         } elseif (($account_type == ACCOUNT_TYPE_NEWS) && !in_array($page_flags, [PAGE_SOAPBOX])) {
485                 $page_flags = PAGE_SOAPBOX;
486         } elseif (($account_type == ACCOUNT_TYPE_COMMUNITY) && !in_array($page_flags, [PAGE_COMMUNITY, PAGE_PRVGROUP])) {
487                 $page_flags = PAGE_COMMUNITY;
488         }
489
490         $email_changed = false;
491
492         $err = '';
493
494         $name_change = false;
495
496         if ($username != $a->user['username']) {
497                 $name_change = true;
498                 if (strlen($username) > 40) {
499                         $err .= L10n::t(' Please use a shorter name.');
500                 }
501                 if (strlen($username) < 3) {
502                         $err .= L10n::t(' Name too short.');
503                 }
504         }
505
506         if ($email != $a->user['email']) {
507                 $email_changed = true;
508                 //  check for the correct password
509                 if (!User::authenticate(intval(local_user()), $_POST['mpassword'])) {
510                         $err .= L10n::t('Wrong Password') . EOL;
511                         $email = $a->user['email'];
512                 }
513                 //  check the email is valid
514                 if (!valid_email($email)) {
515                         $err .= L10n::t('Invalid email.');
516                 }
517                 //  ensure new email is not the admin mail
518                 //if ((x($a->config, 'admin_email')) && (strcasecmp($email, $a->config['admin_email']) == 0)) {
519                 if (x($a->config, 'admin_email')) {
520                         $adminlist = explode(",", str_replace(" ", "", strtolower($a->config['admin_email'])));
521                         if (in_array(strtolower($email), $adminlist)) {
522                                 $err .= L10n::t('Cannot change to that email.');
523                                 $email = $a->user['email'];
524                         }
525                 }
526         }
527
528         if (strlen($err)) {
529                 notice($err . EOL);
530                 return;
531         }
532
533         if (($timezone != $a->user['timezone']) && strlen($timezone)) {
534                 date_default_timezone_set($timezone);
535         }
536
537         $str_group_allow   = perms2str($_POST['group_allow']);
538         $str_contact_allow = perms2str($_POST['contact_allow']);
539         $str_group_deny    = perms2str($_POST['group_deny']);
540         $str_contact_deny  = perms2str($_POST['contact_deny']);
541
542         $openidserver = $a->user['openidserver'];
543         //$openid = normalise_openid($openid);
544
545         // If openid has changed or if there's an openid but no openidserver, try and discover it.
546         if ($openid != $a->user['openid'] || (strlen($openid) && (!strlen($openidserver)))) {
547                 if (Network::isUrlValid($openid)) {
548                         logger('updating openidserver');
549                         $open_id_obj = new LightOpenID;
550                         $open_id_obj->identity = $openid;
551                         $openidserver = $open_id_obj->discover($open_id_obj->identity);
552                 } else {
553                         $openidserver = '';
554                 }
555         }
556
557         PConfig::set(local_user(), 'expire', 'items', $expire_items);
558         PConfig::set(local_user(), 'expire', 'notes', $expire_notes);
559         PConfig::set(local_user(), 'expire', 'starred', $expire_starred);
560         PConfig::set(local_user(), 'expire', 'photos', $expire_photos);
561         PConfig::set(local_user(), 'expire', 'network_only', $expire_network_only);
562
563         PConfig::set(local_user(), 'system', 'suggestme', $suggestme);
564         PConfig::set(local_user(), 'system', 'post_newfriend', $post_newfriend);
565         PConfig::set(local_user(), 'system', 'post_joingroup', $post_joingroup);
566         PConfig::set(local_user(), 'system', 'post_profilechange', $post_profilechange);
567
568         PConfig::set(local_user(), 'system', 'email_textonly', $email_textonly);
569         PConfig::set(local_user(), 'system', 'detailed_notif', $detailed_notif);
570
571         if ($page_flags == PAGE_PRVGROUP) {
572                 $hidewall = 1;
573                 if (!$str_contact_allow && !$str_group_allow && !$str_contact_deny && !$str_group_deny) {
574                         if ($def_gid) {
575                                 info(L10n::t('Private forum has no privacy permissions. Using default privacy group.'). EOL);
576                                 $str_group_allow = '<' . $def_gid . '>';
577                         } else {
578                                 notice(L10n::t('Private forum has no privacy permissions and no default privacy group.') . EOL);
579                         }
580                 }
581         }
582
583
584         $r = q("UPDATE `user` SET `username` = '%s', `email` = '%s',
585                                 `openid` = '%s', `timezone` = '%s',
586                                 `allow_cid` = '%s', `allow_gid` = '%s', `deny_cid` = '%s', `deny_gid` = '%s',
587                                 `notify-flags` = %d, `page-flags` = %d, `account-type` = %d, `default-location` = '%s',
588                                 `allow_location` = %d, `maxreq` = %d, `expire` = %d, `openidserver` = '%s',
589                                 `def_gid` = %d, `blockwall` = %d, `hidewall` = %d, `blocktags` = %d,
590                                 `unkmail` = %d, `cntunkmail` = %d, `language` = '%s'
591                         WHERE `uid` = %d",
592                         dbesc($username),
593                         dbesc($email),
594                         dbesc($openid),
595                         dbesc($timezone),
596                         dbesc($str_contact_allow),
597                         dbesc($str_group_allow),
598                         dbesc($str_contact_deny),
599                         dbesc($str_group_deny),
600                         intval($notify),
601                         intval($page_flags),
602                         intval($account_type),
603                         dbesc($defloc),
604                         intval($allow_location),
605                         intval($maxreq),
606                         intval($expire),
607                         dbesc($openidserver),
608                         intval($def_gid),
609                         intval($blockwall),
610                         intval($hidewall),
611                         intval($blocktags),
612                         intval($unkmail),
613                         intval($cntunkmail),
614                         dbesc($language),
615                         intval(local_user())
616         );
617         if (DBM::is_result($r)) {
618                 info(L10n::t('Settings updated.') . EOL);
619         }
620
621         // clear session language
622         unset($_SESSION['language']);
623
624         $r = q("UPDATE `profile`
625                 SET `publish` = %d,
626                 `name` = '%s',
627                 `net-publish` = %d,
628                 `hide-friends` = %d
629                 WHERE `is-default` = 1 AND `uid` = %d",
630                 intval($publish),
631                 dbesc($username),
632                 intval($net_publish),
633                 intval($hide_friends),
634                 intval(local_user())
635         );
636
637
638         if ($name_change) {
639                 q("UPDATE `contact` SET `name` = '%s', `name-date` = '%s' WHERE `uid` = %d AND `self`",
640                         dbesc($username),
641                         dbesc(DateTimeFormat::utcNow()),
642                         intval(local_user())
643                 );
644         }
645
646         if (($old_visibility != $net_publish) || ($page_flags != $old_page_flags)) {
647                 // Update global directory in background
648                 $url = $_SESSION['my_url'];
649                 if ($url && strlen(Config::get('system', 'directory'))) {
650                         Worker::add(PRIORITY_LOW, "Directory", $url);
651                 }
652         }
653
654         Worker::add(PRIORITY_LOW, 'ProfileUpdate', local_user());
655
656         // Update the global contact for the user
657         GContact::updateForUser(local_user());
658
659         goaway('settings');
660         return; // NOTREACHED
661 }
662
663
664 function settings_content(App $a)
665 {
666         $o = '';
667         Nav::setSelected('settings');
668
669         if (!local_user()) {
670                 //notice(L10n::t('Permission denied.') . EOL);
671                 return;
672         }
673
674         if (x($_SESSION, 'submanage') && intval($_SESSION['submanage'])) {
675                 notice(L10n::t('Permission denied.') . EOL);
676                 return;
677         }
678
679         if (($a->argc > 1) && ($a->argv[1] === 'oauth')) {
680                 if (($a->argc > 2) && ($a->argv[2] === 'add')) {
681                         $tpl = get_markup_template('settings/oauth_edit.tpl');
682                         $o .= replace_macros($tpl, [
683                                 '$form_security_token' => get_form_security_token("settings_oauth"),
684                                 '$title'        => L10n::t('Add application'),
685                                 '$submit'       => L10n::t('Save Settings'),
686                                 '$cancel'       => L10n::t('Cancel'),
687                                 '$name'         => ['name', L10n::t('Name'), '', ''],
688                                 '$key'          => ['key', L10n::t('Consumer Key'), '', ''],
689                                 '$secret'       => ['secret', L10n::t('Consumer Secret'), '', ''],
690                                 '$redirect'     => ['redirect', L10n::t('Redirect'), '', ''],
691                                 '$icon'         => ['icon', L10n::t('Icon url'), '', ''],
692                         ]);
693                         return $o;
694                 }
695
696                 if (($a->argc > 3) && ($a->argv[2] === 'edit')) {
697                         $r = q("SELECT * FROM clients WHERE client_id='%s' AND uid=%d",
698                                         dbesc($a->argv[3]),
699                                         local_user());
700
701                         if (!DBM::is_result($r)) {
702                                 notice(L10n::t("You can't edit this application."));
703                                 return;
704                         }
705                         $app = $r[0];
706
707                         $tpl = get_markup_template('settings/oauth_edit.tpl');
708                         $o .= replace_macros($tpl, [
709                                 '$form_security_token' => get_form_security_token("settings_oauth"),
710                                 '$title'        => L10n::t('Add application'),
711                                 '$submit'       => L10n::t('Update'),
712                                 '$cancel'       => L10n::t('Cancel'),
713                                 '$name'         => ['name', L10n::t('Name'), $app['name'] , ''],
714                                 '$key'          => ['key', L10n::t('Consumer Key'), $app['client_id'], ''],
715                                 '$secret'       => ['secret', L10n::t('Consumer Secret'), $app['pw'], ''],
716                                 '$redirect'     => ['redirect', L10n::t('Redirect'), $app['redirect_uri'], ''],
717                                 '$icon'         => ['icon', L10n::t('Icon url'), $app['icon'], ''],
718                         ]);
719                         return $o;
720                 }
721
722                 if (($a->argc > 3) && ($a->argv[2] === 'delete')) {
723                         check_form_security_token_redirectOnErr('/settings/oauth', 'settings_oauth', 't');
724
725                         q("DELETE FROM clients WHERE client_id='%s' AND uid=%d",
726                                         dbesc($a->argv[3]),
727                                         local_user());
728                         goaway(System::baseUrl(true)."/settings/oauth/");
729                         return;
730                 }
731
732                 /// @TODO validate result with DBM::is_result()
733                 $r = q("SELECT clients.*, tokens.id as oauth_token, (clients.uid=%d) AS my
734                                 FROM clients
735                                 LEFT JOIN tokens ON clients.client_id=tokens.client_id
736                                 WHERE clients.uid IN (%d, 0)",
737                                 local_user(),
738                                 local_user());
739
740
741                 $tpl = get_markup_template('settings/oauth.tpl');
742                 $o .= replace_macros($tpl, [
743                         '$form_security_token' => get_form_security_token("settings_oauth"),
744                         '$baseurl'      => System::baseUrl(true),
745                         '$title'        => L10n::t('Connected Apps'),
746                         '$add'          => L10n::t('Add application'),
747                         '$edit'         => L10n::t('Edit'),
748                         '$delete'               => L10n::t('Delete'),
749                         '$consumerkey' => L10n::t('Client key starts with'),
750                         '$noname'       => L10n::t('No name'),
751                         '$remove'       => L10n::t('Remove authorization'),
752                         '$apps'         => $r,
753                 ]);
754                 return $o;
755         }
756
757         if (($a->argc > 1) && ($a->argv[1] === 'addon')) {
758                 $settings_addons = "";
759
760                 $r = q("SELECT * FROM `hook` WHERE `hook` = 'addon_settings' ");
761                 if (!DBM::is_result($r)) {
762                         $settings_addons = L10n::t('No Addon settings configured');
763                 }
764
765                 Addon::callHooks('addon_settings', $settings_addons);
766
767
768                 $tpl = get_markup_template('settings/addons.tpl');
769                 $o .= replace_macros($tpl, [
770                         '$form_security_token' => get_form_security_token("settings_addon"),
771                         '$title'        => L10n::t('Addon Settings'),
772                         '$settings_addons' => $settings_addons
773                 ]);
774                 return $o;
775         }
776
777         if (($a->argc > 1) && ($a->argv[1] === 'features')) {
778
779                 $arr = [];
780                 $features = Feature::get();
781                 foreach ($features as $fname => $fdata) {
782                         $arr[$fname] = [];
783                         $arr[$fname][0] = $fdata[0];
784                         foreach (array_slice($fdata,1) as $f) {
785                                 $arr[$fname][1][] = ['feature_' .$f[0], $f[1],((intval(Feature::isEnabled(local_user(), $f[0]))) ? "1" : ''), $f[2],[L10n::t('Off'), L10n::t('On')]];
786                         }
787                 }
788
789                 $tpl = get_markup_template('settings/features.tpl');
790                 $o .= replace_macros($tpl, [
791                         '$form_security_token' => get_form_security_token("settings_features"),
792                         '$title'               => L10n::t('Additional Features'),
793                         '$features'            => $arr,
794                         '$submit'              => L10n::t('Save Settings'),
795                 ]);
796                 return $o;
797         }
798
799         if (($a->argc > 1) && ($a->argv[1] === 'connectors')) {
800                 $no_intelligent_shortening = intval(PConfig::get(local_user(), 'system', 'no_intelligent_shortening'));
801                 $ostatus_autofriend        = intval(PConfig::get(local_user(), 'system', 'ostatus_autofriend'));
802                 $default_group             = PConfig::get(local_user(), 'ostatus', 'default_group');
803                 $legacy_contact            = PConfig::get(local_user(), 'ostatus', 'legacy_contact');
804
805                 if (x($legacy_contact)) {
806                         /// @todo Isn't it supposed to be a goaway() call?
807                         $a->page['htmlhead'] = '<meta http-equiv="refresh" content="0; URL=' . System::baseUrl().'/ostatus_subscribe?url=' . urlencode($legacy_contact) . '">';
808                 }
809
810                 $settings_connectors = '';
811                 Addon::callHooks('connector_settings', $settings_connectors);
812
813                 if (is_site_admin()) {
814                         $diasp_enabled = L10n::t('Built-in support for %s connectivity is %s', L10n::t('Diaspora'), ((Config::get('system', 'diaspora_enabled')) ? L10n::t('enabled') : L10n::t('disabled')));
815                         $ostat_enabled = L10n::t('Built-in support for %s connectivity is %s', L10n::t("GNU Social \x28OStatus\x29"), ((Config::get('system', 'ostatus_disabled')) ? L10n::t('disabled') : L10n::t('enabled')));
816                 } else {
817                         $diasp_enabled = "";
818                         $ostat_enabled = "";
819                 }
820
821                 $mail_disabled = ((function_exists('imap_open') && (!Config::get('system', 'imap_disabled'))) ? 0 : 1);
822                 if (Config::get('system', 'dfrn_only')) {
823                         $mail_disabled = 1;
824                 }
825                 if (!$mail_disabled) {
826                         $r = q("SELECT * FROM `mailacct` WHERE `uid` = %d LIMIT 1",
827                                 local_user()
828                         );
829                 } else {
830                         $r = null;
831                 }
832
833                 $mail_server       = ((DBM::is_result($r)) ? $r[0]['server'] : '');
834                 $mail_port         = ((DBM::is_result($r) && intval($r[0]['port'])) ? intval($r[0]['port']) : '');
835                 $mail_ssl          = ((DBM::is_result($r)) ? $r[0]['ssltype'] : '');
836                 $mail_user         = ((DBM::is_result($r)) ? $r[0]['user'] : '');
837                 $mail_replyto      = ((DBM::is_result($r)) ? $r[0]['reply_to'] : '');
838                 $mail_pubmail      = ((DBM::is_result($r)) ? $r[0]['pubmail'] : 0);
839                 $mail_action       = ((DBM::is_result($r)) ? $r[0]['action'] : 0);
840                 $mail_movetofolder = ((DBM::is_result($r)) ? $r[0]['movetofolder'] : '');
841                 $mail_chk          = ((DBM::is_result($r)) ? $r[0]['last_check'] : NULL_DATE);
842
843
844                 $tpl = get_markup_template('settings/connectors.tpl');
845
846                 $mail_disabled_message = (($mail_disabled) ? L10n::t('Email access is disabled on this site.') : '');
847
848                 $o .= replace_macros($tpl, [
849                         '$form_security_token' => get_form_security_token("settings_connectors"),
850
851                         '$title'        => L10n::t('Social Networks'),
852
853                         '$diasp_enabled' => $diasp_enabled,
854                         '$ostat_enabled' => $ostat_enabled,
855
856                         '$general_settings' => L10n::t('General Social Media Settings'),
857                         '$no_intelligent_shortening' => ['no_intelligent_shortening', L10n::t('Disable intelligent shortening'), $no_intelligent_shortening, L10n::t('Normally the system tries to find the best link to add to shortened posts. If this option is enabled then every shortened post will always point to the original friendica post.')],
858                         '$ostatus_autofriend' => ['snautofollow', L10n::t("Automatically follow any GNU Social \x28OStatus\x29 followers/mentioners"), $ostatus_autofriend, L10n::t('If you receive a message from an unknown OStatus user, this option decides what to do. If it is checked, a new contact will be created for every unknown user.')],
859                         '$default_group' => Group::displayGroupSelection(local_user(), $default_group, L10n::t("Default group for OStatus contacts")),
860                         '$legacy_contact' => ['legacy_contact', L10n::t('Your legacy GNU Social account'), $legacy_contact, L10n::t("If you enter your old GNU Social/Statusnet account name here \x28in the format user@domain.tld\x29, your contacts will be added automatically. The field will be emptied when done.")],
861
862                         '$repair_ostatus_url' => System::baseUrl() . '/repair_ostatus',
863                         '$repair_ostatus_text' => L10n::t('Repair OStatus subscriptions'),
864
865                         '$settings_connectors' => $settings_connectors,
866
867                         '$h_imap' => L10n::t('Email/Mailbox Setup'),
868                         '$imap_desc' => L10n::t("If you wish to communicate with email contacts using this service \x28optional\x29, please specify how to connect to your mailbox."),
869                         '$imap_lastcheck' => ['imap_lastcheck', L10n::t('Last successful email check:'), $mail_chk, ''],
870                         '$mail_disabled' => $mail_disabled_message,
871                         '$mail_server'  => ['mail_server',  L10n::t('IMAP server name:'), $mail_server, ''],
872                         '$mail_port'    => ['mail_port',         L10n::t('IMAP port:'), $mail_port, ''],
873                         '$mail_ssl'             => ['mail_ssl',          L10n::t('Security:'), strtoupper($mail_ssl), '', ['notls'=>L10n::t('None'), 'TLS'=>'TLS', 'SSL'=>'SSL']],
874                         '$mail_user'    => ['mail_user',    L10n::t('Email login name:'), $mail_user, ''],
875                         '$mail_pass'    => ['mail_pass',         L10n::t('Email password:'), '', ''],
876                         '$mail_replyto' => ['mail_replyto', L10n::t('Reply-to address:'), $mail_replyto, 'Optional'],
877                         '$mail_pubmail' => ['mail_pubmail', L10n::t('Send public posts to all email contacts:'), $mail_pubmail, ''],
878                         '$mail_action'  => ['mail_action',       L10n::t('Action after import:'), $mail_action, '', [0=>L10n::t('None'), /*1=>L10n::t('Delete'),*/ 2=>L10n::t('Mark as seen'), 3=>L10n::t('Move to folder')]],
879                         '$mail_movetofolder'    => ['mail_movetofolder',         L10n::t('Move to folder:'), $mail_movetofolder, ''],
880                         '$submit' => L10n::t('Save Settings'),
881                 ]);
882
883                 Addon::callHooks('display_settings', $o);
884                 return $o;
885         }
886
887         /*
888          * DISPLAY SETTINGS
889          */
890         if (($a->argc > 1) && ($a->argv[1] === 'display')) {
891                 $default_theme = Config::get('system', 'theme');
892                 if (!$default_theme) {
893                         $default_theme = 'default';
894                 }
895                 $default_mobile_theme = Config::get('system', 'mobile-theme');
896                 if (!$default_mobile_theme) {
897                         $default_mobile_theme = 'none';
898                 }
899
900                 $allowed_themes_str = Config::get('system', 'allowed_themes');
901                 $allowed_themes_raw = explode(',', $allowed_themes_str);
902                 $allowed_themes = [];
903                 if (count($allowed_themes_raw)) {
904                         foreach ($allowed_themes_raw as $x) {
905                                 if (strlen(trim($x)) && is_dir("view/theme/$x")) {
906                                         $allowed_themes[] = trim($x);
907                                 }
908                         }
909                 }
910
911
912                 $themes = [];
913                 $mobile_themes = ["---" => L10n::t('No special theme for mobile devices')];
914                 if ($allowed_themes) {
915                         foreach ($allowed_themes as $theme) {
916                                 $is_experimental = file_exists('view/theme/' . $theme . '/experimental');
917                                 $is_unsupported  = file_exists('view/theme/' . $theme . '/unsupported');
918                                 $is_mobile       = file_exists('view/theme/' . $theme . '/mobile');
919                                 if (!$is_experimental || ($is_experimental && (Config::get('experimentals', 'exp_themes')==1 || is_null(Config::get('experimentals', 'exp_themes'))))) {
920                                         $theme_name = ucfirst($theme);
921                                         if ($is_unsupported) {
922                                                 $theme_name = L10n::t("%s - \x28Unsupported\x29", $theme_name);
923                                         } elseif ($is_experimental) {
924                                                 $theme_name = L10n::t("%s - \x28Experimental\x29", $theme_name);
925                                         }
926                                         if ($is_mobile) {
927                                                 $mobile_themes[$theme] = $theme_name;
928                                         } else {
929                                                 $themes[$theme] = $theme_name;
930                                         }
931                                 }
932                         }
933                 }
934                 $theme_selected        = defaults($_SESSION, 'theme'       , $default_theme);
935                 $mobile_theme_selected = defaults($_SESSION, 'mobile-theme', $default_mobile_theme);
936
937                 $nowarn_insecure = intval(PConfig::get(local_user(), 'system', 'nowarn_insecure'));
938
939                 $browser_update = intval(PConfig::get(local_user(), 'system', 'update_interval'));
940                 if (intval($browser_update) != -1) {
941                         $browser_update = (($browser_update == 0) ? 40 : $browser_update / 1000); // default if not set: 40 seconds
942                 }
943
944                 $itemspage_network = intval(PConfig::get(local_user(), 'system', 'itemspage_network'));
945                 $itemspage_network = (($itemspage_network > 0 && $itemspage_network < 101) ? $itemspage_network : 40); // default if not set: 40 items
946                 $itemspage_mobile_network = intval(PConfig::get(local_user(), 'system', 'itemspage_mobile_network'));
947                 $itemspage_mobile_network = (($itemspage_mobile_network > 0 && $itemspage_mobile_network < 101) ? $itemspage_mobile_network : 20); // default if not set: 20 items
948
949                 $nosmile = PConfig::get(local_user(), 'system', 'no_smilies', 0);
950                 $first_day_of_week = PConfig::get(local_user(), 'system', 'first_day_of_week', 0);
951                 $weekdays = [0 => L10n::t("Sunday"), 1 => L10n::t("Monday")];
952
953                 $noinfo = PConfig::get(local_user(), 'system', 'ignore_info', 0);
954                 $infinite_scroll = PConfig::get(local_user(), 'system', 'infinite_scroll', 0);
955                 $no_auto_update = PConfig::get(local_user(), 'system', 'no_auto_update', 0);
956                 $bandwidth_saver = PConfig::get(local_user(), 'system', 'bandwidth_saver', 0);
957                 $smart_threading = PConfig::get(local_user(), 'system', 'smart_threading', 0);
958
959                 $theme_config = "";
960                 if (($themeconfigfile = get_theme_config_file($theme_selected)) !== null) {
961                         require_once $themeconfigfile;
962                         $theme_config = theme_content($a);
963                 }
964
965                 $tpl = get_markup_template('settings/display.tpl');
966                 $o = replace_macros($tpl, [
967                         '$ptitle'       => L10n::t('Display Settings'),
968                         '$form_security_token' => get_form_security_token("settings_display"),
969                         '$submit'       => L10n::t('Save Settings'),
970                         '$baseurl' => System::baseUrl(true),
971                         '$uid' => local_user(),
972
973                         '$theme'        => ['theme', L10n::t('Display Theme:'), $theme_selected, '', $themes, true],
974                         '$mobile_theme' => ['mobile_theme', L10n::t('Mobile Theme:'), $mobile_theme_selected, '', $mobile_themes, false],
975                         '$nowarn_insecure' => ['nowarn_insecure',  L10n::t('Suppress warning of insecure networks'), $nowarn_insecure, L10n::t("Should the system suppress the warning that the current group contains members of networks that can't receive non public postings.")],
976                         '$ajaxint'   => ['browser_update',  L10n::t("Update browser every xx seconds"), $browser_update, L10n::t('Minimum of 10 seconds. Enter -1 to disable it.')],
977                         '$itemspage_network'   => ['itemspage_network',  L10n::t("Number of items to display per page:"), $itemspage_network, L10n::t('Maximum of 100 items')],
978                         '$itemspage_mobile_network'   => ['itemspage_mobile_network',  L10n::t("Number of items to display per page when viewed from mobile device:"), $itemspage_mobile_network, L10n::t('Maximum of 100 items')],
979                         '$nosmile'      => ['nosmile', L10n::t("Don't show emoticons"), $nosmile, ''],
980                         '$calendar_title' => L10n::t('Calendar'),
981                         '$first_day_of_week'    => ['first_day_of_week', L10n::t('Beginning of week:'), $first_day_of_week, '', $weekdays, false],
982                         '$noinfo'       => ['noinfo', L10n::t("Don't show notices"), $noinfo, ''],
983                         '$infinite_scroll'      => ['infinite_scroll', L10n::t("Infinite scroll"), $infinite_scroll, ''],
984                         '$no_auto_update'       => ['no_auto_update', L10n::t("Automatic updates only at the top of the network page"), $no_auto_update, L10n::t('When disabled, the network page is updated all the time, which could be confusing while reading.')],
985                         '$bandwidth_saver' => ['bandwidth_saver', L10n::t('Bandwith Saver Mode'), $bandwidth_saver, L10n::t('When enabled, embedded content is not displayed on automatic updates, they only show on page reload.')],
986                         '$smart_threading' => ['smart_threading', L10n::t('Smart Threading'), $smart_threading, L10n::t('When enabled, suppress extraneous thread indentation while keeping it where it matters. Only works if threading is available and enabled.')],
987
988                         '$d_tset' => L10n::t('General Theme Settings'),
989                         '$d_ctset' => L10n::t('Custom Theme Settings'),
990                         '$d_cset' => L10n::t('Content Settings'),
991                         'stitle' => L10n::t('Theme settings'),
992                         '$theme_config' => $theme_config,
993                 ]);
994
995                 $tpl = get_markup_template('settings/display_end.tpl');
996                 $a->page['end'] .= replace_macros($tpl, [
997                         '$theme'        => ['theme', L10n::t('Display Theme:'), $theme_selected, '', $themes]
998                 ]);
999
1000                 return $o;
1001         }
1002
1003
1004         /*
1005          * ACCOUNT SETTINGS
1006          */
1007
1008         $profile = dba::selectFirst('profile', [], ['is-default' => true, 'uid' => local_user()]);
1009         if (!DBM::is_result($profile)) {
1010                 notice(L10n::t('Unable to find your profile. Please contact your admin.') . EOL);
1011                 return;
1012         }
1013
1014         $username   = $a->user['username'];
1015         $email      = $a->user['email'];
1016         $nickname   = $a->user['nickname'];
1017         $timezone   = $a->user['timezone'];
1018         $language   = $a->user['language'];
1019         $notify     = $a->user['notify-flags'];
1020         $defloc     = $a->user['default-location'];
1021         $openid     = $a->user['openid'];
1022         $maxreq     = $a->user['maxreq'];
1023         $expire     = ((intval($a->user['expire'])) ? $a->user['expire'] : '');
1024         $unkmail    = $a->user['unkmail'];
1025         $cntunkmail = $a->user['cntunkmail'];
1026
1027         $expire_items = PConfig::get(local_user(), 'expire', 'items', true);
1028         $expire_notes = PConfig::get(local_user(), 'expire', 'notes', true);
1029         $expire_starred = PConfig::get(local_user(), 'expire', 'starred', true);
1030         $expire_photos = PConfig::get(local_user(), 'expire', 'photos', false);
1031         $expire_network_only = PConfig::get(local_user(), 'expire', 'network_only', false);
1032         $suggestme = PConfig::get(local_user(), 'system', 'suggestme', false);
1033         $post_newfriend = PConfig::get(local_user(), 'system', 'post_newfriend', false);
1034         $post_joingroup = PConfig::get(local_user(), 'system', 'post_joingroup', false);
1035         $post_profilechange = PConfig::get(local_user(), 'system', 'post_profilechange', false);
1036
1037         // nowarn_insecure
1038
1039         if (!strlen($a->user['timezone'])) {
1040                 $timezone = date_default_timezone_get();
1041         }
1042
1043         // Set the account type to "Community" when the page is a community page but the account type doesn't fit
1044         // This is only happening on the first visit after the update
1045         if (in_array($a->user['page-flags'], [PAGE_COMMUNITY, PAGE_PRVGROUP]) &&
1046                 ($a->user['account-type'] != ACCOUNT_TYPE_COMMUNITY))
1047                 $a->user['account-type'] = ACCOUNT_TYPE_COMMUNITY;
1048
1049         $pageset_tpl = get_markup_template('settings/pagetypes.tpl');
1050
1051         $pagetype = replace_macros($pageset_tpl, [
1052                 '$account_types'        => L10n::t("Account Types"),
1053                 '$user'                 => L10n::t("Personal Page Subtypes"),
1054                 '$community'            => L10n::t("Community Forum Subtypes"),
1055                 '$account_type'         => $a->user['account-type'],
1056                 '$type_person'          => ACCOUNT_TYPE_PERSON,
1057                 '$type_organisation'    => ACCOUNT_TYPE_ORGANISATION,
1058                 '$type_news'            => ACCOUNT_TYPE_NEWS,
1059                 '$type_community'       => ACCOUNT_TYPE_COMMUNITY,
1060
1061                 '$account_person'       => ['account-type', L10n::t('Personal Page'), ACCOUNT_TYPE_PERSON,
1062                                                                         L10n::t('Account for a personal profile.'),
1063                                                                         ($a->user['account-type'] == ACCOUNT_TYPE_PERSON)],
1064
1065                 '$account_organisation' => ['account-type', L10n::t('Organisation Page'), ACCOUNT_TYPE_ORGANISATION,
1066                                                                         L10n::t('Account for an organisation that automatically approves contact requests as "Followers".'),
1067                                                                         ($a->user['account-type'] == ACCOUNT_TYPE_ORGANISATION)],
1068
1069                 '$account_news'         => ['account-type', L10n::t('News Page'), ACCOUNT_TYPE_NEWS,
1070                                                                         L10n::t('Account for a news reflector that automatically approves contact requests as "Followers".'),
1071                                                                         ($a->user['account-type'] == ACCOUNT_TYPE_NEWS)],
1072
1073                 '$account_community'    => ['account-type', L10n::t('Community Forum'), ACCOUNT_TYPE_COMMUNITY,
1074                                                                         L10n::t('Account for community discussions.'),
1075                                                                         ($a->user['account-type'] == ACCOUNT_TYPE_COMMUNITY)],
1076
1077                 '$page_normal'          => ['page-flags', L10n::t('Normal Account Page'), PAGE_NORMAL,
1078                                                                         L10n::t('Account for a regular personal profile that requires manual approval of "Friends" and "Followers".'),
1079                                                                         ($a->user['page-flags'] == PAGE_NORMAL)],
1080
1081                 '$page_soapbox'         => ['page-flags', L10n::t('Soapbox Page'), PAGE_SOAPBOX,
1082                                                                         L10n::t('Account for a public profile that automatically approves contact requests as "Followers".'),
1083                                                                         ($a->user['page-flags'] == PAGE_SOAPBOX)],
1084
1085                 '$page_community'       => ['page-flags', L10n::t('Public Forum'), PAGE_COMMUNITY,
1086                                                                         L10n::t('Automatically approves all contact requests.'),
1087                                                                         ($a->user['page-flags'] == PAGE_COMMUNITY)],
1088
1089                 '$page_freelove'        => ['page-flags', L10n::t('Automatic Friend Page'), PAGE_FREELOVE,
1090                                                                         L10n::t('Account for a popular profile that automatically approves contact requests as "Friends".'),
1091                                                                         ($a->user['page-flags'] == PAGE_FREELOVE)],
1092
1093                 '$page_prvgroup'        => ['page-flags', L10n::t('Private Forum [Experimental]'), PAGE_PRVGROUP,
1094                                                                         L10n::t('Requires manual approval of contact requests.'),
1095                                                                         ($a->user['page-flags'] == PAGE_PRVGROUP)],
1096
1097
1098         ]);
1099
1100         $noid = Config::get('system', 'no_openid');
1101
1102         if ($noid) {
1103                 $openid_field = false;
1104         } else {
1105                 $openid_field = ['openid_url', L10n::t('OpenID:'), $openid, L10n::t("\x28Optional\x29 Allow this OpenID to login to this account."), "", "", "url"];
1106         }
1107
1108         $opt_tpl = get_markup_template("field_yesno.tpl");
1109         if (Config::get('system', 'publish_all')) {
1110                 $profile_in_dir = '<input type="hidden" name="profile_in_directory" value="1" />';
1111         } else {
1112                 $profile_in_dir = replace_macros($opt_tpl, [
1113                         '$field' => ['profile_in_directory', L10n::t('Publish your default profile in your local site directory?'), $profile['publish'], L10n::t('Your profile will be published in the global friendica directories (e.g. <a href="%s">%s</a>). Your profile will be visible in public.', Config::get('system', 'directory'), Config::get('system', 'directory')), [L10n::t('No'), L10n::t('Yes')]]
1114                 ]);
1115         }
1116
1117         if (strlen(Config::get('system', 'directory'))) {
1118                 $profile_in_net_dir = replace_macros($opt_tpl, [
1119                         '$field' => ['profile_in_netdirectory', L10n::t('Publish your default profile in the global social directory?'), $profile['net-publish'], L10n::t('Your profile will be publishedin this node\'s <a href="%s">local directory</a>. Your profile details may be publicly visible depending on the system settings.', System::baseUrl().'/directory'), [L10n::t('No'), L10n::t('Yes')]]
1120                 ]);
1121         } else {
1122                 $profile_in_net_dir = '';
1123         }
1124
1125         $hide_friends = replace_macros($opt_tpl, [
1126                 '$field' => ['hide-friends', L10n::t('Hide your contact/friend list from viewers of your default profile?'), $profile['hide-friends'], L10n::t('Your contact list won\'t be shown in your default profile page. You can decide to show your contact list separately for each additional profile you create'), [L10n::t('No'), L10n::t('Yes')]],
1127         ]);
1128
1129         $hide_wall = replace_macros($opt_tpl, [
1130                 '$field' => ['hidewall', L10n::t('Hide your profile details from anonymous viewers?'), $a->user['hidewall'], L10n::t('Anonymous visitors will only see your profile picture, your display name and the nickname you are using on your profile page. Disables posting public messages to Diaspora and other networks.'), [L10n::t('No'), L10n::t('Yes')]],
1131         ]);
1132
1133         $blockwall = replace_macros($opt_tpl, [
1134                 '$field' => ['blockwall', L10n::t('Allow friends to post to your profile page?'), (intval($a->user['blockwall']) ? '0' : '1'), L10n::t('Your contacts may write posts on your profile wall. These posts will be distributed to your contacts'), [L10n::t('No'), L10n::t('Yes')]],
1135         ]);
1136
1137         $blocktags = replace_macros($opt_tpl, [
1138                 '$field' => ['blocktags', L10n::t('Allow friends to tag your posts?'), (intval($a->user['blocktags']) ? '0' : '1'), L10n::t('Your contacts can add additional tags to your posts.'), [L10n::t('No'), L10n::t('Yes')]],
1139         ]);
1140
1141         $suggestme = replace_macros($opt_tpl, [
1142                 '$field' => ['suggestme', L10n::t('Allow us to suggest you as a potential friend to new members?'), $suggestme, L10n::t('If you like, Friendica may suggest new members to add you as a contact.'), [L10n::t('No'), L10n::t('Yes')]],
1143         ]);
1144
1145         $unkmail = replace_macros($opt_tpl, [
1146                 '$field' => ['unkmail', L10n::t('Permit unknown people to send you private mail?'), $unkmail, L10n::t('Friendica network users may send you private messages even if they are not in your contact list.'), [L10n::t('No'), L10n::t('Yes')]],
1147         ]);
1148
1149         if (!$profile['publish'] && !$profile['net-publish']) {
1150                 info(L10n::t('Profile is <strong>not published</strong>.') . EOL);
1151         }
1152
1153         $tpl_addr = get_markup_template('settings/nick_set.tpl');
1154
1155         $prof_addr = replace_macros($tpl_addr,[
1156                 '$desc' => L10n::t("Your Identity Address is <strong>'%s'</strong> or '%s'.", $nickname . '@' . $a->get_hostname() . $a->get_path(), System::baseUrl() . '/profile/' . $nickname),
1157                 '$basepath' => $a->get_hostname()
1158         ]);
1159
1160         $stpl = get_markup_template('settings/settings.tpl');
1161
1162         $expire_arr = [
1163                 'days' => ['expire',  L10n::t("Automatically expire posts after this many days:"), $expire, L10n::t('If empty, posts will not expire. Expired posts will be deleted')],
1164                 'advanced' => L10n::t('Advanced expiration settings'),
1165                 'label' => L10n::t('Advanced Expiration'),
1166                 'items' => ['expire_items',  L10n::t("Expire posts:"), $expire_items, '', [L10n::t('No'), L10n::t('Yes')]],
1167                 'notes' => ['expire_notes',  L10n::t("Expire personal notes:"), $expire_notes, '', [L10n::t('No'), L10n::t('Yes')]],
1168                 'starred' => ['expire_starred',  L10n::t("Expire starred posts:"), $expire_starred, '', [L10n::t('No'), L10n::t('Yes')]],
1169                 'photos' => ['expire_photos',  L10n::t("Expire photos:"), $expire_photos, '', [L10n::t('No'), L10n::t('Yes')]],
1170                 'network_only' => ['expire_network_only',  L10n::t("Only expire posts by others:"), $expire_network_only, '', [L10n::t('No'), L10n::t('Yes')]],
1171         ];
1172
1173         $group_select = Group::displayGroupSelection(local_user(), $a->user['def_gid']);
1174
1175         // Private/public post links for the non-JS ACL form
1176         $private_post = 1;
1177         if ($_REQUEST['public']) {
1178                 $private_post = 0;
1179         }
1180
1181         $query_str = $a->query_string;
1182         if (strpos($query_str, 'public=1') !== false) {
1183                 $query_str = str_replace(['?public=1', '&public=1'], ['', ''], $query_str);
1184         }
1185
1186         // I think $a->query_string may never have ? in it, but I could be wrong
1187         // It looks like it's from the index.php?q=[etc] rewrite that the web
1188         // server does, which converts any ? to &, e.g. suggest&ignore=61 for suggest?ignore=61
1189         if (strpos($query_str, '?') === false) {
1190                 $public_post_link = '?public=1';
1191         } else {
1192                 $public_post_link = '&public=1';
1193         }
1194
1195         /* Installed langs */
1196         $lang_choices = L10n::getAvailableLanguages();
1197
1198         /// @TODO Fix indending (or so)
1199         $o .= replace_macros($stpl, [
1200                 '$ptitle'       => L10n::t('Account Settings'),
1201
1202                 '$submit'       => L10n::t('Save Settings'),
1203                 '$baseurl' => System::baseUrl(true),
1204                 '$uid' => local_user(),
1205                 '$form_security_token' => get_form_security_token("settings"),
1206                 '$nickname_block' => $prof_addr,
1207
1208                 '$h_pass'       => L10n::t('Password Settings'),
1209                 '$password1'=> ['password', L10n::t('New Password:'), '', ''],
1210                 '$password2'=> ['confirm', L10n::t('Confirm:'), '', L10n::t('Leave password fields blank unless changing')],
1211                 '$password3'=> ['opassword', L10n::t('Current Password:'), '', L10n::t('Your current password to confirm the changes')],
1212                 '$password4'=> ['mpassword', L10n::t('Password:'), '', L10n::t('Your current password to confirm the changes')],
1213                 '$oid_enable' => (!Config::get('system', 'no_openid')),
1214                 '$openid'       => $openid_field,
1215
1216                 '$h_basic'      => L10n::t('Basic Settings'),
1217                 '$username' => ['username',  L10n::t('Full Name:'), $username, ''],
1218                 '$email'        => ['email', L10n::t('Email Address:'), $email, '', '', '', 'email'],
1219                 '$timezone' => ['timezone_select' , L10n::t('Your Timezone:'), Temporal::getTimezoneSelect($timezone), ''],
1220                 '$language' => ['language', L10n::t('Your Language:'), $language, L10n::t('Set the language we use to show you friendica interface and to send you emails'), $lang_choices],
1221                 '$defloc'       => ['defloc', L10n::t('Default Post Location:'), $defloc, ''],
1222                 '$allowloc' => ['allow_location', L10n::t('Use Browser Location:'), ($a->user['allow_location'] == 1), ''],
1223
1224
1225                 '$h_prv'        => L10n::t('Security and Privacy Settings'),
1226
1227                 '$maxreq'       => ['maxreq', L10n::t('Maximum Friend Requests/Day:'), $maxreq , L10n::t("\x28to prevent spam abuse\x29")],
1228                 '$permissions' => L10n::t('Default Post Permissions'),
1229                 '$permdesc' => L10n::t("\x28click to open/close\x29"),
1230                 '$visibility' => $profile['net-publish'],
1231                 '$aclselect' => ACL::getFullSelectorHTML($a->user),
1232                 '$suggestme' => $suggestme,
1233                 '$blockwall'=> $blockwall, // array('blockwall', L10n::t('Allow friends to post to your profile page:'), !$blockwall, ''),
1234                 '$blocktags'=> $blocktags, // array('blocktags', L10n::t('Allow friends to tag your posts:'), !$blocktags, ''),
1235
1236                 // ACL permissions box
1237                 '$group_perms' => L10n::t('Show to Groups'),
1238                 '$contact_perms' => L10n::t('Show to Contacts'),
1239                 '$private' => L10n::t('Default Private Post'),
1240                 '$public' => L10n::t('Default Public Post'),
1241                 '$is_private' => $private_post,
1242                 '$return_path' => $query_str,
1243                 '$public_link' => $public_post_link,
1244                 '$settings_perms' => L10n::t('Default Permissions for New Posts'),
1245
1246                 '$group_select' => $group_select,
1247
1248
1249                 '$expire'       => $expire_arr,
1250
1251                 '$profile_in_dir' => $profile_in_dir,
1252                 '$profile_in_net_dir' => $profile_in_net_dir,
1253                 '$hide_friends' => $hide_friends,
1254                 '$hide_wall' => $hide_wall,
1255                 '$unkmail' => $unkmail,
1256                 '$cntunkmail'   => ['cntunkmail', L10n::t('Maximum private messages per day from unknown people:'), $cntunkmail , L10n::t("\x28to prevent spam abuse\x29")],
1257
1258
1259                 '$h_not'        => L10n::t('Notification Settings'),
1260                 '$activity_options' => L10n::t('By default post a status message when:'),
1261                 '$post_newfriend' => ['post_newfriend',  L10n::t('accepting a friend request'), $post_newfriend, ''],
1262                 '$post_joingroup' => ['post_joingroup',  L10n::t('joining a forum/community'), $post_joingroup, ''],
1263                 '$post_profilechange' => ['post_profilechange',  L10n::t('making an <em>interesting</em> profile change'), $post_profilechange, ''],
1264                 '$lbl_not'      => L10n::t('Send a notification email when:'),
1265                 '$notify1'      => ['notify1', L10n::t('You receive an introduction'), ($notify & NOTIFY_INTRO), NOTIFY_INTRO, ''],
1266                 '$notify2'      => ['notify2', L10n::t('Your introductions are confirmed'), ($notify & NOTIFY_CONFIRM), NOTIFY_CONFIRM, ''],
1267                 '$notify3'      => ['notify3', L10n::t('Someone writes on your profile wall'), ($notify & NOTIFY_WALL), NOTIFY_WALL, ''],
1268                 '$notify4'      => ['notify4', L10n::t('Someone writes a followup comment'), ($notify & NOTIFY_COMMENT), NOTIFY_COMMENT, ''],
1269                 '$notify5'      => ['notify5', L10n::t('You receive a private message'), ($notify & NOTIFY_MAIL), NOTIFY_MAIL, ''],
1270                 '$notify6'  => ['notify6', L10n::t('You receive a friend suggestion'), ($notify & NOTIFY_SUGGEST), NOTIFY_SUGGEST, ''],
1271                 '$notify7'  => ['notify7', L10n::t('You are tagged in a post'), ($notify & NOTIFY_TAGSELF), NOTIFY_TAGSELF, ''],
1272                 '$notify8'  => ['notify8', L10n::t('You are poked/prodded/etc. in a post'), ($notify & NOTIFY_POKE), NOTIFY_POKE, ''],
1273
1274                 '$desktop_notifications' => ['desktop_notifications', L10n::t('Activate desktop notifications') , false, L10n::t('Show desktop popup on new notifications')],
1275
1276                 '$email_textonly' => ['email_textonly', L10n::t('Text-only notification emails'),
1277                                                                         PConfig::get(local_user(), 'system', 'email_textonly'),
1278                                                                         L10n::t('Send text only notification emails, without the html part')],
1279
1280                 '$detailed_notif' => ['detailed_notif', L10n::t('Show detailled notifications'),
1281                                                                         PConfig::get(local_user(), 'system', 'detailed_notif'),
1282                                                                         L10n::t('Per default, notifications are condensed to a single notification per item. When enabled every notification is displayed.')],
1283
1284                 '$h_advn' => L10n::t('Advanced Account/Page Type Settings'),
1285                 '$h_descadvn' => L10n::t('Change the behaviour of this account for special situations'),
1286                 '$pagetype' => $pagetype,
1287
1288                 '$relocate' => L10n::t('Relocate'),
1289                 '$relocate_text' => L10n::t("If you have moved this profile from another server, and some of your contacts don't receive your updates, try pushing this button."),
1290                 '$relocate_button' => L10n::t("Resend relocate message to contacts"),
1291
1292         ]);
1293
1294         Addon::callHooks('settings_form', $o);
1295
1296         $o .= '</form>' . "\r\n";
1297
1298         return $o;
1299
1300 }