]> git.mxchange.org Git - friendica.git/blob - mod/settings.php
d7e8b7b4598e75582df27cec6c246b8d14a57c5e
[friendica.git] / mod / settings.php
1 <?php
2 /**
3  * @file mod/settings.php
4  */
5
6 use Friendica\App;
7 use Friendica\Content\Feature;
8 use Friendica\Content\Nav;
9 use Friendica\Core\ACL;
10 use Friendica\Core\Addon;
11 use Friendica\Core\Config;
12 use Friendica\Core\L10n;
13 use Friendica\Core\PConfig;
14 use Friendica\Core\System;
15 use Friendica\Core\Theme;
16 use Friendica\Core\Worker;
17 use Friendica\Database\DBM;
18 use Friendica\Model\Contact;
19 use Friendica\Model\GContact;
20 use Friendica\Model\Group;
21 use Friendica\Model\User;
22 use Friendica\Protocol\Email;
23 use Friendica\Util\Network;
24 use Friendica\Util\Temporal;
25
26 function get_theme_config_file($theme)
27 {
28         $a = get_app();
29         if (!empty($a->theme_info['extends'])) {
30                 $base_theme = $a->theme_info['extends'];
31         }
32
33         if (file_exists("view/theme/$theme/config.php")) {
34                 return "view/theme/$theme/config.php";
35         }
36         if (!empty($base_theme) && file_exists("view/theme/$base_theme/config.php")) {
37                 return "view/theme/$base_theme/config.php";
38         }
39         return null;
40 }
41
42 function settings_init(App $a)
43 {
44         if (!local_user()) {
45                 notice(L10n::t('Permission denied.') . EOL);
46                 return;
47         }
48
49         // These lines provide the javascript needed by the acl selector
50
51         $tpl = get_markup_template('settings/head.tpl');
52         $a->page['htmlhead'] .= replace_macros($tpl, [
53                 '$ispublic' => L10n::t('everybody')
54         ]);
55
56         $tabs = [
57                 [
58                         'label' => L10n::t('Account'),
59                         'url'   => 'settings',
60                         'selected'      =>  (($a->argc == 1) && ($a->argv[0] === 'settings')?'active':''),
61                         'accesskey' => 'o',
62                 ],
63         ];
64
65         if (Feature::get()) {
66                 $tabs[] =       [
67                                         'label' => L10n::t('Additional features'),
68                                         'url'   => 'settings/features',
69                                         'selected'      => (($a->argc > 1) && ($a->argv[1] === 'features') ? 'active' : ''),
70                                         'accesskey' => 't',
71                                 ];
72         }
73
74         $tabs[] =       [
75                 'label' => L10n::t('Display'),
76                 'url'   => 'settings/display',
77                 'selected'      => (($a->argc > 1) && ($a->argv[1] === 'display')?'active':''),
78                 'accesskey' => 'i',
79         ];
80
81         $tabs[] =       [
82                 'label' => L10n::t('Social Networks'),
83                 'url'   => 'settings/connectors',
84                 'selected'      => (($a->argc > 1) && ($a->argv[1] === 'connectors')?'active':''),
85                 'accesskey' => 'w',
86         ];
87
88         $tabs[] =       [
89                 'label' => L10n::t('Addons'),
90                 'url'   => 'settings/addon',
91                 'selected'      => (($a->argc > 1) && ($a->argv[1] === 'addon')?'active':''),
92                 'accesskey' => 'l',
93         ];
94
95         $tabs[] =       [
96                 'label' => L10n::t('Delegations'),
97                 'url'   => 'delegate',
98                 'selected'      => (($a->argc == 1) && ($a->argv[0] === 'delegate')?'active':''),
99                 'accesskey' => 'd',
100         ];
101
102         $tabs[] =       [
103                 'label' => L10n::t('Connected apps'),
104                 'url' => 'settings/oauth',
105                 'selected' => (($a->argc > 1) && ($a->argv[1] === 'oauth')?'active':''),
106                 'accesskey' => 'b',
107         ];
108
109         $tabs[] =       [
110                 'label' => L10n::t('Export personal data'),
111                 'url' => 'uexport',
112                 'selected' => (($a->argc == 1) && ($a->argv[0] === 'uexport')?'active':''),
113                 'accesskey' => 'e',
114         ];
115
116         $tabs[] =       [
117                 'label' => L10n::t('Remove account'),
118                 'url' => 'removeme',
119                 'selected' => (($a->argc == 1) && ($a->argv[0] === 'removeme')?'active':''),
120                 'accesskey' => 'r',
121         ];
122
123
124         $tabtpl = get_markup_template("generic_links_widget.tpl");
125         $a->page['aside'] = replace_macros($tabtpl, [
126                 '$title' => L10n::t('Settings'),
127                 '$class' => 'settings-widget',
128                 '$items' => $tabs,
129         ]);
130
131 }
132
133 function settings_post(App $a)
134 {
135         if (!local_user()) {
136                 return;
137         }
138
139         if (x($_SESSION, 'submanage') && intval($_SESSION['submanage'])) {
140                 return;
141         }
142
143         if (count($a->user) && x($a->user, 'uid') && $a->user['uid'] != local_user()) {
144                 notice(L10n::t('Permission denied.') . EOL);
145                 return;
146         }
147
148         $old_page_flags = $a->user['page-flags'];
149
150         if (($a->argc > 1) && ($a->argv[1] === 'oauth') && x($_POST, 'remove')) {
151                 check_form_security_token_redirectOnErr('/settings/oauth', 'settings_oauth');
152
153                 $key = $_POST['remove'];
154                 dba::delete('tokens', ['id' => $key, 'uid' => local_user()]);
155                 goaway(System::baseUrl(true)."/settings/oauth/");
156                 return;
157         }
158
159         if (($a->argc > 2) && ($a->argv[1] === 'oauth')  && ($a->argv[2] === 'edit'||($a->argv[2] === 'add')) && x($_POST, 'submit')) {
160                 check_form_security_token_redirectOnErr('/settings/oauth', 'settings_oauth');
161
162                 $name     = defaults($_POST, 'name'    , '');
163                 $key      = defaults($_POST, 'key'     , '');
164                 $secret   = defaults($_POST, 'secret'  , '');
165                 $redirect = defaults($_POST, 'redirect', '');
166                 $icon     = defaults($_POST, 'icon'    , '');
167
168                 if ($name == "" || $key == "" || $secret == "") {
169                         notice(L10n::t("Missing some important data!"));
170                 } else {
171                         if ($_POST['submit'] == L10n::t("Update")) {
172                                 q("UPDATE clients SET
173                                                         client_id='%s',
174                                                         pw='%s',
175                                                         name='%s',
176                                                         redirect_uri='%s',
177                                                         icon='%s',
178                                                         uid=%d
179                                                 WHERE client_id='%s'",
180                                         dbesc($key),
181                                         dbesc($secret),
182                                         dbesc($name),
183                                         dbesc($redirect),
184                                         dbesc($icon),
185                                         local_user(),
186                                         dbesc($key)
187                                 );
188                         } else {
189                                 q("INSERT INTO clients
190                                                         (client_id, pw, name, redirect_uri, icon, uid)
191                                                 VALUES ('%s', '%s', '%s', '%s', '%s',%d)",
192                                         dbesc($key),
193                                         dbesc($secret),
194                                         dbesc($name),
195                                         dbesc($redirect),
196                                         dbesc($icon),
197                                         local_user()
198                                 );
199                         }
200                 }
201                 goaway(System::baseUrl(true)."/settings/oauth/");
202                 return;
203         }
204
205         if (($a->argc > 1) && ($a->argv[1] == 'addon')) {
206                 check_form_security_token_redirectOnErr('/settings/addon', 'settings_addon');
207
208                 Addon::callHooks('addon_settings_post', $_POST);
209                 return;
210         }
211
212         if (($a->argc > 1) && ($a->argv[1] == 'connectors')) {
213                 check_form_security_token_redirectOnErr('/settings/connectors', 'settings_connectors');
214
215                 if (x($_POST, 'general-submit')) {
216                         PConfig::set(local_user(), 'system', 'disable_cw', intval($_POST['disable_cw']));
217                         PConfig::set(local_user(), 'system', 'no_intelligent_shortening', intval($_POST['no_intelligent_shortening']));
218                         PConfig::set(local_user(), 'system', 'ostatus_autofriend', intval($_POST['snautofollow']));
219                         PConfig::set(local_user(), 'ostatus', 'default_group', $_POST['group-selection']);
220                         PConfig::set(local_user(), 'ostatus', 'legacy_contact', $_POST['legacy_contact']);
221                 } elseif (x($_POST, 'imap-submit')) {
222
223                         $mail_server       = ((x($_POST, 'mail_server')) ? $_POST['mail_server'] : '');
224                         $mail_port         = ((x($_POST, 'mail_port')) ? $_POST['mail_port'] : '');
225                         $mail_ssl          = ((x($_POST, 'mail_ssl')) ? strtolower(trim($_POST['mail_ssl'])) : '');
226                         $mail_user         = ((x($_POST, 'mail_user')) ? $_POST['mail_user'] : '');
227                         $mail_pass         = ((x($_POST, 'mail_pass')) ? trim($_POST['mail_pass']) : '');
228                         $mail_action       = ((x($_POST, 'mail_action')) ? trim($_POST['mail_action']) : '');
229                         $mail_movetofolder = ((x($_POST, 'mail_movetofolder')) ? trim($_POST['mail_movetofolder']) : '');
230                         $mail_replyto      = ((x($_POST, 'mail_replyto')) ? $_POST['mail_replyto'] : '');
231                         $mail_pubmail      = ((x($_POST, 'mail_pubmail')) ? $_POST['mail_pubmail'] : '');
232
233
234                         $mail_disabled = ((function_exists('imap_open') && (!Config::get('system', 'imap_disabled'))) ? 0 : 1);
235                         if (Config::get('system', 'dfrn_only')) {
236                                 $mail_disabled = 1;
237                         }
238
239                         if (!$mail_disabled) {
240                                 $failed = false;
241                                 $r = q("SELECT * FROM `mailacct` WHERE `uid` = %d LIMIT 1",
242                                         intval(local_user())
243                                 );
244                                 if (!DBM::is_result($r)) {
245                                         dba::insert('mailacct', ['uid' => local_user()]);
246                                 }
247                                 if (strlen($mail_pass)) {
248                                         $pass = '';
249                                         openssl_public_encrypt($mail_pass, $pass, $a->user['pubkey']);
250                                         dba::update('mailacct', ['pass' => bin2hex($pass)], ['uid' => local_user()]);
251                                 }
252                                 $r = q("UPDATE `mailacct` SET `server` = '%s', `port` = %d, `ssltype` = '%s', `user` = '%s',
253                                         `action` = %d, `movetofolder` = '%s',
254                                         `mailbox` = 'INBOX', `reply_to` = '%s', `pubmail` = %d WHERE `uid` = %d",
255                                         dbesc($mail_server),
256                                         intval($mail_port),
257                                         dbesc($mail_ssl),
258                                         dbesc($mail_user),
259                                         intval($mail_action),
260                                         dbesc($mail_movetofolder),
261                                         dbesc($mail_replyto),
262                                         intval($mail_pubmail),
263                                         intval(local_user())
264                                 );
265                                 logger("mail: updating mailaccount. Response: ".print_r($r, true));
266                                 $r = q("SELECT * FROM `mailacct` WHERE `uid` = %d LIMIT 1",
267                                         intval(local_user())
268                                 );
269                                 if (DBM::is_result($r)) {
270                                         $eacct = $r[0];
271                                         $mb = Email::constructMailboxName($eacct);
272
273                                         if (strlen($eacct['server'])) {
274                                                 $dcrpass = '';
275                                                 openssl_private_decrypt(hex2bin($eacct['pass']), $dcrpass, $a->user['prvkey']);
276                                                 $mbox = Email::connect($mb, $mail_user, $dcrpass);
277                                                 unset($dcrpass);
278                                                 if (!$mbox) {
279                                                         $failed = true;
280                                                         notice(L10n::t('Failed to connect with email account using the settings provided.') . EOL);
281                                                 }
282                                         }
283                                 }
284                                 if (!$failed) {
285                                         info(L10n::t('Email settings updated.') . EOL);
286                                 }
287                         }
288                 }
289
290                 Addon::callHooks('connector_settings_post', $_POST);
291                 return;
292         }
293
294         if (($a->argc > 1) && ($a->argv[1] === 'features')) {
295                 check_form_security_token_redirectOnErr('/settings/features', 'settings_features');
296                 foreach ($_POST as $k => $v) {
297                         if (strpos($k, 'feature_') === 0) {
298                                 PConfig::set(local_user(), 'feature', substr($k, 8), ((intval($v)) ? 1 : 0));
299                         }
300                 }
301                 info(L10n::t('Features updated') . EOL);
302                 return;
303         }
304
305         if (($a->argc > 1) && ($a->argv[1] === 'display')) {
306                 check_form_security_token_redirectOnErr('/settings/display', 'settings_display');
307
308                 $theme             = x($_POST, 'theme')             ? notags(trim($_POST['theme']))        : $a->user['theme'];
309                 $mobile_theme      = x($_POST, 'mobile_theme')      ? notags(trim($_POST['mobile_theme'])) : '';
310                 $nosmile           = x($_POST, 'nosmile')           ? intval($_POST['nosmile'])            : 0;
311                 $first_day_of_week = x($_POST, 'first_day_of_week') ? intval($_POST['first_day_of_week'])  : 0;
312                 $noinfo            = x($_POST, 'noinfo')            ? intval($_POST['noinfo'])             : 0;
313                 $infinite_scroll   = x($_POST, 'infinite_scroll')   ? intval($_POST['infinite_scroll'])    : 0;
314                 $no_auto_update    = x($_POST, 'no_auto_update')    ? intval($_POST['no_auto_update'])     : 0;
315                 $bandwidth_saver   = x($_POST, 'bandwidth_saver')   ? intval($_POST['bandwidth_saver'])    : 0;
316                 $smart_threading   = x($_POST, 'smart_threading')   ? intval($_POST['smart_threading'])    : 0;
317                 $nowarn_insecure   = x($_POST, 'nowarn_insecure')   ? intval($_POST['nowarn_insecure'])    : 0;
318                 $browser_update    = x($_POST, 'browser_update')    ? intval($_POST['browser_update'])     : 0;
319                 if ($browser_update != -1) {
320                         $browser_update = $browser_update * 1000;
321                         if ($browser_update < 10000) {
322                                 $browser_update = 10000;
323                         }
324                 }
325
326                 $itemspage_network = x($_POST, 'itemspage_network')  ? intval($_POST['itemspage_network'])  : 40;
327                 if ($itemspage_network > 100) {
328                         $itemspage_network = 100;
329                 }
330                 $itemspage_mobile_network = x($_POST, 'itemspage_mobile_network') ? intval($_POST['itemspage_mobile_network']) : 20;
331                 if ($itemspage_mobile_network > 100) {
332                         $itemspage_mobile_network = 100;
333                 }
334
335                 if ($mobile_theme !== '') {
336                         PConfig::set(local_user(), 'system', 'mobile_theme', $mobile_theme);
337                 }
338
339                 PConfig::set(local_user(), 'system', 'nowarn_insecure'         , $nowarn_insecure);
340                 PConfig::set(local_user(), 'system', 'update_interval'         , $browser_update);
341                 PConfig::set(local_user(), 'system', 'itemspage_network'       , $itemspage_network);
342                 PConfig::set(local_user(), 'system', 'itemspage_mobile_network', $itemspage_mobile_network);
343                 PConfig::set(local_user(), 'system', 'no_smilies'              , $nosmile);
344                 PConfig::set(local_user(), 'system', 'first_day_of_week'       , $first_day_of_week);
345                 PConfig::set(local_user(), 'system', 'ignore_info'             , $noinfo);
346                 PConfig::set(local_user(), 'system', 'infinite_scroll'         , $infinite_scroll);
347                 PConfig::set(local_user(), 'system', 'no_auto_update'          , $no_auto_update);
348                 PConfig::set(local_user(), 'system', 'bandwidth_saver'         , $bandwidth_saver);
349                 PConfig::set(local_user(), 'system', 'smart_threading'         , $smart_threading);
350
351                 if ($theme == $a->user['theme']) {
352                         // call theme_post only if theme has not been changed
353                         if (($themeconfigfile = get_theme_config_file($theme)) !== null) {
354                                 require_once $themeconfigfile;
355                                 theme_post($a);
356                         }
357                 }
358                 Theme::install($theme);
359
360                 $r = q("UPDATE `user` SET `theme` = '%s' WHERE `uid` = %d",
361                                 dbesc($theme),
362                                 intval(local_user())
363                 );
364
365                 Addon::callHooks('display_settings_post', $_POST);
366                 goaway('settings/display');
367                 return; // NOTREACHED
368         }
369
370         check_form_security_token_redirectOnErr('/settings', 'settings');
371
372         if (x($_POST,'resend_relocate')) {
373                 Worker::add(PRIORITY_HIGH, 'Notifier', 'relocate', local_user());
374                 info(L10n::t("Relocate message has been send to your contacts"));
375                 goaway('settings');
376         }
377
378         Addon::callHooks('settings_post', $_POST);
379
380         if (x($_POST, 'password') || x($_POST, 'confirm')) {
381                 $newpass = $_POST['password'];
382                 $confirm = $_POST['confirm'];
383
384                 $err = false;
385                 if ($newpass != $confirm) {
386                         notice(L10n::t('Passwords do not match. Password unchanged.') . EOL);
387                         $err = true;
388                 }
389
390                 if (!x($newpass) || !x($confirm)) {
391                         notice(L10n::t('Empty passwords are not allowed. Password unchanged.') . EOL);
392                         $err = true;
393                 }
394
395                 if (!Config::get('system', 'disable_password_exposed', false) && User::isPasswordExposed($newpass)) {
396                         notice(L10n::t('The new password has been exposed in a public data dump, please choose another.') . EOL);
397                         $err = true;
398                 }
399
400                 //  check if the old password was supplied correctly before changing it to the new value
401                 if (!User::authenticate(intval(local_user()), $_POST['opassword'])) {
402                         notice(L10n::t('Wrong password.') . EOL);
403                         $err = true;
404                 }
405
406                 if (!$err) {
407                         $result = User::updatePassword(local_user(), $newpass);
408                         if (DBM::is_result($result)) {
409                                 info(L10n::t('Password changed.') . EOL);
410                         } else {
411                                 notice(L10n::t('Password update failed. Please try again.') . EOL);
412                         }
413                 }
414         }
415
416         $username         = ((x($_POST, 'username'))   ? notags(trim($_POST['username']))     : '');
417         $email            = ((x($_POST, 'email'))      ? notags(trim($_POST['email']))        : '');
418         $timezone         = ((x($_POST, 'timezone'))   ? notags(trim($_POST['timezone']))     : '');
419         $language         = ((x($_POST, 'language'))   ? notags(trim($_POST['language']))     : '');
420
421         $defloc           = ((x($_POST, 'defloc'))     ? notags(trim($_POST['defloc']))       : '');
422         $openid           = ((x($_POST, 'openid_url')) ? notags(trim($_POST['openid_url']))   : '');
423         $maxreq           = ((x($_POST, 'maxreq'))     ? intval($_POST['maxreq'])             : 0);
424         $expire           = ((x($_POST, 'expire'))     ? intval($_POST['expire'])             : 0);
425         $def_gid          = ((x($_POST, 'group-selection')) ? intval($_POST['group-selection']) : 0);
426
427
428         $expire_items     = ((x($_POST, 'expire_items')) ? intval($_POST['expire_items'])        : 0);
429         $expire_notes     = ((x($_POST, 'expire_notes')) ? intval($_POST['expire_notes'])        : 0);
430         $expire_starred   = ((x($_POST, 'expire_starred')) ? intval($_POST['expire_starred']) : 0);
431         $expire_photos    = ((x($_POST, 'expire_photos'))? intval($_POST['expire_photos'])       : 0);
432         $expire_network_only    = ((x($_POST, 'expire_network_only'))? intval($_POST['expire_network_only'])     : 0);
433
434         $allow_location   = (((x($_POST, 'allow_location')) && (intval($_POST['allow_location']) == 1)) ? 1: 0);
435         $publish          = (((x($_POST, 'profile_in_directory')) && (intval($_POST['profile_in_directory']) == 1)) ? 1: 0);
436         $net_publish      = (((x($_POST, 'profile_in_netdirectory')) && (intval($_POST['profile_in_netdirectory']) == 1)) ? 1: 0);
437         $old_visibility   = (((x($_POST, 'visibility')) && (intval($_POST['visibility']) == 1)) ? 1 : 0);
438         $account_type     = (((x($_POST, 'account-type')) && (intval($_POST['account-type']))) ? intval($_POST['account-type']) : 0);
439         $page_flags       = (((x($_POST, 'page-flags')) && (intval($_POST['page-flags']))) ? intval($_POST['page-flags']) : 0);
440         $blockwall        = (((x($_POST, 'blockwall')) && (intval($_POST['blockwall']) == 1)) ? 0: 1); // this setting is inverted!
441         $blocktags        = (((x($_POST, 'blocktags')) && (intval($_POST['blocktags']) == 1)) ? 0: 1); // this setting is inverted!
442         $unkmail          = (((x($_POST, 'unkmail')) && (intval($_POST['unkmail']) == 1)) ? 1: 0);
443         $cntunkmail       = ((x($_POST, 'cntunkmail')) ? intval($_POST['cntunkmail']) : 0);
444         $suggestme        = ((x($_POST, 'suggestme')) ? intval($_POST['suggestme'])  : 0);
445         $hide_friends     = (($_POST['hide-friends'] == 1) ? 1: 0);
446         $hidewall         = (($_POST['hidewall'] == 1) ? 1: 0);
447
448         $email_textonly   = (($_POST['email_textonly'] == 1) ? 1 : 0);
449         $detailed_notif   = (($_POST['detailed_notif'] == 1) ? 1 : 0);
450
451         $notify = 0;
452
453         if (x($_POST, 'notify1')) {
454                 $notify += intval($_POST['notify1']);
455         }
456         if (x($_POST, 'notify2')) {
457                 $notify += intval($_POST['notify2']);
458         }
459         if (x($_POST, 'notify3')) {
460                 $notify += intval($_POST['notify3']);
461         }
462         if (x($_POST, 'notify4')) {
463                 $notify += intval($_POST['notify4']);
464         }
465         if (x($_POST, 'notify5')) {
466                 $notify += intval($_POST['notify5']);
467         }
468         if (x($_POST, 'notify6')) {
469                 $notify += intval($_POST['notify6']);
470         }
471         if (x($_POST, 'notify7')) {
472                 $notify += intval($_POST['notify7']);
473         }
474         if (x($_POST, 'notify8')) {
475                 $notify += intval($_POST['notify8']);
476         }
477
478         // Adjust the page flag if the account type doesn't fit to the page flag.
479         if (($account_type == ACCOUNT_TYPE_PERSON) && !in_array($page_flags, [PAGE_NORMAL, PAGE_SOAPBOX, PAGE_FREELOVE])) {
480                 $page_flags = PAGE_NORMAL;
481         } elseif (($account_type == ACCOUNT_TYPE_ORGANISATION) && !in_array($page_flags, [PAGE_SOAPBOX])) {
482                 $page_flags = PAGE_SOAPBOX;
483         } elseif (($account_type == ACCOUNT_TYPE_NEWS) && !in_array($page_flags, [PAGE_SOAPBOX])) {
484                 $page_flags = PAGE_SOAPBOX;
485         } elseif (($account_type == ACCOUNT_TYPE_COMMUNITY) && !in_array($page_flags, [PAGE_COMMUNITY, PAGE_PRVGROUP])) {
486                 $page_flags = PAGE_COMMUNITY;
487         }
488
489         $email_changed = false;
490
491         $err = '';
492
493         if ($username != $a->user['username']) {
494                 if (strlen($username) > 40) {
495                         $err .= L10n::t(' Please use a shorter name.');
496                 }
497                 if (strlen($username) < 3) {
498                         $err .= L10n::t(' Name too short.');
499                 }
500         }
501
502         if ($email != $a->user['email']) {
503                 $email_changed = true;
504                 //  check for the correct password
505                 if (!User::authenticate(intval(local_user()), $_POST['mpassword'])) {
506                         $err .= L10n::t('Wrong Password') . EOL;
507                         $email = $a->user['email'];
508                 }
509                 //  check the email is valid
510                 if (!valid_email($email)) {
511                         $err .= L10n::t('Invalid email.');
512                 }
513                 //  ensure new email is not the admin mail
514                 //if ((x($a->config, 'admin_email')) && (strcasecmp($email, $a->config['admin_email']) == 0)) {
515                 if (x($a->config, 'admin_email')) {
516                         $adminlist = explode(",", str_replace(" ", "", strtolower($a->config['admin_email'])));
517                         if (in_array(strtolower($email), $adminlist)) {
518                                 $err .= L10n::t('Cannot change to that email.');
519                                 $email = $a->user['email'];
520                         }
521                 }
522         }
523
524         if (strlen($err)) {
525                 notice($err . EOL);
526                 return;
527         }
528
529         if (($timezone != $a->user['timezone']) && strlen($timezone)) {
530                 date_default_timezone_set($timezone);
531         }
532
533         $str_group_allow   = perms2str($_POST['group_allow']);
534         $str_contact_allow = perms2str($_POST['contact_allow']);
535         $str_group_deny    = perms2str($_POST['group_deny']);
536         $str_contact_deny  = perms2str($_POST['contact_deny']);
537
538         $openidserver = $a->user['openidserver'];
539         //$openid = normalise_openid($openid);
540
541         // If openid has changed or if there's an openid but no openidserver, try and discover it.
542         if ($openid != $a->user['openid'] || (strlen($openid) && (!strlen($openidserver)))) {
543                 if (Network::isUrlValid($openid)) {
544                         logger('updating openidserver');
545                         $open_id_obj = new LightOpenID($a->get_hostname());
546                         $open_id_obj->identity = $openid;
547                         $openidserver = $open_id_obj->discover($open_id_obj->identity);
548                 } else {
549                         $openidserver = '';
550                 }
551         }
552
553         PConfig::set(local_user(), 'expire', 'items', $expire_items);
554         PConfig::set(local_user(), 'expire', 'notes', $expire_notes);
555         PConfig::set(local_user(), 'expire', 'starred', $expire_starred);
556         PConfig::set(local_user(), 'expire', 'photos', $expire_photos);
557         PConfig::set(local_user(), 'expire', 'network_only', $expire_network_only);
558
559         PConfig::set(local_user(), 'system', 'suggestme', $suggestme);
560
561         PConfig::set(local_user(), 'system', 'email_textonly', $email_textonly);
562         PConfig::set(local_user(), 'system', 'detailed_notif', $detailed_notif);
563
564         if ($page_flags == PAGE_PRVGROUP) {
565                 $hidewall = 1;
566                 if (!$str_contact_allow && !$str_group_allow && !$str_contact_deny && !$str_group_deny) {
567                         if ($def_gid) {
568                                 info(L10n::t('Private forum has no privacy permissions. Using default privacy group.'). EOL);
569                                 $str_group_allow = '<' . $def_gid . '>';
570                         } else {
571                                 notice(L10n::t('Private forum has no privacy permissions and no default privacy group.') . EOL);
572                         }
573                 }
574         }
575
576
577         $r = q("UPDATE `user` SET `username` = '%s', `email` = '%s',
578                                 `openid` = '%s', `timezone` = '%s',
579                                 `allow_cid` = '%s', `allow_gid` = '%s', `deny_cid` = '%s', `deny_gid` = '%s',
580                                 `notify-flags` = %d, `page-flags` = %d, `account-type` = %d, `default-location` = '%s',
581                                 `allow_location` = %d, `maxreq` = %d, `expire` = %d, `openidserver` = '%s',
582                                 `def_gid` = %d, `blockwall` = %d, `hidewall` = %d, `blocktags` = %d,
583                                 `unkmail` = %d, `cntunkmail` = %d, `language` = '%s'
584                         WHERE `uid` = %d",
585                         dbesc($username),
586                         dbesc($email),
587                         dbesc($openid),
588                         dbesc($timezone),
589                         dbesc($str_contact_allow),
590                         dbesc($str_group_allow),
591                         dbesc($str_contact_deny),
592                         dbesc($str_group_deny),
593                         intval($notify),
594                         intval($page_flags),
595                         intval($account_type),
596                         dbesc($defloc),
597                         intval($allow_location),
598                         intval($maxreq),
599                         intval($expire),
600                         dbesc($openidserver),
601                         intval($def_gid),
602                         intval($blockwall),
603                         intval($hidewall),
604                         intval($blocktags),
605                         intval($unkmail),
606                         intval($cntunkmail),
607                         dbesc($language),
608                         intval(local_user())
609         );
610         if (DBM::is_result($r)) {
611                 info(L10n::t('Settings updated.') . EOL);
612         }
613
614         // clear session language
615         unset($_SESSION['language']);
616
617         $r = q("UPDATE `profile`
618                 SET `publish` = %d,
619                 `name` = '%s',
620                 `net-publish` = %d,
621                 `hide-friends` = %d
622                 WHERE `is-default` = 1 AND `uid` = %d",
623                 intval($publish),
624                 dbesc($username),
625                 intval($net_publish),
626                 intval($hide_friends),
627                 intval(local_user())
628         );
629
630         Contact::updateSelfFromUserID(local_user());
631
632         if (($old_visibility != $net_publish) || ($page_flags != $old_page_flags)) {
633                 // Update global directory in background
634                 $url = $_SESSION['my_url'];
635                 if ($url && strlen(Config::get('system', 'directory'))) {
636                         Worker::add(PRIORITY_LOW, "Directory", $url);
637                 }
638         }
639
640         Worker::add(PRIORITY_LOW, 'ProfileUpdate', local_user());
641
642         // Update the global contact for the user
643         GContact::updateForUser(local_user());
644
645         goaway('settings');
646         return; // NOTREACHED
647 }
648
649
650 function settings_content(App $a)
651 {
652         $o = '';
653         Nav::setSelected('settings');
654
655         if (!local_user()) {
656                 //notice(L10n::t('Permission denied.') . EOL);
657                 return;
658         }
659
660         if (x($_SESSION, 'submanage') && intval($_SESSION['submanage'])) {
661                 notice(L10n::t('Permission denied.') . EOL);
662                 return;
663         }
664
665         if (($a->argc > 1) && ($a->argv[1] === 'oauth')) {
666                 if (($a->argc > 2) && ($a->argv[2] === 'add')) {
667                         $tpl = get_markup_template('settings/oauth_edit.tpl');
668                         $o .= replace_macros($tpl, [
669                                 '$form_security_token' => get_form_security_token("settings_oauth"),
670                                 '$title'        => L10n::t('Add application'),
671                                 '$submit'       => L10n::t('Save Settings'),
672                                 '$cancel'       => L10n::t('Cancel'),
673                                 '$name'         => ['name', L10n::t('Name'), '', ''],
674                                 '$key'          => ['key', L10n::t('Consumer Key'), '', ''],
675                                 '$secret'       => ['secret', L10n::t('Consumer Secret'), '', ''],
676                                 '$redirect'     => ['redirect', L10n::t('Redirect'), '', ''],
677                                 '$icon'         => ['icon', L10n::t('Icon url'), '', ''],
678                         ]);
679                         return $o;
680                 }
681
682                 if (($a->argc > 3) && ($a->argv[2] === 'edit')) {
683                         $r = q("SELECT * FROM clients WHERE client_id='%s' AND uid=%d",
684                                         dbesc($a->argv[3]),
685                                         local_user());
686
687                         if (!DBM::is_result($r)) {
688                                 notice(L10n::t("You can't edit this application."));
689                                 return;
690                         }
691                         $app = $r[0];
692
693                         $tpl = get_markup_template('settings/oauth_edit.tpl');
694                         $o .= replace_macros($tpl, [
695                                 '$form_security_token' => get_form_security_token("settings_oauth"),
696                                 '$title'        => L10n::t('Add application'),
697                                 '$submit'       => L10n::t('Update'),
698                                 '$cancel'       => L10n::t('Cancel'),
699                                 '$name'         => ['name', L10n::t('Name'), $app['name'] , ''],
700                                 '$key'          => ['key', L10n::t('Consumer Key'), $app['client_id'], ''],
701                                 '$secret'       => ['secret', L10n::t('Consumer Secret'), $app['pw'], ''],
702                                 '$redirect'     => ['redirect', L10n::t('Redirect'), $app['redirect_uri'], ''],
703                                 '$icon'         => ['icon', L10n::t('Icon url'), $app['icon'], ''],
704                         ]);
705                         return $o;
706                 }
707
708                 if (($a->argc > 3) && ($a->argv[2] === 'delete')) {
709                         check_form_security_token_redirectOnErr('/settings/oauth', 'settings_oauth', 't');
710
711                         dba::delete('clients', ['client_id' => $a->argv[3], 'uid' => local_user()]);
712                         goaway(System::baseUrl(true)."/settings/oauth/");
713                         return;
714                 }
715
716                 /// @TODO validate result with DBM::is_result()
717                 $r = q("SELECT clients.*, tokens.id as oauth_token, (clients.uid=%d) AS my
718                                 FROM clients
719                                 LEFT JOIN tokens ON clients.client_id=tokens.client_id
720                                 WHERE clients.uid IN (%d, 0)",
721                                 local_user(),
722                                 local_user());
723
724
725                 $tpl = get_markup_template('settings/oauth.tpl');
726                 $o .= replace_macros($tpl, [
727                         '$form_security_token' => get_form_security_token("settings_oauth"),
728                         '$baseurl'      => System::baseUrl(true),
729                         '$title'        => L10n::t('Connected Apps'),
730                         '$add'          => L10n::t('Add application'),
731                         '$edit'         => L10n::t('Edit'),
732                         '$delete'               => L10n::t('Delete'),
733                         '$consumerkey' => L10n::t('Client key starts with'),
734                         '$noname'       => L10n::t('No name'),
735                         '$remove'       => L10n::t('Remove authorization'),
736                         '$apps'         => $r,
737                 ]);
738                 return $o;
739         }
740
741         if (($a->argc > 1) && ($a->argv[1] === 'addon')) {
742                 $settings_addons = "";
743
744                 $r = q("SELECT * FROM `hook` WHERE `hook` = 'addon_settings' ");
745                 if (!DBM::is_result($r)) {
746                         $settings_addons = L10n::t('No Addon settings configured');
747                 }
748
749                 Addon::callHooks('addon_settings', $settings_addons);
750
751
752                 $tpl = get_markup_template('settings/addons.tpl');
753                 $o .= replace_macros($tpl, [
754                         '$form_security_token' => get_form_security_token("settings_addon"),
755                         '$title'        => L10n::t('Addon Settings'),
756                         '$settings_addons' => $settings_addons
757                 ]);
758                 return $o;
759         }
760
761         if (($a->argc > 1) && ($a->argv[1] === 'features')) {
762
763                 $arr = [];
764                 $features = Feature::get();
765                 foreach ($features as $fname => $fdata) {
766                         $arr[$fname] = [];
767                         $arr[$fname][0] = $fdata[0];
768                         foreach (array_slice($fdata,1) as $f) {
769                                 $arr[$fname][1][] = ['feature_' .$f[0], $f[1],((intval(Feature::isEnabled(local_user(), $f[0]))) ? "1" : ''), $f[2],[L10n::t('Off'), L10n::t('On')]];
770                         }
771                 }
772
773                 $tpl = get_markup_template('settings/features.tpl');
774                 $o .= replace_macros($tpl, [
775                         '$form_security_token' => get_form_security_token("settings_features"),
776                         '$title'               => L10n::t('Additional Features'),
777                         '$features'            => $arr,
778                         '$submit'              => L10n::t('Save Settings'),
779                 ]);
780                 return $o;
781         }
782
783         if (($a->argc > 1) && ($a->argv[1] === 'connectors')) {
784                 $disable_cw                = intval(PConfig::get(local_user(), 'system', 'disable_cw'));
785                 $no_intelligent_shortening = intval(PConfig::get(local_user(), 'system', 'no_intelligent_shortening'));
786                 $ostatus_autofriend        = intval(PConfig::get(local_user(), 'system', 'ostatus_autofriend'));
787                 $default_group             = PConfig::get(local_user(), 'ostatus', 'default_group');
788                 $legacy_contact            = PConfig::get(local_user(), 'ostatus', 'legacy_contact');
789
790                 if (x($legacy_contact)) {
791                         /// @todo Isn't it supposed to be a goaway() call?
792                         $a->page['htmlhead'] = '<meta http-equiv="refresh" content="0; URL=' . System::baseUrl().'/ostatus_subscribe?url=' . urlencode($legacy_contact) . '">';
793                 }
794
795                 $settings_connectors = '';
796                 Addon::callHooks('connector_settings', $settings_connectors);
797
798                 if (is_site_admin()) {
799                         $diasp_enabled = L10n::t('Built-in support for %s connectivity is %s', L10n::t('Diaspora'), ((Config::get('system', 'diaspora_enabled')) ? L10n::t('enabled') : L10n::t('disabled')));
800                         $ostat_enabled = L10n::t('Built-in support for %s connectivity is %s', L10n::t("GNU Social \x28OStatus\x29"), ((Config::get('system', 'ostatus_disabled')) ? L10n::t('disabled') : L10n::t('enabled')));
801                 } else {
802                         $diasp_enabled = "";
803                         $ostat_enabled = "";
804                 }
805
806                 $mail_disabled = ((function_exists('imap_open') && (!Config::get('system', 'imap_disabled'))) ? 0 : 1);
807                 if (Config::get('system', 'dfrn_only')) {
808                         $mail_disabled = 1;
809                 }
810                 if (!$mail_disabled) {
811                         $r = q("SELECT * FROM `mailacct` WHERE `uid` = %d LIMIT 1",
812                                 local_user()
813                         );
814                 } else {
815                         $r = null;
816                 }
817
818                 $mail_server       = ((DBM::is_result($r)) ? $r[0]['server'] : '');
819                 $mail_port         = ((DBM::is_result($r) && intval($r[0]['port'])) ? intval($r[0]['port']) : '');
820                 $mail_ssl          = ((DBM::is_result($r)) ? $r[0]['ssltype'] : '');
821                 $mail_user         = ((DBM::is_result($r)) ? $r[0]['user'] : '');
822                 $mail_replyto      = ((DBM::is_result($r)) ? $r[0]['reply_to'] : '');
823                 $mail_pubmail      = ((DBM::is_result($r)) ? $r[0]['pubmail'] : 0);
824                 $mail_action       = ((DBM::is_result($r)) ? $r[0]['action'] : 0);
825                 $mail_movetofolder = ((DBM::is_result($r)) ? $r[0]['movetofolder'] : '');
826                 $mail_chk          = ((DBM::is_result($r)) ? $r[0]['last_check'] : NULL_DATE);
827
828
829                 $tpl = get_markup_template('settings/connectors.tpl');
830
831                 $mail_disabled_message = (($mail_disabled) ? L10n::t('Email access is disabled on this site.') : '');
832
833                 $o .= replace_macros($tpl, [
834                         '$form_security_token' => get_form_security_token("settings_connectors"),
835
836                         '$title'        => L10n::t('Social Networks'),
837
838                         '$diasp_enabled' => $diasp_enabled,
839                         '$ostat_enabled' => $ostat_enabled,
840
841                         '$general_settings' => L10n::t('General Social Media Settings'),
842                         '$disable_cw' => ['disable_cw', L10n::t('Disable Content Warning'), $disable_cw, L10n::t('Users on networks like Mastodon or Pleroma are able to set a content warning field which collapse their post by default. This disables the automatic collapsing and sets the content warning as the post title. Doesn\'t affect any other content filtering you eventually set up.')],
843                         '$no_intelligent_shortening' => ['no_intelligent_shortening', L10n::t('Disable intelligent shortening'), $no_intelligent_shortening, L10n::t('Normally the system tries to find the best link to add to shortened posts. If this option is enabled then every shortened post will always point to the original friendica post.')],
844                         '$ostatus_autofriend' => ['snautofollow', L10n::t("Automatically follow any GNU Social \x28OStatus\x29 followers/mentioners"), $ostatus_autofriend, L10n::t('If you receive a message from an unknown OStatus user, this option decides what to do. If it is checked, a new contact will be created for every unknown user.')],
845                         '$default_group' => Group::displayGroupSelection(local_user(), $default_group, L10n::t("Default group for OStatus contacts")),
846                         '$legacy_contact' => ['legacy_contact', L10n::t('Your legacy GNU Social account'), $legacy_contact, L10n::t("If you enter your old GNU Social/Statusnet account name here \x28in the format user@domain.tld\x29, your contacts will be added automatically. The field will be emptied when done.")],
847
848                         '$repair_ostatus_url' => System::baseUrl() . '/repair_ostatus',
849                         '$repair_ostatus_text' => L10n::t('Repair OStatus subscriptions'),
850
851                         '$settings_connectors' => $settings_connectors,
852
853                         '$h_imap' => L10n::t('Email/Mailbox Setup'),
854                         '$imap_desc' => L10n::t("If you wish to communicate with email contacts using this service \x28optional\x29, please specify how to connect to your mailbox."),
855                         '$imap_lastcheck' => ['imap_lastcheck', L10n::t('Last successful email check:'), $mail_chk, ''],
856                         '$mail_disabled' => $mail_disabled_message,
857                         '$mail_server'  => ['mail_server',  L10n::t('IMAP server name:'), $mail_server, ''],
858                         '$mail_port'    => ['mail_port',         L10n::t('IMAP port:'), $mail_port, ''],
859                         '$mail_ssl'             => ['mail_ssl',          L10n::t('Security:'), strtoupper($mail_ssl), '', ['notls'=>L10n::t('None'), 'TLS'=>'TLS', 'SSL'=>'SSL']],
860                         '$mail_user'    => ['mail_user',    L10n::t('Email login name:'), $mail_user, ''],
861                         '$mail_pass'    => ['mail_pass',         L10n::t('Email password:'), '', ''],
862                         '$mail_replyto' => ['mail_replyto', L10n::t('Reply-to address:'), $mail_replyto, 'Optional'],
863                         '$mail_pubmail' => ['mail_pubmail', L10n::t('Send public posts to all email contacts:'), $mail_pubmail, ''],
864                         '$mail_action'  => ['mail_action',       L10n::t('Action after import:'), $mail_action, '', [0=>L10n::t('None'), /*1=>L10n::t('Delete'),*/ 2=>L10n::t('Mark as seen'), 3=>L10n::t('Move to folder')]],
865                         '$mail_movetofolder'    => ['mail_movetofolder',         L10n::t('Move to folder:'), $mail_movetofolder, ''],
866                         '$submit' => L10n::t('Save Settings'),
867                 ]);
868
869                 Addon::callHooks('display_settings', $o);
870                 return $o;
871         }
872
873         /*
874          * DISPLAY SETTINGS
875          */
876         if (($a->argc > 1) && ($a->argv[1] === 'display')) {
877                 $default_theme = Config::get('system', 'theme');
878                 if (!$default_theme) {
879                         $default_theme = 'default';
880                 }
881                 $default_mobile_theme = Config::get('system', 'mobile-theme');
882                 if (!$default_mobile_theme) {
883                         $default_mobile_theme = 'none';
884                 }
885
886                 $allowed_themes_str = Config::get('system', 'allowed_themes');
887                 $allowed_themes_raw = explode(',', $allowed_themes_str);
888                 $allowed_themes = [];
889                 if (count($allowed_themes_raw)) {
890                         foreach ($allowed_themes_raw as $x) {
891                                 if (strlen(trim($x)) && is_dir("view/theme/$x")) {
892                                         $allowed_themes[] = trim($x);
893                                 }
894                         }
895                 }
896
897
898                 $themes = [];
899                 $mobile_themes = ["---" => L10n::t('No special theme for mobile devices')];
900                 if ($allowed_themes) {
901                         foreach ($allowed_themes as $theme) {
902                                 $is_experimental = file_exists('view/theme/' . $theme . '/experimental');
903                                 $is_unsupported  = file_exists('view/theme/' . $theme . '/unsupported');
904                                 $is_mobile       = file_exists('view/theme/' . $theme . '/mobile');
905                                 if (!$is_experimental || ($is_experimental && (Config::get('experimentals', 'exp_themes')==1 || is_null(Config::get('experimentals', 'exp_themes'))))) {
906                                         $theme_name = ucfirst($theme);
907                                         if ($is_unsupported) {
908                                                 $theme_name = L10n::t("%s - \x28Unsupported\x29", $theme_name);
909                                         } elseif ($is_experimental) {
910                                                 $theme_name = L10n::t("%s - \x28Experimental\x29", $theme_name);
911                                         }
912                                         if ($is_mobile) {
913                                                 $mobile_themes[$theme] = $theme_name;
914                                         } else {
915                                                 $themes[$theme] = $theme_name;
916                                         }
917                                 }
918                         }
919                 }
920                 $theme_selected        = defaults($_SESSION, 'theme'       , $default_theme);
921                 $mobile_theme_selected = defaults($_SESSION, 'mobile-theme', $default_mobile_theme);
922
923                 $nowarn_insecure = intval(PConfig::get(local_user(), 'system', 'nowarn_insecure'));
924
925                 $browser_update = intval(PConfig::get(local_user(), 'system', 'update_interval'));
926                 if (intval($browser_update) != -1) {
927                         $browser_update = (($browser_update == 0) ? 40 : $browser_update / 1000); // default if not set: 40 seconds
928                 }
929
930                 $itemspage_network = intval(PConfig::get(local_user(), 'system', 'itemspage_network'));
931                 $itemspage_network = (($itemspage_network > 0 && $itemspage_network < 101) ? $itemspage_network : 40); // default if not set: 40 items
932                 $itemspage_mobile_network = intval(PConfig::get(local_user(), 'system', 'itemspage_mobile_network'));
933                 $itemspage_mobile_network = (($itemspage_mobile_network > 0 && $itemspage_mobile_network < 101) ? $itemspage_mobile_network : 20); // default if not set: 20 items
934
935                 $nosmile = PConfig::get(local_user(), 'system', 'no_smilies', 0);
936                 $first_day_of_week = PConfig::get(local_user(), 'system', 'first_day_of_week', 0);
937                 $weekdays = [0 => L10n::t("Sunday"), 1 => L10n::t("Monday")];
938
939                 $noinfo = PConfig::get(local_user(), 'system', 'ignore_info', 0);
940                 $infinite_scroll = PConfig::get(local_user(), 'system', 'infinite_scroll', 0);
941                 $no_auto_update = PConfig::get(local_user(), 'system', 'no_auto_update', 0);
942                 $bandwidth_saver = PConfig::get(local_user(), 'system', 'bandwidth_saver', 0);
943                 $smart_threading = PConfig::get(local_user(), 'system', 'smart_threading', 0);
944
945                 $theme_config = "";
946                 if (($themeconfigfile = get_theme_config_file($theme_selected)) !== null) {
947                         require_once $themeconfigfile;
948                         $theme_config = theme_content($a);
949                 }
950
951                 $tpl = get_markup_template('settings/display.tpl');
952                 $o = replace_macros($tpl, [
953                         '$ptitle'       => L10n::t('Display Settings'),
954                         '$form_security_token' => get_form_security_token("settings_display"),
955                         '$submit'       => L10n::t('Save Settings'),
956                         '$baseurl' => System::baseUrl(true),
957                         '$uid' => local_user(),
958
959                         '$theme'        => ['theme', L10n::t('Display Theme:'), $theme_selected, '', $themes, true],
960                         '$mobile_theme' => ['mobile_theme', L10n::t('Mobile Theme:'), $mobile_theme_selected, '', $mobile_themes, false],
961                         '$nowarn_insecure' => ['nowarn_insecure',  L10n::t('Suppress warning of insecure networks'), $nowarn_insecure, L10n::t("Should the system suppress the warning that the current group contains members of networks that can't receive non public postings.")],
962                         '$ajaxint'   => ['browser_update',  L10n::t("Update browser every xx seconds"), $browser_update, L10n::t('Minimum of 10 seconds. Enter -1 to disable it.')],
963                         '$itemspage_network'   => ['itemspage_network',  L10n::t("Number of items to display per page:"), $itemspage_network, L10n::t('Maximum of 100 items')],
964                         '$itemspage_mobile_network'   => ['itemspage_mobile_network',  L10n::t("Number of items to display per page when viewed from mobile device:"), $itemspage_mobile_network, L10n::t('Maximum of 100 items')],
965                         '$nosmile'      => ['nosmile', L10n::t("Don't show emoticons"), $nosmile, ''],
966                         '$calendar_title' => L10n::t('Calendar'),
967                         '$first_day_of_week'    => ['first_day_of_week', L10n::t('Beginning of week:'), $first_day_of_week, '', $weekdays, false],
968                         '$noinfo'       => ['noinfo', L10n::t("Don't show notices"), $noinfo, ''],
969                         '$infinite_scroll'      => ['infinite_scroll', L10n::t("Infinite scroll"), $infinite_scroll, ''],
970                         '$no_auto_update'       => ['no_auto_update', L10n::t("Automatic updates only at the top of the network page"), $no_auto_update, L10n::t('When disabled, the network page is updated all the time, which could be confusing while reading.')],
971                         '$bandwidth_saver' => ['bandwidth_saver', L10n::t('Bandwidth Saver Mode'), $bandwidth_saver, L10n::t('When enabled, embedded content is not displayed on automatic updates, they only show on page reload.')],
972                         '$smart_threading' => ['smart_threading', L10n::t('Smart Threading'), $smart_threading, L10n::t('When enabled, suppress extraneous thread indentation while keeping it where it matters. Only works if threading is available and enabled.')],
973
974                         '$d_tset' => L10n::t('General Theme Settings'),
975                         '$d_ctset' => L10n::t('Custom Theme Settings'),
976                         '$d_cset' => L10n::t('Content Settings'),
977                         'stitle' => L10n::t('Theme settings'),
978                         '$theme_config' => $theme_config,
979                 ]);
980
981                 $tpl = get_markup_template('settings/display_end.tpl');
982                 $a->page['end'] .= replace_macros($tpl, [
983                         '$theme'        => ['theme', L10n::t('Display Theme:'), $theme_selected, '', $themes]
984                 ]);
985
986                 return $o;
987         }
988
989
990         /*
991          * ACCOUNT SETTINGS
992          */
993
994         $profile = dba::selectFirst('profile', [], ['is-default' => true, 'uid' => local_user()]);
995         if (!DBM::is_result($profile)) {
996                 notice(L10n::t('Unable to find your profile. Please contact your admin.') . EOL);
997                 return;
998         }
999
1000         $username   = $a->user['username'];
1001         $email      = $a->user['email'];
1002         $nickname   = $a->user['nickname'];
1003         $timezone   = $a->user['timezone'];
1004         $language   = $a->user['language'];
1005         $notify     = $a->user['notify-flags'];
1006         $defloc     = $a->user['default-location'];
1007         $openid     = $a->user['openid'];
1008         $maxreq     = $a->user['maxreq'];
1009         $expire     = ((intval($a->user['expire'])) ? $a->user['expire'] : '');
1010         $unkmail    = $a->user['unkmail'];
1011         $cntunkmail = $a->user['cntunkmail'];
1012
1013         $expire_items = PConfig::get(local_user(), 'expire', 'items', true);
1014         $expire_notes = PConfig::get(local_user(), 'expire', 'notes', true);
1015         $expire_starred = PConfig::get(local_user(), 'expire', 'starred', true);
1016         $expire_photos = PConfig::get(local_user(), 'expire', 'photos', false);
1017         $expire_network_only = PConfig::get(local_user(), 'expire', 'network_only', false);
1018         $suggestme = PConfig::get(local_user(), 'system', 'suggestme', false);
1019
1020         // nowarn_insecure
1021
1022         if (!strlen($a->user['timezone'])) {
1023                 $timezone = date_default_timezone_get();
1024         }
1025
1026         // Set the account type to "Community" when the page is a community page but the account type doesn't fit
1027         // This is only happening on the first visit after the update
1028         if (in_array($a->user['page-flags'], [PAGE_COMMUNITY, PAGE_PRVGROUP]) &&
1029                 ($a->user['account-type'] != ACCOUNT_TYPE_COMMUNITY))
1030                 $a->user['account-type'] = ACCOUNT_TYPE_COMMUNITY;
1031
1032         $pageset_tpl = get_markup_template('settings/pagetypes.tpl');
1033
1034         $pagetype = replace_macros($pageset_tpl, [
1035                 '$account_types'        => L10n::t("Account Types"),
1036                 '$user'                 => L10n::t("Personal Page Subtypes"),
1037                 '$community'            => L10n::t("Community Forum Subtypes"),
1038                 '$account_type'         => $a->user['account-type'],
1039                 '$type_person'          => ACCOUNT_TYPE_PERSON,
1040                 '$type_organisation'    => ACCOUNT_TYPE_ORGANISATION,
1041                 '$type_news'            => ACCOUNT_TYPE_NEWS,
1042                 '$type_community'       => ACCOUNT_TYPE_COMMUNITY,
1043
1044                 '$account_person'       => ['account-type', L10n::t('Personal Page'), ACCOUNT_TYPE_PERSON,
1045                                                                         L10n::t('Account for a personal profile.'),
1046                                                                         ($a->user['account-type'] == ACCOUNT_TYPE_PERSON)],
1047
1048                 '$account_organisation' => ['account-type', L10n::t('Organisation Page'), ACCOUNT_TYPE_ORGANISATION,
1049                                                                         L10n::t('Account for an organisation that automatically approves contact requests as "Followers".'),
1050                                                                         ($a->user['account-type'] == ACCOUNT_TYPE_ORGANISATION)],
1051
1052                 '$account_news'         => ['account-type', L10n::t('News Page'), ACCOUNT_TYPE_NEWS,
1053                                                                         L10n::t('Account for a news reflector that automatically approves contact requests as "Followers".'),
1054                                                                         ($a->user['account-type'] == ACCOUNT_TYPE_NEWS)],
1055
1056                 '$account_community'    => ['account-type', L10n::t('Community Forum'), ACCOUNT_TYPE_COMMUNITY,
1057                                                                         L10n::t('Account for community discussions.'),
1058                                                                         ($a->user['account-type'] == ACCOUNT_TYPE_COMMUNITY)],
1059
1060                 '$page_normal'          => ['page-flags', L10n::t('Normal Account Page'), PAGE_NORMAL,
1061                                                                         L10n::t('Account for a regular personal profile that requires manual approval of "Friends" and "Followers".'),
1062                                                                         ($a->user['page-flags'] == PAGE_NORMAL)],
1063
1064                 '$page_soapbox'         => ['page-flags', L10n::t('Soapbox Page'), PAGE_SOAPBOX,
1065                                                                         L10n::t('Account for a public profile that automatically approves contact requests as "Followers".'),
1066                                                                         ($a->user['page-flags'] == PAGE_SOAPBOX)],
1067
1068                 '$page_community'       => ['page-flags', L10n::t('Public Forum'), PAGE_COMMUNITY,
1069                                                                         L10n::t('Automatically approves all contact requests.'),
1070                                                                         ($a->user['page-flags'] == PAGE_COMMUNITY)],
1071
1072                 '$page_freelove'        => ['page-flags', L10n::t('Automatic Friend Page'), PAGE_FREELOVE,
1073                                                                         L10n::t('Account for a popular profile that automatically approves contact requests as "Friends".'),
1074                                                                         ($a->user['page-flags'] == PAGE_FREELOVE)],
1075
1076                 '$page_prvgroup'        => ['page-flags', L10n::t('Private Forum [Experimental]'), PAGE_PRVGROUP,
1077                                                                         L10n::t('Requires manual approval of contact requests.'),
1078                                                                         ($a->user['page-flags'] == PAGE_PRVGROUP)],
1079
1080
1081         ]);
1082
1083         $noid = Config::get('system', 'no_openid');
1084
1085         if ($noid) {
1086                 $openid_field = false;
1087         } else {
1088                 $openid_field = ['openid_url', L10n::t('OpenID:'), $openid, L10n::t("\x28Optional\x29 Allow this OpenID to login to this account."), "", "", "url"];
1089         }
1090
1091         $opt_tpl = get_markup_template("field_yesno.tpl");
1092         if (Config::get('system', 'publish_all')) {
1093                 $profile_in_dir = '<input type="hidden" name="profile_in_directory" value="1" />';
1094         } else {
1095                 $profile_in_dir = replace_macros($opt_tpl, [
1096                         '$field' => ['profile_in_directory', L10n::t('Publish your default profile in your local site directory?'), $profile['publish'], L10n::t('Your profile will be published in this node\'s <a href="%s">local directory</a>. Your profile details may be publicly visible depending on the system settings.', System::baseUrl().'/directory'), [L10n::t('No'), L10n::t('Yes')]]
1097                 ]);
1098         }
1099
1100         if (strlen(Config::get('system', 'directory'))) {
1101                 $profile_in_net_dir = replace_macros($opt_tpl, [
1102                         '$field' => ['profile_in_netdirectory', L10n::t('Publish your default profile in the global social directory?'), $profile['net-publish'], L10n::t('Your profile will be published in the global friendica directories (e.g. <a href="%s">%s</a>). Your profile will be visible in public.', Config::get('system', 'directory'), Config::get('system', 'directory')), [L10n::t('No'), L10n::t('Yes')]]
1103                 ]);
1104         } else {
1105                 $profile_in_net_dir = '';
1106         }
1107
1108         $hide_friends = replace_macros($opt_tpl, [
1109                 '$field' => ['hide-friends', L10n::t('Hide your contact/friend list from viewers of your default profile?'), $profile['hide-friends'], L10n::t('Your contact list won\'t be shown in your default profile page. You can decide to show your contact list separately for each additional profile you create'), [L10n::t('No'), L10n::t('Yes')]],
1110         ]);
1111
1112         $hide_wall = replace_macros($opt_tpl, [
1113                 '$field' => ['hidewall', L10n::t('Hide your profile details from anonymous viewers?'), $a->user['hidewall'], L10n::t('Anonymous visitors will only see your profile picture, your display name and the nickname you are using on your profile page. Your public posts and replies will still be accessible by other means.'), [L10n::t('No'), L10n::t('Yes')]],
1114         ]);
1115
1116         $blockwall = replace_macros($opt_tpl, [
1117                 '$field' => ['blockwall', L10n::t('Allow friends to post to your profile page?'), (intval($a->user['blockwall']) ? '0' : '1'), L10n::t('Your contacts may write posts on your profile wall. These posts will be distributed to your contacts'), [L10n::t('No'), L10n::t('Yes')]],
1118         ]);
1119
1120         $blocktags = replace_macros($opt_tpl, [
1121                 '$field' => ['blocktags', L10n::t('Allow friends to tag your posts?'), (intval($a->user['blocktags']) ? '0' : '1'), L10n::t('Your contacts can add additional tags to your posts.'), [L10n::t('No'), L10n::t('Yes')]],
1122         ]);
1123
1124         $suggestme = replace_macros($opt_tpl, [
1125                 '$field' => ['suggestme', L10n::t('Allow us to suggest you as a potential friend to new members?'), $suggestme, L10n::t('If you like, Friendica may suggest new members to add you as a contact.'), [L10n::t('No'), L10n::t('Yes')]],
1126         ]);
1127
1128         $unkmail = replace_macros($opt_tpl, [
1129                 '$field' => ['unkmail', L10n::t('Permit unknown people to send you private mail?'), $unkmail, L10n::t('Friendica network users may send you private messages even if they are not in your contact list.'), [L10n::t('No'), L10n::t('Yes')]],
1130         ]);
1131
1132         if (!$profile['publish'] && !$profile['net-publish']) {
1133                 info(L10n::t('Profile is <strong>not published</strong>.') . EOL);
1134         }
1135
1136         $tpl_addr = get_markup_template('settings/nick_set.tpl');
1137
1138         $prof_addr = replace_macros($tpl_addr,[
1139                 '$desc' => L10n::t("Your Identity Address is <strong>'%s'</strong> or '%s'.", $nickname . '@' . $a->get_hostname() . $a->get_path(), System::baseUrl() . '/profile/' . $nickname),
1140                 '$basepath' => $a->get_hostname()
1141         ]);
1142
1143         $stpl = get_markup_template('settings/settings.tpl');
1144
1145         $expire_arr = [
1146                 'days' => ['expire',  L10n::t("Automatically expire posts after this many days:"), $expire, L10n::t('If empty, posts will not expire. Expired posts will be deleted')],
1147                 'advanced' => L10n::t('Advanced expiration settings'),
1148                 'label' => L10n::t('Advanced Expiration'),
1149                 'items' => ['expire_items',  L10n::t("Expire posts:"), $expire_items, '', [L10n::t('No'), L10n::t('Yes')]],
1150                 'notes' => ['expire_notes',  L10n::t("Expire personal notes:"), $expire_notes, '', [L10n::t('No'), L10n::t('Yes')]],
1151                 'starred' => ['expire_starred',  L10n::t("Expire starred posts:"), $expire_starred, '', [L10n::t('No'), L10n::t('Yes')]],
1152                 'photos' => ['expire_photos',  L10n::t("Expire photos:"), $expire_photos, '', [L10n::t('No'), L10n::t('Yes')]],
1153                 'network_only' => ['expire_network_only',  L10n::t("Only expire posts by others:"), $expire_network_only, '', [L10n::t('No'), L10n::t('Yes')]],
1154         ];
1155
1156         $group_select = Group::displayGroupSelection(local_user(), $a->user['def_gid']);
1157
1158         // Private/public post links for the non-JS ACL form
1159         $private_post = 1;
1160         if (!empty($_REQUEST['public']) && !$_REQUEST['public']) {
1161                 $private_post = 0;
1162         }
1163
1164         $query_str = $a->query_string;
1165         if (strpos($query_str, 'public=1') !== false) {
1166                 $query_str = str_replace(['?public=1', '&public=1'], ['', ''], $query_str);
1167         }
1168
1169         // I think $a->query_string may never have ? in it, but I could be wrong
1170         // It looks like it's from the index.php?q=[etc] rewrite that the web
1171         // server does, which converts any ? to &, e.g. suggest&ignore=61 for suggest?ignore=61
1172         if (strpos($query_str, '?') === false) {
1173                 $public_post_link = '?public=1';
1174         } else {
1175                 $public_post_link = '&public=1';
1176         }
1177
1178         /* Installed langs */
1179         $lang_choices = L10n::getAvailableLanguages();
1180
1181         /// @TODO Fix indending (or so)
1182         $o .= replace_macros($stpl, [
1183                 '$ptitle'       => L10n::t('Account Settings'),
1184
1185                 '$submit'       => L10n::t('Save Settings'),
1186                 '$baseurl' => System::baseUrl(true),
1187                 '$uid' => local_user(),
1188                 '$form_security_token' => get_form_security_token("settings"),
1189                 '$nickname_block' => $prof_addr,
1190
1191                 '$h_pass'       => L10n::t('Password Settings'),
1192                 '$password1'=> ['password', L10n::t('New Password:'), '', ''],
1193                 '$password2'=> ['confirm', L10n::t('Confirm:'), '', L10n::t('Leave password fields blank unless changing')],
1194                 '$password3'=> ['opassword', L10n::t('Current Password:'), '', L10n::t('Your current password to confirm the changes')],
1195                 '$password4'=> ['mpassword', L10n::t('Password:'), '', L10n::t('Your current password to confirm the changes')],
1196                 '$oid_enable' => (!Config::get('system', 'no_openid')),
1197                 '$openid'       => $openid_field,
1198
1199                 '$h_basic'      => L10n::t('Basic Settings'),
1200                 '$username' => ['username',  L10n::t('Full Name:'), $username, ''],
1201                 '$email'        => ['email', L10n::t('Email Address:'), $email, '', '', '', 'email'],
1202                 '$timezone' => ['timezone_select' , L10n::t('Your Timezone:'), Temporal::getTimezoneSelect($timezone), ''],
1203                 '$language' => ['language', L10n::t('Your Language:'), $language, L10n::t('Set the language we use to show you friendica interface and to send you emails'), $lang_choices],
1204                 '$defloc'       => ['defloc', L10n::t('Default Post Location:'), $defloc, ''],
1205                 '$allowloc' => ['allow_location', L10n::t('Use Browser Location:'), ($a->user['allow_location'] == 1), ''],
1206
1207
1208                 '$h_prv'        => L10n::t('Security and Privacy Settings'),
1209
1210                 '$maxreq'       => ['maxreq', L10n::t('Maximum Friend Requests/Day:'), $maxreq , L10n::t("\x28to prevent spam abuse\x29")],
1211                 '$permissions' => L10n::t('Default Post Permissions'),
1212                 '$permdesc' => L10n::t("\x28click to open/close\x29"),
1213                 '$visibility' => $profile['net-publish'],
1214                 '$aclselect' => ACL::getFullSelectorHTML($a->user),
1215                 '$suggestme' => $suggestme,
1216                 '$blockwall'=> $blockwall, // array('blockwall', L10n::t('Allow friends to post to your profile page:'), !$blockwall, ''),
1217                 '$blocktags'=> $blocktags, // array('blocktags', L10n::t('Allow friends to tag your posts:'), !$blocktags, ''),
1218
1219                 // ACL permissions box
1220                 '$group_perms' => L10n::t('Show to Groups'),
1221                 '$contact_perms' => L10n::t('Show to Contacts'),
1222                 '$private' => L10n::t('Default Private Post'),
1223                 '$public' => L10n::t('Default Public Post'),
1224                 '$is_private' => $private_post,
1225                 '$return_path' => $query_str,
1226                 '$public_link' => $public_post_link,
1227                 '$settings_perms' => L10n::t('Default Permissions for New Posts'),
1228
1229                 '$group_select' => $group_select,
1230
1231
1232                 '$expire'       => $expire_arr,
1233
1234                 '$profile_in_dir' => $profile_in_dir,
1235                 '$profile_in_net_dir' => $profile_in_net_dir,
1236                 '$hide_friends' => $hide_friends,
1237                 '$hide_wall' => $hide_wall,
1238                 '$unkmail' => $unkmail,
1239                 '$cntunkmail'   => ['cntunkmail', L10n::t('Maximum private messages per day from unknown people:'), $cntunkmail , L10n::t("\x28to prevent spam abuse\x29")],
1240
1241
1242                 '$h_not'        => L10n::t('Notification Settings'),
1243                 '$lbl_not'      => L10n::t('Send a notification email when:'),
1244                 '$notify1'      => ['notify1', L10n::t('You receive an introduction'), ($notify & NOTIFY_INTRO), NOTIFY_INTRO, ''],
1245                 '$notify2'      => ['notify2', L10n::t('Your introductions are confirmed'), ($notify & NOTIFY_CONFIRM), NOTIFY_CONFIRM, ''],
1246                 '$notify3'      => ['notify3', L10n::t('Someone writes on your profile wall'), ($notify & NOTIFY_WALL), NOTIFY_WALL, ''],
1247                 '$notify4'      => ['notify4', L10n::t('Someone writes a followup comment'), ($notify & NOTIFY_COMMENT), NOTIFY_COMMENT, ''],
1248                 '$notify5'      => ['notify5', L10n::t('You receive a private message'), ($notify & NOTIFY_MAIL), NOTIFY_MAIL, ''],
1249                 '$notify6'  => ['notify6', L10n::t('You receive a friend suggestion'), ($notify & NOTIFY_SUGGEST), NOTIFY_SUGGEST, ''],
1250                 '$notify7'  => ['notify7', L10n::t('You are tagged in a post'), ($notify & NOTIFY_TAGSELF), NOTIFY_TAGSELF, ''],
1251                 '$notify8'  => ['notify8', L10n::t('You are poked/prodded/etc. in a post'), ($notify & NOTIFY_POKE), NOTIFY_POKE, ''],
1252
1253                 '$desktop_notifications' => ['desktop_notifications', L10n::t('Activate desktop notifications') , false, L10n::t('Show desktop popup on new notifications')],
1254
1255                 '$email_textonly' => ['email_textonly', L10n::t('Text-only notification emails'),
1256                                                                         PConfig::get(local_user(), 'system', 'email_textonly'),
1257                                                                         L10n::t('Send text only notification emails, without the html part')],
1258
1259                 '$detailed_notif' => ['detailed_notif', L10n::t('Show detailled notifications'),
1260                                                                         PConfig::get(local_user(), 'system', 'detailed_notif'),
1261                                                                         L10n::t('Per default, notifications are condensed to a single notification per item. When enabled every notification is displayed.')],
1262
1263                 '$h_advn' => L10n::t('Advanced Account/Page Type Settings'),
1264                 '$h_descadvn' => L10n::t('Change the behaviour of this account for special situations'),
1265                 '$pagetype' => $pagetype,
1266
1267                 '$relocate' => L10n::t('Relocate'),
1268                 '$relocate_text' => L10n::t("If you have moved this profile from another server, and some of your contacts don't receive your updates, try pushing this button."),
1269                 '$relocate_button' => L10n::t("Resend relocate message to contacts"),
1270
1271         ]);
1272
1273         Addon::callHooks('settings_form', $o);
1274
1275         $o .= '</form>' . "\r\n";
1276
1277         return $o;
1278
1279 }