]> git.mxchange.org Git - friendica.git/blob - src/Model/Item.php
Move top-level permission check outside of Model\Item::getTopLevelParentData
[friendica.git] / src / Model / Item.php
1 <?php
2 /**
3  * @copyright Copyright (C) 2020, Friendica
4  *
5  * @license GNU AGPL version 3 or any later version
6  *
7  * This program is free software: you can redistribute it and/or modify
8  * it under the terms of the GNU Affero General Public License as
9  * published by the Free Software Foundation, either version 3 of the
10  * License, or (at your option) any later version.
11  *
12  * This program is distributed in the hope that it will be useful,
13  * but WITHOUT ANY WARRANTY; without even the implied warranty of
14  * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
15  * GNU Affero General Public License for more details.
16  *
17  * You should have received a copy of the GNU Affero General Public License
18  * along with this program.  If not, see <https://www.gnu.org/licenses/>.
19  *
20  */
21
22 namespace Friendica\Model;
23
24 use Friendica\Content\Text\BBCode;
25 use Friendica\Content\Text\HTML;
26 use Friendica\Core\Hook;
27 use Friendica\Core\Logger;
28 use Friendica\Core\Protocol;
29 use Friendica\Core\Renderer;
30 use Friendica\Core\Session;
31 use Friendica\Core\System;
32 use Friendica\Model\Tag;
33 use Friendica\Core\Worker;
34 use Friendica\Database\DBA;
35 use Friendica\Database\DBStructure;
36 use Friendica\DI;
37 use Friendica\Model\Post\Category;
38 use Friendica\Protocol\Activity;
39 use Friendica\Protocol\ActivityPub;
40 use Friendica\Protocol\Diaspora;
41 use Friendica\Util\DateTimeFormat;
42 use Friendica\Util\Map;
43 use Friendica\Util\Network;
44 use Friendica\Util\Strings;
45 use Friendica\Worker\Delivery;
46 use Friendica\Repository\PermissionSet as RepPermissionSet;
47 use LanguageDetection\Language;
48
49 class Item
50 {
51         // Posting types, inspired by https://www.w3.org/TR/activitystreams-vocabulary/#object-types
52         const PT_ARTICLE = 0;
53         const PT_NOTE = 1;
54         const PT_PAGE = 2;
55         const PT_IMAGE = 16;
56         const PT_AUDIO = 17;
57         const PT_VIDEO = 18;
58         const PT_DOCUMENT = 19;
59         const PT_EVENT = 32;
60         const PT_TAG = 64;
61         const PT_TO = 65;
62         const PT_CC = 66;
63         const PT_BTO = 67;
64         const PT_BCC = 68;
65         const PT_FOLLOWER = 69;
66         const PT_ANNOUNCEMENT = 70;
67         const PT_COMMENT = 71;
68         const PT_STORED = 72;
69         const PT_GLOBAL = 73;
70         const PT_RELAY = 74;
71         const PT_FETCHED = 75;
72         const PT_PERSONAL_NOTE = 128;
73
74         const LOCK_INSERT = 'item-insert';
75
76         // Field list that is used to display the items
77         const DISPLAY_FIELDLIST = [
78                 'uid', 'id', 'parent', 'uri-id', 'uri', 'thr-parent', 'parent-uri', 'guid', 'network', 'gravity',
79                 'commented', 'created', 'edited', 'received', 'verb', 'object-type', 'postopts', 'plink',
80                 'wall', 'private', 'starred', 'origin', 'title', 'body', 'file', 'language',
81                 'content-warning', 'location', 'coord', 'app', 'rendered-hash', 'rendered-html', 'object',
82                 'allow_cid', 'allow_gid', 'deny_cid', 'deny_gid', 'item_id',
83                 'author-id', 'author-link', 'author-name', 'author-avatar', 'author-network',
84                 'owner-id', 'owner-link', 'owner-name', 'owner-avatar', 'owner-network',
85                 'causer-id', 'causer-link', 'causer-name', 'causer-avatar', 'causer-contact-type',
86                 'contact-id', 'contact-uid', 'contact-link', 'contact-name', 'contact-avatar',
87                 'writable', 'self', 'cid', 'alias', 'pinned',
88                 'event-id', 'event-created', 'event-edited', 'event-start', 'event-finish',
89                 'event-summary', 'event-desc', 'event-location', 'event-type',
90                 'event-nofinish', 'event-adjust', 'event-ignore', 'event-id',
91                 'delivery_queue_count', 'delivery_queue_done', 'delivery_queue_failed'
92         ];
93
94         // Field list that is used to deliver items via the protocols
95         const DELIVER_FIELDLIST = ['uid', 'id', 'parent', 'uri-id', 'uri', 'thr-parent', 'parent-uri', 'guid',
96                         'parent-guid', 'created', 'edited', 'verb', 'object-type', 'object', 'target',
97                         'private', 'title', 'body', 'location', 'coord', 'app',
98                         'deleted', 'extid', 'post-type', 'gravity',
99                         'allow_cid', 'allow_gid', 'deny_cid', 'deny_gid',
100                         'author-id', 'author-link', 'owner-link', 'contact-uid',
101                         'signed_text', 'signature', 'signer', 'network'];
102
103         // Field list for "item-content" table that is mixed with the item table
104         const MIXED_CONTENT_FIELDLIST = ['title', 'content-warning', 'body', 'location',
105                         'coord', 'app', 'rendered-hash', 'rendered-html', 'verb',
106                         'object-type', 'object', 'target-type', 'target', 'plink'];
107
108         // Field list for "item-content" table that is not present in the "item" table
109         const CONTENT_FIELDLIST = ['language', 'raw-body'];
110
111         // All fields in the item table
112         const ITEM_FIELDLIST = ['id', 'uid', 'parent', 'uri', 'parent-uri', 'thr-parent',
113                         'guid', 'uri-id', 'parent-uri-id', 'thr-parent-id', 'vid',
114                         'contact-id', 'type', 'wall', 'gravity', 'extid', 'icid', 'psid',
115                         'created', 'edited', 'commented', 'received', 'changed', 'verb',
116                         'postopts', 'plink', 'resource-id', 'event-id', 'inform',
117                         'file', 'allow_cid', 'allow_gid', 'deny_cid', 'deny_gid', 'post-type',
118                         'private', 'pubmail', 'moderated', 'visible', 'starred', 'bookmark',
119                         'unseen', 'deleted', 'origin', 'forum_mode', 'mention', 'global', 'network',
120                         'title', 'content-warning', 'body', 'location', 'coord', 'app',
121                         'rendered-hash', 'rendered-html', 'object-type', 'object', 'target-type', 'target',
122                         'author-id', 'author-link', 'author-name', 'author-avatar', 'author-network',
123                         'owner-id', 'owner-link', 'owner-name', 'owner-avatar', 'causer-id'];
124
125         // List of all verbs that don't need additional content data.
126         // Never reorder or remove entries from this list. Just add new ones at the end, if needed.
127         const ACTIVITIES = [
128                 Activity::LIKE, Activity::DISLIKE,
129                 Activity::ATTEND, Activity::ATTENDNO, Activity::ATTENDMAYBE,
130                 Activity::FOLLOW,
131                 Activity::ANNOUNCE];
132
133         const PUBLIC = 0;
134         const PRIVATE = 1;
135         const UNLISTED = 2;
136
137         const TABLES = ['item', 'user-item', 'item-content', 'post-delivery-data', 'diaspora-interaction'];
138
139         private static $legacy_mode = null;
140
141         private static function getItemFields()
142         {
143                 $definition = DBStructure::definition('', false);
144
145                 $postfields = [];
146                 foreach (self::TABLES as $table) {
147                         $postfields[$table] = array_keys($definition[$table]['fields']);
148                 }
149
150                 return $postfields;
151         }
152
153         public static function isLegacyMode()
154         {
155                 if (is_null(self::$legacy_mode)) {
156                         self::$legacy_mode = (DI::config()->get("system", "post_update_version") < 1279);
157                 }
158
159                 return self::$legacy_mode;
160         }
161
162         /**
163          * Set the pinned state of an item
164          *
165          * @param integer $iid    Item ID
166          * @param integer $uid    User ID
167          * @param boolean $pinned Pinned state
168          */
169         public static function setPinned(int $iid, int $uid, bool $pinned)
170         {
171                 DBA::update('user-item', ['pinned' => $pinned], ['iid' => $iid, 'uid' => $uid], true);
172         }
173
174         /**
175          * Get the pinned state
176          *
177          * @param integer $iid Item ID
178          * @param integer $uid User ID
179          *
180          * @return boolean pinned state
181          */
182         public static function getPinned(int $iid, int $uid)
183         {
184                 $useritem = DBA::selectFirst('user-item', ['pinned'], ['iid' => $iid, 'uid' => $uid]);
185                 if (!DBA::isResult($useritem)) {
186                         return false;
187                 }
188                 return (bool)$useritem['pinned'];
189         }
190
191         /**
192          * Select pinned rows from the item table for a given user
193          *
194          * @param integer $uid       User ID
195          * @param array   $selected  Array of selected fields, empty for all
196          * @param array   $condition Array of fields for condition
197          * @param array   $params    Array of several parameters
198          *
199          * @return boolean|object
200          * @throws \Exception
201          */
202         public static function selectPinned(int $uid, array $selected = [], array $condition = [], $params = [])
203         {
204                 $useritems = DBA::select('user-item', ['iid'], ['uid' => $uid, 'pinned' => true]);
205                 if (!DBA::isResult($useritems)) {
206                         return $useritems;
207                 }
208
209                 $pinned = [];
210                 while ($useritem = DBA::fetch($useritems)) {
211                         $pinned[] = $useritem['iid'];
212                 }
213                 DBA::close($useritems);
214
215                 if (empty($pinned)) {
216                         return [];
217                 }
218
219                 $condition = DBA::mergeConditions(['iid' => $pinned], $condition);
220
221                 return self::selectThreadForUser($uid, $selected, $condition, $params);
222         }
223
224         /**
225          * Fetch a single item row
226          *
227          * @param mixed $stmt statement object
228          * @return array current row
229          */
230         public static function fetch($stmt)
231         {
232                 $row = DBA::fetch($stmt);
233
234                 if (is_bool($row)) {
235                         return $row;
236                 }
237
238                 // ---------------------- Transform item structure data ----------------------
239
240                 // We prefer the data from the user's contact over the public one
241                 if (!empty($row['author-link']) && !empty($row['contact-link']) &&
242                         ($row['author-link'] == $row['contact-link'])) {
243                         if (isset($row['author-avatar']) && !empty($row['contact-avatar'])) {
244                                 $row['author-avatar'] = $row['contact-avatar'];
245                         }
246                         if (isset($row['author-name']) && !empty($row['contact-name'])) {
247                                 $row['author-name'] = $row['contact-name'];
248                         }
249                 }
250
251                 if (!empty($row['owner-link']) && !empty($row['contact-link']) &&
252                         ($row['owner-link'] == $row['contact-link'])) {
253                         if (isset($row['owner-avatar']) && !empty($row['contact-avatar'])) {
254                                 $row['owner-avatar'] = $row['contact-avatar'];
255                         }
256                         if (isset($row['owner-name']) && !empty($row['contact-name'])) {
257                                 $row['owner-name'] = $row['contact-name'];
258                         }
259                 }
260
261                 // We can always comment on posts from these networks
262                 if (array_key_exists('writable', $row) &&
263                         in_array($row['internal-network'], Protocol::FEDERATED)) {
264                         $row['writable'] = true;
265                 }
266
267                 // ---------------------- Transform item content data ----------------------
268
269                 // Fetch data from the item-content table whenever there is content there
270                 if (self::isLegacyMode()) {
271                         $legacy_fields = array_merge(Post\DeliveryData::LEGACY_FIELD_LIST, self::MIXED_CONTENT_FIELDLIST);
272                         foreach ($legacy_fields as $field) {
273                                 if (empty($row[$field]) && !empty($row['internal-item-' . $field])) {
274                                         $row[$field] = $row['internal-item-' . $field];
275                                 }
276                                 unset($row['internal-item-' . $field]);
277                         }
278                 }
279
280                 if (array_key_exists('verb', $row)) {
281                         if (!is_null($row['internal-verb'])) {
282                                 $row['verb'] = $row['internal-verb'];
283                         }
284
285                         if (in_array($row['verb'], self::ACTIVITIES)) {
286                                 if (array_key_exists('title', $row)) {
287                                         $row['title'] = '';
288                                 }
289                                 if (array_key_exists('body', $row)) {
290                                         $row['body'] = $row['verb'];
291                                 }
292                                 if (array_key_exists('object', $row)) {
293                                         $row['object'] = '';
294                                 }
295                                 if (array_key_exists('object-type', $row)) {
296                                         $row['object-type'] = Activity\ObjectType::NOTE;
297                                 }
298                         } elseif (in_array($row['verb'], ['', Activity::POST, Activity::SHARE])) {
299                                 // Posts don't have a target - but having tags or files.
300                                 if (array_key_exists('target', $row)) {
301                                         $row['target'] = '';
302                                 }
303                         }
304                 }
305
306                 if (array_key_exists('vid', $row) && is_null($row['vid']) && !empty($row['verb'])) {
307                         $row['vid'] = Verb::getID($row['verb']);
308                 }
309                         
310                 if (!array_key_exists('verb', $row) || in_array($row['verb'], ['', Activity::POST, Activity::SHARE])) {
311                         // Build the file string out of the term entries
312                         if (array_key_exists('file', $row) && empty($row['file'])) {
313                                 $row['file'] = Category::getTextByURIId($row['internal-uri-id'], $row['internal-uid']);
314                         }
315                 }
316
317                 if ($row['internal-psid'] == RepPermissionSet::PUBLIC) {
318                         if (array_key_exists('allow_cid', $row)) {
319                                 $row['allow_cid'] = '';
320                         }
321                         if (array_key_exists('allow_gid', $row)) {
322                                 $row['allow_gid'] = '';
323                         }
324                         if (array_key_exists('deny_cid', $row)) {
325                                 $row['deny_cid'] = '';
326                         }
327                         if (array_key_exists('deny_gid', $row)) {
328                                 $row['deny_gid'] = '';
329                         }
330                 }
331
332                 if (array_key_exists('ignored', $row) && array_key_exists('internal-user-ignored', $row) && !is_null($row['internal-user-ignored'])) {
333                         $row['ignored'] = $row['internal-user-ignored'];
334                 }
335
336                 // Remove internal fields
337                 unset($row['internal-network']);
338                 unset($row['internal-uri-id']);
339                 unset($row['internal-uid']);
340                 unset($row['internal-psid']);
341                 unset($row['internal-verb']);
342                 unset($row['internal-user-ignored']);
343                 unset($row['interaction']);
344
345                 return $row;
346         }
347
348         /**
349          * Fills an array with data from an item query
350          *
351          * @param object $stmt statement object
352          * @param bool   $do_close
353          * @return array Data array
354          */
355         public static function inArray($stmt, $do_close = true) {
356                 if (is_bool($stmt)) {
357                         return $stmt;
358                 }
359
360                 $data = [];
361                 while ($row = self::fetch($stmt)) {
362                         $data[] = $row;
363                 }
364                 if ($do_close) {
365                         DBA::close($stmt);
366                 }
367                 return $data;
368         }
369
370         /**
371          * Check if item data exists
372          *
373          * @param array $condition array of fields for condition
374          *
375          * @return boolean Are there rows for that condition?
376          * @throws \Exception
377          */
378         public static function exists($condition) {
379                 $stmt = self::select(['id'], $condition, ['limit' => 1]);
380
381                 if (is_bool($stmt)) {
382                         $retval = $stmt;
383                 } else {
384                         $retval = (DBA::numRows($stmt) > 0);
385                 }
386
387                 DBA::close($stmt);
388
389                 return $retval;
390         }
391
392         /**
393          * Retrieve a single record from the item table for a given user and returns it in an associative array
394          *
395          * @param integer $uid User ID
396          * @param array   $selected
397          * @param array   $condition
398          * @param array   $params
399          * @return bool|array
400          * @throws \Exception
401          * @see   DBA::select
402          */
403         public static function selectFirstForUser($uid, array $selected = [], array $condition = [], $params = [])
404         {
405                 $params['uid'] = $uid;
406
407                 if (empty($selected)) {
408                         $selected = Item::DISPLAY_FIELDLIST;
409                 }
410
411                 return self::selectFirst($selected, $condition, $params);
412         }
413
414         /**
415          * Select rows from the item table for a given user
416          *
417          * @param integer $uid       User ID
418          * @param array   $selected  Array of selected fields, empty for all
419          * @param array   $condition Array of fields for condition
420          * @param array   $params    Array of several parameters
421          *
422          * @return boolean|object
423          * @throws \Exception
424          */
425         public static function selectForUser($uid, array $selected = [], array $condition = [], $params = [])
426         {
427                 $params['uid'] = $uid;
428
429                 if (empty($selected)) {
430                         $selected = Item::DISPLAY_FIELDLIST;
431                 }
432
433                 return self::select($selected, $condition, $params);
434         }
435
436         /**
437          * Retrieve a single record from the item table and returns it in an associative array
438          *
439          * @param array $fields
440          * @param array $condition
441          * @param array $params
442          * @return bool|array
443          * @throws \Exception
444          * @see   DBA::select
445          */
446         public static function selectFirst(array $fields = [], array $condition = [], $params = [])
447         {
448                 $params['limit'] = 1;
449
450                 $result = self::select($fields, $condition, $params);
451
452                 if (is_bool($result)) {
453                         return $result;
454                 } else {
455                         $row = self::fetch($result);
456                         DBA::close($result);
457                         return $row;
458                 }
459         }
460
461         /**
462          * Select rows from the item table and returns them as an array
463          *
464          * @param array $selected  Array of selected fields, empty for all
465          * @param array $condition Array of fields for condition
466          * @param array $params    Array of several parameters
467          *
468          * @return array
469          * @throws \Exception
470          */
471         public static function selectToArray(array $fields = [], array $condition = [], $params = [])
472         {
473                 $result = self::select($fields, $condition, $params);
474
475                 if (is_bool($result)) {
476                         return [];
477                 }
478
479                 $data = [];
480                 while ($row = self::fetch($result)) {
481                         $data[] = $row;
482                 }
483                 DBA::close($result);
484
485                 return $data;
486         }
487
488         /**
489          * Select rows from the item table
490          *
491          * @param array $selected  Array of selected fields, empty for all
492          * @param array $condition Array of fields for condition
493          * @param array $params    Array of several parameters
494          *
495          * @return boolean|object
496          * @throws \Exception
497          */
498         public static function select(array $selected = [], array $condition = [], $params = [])
499         {
500                 $uid = 0;
501                 $usermode = false;
502
503                 if (isset($params['uid'])) {
504                         $uid = $params['uid'];
505                         $usermode = true;
506                 }
507
508                 $fields = self::fieldlist($usermode);
509
510                 $select_fields = self::constructSelectFields($fields, $selected);
511
512                 $condition_string = DBA::buildCondition($condition);
513
514                 $condition_string = self::addTablesToFields($condition_string, $fields);
515
516                 if ($usermode) {
517                         $condition_string = $condition_string . ' AND ' . self::condition(false);
518                 }
519
520                 $param_string = self::addTablesToFields(DBA::buildParameter($params), $fields);
521
522                 $table = "`item` " . self::constructJoins($uid, $select_fields . $condition_string . $param_string, false, $usermode);
523
524                 $sql = "SELECT " . $select_fields . " FROM " . $table . $condition_string . $param_string;
525
526                 return DBA::p($sql, $condition);
527         }
528
529         /**
530          * Select rows from the starting post in the item table
531          *
532          * @param integer $uid       User ID
533          * @param array   $selected
534          * @param array   $condition Array of fields for condition
535          * @param array   $params    Array of several parameters
536          *
537          * @return boolean|object
538          * @throws \Exception
539          */
540         public static function selectThreadForUser($uid, array $selected = [], array $condition = [], $params = [])
541         {
542                 $params['uid'] = $uid;
543
544                 if (empty($selected)) {
545                         $selected = Item::DISPLAY_FIELDLIST;
546                 }
547
548                 return self::selectThread($selected, $condition, $params);
549         }
550
551         /**
552          * Retrieve a single record from the starting post in the item table and returns it in an associative array
553          *
554          * @param integer $uid User ID
555          * @param array   $selected
556          * @param array   $condition
557          * @param array   $params
558          * @return bool|array
559          * @throws \Exception
560          * @see   DBA::select
561          */
562         public static function selectFirstThreadForUser($uid, array $selected = [], array $condition = [], $params = [])
563         {
564                 $params['uid'] = $uid;
565
566                 if (empty($selected)) {
567                         $selected = Item::DISPLAY_FIELDLIST;
568                 }
569
570                 return self::selectFirstThread($selected, $condition, $params);
571         }
572
573         /**
574          * Retrieve a single record from the starting post in the item table and returns it in an associative array
575          *
576          * @param array $fields
577          * @param array $condition
578          * @param array $params
579          * @return bool|array
580          * @throws \Exception
581          * @see   DBA::select
582          */
583         public static function selectFirstThread(array $fields = [], array $condition = [], $params = [])
584         {
585                 $params['limit'] = 1;
586                 $result = self::selectThread($fields, $condition, $params);
587
588                 if (is_bool($result)) {
589                         return $result;
590                 } else {
591                         $row = self::fetch($result);
592                         DBA::close($result);
593                         return $row;
594                 }
595         }
596
597         /**
598          * Select rows from the starting post in the item table
599          *
600          * @param array $selected  Array of selected fields, empty for all
601          * @param array $condition Array of fields for condition
602          * @param array $params    Array of several parameters
603          *
604          * @return boolean|object
605          * @throws \Exception
606          */
607         public static function selectThread(array $selected = [], array $condition = [], $params = [])
608         {
609                 $uid = 0;
610                 $usermode = false;
611
612                 if (isset($params['uid'])) {
613                         $uid = $params['uid'];
614                         $usermode = true;
615                 }
616
617                 $fields = self::fieldlist($usermode);
618
619                 $fields['thread'] = ['mention', 'ignored', 'iid'];
620
621                 $threadfields = ['thread' => ['iid', 'uid', 'contact-id', 'owner-id', 'author-id',
622                         'created', 'edited', 'commented', 'received', 'changed', 'wall', 'private',
623                         'pubmail', 'moderated', 'visible', 'starred', 'ignored', 'post-type',
624                         'unseen', 'deleted', 'origin', 'forum_mode', 'mention', 'network']];
625
626                 $select_fields = self::constructSelectFields($fields, $selected);
627
628                 $condition_string = DBA::buildCondition($condition);
629
630                 $condition_string = self::addTablesToFields($condition_string, $threadfields);
631                 $condition_string = self::addTablesToFields($condition_string, $fields);
632
633                 if ($usermode) {
634                         $condition_string = $condition_string . ' AND ' . self::condition(true);
635                 }
636
637                 $param_string = DBA::buildParameter($params);
638                 $param_string = self::addTablesToFields($param_string, $threadfields);
639                 $param_string = self::addTablesToFields($param_string, $fields);
640
641                 $table = "`thread` " . self::constructJoins($uid, $select_fields . $condition_string . $param_string, true, $usermode);
642
643                 $sql = "SELECT " . $select_fields . " FROM " . $table . $condition_string . $param_string;
644
645                 return DBA::p($sql, $condition);
646         }
647
648         /**
649          * Returns a list of fields that are associated with the item table
650          *
651          * @param $usermode
652          * @return array field list
653          */
654         private static function fieldlist($usermode)
655         {
656                 $fields = [];
657
658                 $fields['item'] = ['id', 'uid', 'parent', 'uri', 'parent-uri', 'thr-parent',
659                         'guid', 'uri-id', 'parent-uri-id', 'thr-parent-id', 'vid', 'causer-id',
660                         'contact-id', 'owner-id', 'author-id', 'type', 'wall', 'gravity', 'extid',
661                         'created', 'edited', 'commented', 'received', 'changed', 'psid',
662                         'resource-id', 'event-id', 'post-type', 'file',
663                         'private', 'pubmail', 'moderated', 'visible', 'starred', 'bookmark',
664                         'unseen', 'deleted', 'origin', 'forum_mode', 'mention', 'global',
665                         'id' => 'item_id', 'network', 'icid',
666                         'uri-id' => 'internal-uri-id', 'uid' => 'internal-uid',
667                         'network' => 'internal-network', 'psid' => 'internal-psid'];
668
669                 if ($usermode) {
670                         $fields['user-item'] = ['pinned', 'notification-type', 'ignored' => 'internal-user-ignored'];
671                 }
672
673                 $fields['item-content'] = array_merge(self::CONTENT_FIELDLIST, self::MIXED_CONTENT_FIELDLIST);
674
675                 $fields['post-delivery-data'] = array_merge(Post\DeliveryData::LEGACY_FIELD_LIST, Post\DeliveryData::FIELD_LIST);
676
677                 $fields['verb'] = ['name' => 'internal-verb'];
678
679                 $fields['permissionset'] = ['allow_cid', 'allow_gid', 'deny_cid', 'deny_gid'];
680
681                 $fields['author'] = ['url' => 'author-link', 'name' => 'author-name', 'addr' => 'author-addr',
682                         'thumb' => 'author-avatar', 'nick' => 'author-nick', 'network' => 'author-network'];
683
684                 $fields['owner'] = ['url' => 'owner-link', 'name' => 'owner-name', 'addr' => 'owner-addr',
685                         'thumb' => 'owner-avatar', 'nick' => 'owner-nick', 'network' => 'owner-network'];
686
687                 $fields['causer'] = ['url' => 'causer-link', 'name' => 'causer-name', 'addr' => 'causer-addr',
688                         'thumb' => 'causer-avatar', 'nick' => 'causer-nick', 'network' => 'causer-network',
689                         'contact-type' => 'causer-contact-type'];
690
691                 $fields['contact'] = ['url' => 'contact-link', 'name' => 'contact-name', 'thumb' => 'contact-avatar',
692                         'writable', 'self', 'id' => 'cid', 'alias', 'uid' => 'contact-uid',
693                         'photo', 'name-date', 'uri-date', 'avatar-date', 'thumb', 'dfrn-id'];
694
695                 $fields['parent-item'] = ['guid' => 'parent-guid', 'network' => 'parent-network', 'author-id' => 'parent-author-id'];
696
697                 $fields['parent-item-author'] = ['url' => 'parent-author-link', 'name' => 'parent-author-name',
698                         'network' => 'parent-author-network'];
699
700                 $fields['event'] = ['created' => 'event-created', 'edited' => 'event-edited',
701                         'start' => 'event-start','finish' => 'event-finish',
702                         'summary' => 'event-summary','desc' => 'event-desc',
703                         'location' => 'event-location', 'type' => 'event-type',
704                         'nofinish' => 'event-nofinish','adjust' => 'event-adjust',
705                         'ignore' => 'event-ignore', 'id' => 'event-id'];
706
707                 $fields['diaspora-interaction'] = ['interaction', 'interaction' => 'signed_text'];
708
709                 return $fields;
710         }
711
712         /**
713          * Returns SQL condition for the "select" functions
714          *
715          * @param boolean $thread_mode Called for the items (false) or for the threads (true)
716          *
717          * @return string SQL condition
718          */
719         private static function condition($thread_mode)
720         {
721                 if ($thread_mode) {
722                         $master_table = "`thread`";
723                 } else {
724                         $master_table = "`item`";
725                 }
726                 return sprintf("$master_table.`visible` AND NOT $master_table.`deleted` AND NOT $master_table.`moderated`
727                         AND (`user-item`.`hidden` IS NULL OR NOT `user-item`.`hidden`)
728                         AND (`user-author`.`blocked` IS NULL OR NOT `user-author`.`blocked`)
729                         AND (`user-author`.`ignored` IS NULL OR NOT `user-author`.`ignored` OR `item`.`gravity` != %d)
730                         AND (`user-owner`.`blocked` IS NULL OR NOT `user-owner`.`blocked`)
731                         AND (`user-owner`.`ignored` IS NULL OR NOT `user-owner`.`ignored` OR `item`.`gravity` != %d) ",
732                         GRAVITY_PARENT, GRAVITY_PARENT);
733         }
734
735         /**
736          * Returns all needed "JOIN" commands for the "select" functions
737          *
738          * @param integer $uid          User ID
739          * @param string  $sql_commands The parts of the built SQL commands in the "select" functions
740          * @param boolean $thread_mode  Called for the items (false) or for the threads (true)
741          *
742          * @param         $user_mode
743          * @return string The SQL joins for the "select" functions
744          */
745         private static function constructJoins($uid, $sql_commands, $thread_mode, $user_mode)
746         {
747                 if ($thread_mode) {
748                         $master_table = "`thread`";
749                         $master_table_key = "`thread`.`iid`";
750                         $joins = "STRAIGHT_JOIN `item` ON `item`.`id` = `thread`.`iid` ";
751                 } else {
752                         $master_table = "`item`";
753                         $master_table_key = "`item`.`id`";
754                         $joins = '';
755                 }
756
757                 if ($user_mode) {
758                         $joins .= sprintf("STRAIGHT_JOIN `contact` ON `contact`.`id` = $master_table.`contact-id`
759                                 AND NOT `contact`.`blocked`
760                                 AND ((NOT `contact`.`readonly` AND NOT `contact`.`pending` AND (`contact`.`rel` IN (%s, %s)))
761                                 OR `contact`.`self` OR `item`.`gravity` != %d OR `contact`.`uid` = 0)
762                                 STRAIGHT_JOIN `contact` AS `author` ON `author`.`id` = $master_table.`author-id` AND NOT `author`.`blocked`
763                                 STRAIGHT_JOIN `contact` AS `owner` ON `owner`.`id` = $master_table.`owner-id` AND NOT `owner`.`blocked`
764                                 LEFT JOIN `user-item` ON `user-item`.`iid` = $master_table_key AND `user-item`.`uid` = %d
765                                 LEFT JOIN `user-contact` AS `user-author` ON `user-author`.`cid` = $master_table.`author-id` AND `user-author`.`uid` = %d
766                                 LEFT JOIN `user-contact` AS `user-owner` ON `user-owner`.`cid` = $master_table.`owner-id` AND `user-owner`.`uid` = %d",
767                                 Contact::SHARING, Contact::FRIEND, GRAVITY_PARENT, intval($uid), intval($uid), intval($uid));
768                 } else {
769                         if (strpos($sql_commands, "`contact`.") !== false) {
770                                 $joins .= "LEFT JOIN `contact` ON `contact`.`id` = $master_table.`contact-id`";
771                         }
772                         if (strpos($sql_commands, "`author`.") !== false) {
773                                 $joins .= " LEFT JOIN `contact` AS `author` ON `author`.`id` = $master_table.`author-id`";
774                         }
775                         if (strpos($sql_commands, "`owner`.") !== false) {
776                                 $joins .= " LEFT JOIN `contact` AS `owner` ON `owner`.`id` = $master_table.`owner-id`";
777                         }
778                 }
779                 if (strpos($sql_commands, "`causer`.") !== false) {
780                         $joins .= " LEFT JOIN `contact` AS `causer` ON `causer`.`id` = `item`.`causer-id`";
781                 }
782
783                 if (strpos($sql_commands, "`group_member`.") !== false) {
784                         $joins .= " STRAIGHT_JOIN `group_member` ON `group_member`.`contact-id` = $master_table.`contact-id`";
785                 }
786
787                 if (strpos($sql_commands, "`user`.") !== false) {
788                         $joins .= " STRAIGHT_JOIN `user` ON `user`.`uid` = $master_table.`uid`";
789                 }
790
791                 if (strpos($sql_commands, "`event`.") !== false) {
792                         $joins .= " LEFT JOIN `event` ON `event-id` = `event`.`id`";
793                 }
794
795                 if (strpos($sql_commands, "`diaspora-interaction`.") !== false) {
796                         $joins .= " LEFT JOIN `diaspora-interaction` ON `diaspora-interaction`.`uri-id` = `item`.`uri-id`";
797                 }
798
799                 if (strpos($sql_commands, "`item-content`.") !== false) {
800                         $joins .= " LEFT JOIN `item-content` ON `item-content`.`uri-id` = `item`.`uri-id`";
801                 }
802
803                 if (strpos($sql_commands, "`post-delivery-data`.") !== false) {
804                         $joins .= " LEFT JOIN `post-delivery-data` ON `post-delivery-data`.`uri-id` = `item`.`uri-id` AND `item`.`origin`";
805                 }
806
807                 if (strpos($sql_commands, "`verb`.") !== false) {
808                         $joins .= " LEFT JOIN `verb` ON `verb`.`id` = `item`.`vid`";
809                 }
810
811                 if (strpos($sql_commands, "`permissionset`.") !== false) {
812                         $joins .= " LEFT JOIN `permissionset` ON `permissionset`.`id` = `item`.`psid`";
813                 }
814
815                 if ((strpos($sql_commands, "`parent-item`.") !== false) || (strpos($sql_commands, "`parent-item-author`.") !== false)) {
816                         $joins .= " STRAIGHT_JOIN `item` AS `parent-item` ON `parent-item`.`id` = `item`.`parent`";
817
818                         if (strpos($sql_commands, "`parent-item-author`.") !== false) {
819                                 $joins .= " STRAIGHT_JOIN `contact` AS `parent-item-author` ON `parent-item-author`.`id` = `parent-item`.`author-id`";
820                         }
821                 }
822
823                 return $joins;
824         }
825
826         /**
827          * Add the field list for the "select" functions
828          *
829          * @param array $fields The field definition array
830          * @param array $selected The array with the selected fields from the "select" functions
831          *
832          * @return string The field list
833          */
834         private static function constructSelectFields(array $fields, array $selected)
835         {
836                 if (!empty($selected)) {
837                         $selected = array_merge($selected, ['internal-uri-id', 'internal-uid', 'internal-psid', 'internal-network']);
838                 }
839
840                 if (in_array('verb', $selected)) {
841                         $selected = array_merge($selected, ['internal-verb']);
842                 }
843
844                 if (in_array('ignored', $selected)) {
845                         $selected[] = 'internal-user-ignored';
846                 }
847
848                 $legacy_fields = array_merge(Post\DeliveryData::LEGACY_FIELD_LIST, self::MIXED_CONTENT_FIELDLIST);
849
850                 $selection = [];
851                 foreach ($fields as $table => $table_fields) {
852                         foreach ($table_fields as $field => $select) {
853                                 if (empty($selected) || in_array($select, $selected)) {
854                                         if (self::isLegacyMode() && in_array($select, $legacy_fields)) {
855                                                 $selection[] = "`item`.`".$select."` AS `internal-item-" . $select . "`";
856                                         }
857                                         if (is_int($field)) {
858                                                 $selection[] = "`" . $table . "`.`" . $select . "`";
859                                         } else {
860                                                 $selection[] = "`" . $table . "`.`" . $field . "` AS `" . $select . "`";
861                                         }
862                                 }
863                         }
864                 }
865                 return implode(", ", $selection);
866         }
867
868         /**
869          * add table definition to fields in an SQL query
870          *
871          * @param string $query SQL query
872          * @param array $fields The field definition array
873          *
874          * @return string the changed SQL query
875          */
876         private static function addTablesToFields($query, $fields)
877         {
878                 foreach ($fields as $table => $table_fields) {
879                         foreach ($table_fields as $alias => $field) {
880                                 if (is_int($alias)) {
881                                         $replace_field = $field;
882                                 } else {
883                                         $replace_field = $alias;
884                                 }
885
886                                 $search = "/([^\.])`" . $field . "`/i";
887                                 $replace = "$1`" . $table . "`.`" . $replace_field . "`";
888                                 $query = preg_replace($search, $replace, $query);
889                         }
890                 }
891                 return $query;
892         }
893
894         /**
895          * Update existing item entries
896          *
897          * @param array $fields    The fields that are to be changed
898          * @param array $condition The condition for finding the item entries
899          *
900          * In the future we may have to change permissions as well.
901          * Then we had to add the user id as third parameter.
902          *
903          * A return value of "0" doesn't mean an error - but that 0 rows had been changed.
904          *
905          * @return integer|boolean number of affected rows - or "false" if there was an error
906          * @throws \Friendica\Network\HTTPException\InternalServerErrorException
907          */
908         public static function update(array $fields, array $condition)
909         {
910                 if (empty($condition) || empty($fields)) {
911                         return false;
912                 }
913
914                 // To ensure the data integrity we do it in an transaction
915                 DBA::transaction();
916
917                 // We cannot simply expand the condition to check for origin entries
918                 // The condition needn't to be a simple array but could be a complex condition.
919                 // And we have to execute this query before the update to ensure to fetch the same data.
920                 $items = DBA::select('item', ['id', 'origin', 'uri', 'uri-id', 'icid', 'uid', 'file'], $condition);
921
922                 $content_fields = [];
923                 foreach (array_merge(self::CONTENT_FIELDLIST, self::MIXED_CONTENT_FIELDLIST) as $field) {
924                         if (isset($fields[$field])) {
925                                 $content_fields[$field] = $fields[$field];
926                                 if (in_array($field, self::CONTENT_FIELDLIST) || !self::isLegacyMode()) {
927                                         unset($fields[$field]);
928                                 } else {
929                                         $fields[$field] = null;
930                                 }
931                         }
932                 }
933
934                 $delivery_data = Post\DeliveryData::extractFields($fields);
935
936                 $clear_fields = ['bookmark', 'type', 'author-name', 'author-avatar', 'author-link', 'owner-name', 'owner-avatar', 'owner-link', 'postopts', 'inform'];
937                 foreach ($clear_fields as $field) {
938                         if (array_key_exists($field, $fields)) {
939                                 $fields[$field] = null;
940                         }
941                 }
942
943                 if (array_key_exists('file', $fields)) {
944                         $files = $fields['file'];
945                         $fields['file'] = null;
946                 } else {
947                         $files = null;
948                 }
949
950                 if (!empty($content_fields['verb'])) {
951                         $fields['vid'] = Verb::getID($content_fields['verb']);
952                 }
953
954                 if (!empty($fields)) {
955                         $success = DBA::update('item', $fields, $condition);
956
957                         if (!$success) {
958                                 DBA::close($items);
959                                 DBA::rollback();
960                                 return false;
961                         }
962                 }
963
964                 // When there is no content for the "old" item table, this will count the fetched items
965                 $rows = DBA::affectedRows();
966
967                 $notify_items = [];
968
969                 while ($item = DBA::fetch($items)) {
970                         if (empty($content_fields['verb']) || !in_array($content_fields['verb'], self::ACTIVITIES)) {
971                                 if (!empty($content_fields['body'])) {
972                                         $content_fields['raw-body'] = trim($content_fields['raw-body'] ?? $content_fields['body']);
973                 
974                                         // Remove all media attachments from the body and store them in the post-media table
975                                         $content_fields['raw-body'] = Post\Media::insertFromBody($item['uri-id'], $content_fields['raw-body']);
976                                         $content_fields['raw-body'] = self::setHashtags($content_fields['raw-body']);
977                                 }
978                 
979                                 self::updateContent($content_fields, ['uri-id' => $item['uri-id']]);
980
981                                 if (empty($item['icid'])) {
982                                         $item_content = DBA::selectFirst('item-content', [], ['uri-id' => $item['uri-id']]);
983                                         if (DBA::isResult($item_content)) {
984                                                 $item_fields = ['icid' => $item_content['id']];
985                                                 // Clear all fields in the item table that have a content in the item-content table
986                                                 if (self::isLegacyMode()) {
987                                                         foreach ($item_content as $field => $content) {
988                                                                 if (in_array($field, self::MIXED_CONTENT_FIELDLIST) && !empty($content)) {
989                                                                         $item_fields[$field] = null;
990                                                                 }
991                                                         }
992                                                 }
993                                                 DBA::update('item', $item_fields, ['id' => $item['id']]);
994                                         }
995                                 }
996                         }
997
998                         if (!is_null($files)) {
999                                 Category::storeTextByURIId($item['uri-id'], $item['uid'], $files);
1000                                 if (!empty($item['file'])) {
1001                                         DBA::update('item', ['file' => ''], ['id' => $item['id']]);
1002                                 }
1003                         }
1004
1005                         if (!empty($fields['attach'])) {
1006                                 Post\Media::insertFromAttachment($item['uri-id'], $fields['attach']);
1007                         }
1008
1009                         Post\DeliveryData::update($item['uri-id'], $delivery_data);
1010
1011                         self::updateThread($item['id']);
1012
1013                         // We only need to notfiy others when it is an original entry from us.
1014                         // Only call the notifier when the item has some content relevant change.
1015                         if ($item['origin'] && in_array('edited', array_keys($fields))) {
1016                                 $notify_items[] = $item['id'];
1017                         }
1018                 }
1019
1020                 DBA::close($items);
1021                 DBA::commit();
1022
1023                 foreach ($notify_items as $notify_item) {
1024                         Worker::add(PRIORITY_HIGH, "Notifier", Delivery::POST, $notify_item);
1025                 }
1026
1027                 return $rows;
1028         }
1029
1030         /**
1031          * Delete an item and notify others about it - if it was ours
1032          *
1033          * @param array   $condition The condition for finding the item entries
1034          * @param integer $priority  Priority for the notification
1035          * @throws \Friendica\Network\HTTPException\InternalServerErrorException
1036          */
1037         public static function markForDeletion($condition, $priority = PRIORITY_HIGH)
1038         {
1039                 $items = self::select(['id'], $condition);
1040                 while ($item = self::fetch($items)) {
1041                         self::markForDeletionById($item['id'], $priority);
1042                 }
1043                 DBA::close($items);
1044         }
1045
1046         /**
1047          * Delete an item for an user and notify others about it - if it was ours
1048          *
1049          * @param array   $condition The condition for finding the item entries
1050          * @param integer $uid       User who wants to delete this item
1051          * @throws \Friendica\Network\HTTPException\InternalServerErrorException
1052          */
1053         public static function deleteForUser($condition, $uid)
1054         {
1055                 if ($uid == 0) {
1056                         return;
1057                 }
1058
1059                 $items = self::select(['id', 'uid'], $condition);
1060                 while ($item = self::fetch($items)) {
1061                         // "Deleting" global items just means hiding them
1062                         if ($item['uid'] == 0) {
1063                                 DBA::update('user-item', ['hidden' => true], ['iid' => $item['id'], 'uid' => $uid], true);
1064
1065                                 // Delete notifications
1066                                 DBA::delete('notify', ['iid' => $item['id'], 'uid' => $uid]);
1067                         } elseif ($item['uid'] == $uid) {
1068                                 self::markForDeletionById($item['id'], PRIORITY_HIGH);
1069                         } else {
1070                                 Logger::log('Wrong ownership. Not deleting item ' . $item['id']);
1071                         }
1072                 }
1073                 DBA::close($items);
1074         }
1075
1076         /**
1077          * Mark an item for deletion, delete related data and notify others about it - if it was ours
1078          *
1079          * @param integer $item_id
1080          * @param integer $priority Priority for the notification
1081          *
1082          * @return boolean success
1083          * @throws \Friendica\Network\HTTPException\InternalServerErrorException
1084          */
1085         public static function markForDeletionById($item_id, $priority = PRIORITY_HIGH)
1086         {
1087                 Logger::info('Mark item for deletion by id', ['id' => $item_id, 'callstack' => System::callstack()]);
1088                 // locate item to be deleted
1089                 $fields = ['id', 'uri', 'uri-id', 'uid', 'parent', 'parent-uri', 'origin',
1090                         'deleted', 'file', 'resource-id', 'event-id',
1091                         'verb', 'object-type', 'object', 'target', 'contact-id',
1092                         'icid', 'psid', 'gravity'];
1093                 $item = self::selectFirst($fields, ['id' => $item_id]);
1094                 if (!DBA::isResult($item)) {
1095                         Logger::info('Item not found.', ['id' => $item_id]);
1096                         return false;
1097                 }
1098
1099                 if ($item['deleted']) {
1100                         Logger::info('Item has already been marked for deletion.', ['id' => $item_id]);
1101                         return false;
1102                 }
1103
1104                 $parent = self::selectFirst(['origin'], ['id' => $item['parent']]);
1105                 if (!DBA::isResult($parent)) {
1106                         $parent = ['origin' => false];
1107                 }
1108
1109                 // clean up categories and tags so they don't end up as orphans
1110
1111                 $matches = [];
1112                 $cnt = preg_match_all('/<(.*?)>/', $item['file'], $matches, PREG_SET_ORDER);
1113
1114                 if ($cnt) {
1115                         foreach ($matches as $mtch) {
1116                                 FileTag::unsaveFile($item['uid'], $item['id'], $mtch[1],true);
1117                         }
1118                 }
1119
1120                 $matches = [];
1121
1122                 $cnt = preg_match_all('/\[(.*?)\]/', $item['file'], $matches, PREG_SET_ORDER);
1123
1124                 if ($cnt) {
1125                         foreach ($matches as $mtch) {
1126                                 FileTag::unsaveFile($item['uid'], $item['id'], $mtch[1],false);
1127                         }
1128                 }
1129
1130                 /*
1131                  * If item is a link to a photo resource, nuke all the associated photos
1132                  * (visitors will not have photo resources)
1133                  * This only applies to photos uploaded from the photos page. Photos inserted into a post do not
1134                  * generate a resource-id and therefore aren't intimately linked to the item.
1135                  */
1136                 /// @TODO: this should first check if photo is used elsewhere
1137                 if (strlen($item['resource-id'])) {
1138                         Photo::delete(['resource-id' => $item['resource-id'], 'uid' => $item['uid']]);
1139                 }
1140
1141                 // If item is a link to an event, delete the event.
1142                 if (intval($item['event-id'])) {
1143                         Event::delete($item['event-id']);
1144                 }
1145
1146                 // If item has attachments, drop them
1147                 $attachments = Post\Media::getByURIId($item['uri-id'], [Post\Media::DOCUMENT]);
1148                 foreach($attachments as $attachment) {
1149                         if (preg_match("|attach/(\d+)|", $attachment['url'], $matches)) {
1150                                 Attach::delete(['id' => $matches[1], 'uid' => $item['uid']]);
1151                         }
1152                 }
1153
1154                 // Delete notifications
1155                 DBA::delete('notify', ['iid' => $item['id'], 'uid' => $item['uid']]);
1156
1157                 // Set the item to "deleted"
1158                 $item_fields = ['deleted' => true, 'edited' => DateTimeFormat::utcNow(), 'changed' => DateTimeFormat::utcNow()];
1159                 DBA::update('item', $item_fields, ['id' => $item['id']]);
1160
1161                 Category::storeTextByURIId($item['uri-id'], $item['uid'], '');
1162                 self::deleteThread($item['id'], $item['parent-uri']);
1163
1164                 if (!self::exists(["`uri` = ? AND `uid` != 0 AND NOT `deleted`", $item['uri']])) {
1165                         self::markForDeletion(['uri' => $item['uri'], 'uid' => 0, 'deleted' => false], $priority);
1166                 }
1167
1168                 Post\DeliveryData::delete($item['uri-id']);
1169
1170                 if (!empty($item['icid']) && !self::exists(['icid' => $item['icid'], 'deleted' => false])) {
1171                         DBA::delete('item-content', ['id' => $item['icid']], ['cascade' => false]);
1172                 }
1173                 // When the permission set will be used in photo and events as well,
1174                 // this query here needs to be extended.
1175                 // @todo Currently deactivated. We need the permission set in the deletion process.
1176                 // This is a reminder to add the removal somewhere else.
1177                 //if (!empty($item['psid']) && !self::exists(['psid' => $item['psid'], 'deleted' => false])) {
1178                 //      DBA::delete('permissionset', ['id' => $item['psid']], ['cascade' => false]);
1179                 //}
1180
1181                 // If it's the parent of a comment thread, kill all the kids
1182                 if ($item['gravity'] == GRAVITY_PARENT) {
1183                         self::markForDeletion(['parent' => $item['parent'], 'deleted' => false], $priority);
1184                 }
1185
1186                 // Is it our comment and/or our thread?
1187                 if ($item['origin'] || $parent['origin']) {
1188                         // When we delete the original post we will delete all existing copies on the server as well
1189                         self::markForDeletion(['uri' => $item['uri'], 'deleted' => false], $priority);
1190
1191                         // send the notification upstream/downstream
1192                         Worker::add(['priority' => $priority, 'dont_fork' => true], "Notifier", Delivery::DELETION, intval($item['id']));
1193                 } elseif ($item['uid'] != 0) {
1194
1195                         // When we delete just our local user copy of an item, we have to set a marker to hide it
1196                         $global_item = self::selectFirst(['id'], ['uri' => $item['uri'], 'uid' => 0, 'deleted' => false]);
1197                         if (DBA::isResult($global_item)) {
1198                                 DBA::update('user-item', ['hidden' => true], ['iid' => $global_item['id'], 'uid' => $item['uid']], true);
1199                         }
1200                 }
1201
1202                 Logger::info('Item has been marked for deletion.', ['id' => $item_id]);
1203
1204                 return true;
1205         }
1206
1207
1208         private static function guid($item, $notify)
1209         {
1210                 if (!empty($item['guid'])) {
1211                         return Strings::escapeTags(trim($item['guid']));
1212                 }
1213
1214                 if ($notify) {
1215                         // We have to avoid duplicates. So we create the GUID in form of a hash of the plink or uri.
1216                         // We add the hash of our own host because our host is the original creator of the post.
1217                         $prefix_host = DI::baseUrl()->getHostname();
1218                 } else {
1219                         $prefix_host = '';
1220
1221                         // We are only storing the post so we create a GUID from the original hostname.
1222                         if (!empty($item['author-link'])) {
1223                                 $parsed = parse_url($item['author-link']);
1224                                 if (!empty($parsed['host'])) {
1225                                         $prefix_host = $parsed['host'];
1226                                 }
1227                         }
1228
1229                         if (empty($prefix_host) && !empty($item['plink'])) {
1230                                 $parsed = parse_url($item['plink']);
1231                                 if (!empty($parsed['host'])) {
1232                                         $prefix_host = $parsed['host'];
1233                                 }
1234                         }
1235
1236                         if (empty($prefix_host) && !empty($item['uri'])) {
1237                                 $parsed = parse_url($item['uri']);
1238                                 if (!empty($parsed['host'])) {
1239                                         $prefix_host = $parsed['host'];
1240                                 }
1241                         }
1242
1243                         // Is it in the format data@host.tld? - Used for mail contacts
1244                         if (empty($prefix_host) && !empty($item['author-link']) && strstr($item['author-link'], '@')) {
1245                                 $mailparts = explode('@', $item['author-link']);
1246                                 $prefix_host = array_pop($mailparts);
1247                         }
1248                 }
1249
1250                 if (!empty($item['plink'])) {
1251                         $guid = self::guidFromUri($item['plink'], $prefix_host);
1252                 } elseif (!empty($item['uri'])) {
1253                         $guid = self::guidFromUri($item['uri'], $prefix_host);
1254                 } else {
1255                         $guid = System::createUUID(hash('crc32', $prefix_host));
1256                 }
1257
1258                 return $guid;
1259         }
1260
1261         private static function contactId($item)
1262         {
1263                 if (!empty($item['contact-id']) && DBA::exists('contact', ['self' => true, 'id' => $item['contact-id']])) {
1264                         return $item['contact-id'];
1265                 } elseif (($item['gravity'] == GRAVITY_PARENT) && !empty($item['uid']) && !empty($item['contact-id']) && Contact::isSharing($item['contact-id'], $item['uid'])) {
1266                         return $item['contact-id'];
1267                 } elseif (!empty($item['uid']) && !Contact::isSharing($item['author-id'], $item['uid'])) {
1268                         return $item['author-id'];
1269                 } elseif (!empty($item['contact-id'])) {
1270                         return $item['contact-id'];
1271                 } else {
1272                         $contact_id = Contact::getIdForURL($item['author-link'], $item['uid']);
1273                         if (!empty($contact_id)) {
1274                                 return $contact_id;
1275                         }
1276                 }
1277                 return $item['author-id'];
1278         }
1279
1280         // This function will finally cover most of the preparation functionality in mod/item.php
1281         public static function prepare(&$item)
1282         {
1283                 /*
1284                  * @TODO: Unused code triggering inspection errors
1285                  *
1286                 $data = BBCode::getAttachmentData($item['body']);
1287                 if ((preg_match_all("/\[bookmark\=([^\]]*)\](.*?)\[\/bookmark\]/ism", $item['body'], $match, PREG_SET_ORDER) || isset($data["type"]))
1288                         && ($posttype != Item::PT_PERSONAL_NOTE)) {
1289                         $posttype = Item::PT_PAGE;
1290                         $objecttype = ACTIVITY_OBJ_BOOKMARK;
1291                 }
1292                  */
1293         }
1294
1295         /**
1296          * Write an item array into a spool file to be inserted later.
1297          * This command is called whenever there are issues storing an item.
1298          *
1299          * @param array $item The item fields that are to be inserted
1300          * @throws \Exception
1301          */
1302         private static function spool($orig_item)
1303         {
1304                 // Now we store the data in the spool directory
1305                 // We use "microtime" to keep the arrival order and "mt_rand" to avoid duplicates
1306                 $file = 'item-' . round(microtime(true) * 10000) . '-' . mt_rand() . '.msg';
1307
1308                 $spoolpath = get_spoolpath();
1309                 if ($spoolpath != "") {
1310                         $spool = $spoolpath . '/' . $file;
1311
1312                         file_put_contents($spool, json_encode($orig_item));
1313                         Logger::warning("Item wasn't stored - Item was spooled into file", ['file' => $file]);
1314                 }
1315         }
1316
1317         /**
1318          * Check if the item array is a duplicate
1319          *
1320          * @param array $item
1321          * @return boolean is it a duplicate?
1322          */
1323         private static function isDuplicate(array $item)
1324         {
1325                 // Checking if there is already an item with the same guid
1326                 $condition = ['guid' => $item['guid'], 'network' => $item['network'], 'uid' => $item['uid']];
1327                 if (self::exists($condition)) {
1328                         Logger::notice('Found already existing item', [
1329                                 'guid' => $item['guid'],
1330                                 'uid' => $item['uid'],
1331                                 'network' => $item['network']
1332                         ]);
1333                         return true;
1334                 }
1335
1336                 $condition = ["`uri` = ? AND `network` IN (?, ?) AND `uid` = ?",
1337                         $item['uri'], $item['network'], Protocol::DFRN, $item['uid']];
1338                 if (self::exists($condition)) {
1339                         Logger::notice('duplicated item with the same uri found.', $item);
1340                         return true;
1341                 }
1342
1343                 // On Friendica and Diaspora the GUID is unique
1344                 if (in_array($item['network'], [Protocol::DFRN, Protocol::DIASPORA])) {
1345                         $condition = ['guid' => $item['guid'], 'uid' => $item['uid']];
1346                         if (self::exists($condition)) {
1347                                 Logger::notice('duplicated item with the same guid found.', $item);
1348                                 return true;
1349                         }
1350                 } elseif ($item['network'] == Protocol::OSTATUS) {
1351                         // Check for an existing post with the same content. There seems to be a problem with OStatus.
1352                         $condition = ["`body` = ? AND `network` = ? AND `created` = ? AND `contact-id` = ? AND `uid` = ?",
1353                                         $item['body'], $item['network'], $item['created'], $item['contact-id'], $item['uid']];
1354                         if (self::exists($condition)) {
1355                                 Logger::notice('duplicated item with the same body found.', $item);
1356                                 return true;
1357                         }
1358                 }
1359
1360                 /*
1361                  * Check for already added items.
1362                  * There is a timing issue here that sometimes creates double postings.
1363                  * An unique index would help - but the limitations of MySQL (maximum size of index values) prevent this.
1364                  */
1365                 if (($item['uid'] == 0) && self::exists(['uri' => trim($item['uri']), 'uid' => 0])) {
1366                         Logger::notice('Global item already stored.', ['uri' => $item['uri'], 'network' => $item['network']]);
1367                         return true;
1368                 }
1369
1370                 return false;
1371         }
1372
1373         /**
1374          * Check if the item array is valid
1375          *
1376          * @param array $item
1377          * @return boolean item is valid
1378          */
1379         public static function isValid(array $item)
1380         {
1381                 // When there is no content then we don't post it
1382                 if ($item['body'] . $item['title'] == '') {
1383                         Logger::notice('No body, no title.');
1384                         return false;
1385                 }
1386
1387                 // check for create date and expire time
1388                 $expire_interval = DI::config()->get('system', 'dbclean-expire-days', 0);
1389
1390                 $user = DBA::selectFirst('user', ['expire'], ['uid' => $item['uid']]);
1391                 if (DBA::isResult($user) && ($user['expire'] > 0) && (($user['expire'] < $expire_interval) || ($expire_interval == 0))) {
1392                         $expire_interval = $user['expire'];
1393                 }
1394
1395                 if (($expire_interval > 0) && !empty($item['created'])) {
1396                         $expire_date = time() - ($expire_interval * 86400);
1397                         $created_date = strtotime($item['created']);
1398                         if ($created_date < $expire_date) {
1399                                 Logger::notice('Item created before expiration interval.', [
1400                                         'created' => date('c', $created_date),
1401                                         'expired' => date('c', $expire_date),
1402                                         '$item' => $item
1403                                 ]);
1404                                 return false;
1405                         }
1406                 }
1407
1408                 if (!empty($item['author-id']) && Contact::isBlocked($item['author-id'])) {
1409                         Logger::notice('Author is blocked node-wide', ['author-link' => $item['author-link'], 'item-uri' => $item['uri']]);
1410                         return false;
1411                 }
1412
1413                 if (!empty($item['author-link']) && Network::isUrlBlocked($item['author-link'])) {
1414                         Logger::notice('Author server is blocked', ['author-link' => $item['author-link'], 'item-uri' => $item['uri']]);
1415                         return false;
1416                 }
1417
1418                 if (!empty($item['owner-id']) && Contact::isBlocked($item['owner-id'])) {
1419                         Logger::notice('Owner is blocked node-wide', ['owner-link' => $item['owner-link'], 'item-uri' => $item['uri']]);
1420                         return false;
1421                 }
1422
1423                 if (!empty($item['owner-link']) && Network::isUrlBlocked($item['owner-link'])) {
1424                         Logger::notice('Owner server is blocked', ['owner-link' => $item['owner-link'], 'item-uri' => $item['uri']]);
1425                         return false;
1426                 }
1427
1428                 if (!empty($item['uid']) && !self::isAllowedByUser($item, $item['uid'])) {
1429                         return false;
1430                 }
1431
1432                 if ($item['verb'] == Activity::FOLLOW) {
1433                         if (!$item['origin'] && ($item['author-id'] == Contact::getPublicIdByUserId($item['uid']))) {
1434                                 // Our own follow request can be relayed to us. We don't store it to avoid notification chaos.
1435                                 Logger::info("Follow: Don't store not origin follow request", ['parent-uri' => $item['parent-uri']]);
1436                                 return false;
1437                         }
1438
1439                         $condition = ['verb' => Activity::FOLLOW, 'uid' => $item['uid'],
1440                                 'parent-uri' => $item['parent-uri'], 'author-id' => $item['author-id']];
1441                         if (self::exists($condition)) {
1442                                 // It happens that we receive multiple follow requests by the same author - we only store one.
1443                                 Logger::info('Follow: Found existing follow request from author', ['author-id' => $item['author-id'], 'parent-uri' => $item['parent-uri']]);
1444                                 return false;
1445                         }
1446                 }
1447
1448                 return true;
1449         }
1450
1451         /**
1452          * Return the id of the given item array if it has been stored before
1453          *
1454          * @param array $item
1455          * @return integer item id
1456          */
1457         private static function getDuplicateID(array $item)
1458         {
1459                 if (empty($item['network']) || in_array($item['network'], Protocol::FEDERATED)) {
1460                         $condition = ["`uri` = ? AND `uid` = ? AND `network` IN (?, ?, ?, ?)",
1461                                 trim($item['uri']), $item['uid'],
1462                                 Protocol::ACTIVITYPUB, Protocol::DIASPORA, Protocol::DFRN, Protocol::OSTATUS];
1463                         $existing = self::selectFirst(['id', 'network'], $condition);
1464                         if (DBA::isResult($existing)) {
1465                                 // We only log the entries with a different user id than 0. Otherwise we would have too many false positives
1466                                 if ($item['uid'] != 0) {
1467                                         Logger::notice('Item already existed for user', [
1468                                                 'uri' => $item['uri'],
1469                                                 'uid' => $item['uid'],
1470                                                 'network' => $item['network'],
1471                                                 'existing_id' => $existing["id"],
1472                                                 'existing_network' => $existing["network"]
1473                                         ]);
1474                                 }
1475
1476                                 return $existing["id"];
1477                         }
1478                 }
1479                 return 0;
1480         }
1481
1482         /**
1483          * Fetch top-level parent data for the given item array
1484          *
1485          * @param array $item
1486          * @return array item array with parent data
1487          * @throws \Exception
1488          */
1489         private static function getTopLevelParent(array $item)
1490         {
1491                 $fields = ['uid', 'uri', 'parent-uri', 'id', 'deleted',
1492                         'allow_cid', 'allow_gid', 'deny_cid', 'deny_gid',
1493                         'wall', 'private', 'forum_mode', 'origin', 'author-id'];
1494                 $condition = ['uri' => $item['thr-parent'], 'uid' => $item['uid']];
1495                 $params = ['order' => ['id' => false]];
1496                 $parent = self::selectFirst($fields, $condition, $params);
1497
1498                 if (!DBA::isResult($parent)) {
1499                         Logger::notice('item parent was not found - ignoring item', ['thr-parent' => $item['thr-parent'], 'uid' => $item['uid']]);
1500                         return [];
1501                 }
1502
1503                 if ($parent['uri'] == $parent['parent-uri']) {
1504                         return $parent;
1505                 }
1506
1507                 $condition = ['uri' => $parent['parent-uri'],
1508                         'parent-uri' => $parent['parent-uri'],
1509                         'uid' => $parent['uid']];
1510                 $params = ['order' => ['id' => false]];
1511                 $toplevel_parent = self::selectFirst($fields, $condition, $params);
1512                 if (!DBA::isResult($toplevel_parent)) {
1513                         Logger::notice('item top level parent was not found - ignoring item', ['parent-uri' => $parent['parent-uri'], 'uid' => $parent['uid']]);
1514                         return [];
1515                 }
1516
1517                 return $toplevel_parent;
1518         }
1519
1520         /**
1521          * Get the gravity for the given item array
1522          *
1523          * @param array $item
1524          * @return integer gravity
1525          */
1526         private static function getGravity(array $item)
1527         {
1528                 $activity = DI::activity();
1529
1530                 if (isset($item['gravity'])) {
1531                         return intval($item['gravity']);
1532                 } elseif ($item['parent-uri'] === $item['uri']) {
1533                         return GRAVITY_PARENT;
1534                 } elseif ($activity->match($item['verb'], Activity::POST)) {
1535                         return GRAVITY_COMMENT;
1536                 } elseif ($activity->match($item['verb'], Activity::FOLLOW)) {
1537                         return GRAVITY_ACTIVITY;
1538                 } elseif ($activity->match($item['verb'], Activity::ANNOUNCE)) {
1539                         return GRAVITY_ACTIVITY;
1540                 }
1541                 Logger::info('Unknown gravity for verb', ['verb' => $item['verb']]);
1542                 return GRAVITY_UNKNOWN;   // Should not happen
1543         }
1544
1545         public static function insert($item, $notify = false, $dontcache = false)
1546         {
1547                 $structure = self::getItemFields();
1548
1549                 $orig_item = $item;
1550
1551                 $priority = PRIORITY_HIGH;
1552
1553                 // If it is a posting where users should get notifications, then define it as wall posting
1554                 if ($notify) {
1555                         $item['wall'] = 1;
1556                         $item['origin'] = 1;
1557                         $item['network'] = Protocol::DFRN;
1558                         $item['protocol'] = Conversation::PARCEL_DFRN;
1559
1560                         if (is_int($notify)) {
1561                                 $priority = $notify;
1562                         }
1563                 } else {
1564                         $item['network'] = trim(($item['network'] ?? '') ?: Protocol::PHANTOM);
1565                 }
1566
1567                 $uid = intval($item['uid']);
1568
1569                 $item['guid'] = self::guid($item, $notify);
1570                 $item['uri'] = substr(trim($item['uri'] ?? '') ?: self::newURI($item['uid'], $item['guid']), 0, 255);
1571
1572                 // Store URI data
1573                 $item['uri-id'] = ItemURI::insert(['uri' => $item['uri'], 'guid' => $item['guid']]);
1574
1575                 // Backward compatibility: parent-uri used to be the direct parent uri.
1576                 // If it is provided without a thr-parent, it probably is the old behavior.
1577                 $item['thr-parent'] = trim($item['thr-parent'] ?? $item['parent-uri'] ?? $item['uri']);
1578                 $item['parent-uri'] = $item['thr-parent'];
1579
1580                 // Store conversation data
1581                 $item = Conversation::insert($item);
1582
1583                 /*
1584                  * Do we already have this item?
1585                  * We have to check several networks since Friendica posts could be repeated
1586                  * via OStatus (maybe Diasporsa as well)
1587                  */
1588                 $duplicate = self::getDuplicateID($item);
1589                 if ($duplicate) {
1590                         return $duplicate;
1591                 }
1592
1593                 // Additional duplicate checks
1594                 /// @todo Check why the first duplication check returns the item number and the second a 0
1595                 if (self::isDuplicate($item)) {
1596                         return 0;
1597                 }
1598
1599                 $item['wall']          = intval($item['wall'] ?? 0);
1600                 $item['extid']         = trim($item['extid'] ?? '');
1601                 $item['author-name']   = trim($item['author-name'] ?? '');
1602                 $item['author-link']   = trim($item['author-link'] ?? '');
1603                 $item['author-avatar'] = trim($item['author-avatar'] ?? '');
1604                 $item['owner-name']    = trim($item['owner-name'] ?? '');
1605                 $item['owner-link']    = trim($item['owner-link'] ?? '');
1606                 $item['owner-avatar']  = trim($item['owner-avatar'] ?? '');
1607                 $item['received']      = (isset($item['received'])  ? DateTimeFormat::utc($item['received'])  : DateTimeFormat::utcNow());
1608                 $item['created']       = (isset($item['created'])   ? DateTimeFormat::utc($item['created'])   : $item['received']);
1609                 $item['edited']        = (isset($item['edited'])    ? DateTimeFormat::utc($item['edited'])    : $item['created']);
1610                 $item['changed']       = (isset($item['changed'])   ? DateTimeFormat::utc($item['changed'])   : $item['created']);
1611                 $item['commented']     = (isset($item['commented']) ? DateTimeFormat::utc($item['commented']) : $item['created']);
1612                 $item['title']         = substr(trim($item['title'] ?? ''), 0, 255);
1613                 $item['location']      = trim($item['location'] ?? '');
1614                 $item['coord']         = trim($item['coord'] ?? '');
1615                 $item['visible']       = (isset($item['visible']) ? intval($item['visible']) : 1);
1616                 $item['deleted']       = 0;
1617                 $item['post-type']     = ($item['post-type'] ?? '') ?: self::PT_ARTICLE;
1618                 $item['verb']          = trim($item['verb'] ?? '');
1619                 $item['object-type']   = trim($item['object-type'] ?? '');
1620                 $item['object']        = trim($item['object'] ?? '');
1621                 $item['target-type']   = trim($item['target-type'] ?? '');
1622                 $item['target']        = trim($item['target'] ?? '');
1623                 $item['plink']         = substr(trim($item['plink'] ?? ''), 0, 255);
1624                 $item['allow_cid']     = trim($item['allow_cid'] ?? '');
1625                 $item['allow_gid']     = trim($item['allow_gid'] ?? '');
1626                 $item['deny_cid']      = trim($item['deny_cid'] ?? '');
1627                 $item['deny_gid']      = trim($item['deny_gid'] ?? '');
1628                 $item['private']       = intval($item['private'] ?? self::PUBLIC);
1629                 $item['body']          = trim($item['body'] ?? '');
1630                 $item['raw-body']      = trim($item['raw-body'] ?? $item['body']);
1631                 $item['app']           = trim($item['app'] ?? '');
1632                 $item['origin']        = intval($item['origin'] ?? 0);
1633                 $item['postopts']      = trim($item['postopts'] ?? '');
1634                 $item['resource-id']   = trim($item['resource-id'] ?? '');
1635                 $item['event-id']      = intval($item['event-id'] ?? 0);
1636                 $item['inform']        = trim($item['inform'] ?? '');
1637                 $item['file']          = trim($item['file'] ?? '');
1638
1639                 // Items cannot be stored before they happen ...
1640                 if ($item['created'] > DateTimeFormat::utcNow()) {
1641                         $item['created'] = DateTimeFormat::utcNow();
1642                 }
1643
1644                 // We haven't invented time travel by now.
1645                 if ($item['edited'] > DateTimeFormat::utcNow()) {
1646                         $item['edited'] = DateTimeFormat::utcNow();
1647                 }
1648
1649                 $item['plink'] = ($item['plink'] ?? '') ?: DI::baseUrl() . '/display/' . urlencode($item['guid']);
1650
1651                 $item['gravity'] = self::getGravity($item);
1652
1653                 $item['language'] = self::getLanguage($item);
1654
1655                 $default = ['url' => $item['author-link'], 'name' => $item['author-name'],
1656                         'photo' => $item['author-avatar'], 'network' => $item['network']];
1657                 $item['author-id'] = ($item['author-id'] ?? 0) ?: Contact::getIdForURL($item['author-link'], 0, null, $default);
1658
1659                 $default = ['url' => $item['owner-link'], 'name' => $item['owner-name'],
1660                         'photo' => $item['owner-avatar'], 'network' => $item['network']];
1661                 $item['owner-id'] = ($item['owner-id'] ?? 0) ?: Contact::getIdForURL($item['owner-link'], 0, null, $default);
1662
1663                 $actor = ($item['gravity'] == GRAVITY_PARENT) ? $item['owner-id'] : $item['author-id'];
1664                 if (!$item['origin'] && ($item['uid'] != 0) && Contact::isSharing($actor, $item['uid'])) {
1665                         $item['post-type'] = self::PT_FOLLOWER;
1666                 }
1667
1668                 // Ensure that there is an avatar cache
1669                 Contact::checkAvatarCache($item['author-id']);
1670                 Contact::checkAvatarCache($item['owner-id']);
1671
1672                 // The contact-id should be set before "self::insert" was called - but there seems to be issues sometimes
1673                 $item["contact-id"] = self::contactId($item);
1674
1675                 if (!self::isValid($item)) {
1676                         return 0;
1677                 }
1678
1679                 if ($item['gravity'] !== GRAVITY_PARENT) {
1680                         $toplevel_parent = self::getTopLevelParent($item);
1681                         if (empty($toplevel_parent)) {
1682                                 return 0;
1683                         }
1684
1685                         // If the thread originated from this node, we check the permission against the thread starter
1686                         $condition = ['uri' => $toplevel_parent['uri'], 'wall' => true];
1687                         $localTopLevelParent = self::selectFirst(['uid'], $condition);
1688                         if (!empty($localTopLevelParent['uid']) && !self::isAllowedByUser($item, $localTopLevelParent['uid'])) {
1689                                 return 0;
1690                         }
1691
1692                         $parent_id          = $toplevel_parent['id'];
1693                         $item['parent-uri'] = $toplevel_parent['uri'];
1694                         $item['deleted']    = $toplevel_parent['deleted'];
1695                         $item['allow_cid']  = $toplevel_parent['allow_cid'];
1696                         $item['allow_gid']  = $toplevel_parent['allow_gid'];
1697                         $item['deny_cid']   = $toplevel_parent['deny_cid'];
1698                         $item['deny_gid']   = $toplevel_parent['deny_gid'];
1699                         $parent_origin      = $toplevel_parent['origin'];
1700
1701                         // Don't federate received participation messages
1702                         if ($item['verb'] != Activity::FOLLOW) {
1703                                 $item['wall'] = $toplevel_parent['wall'];
1704                         } else {
1705                                 $item['wall'] = false;
1706                         }
1707
1708                         /*
1709                          * If the parent is private, force privacy for the entire conversation
1710                          * This differs from the above settings as it subtly allows comments from
1711                          * email correspondents to be private even if the overall thread is not.
1712                          */
1713                         if ($toplevel_parent['private']) {
1714                                 $item['private'] = $toplevel_parent['private'];
1715                         }
1716
1717                         /*
1718                          * Edge case. We host a public forum that was originally posted to privately.
1719                          * The original author commented, but as this is a comment, the permissions
1720                          * weren't fixed up so it will still show the comment as private unless we fix it here.
1721                          */
1722                         if ((intval($toplevel_parent['forum_mode']) == 1) && ($toplevel_parent['private'] != self::PUBLIC)) {
1723                                 $item['private'] = self::PUBLIC;
1724                         }
1725
1726                         // If its a post that originated here then tag the thread as "mention"
1727                         if ($item['origin'] && $item['uid']) {
1728                                 DBA::update('thread', ['mention' => true], ['iid' => $parent_id]);
1729                                 Logger::info('tagged thread as mention', ['parent' => $parent_id, 'uid' => $item['uid']]);
1730                         }
1731
1732                         // Update the contact relations
1733                         Contact\Relation::store($toplevel_parent['author-id'], $item['author-id'], $item['created']);
1734
1735                         unset($item['parent_origin']);
1736                 } else {
1737                         $parent_id = 0;
1738                         $parent_origin = $item['origin'];
1739                 }
1740
1741                 // We don't store the causer link, only the id
1742                 unset($item['causer-link']);
1743
1744                 // We don't store these fields anymore in the item table
1745                 unset($item['author-link']);
1746                 unset($item['author-name']);
1747                 unset($item['author-avatar']);
1748                 unset($item['author-network']);
1749
1750                 unset($item['owner-link']);
1751                 unset($item['owner-name']);
1752                 unset($item['owner-avatar']);
1753
1754                 $item['parent-uri-id'] = ItemURI::getIdByURI($item['parent-uri']);
1755                 $item['thr-parent-id'] = ItemURI::getIdByURI($item['thr-parent']);
1756
1757                 // Is this item available in the global items (with uid=0)?
1758                 if ($item["uid"] == 0) {
1759                         $item["global"] = true;
1760
1761                         // Set the global flag on all items if this was a global item entry
1762                         DBA::update('item', ['global' => true], ['uri' => $item["uri"]]);
1763                 } else {
1764                         $item["global"] = self::exists(['uid' => 0, 'uri' => $item["uri"]]);
1765                 }
1766
1767                 // ACL settings
1768                 if (!empty($item["allow_cid"] . $item["allow_gid"] . $item["deny_cid"] . $item["deny_gid"])) {
1769                         $item["private"] = self::PRIVATE;
1770                 }
1771
1772                 if ($notify) {
1773                         $item['edit'] = false;
1774                         $item['parent'] = $parent_id;
1775                         Hook::callAll('post_local', $item);
1776                         unset($item['edit']);
1777                 } else {
1778                         Hook::callAll('post_remote', $item);
1779                 }
1780
1781                 // Set after the insert because top-level posts are self-referencing
1782                 unset($item['parent']);
1783
1784                 if (!empty($item['cancel'])) {
1785                         Logger::log('post cancelled by addon.');
1786                         return 0;
1787                 }
1788
1789                 if (empty($item['vid']) && !empty($item['verb'])) {
1790                         $item['vid'] = Verb::getID($item['verb']);
1791                 }
1792
1793                 // Creates or assigns the permission set
1794                 $item['psid'] = PermissionSet::getIdFromACL(
1795                         $item['uid'],
1796                         $item['allow_cid'],
1797                         $item['allow_gid'],
1798                         $item['deny_cid'],
1799                         $item['deny_gid']
1800                 );
1801
1802                 unset($item['allow_cid']);
1803                 unset($item['allow_gid']);
1804                 unset($item['deny_cid']);
1805                 unset($item['deny_gid']);
1806
1807                 // This array field is used to trigger some automatic reactions
1808                 // It is mainly used in the "post_local" hook.
1809                 unset($item['api_source']);
1810
1811                 if ($item['verb'] == Activity::ANNOUNCE) {
1812                         self::setOwnerforResharedItem($item);
1813                 }
1814
1815                 // Remove all media attachments from the body and store them in the post-media table
1816                 $item['raw-body'] = Post\Media::insertFromBody($item['uri-id'], $item['raw-body']);
1817                 $item['raw-body'] = self::setHashtags($item['raw-body']);
1818
1819                 // Check for hashtags in the body and repair or add hashtag links
1820                 $item['body'] = self::setHashtags($item['body']);
1821
1822                 if (!empty($item['attach'])) {
1823                         Post\Media::insertFromAttachment($item['uri-id'], $item['attach']);
1824                 }
1825
1826                 // Fill the cache field
1827                 self::putInCache($item);
1828
1829                 if (stristr($item['verb'], Activity::POKE)) {
1830                         $notify_type = Delivery::POKE;
1831                 } else {
1832                         $notify_type = Delivery::POST;
1833                 }
1834
1835                 if (!in_array($item['verb'], self::ACTIVITIES)) {
1836                         $item['icid'] = self::insertContent($item);
1837                         if (empty($item['icid'])) {
1838                                 // This shouldn't happen
1839                                 Logger::warning('No content stored, quitting', ['guid' => $item['guid'], 'uri-id' => $item['uri-id'], 'causer-id' => ($item['causer-id'] ?? 0), 'post-type' => $item['post-type'], 'network' => $item['network']]);
1840                                 return 0;
1841                         }
1842                 }
1843
1844                 $body = $item['body'];
1845                 $verb = $item['verb'];
1846
1847                 // We just remove everything that is content
1848                 foreach (array_merge(self::CONTENT_FIELDLIST, self::MIXED_CONTENT_FIELDLIST) as $field) {
1849                         unset($item[$field]);
1850                 }
1851
1852                 unset($item['activity']);
1853
1854                 // Filling item related side tables
1855
1856                 // Diaspora signature
1857                 if (!empty($item['diaspora_signed_text'])) {
1858                         DBA::replace('diaspora-interaction', ['uri-id' => $item['uri-id'], 'interaction' => $item['diaspora_signed_text']]);
1859                 }
1860
1861                 unset($item['diaspora_signed_text']);
1862
1863                 // Attached file links
1864                 if (!empty($item['file'])) {
1865                         Category::storeTextByURIId($item['uri-id'], $item['uid'], $item['file']);
1866                 }
1867
1868                 unset($item['file']);
1869
1870                 // Delivery relevant data
1871                 $delivery_data = Post\DeliveryData::extractFields($item);
1872                 unset($item['postopts']);
1873                 unset($item['inform']);
1874
1875                 if (!empty($item['origin']) || !empty($item['wall']) || !empty($delivery_data['postopts']) || !empty($delivery_data['inform'])) {
1876                         Post\DeliveryData::insert($item['uri-id'], $delivery_data);
1877                 }
1878
1879                 // Store tags from the body if this hadn't been handled previously in the protocol classes
1880                 if (!Tag::existsForPost($item['uri-id'])) {
1881                         Tag::storeFromBody($item['uri-id'], $body);
1882                 }
1883
1884                 // Remove all fields that aren't part of the item table
1885                 foreach ($item as $field => $value) {
1886                         if (!in_array($field, $structure['item'])) {
1887                                 unset($item[$field]);
1888                         }
1889                 }
1890
1891                 if (DI::lock()->acquire(self::LOCK_INSERT, 0)) {
1892                         $condition = ['uri-id' => $item['uri-id'], 'uid' => $item['uid'], 'network' => $item['network']];
1893                         if (DBA::exists('item', $condition)) {
1894                                 DI::lock()->release(self::LOCK_INSERT);
1895                                 Logger::notice('Item is already inserted - aborting', $condition);
1896                                 return 0;
1897                         }
1898
1899                         $result = DBA::insert('item', $item);
1900
1901                         // When the item was successfully stored we fetch the ID of the item.
1902                         $current_post = DBA::lastInsertId();
1903                         DI::lock()->release(self::LOCK_INSERT);
1904                 } else {
1905                         Logger::warning('Item lock had not been acquired');
1906                         $result = false;
1907                         $current_post = 0;
1908                 }
1909
1910                 if (empty($current_post) || !DBA::isResult($result)) {
1911                         // On failure store the data into a spool file so that the "SpoolPost" worker can try again later.
1912                         Logger::warning('Could not store item. it will be spooled', ['result' => $result, 'id' => $current_post]);
1913                         self::spool($orig_item);
1914                         return 0;
1915                 }
1916
1917                 Logger::notice('created item', ['id' => $current_post, 'uid' => $item['uid'], 'network' => $item['network'], 'uri-id' => $item['uri-id'], 'guid' => $item['guid']]);
1918
1919                 if (!$parent_id || ($item['gravity'] === GRAVITY_PARENT)) {
1920                         $parent_id = $current_post;
1921                 }
1922
1923                 // Set parent id
1924                 DBA::update('item', ['parent' => $parent_id], ['id' => $current_post]);
1925
1926                 $item['id'] = $current_post;
1927                 $item['parent'] = $parent_id;
1928
1929                 // update the commented timestamp on the parent
1930                 if (DI::config()->get('system', 'like_no_comment')) {
1931                         // Update when it is a comment
1932                         $update_commented = in_array($item['gravity'], [GRAVITY_PARENT, GRAVITY_COMMENT]);
1933                 } else {
1934                         // Update when it isn't a follow or tag verb
1935                         $update_commented = !in_array($verb, [Activity::FOLLOW, Activity::TAG]);
1936                 }
1937
1938                 if ($update_commented) {
1939                         DBA::update('item', ['commented' => DateTimeFormat::utcNow(), 'changed' => DateTimeFormat::utcNow()], ['id' => $parent_id]);
1940                 } else {
1941                         DBA::update('item', ['changed' => DateTimeFormat::utcNow()], ['id' => $parent_id]);
1942                 }
1943
1944                 if ($item['gravity'] === GRAVITY_PARENT) {
1945                         self::addThread($current_post);
1946                 } else {
1947                         self::updateThread($parent_id);
1948                 }
1949
1950                 // In that function we check if this is a forum post. Additionally we delete the item under certain circumstances
1951                 if (self::tagDeliver($item['uid'], $current_post)) {
1952                         // Get the user information for the logging
1953                         $user = User::getById($uid);
1954
1955                         Logger::notice('Item had been deleted', ['id' => $current_post, 'user' => $uid, 'account-type' => $user['account-type']]);
1956                         return 0;
1957                 }
1958
1959                 if (!$dontcache) {
1960                         $posted_item = self::selectFirst(self::ITEM_FIELDLIST, ['id' => $current_post]);
1961                         if (DBA::isResult($posted_item)) {
1962                                 if ($notify) {
1963                                         Hook::callAll('post_local_end', $posted_item);
1964                                 } else {
1965                                         Hook::callAll('post_remote_end', $posted_item);
1966                                 }
1967                         } else {
1968                                 Logger::log('new item not found in DB, id ' . $current_post);
1969                         }
1970                 }
1971
1972                 if ($item['gravity'] === GRAVITY_PARENT) {
1973                         self::addShadow($current_post);
1974                 } else {
1975                         self::addShadowPost($current_post);
1976                 }
1977
1978                 self::updateContact($item);
1979
1980                 UserItem::setNotification($current_post);
1981
1982                 check_user_notification($current_post);
1983
1984                 // Distribute items to users who subscribed to their tags
1985                 self::distributeByTags($item);
1986
1987                 $transmit = $notify || ($item['visible'] && ($parent_origin || $item['origin']));
1988
1989                 if ($transmit) {
1990                         $transmit_item = Item::selectFirst(['verb', 'origin'], ['id' => $item['id']]);
1991                         // Don't relay participation messages
1992                         if (($transmit_item['verb'] == Activity::FOLLOW) && 
1993                                 (!$transmit_item['origin'] || ($item['author-id'] != Contact::getPublicIdByUserId($uid)))) {
1994                                 Logger::info('Participation messages will not be relayed', ['item' => $item['id'], 'uri' => $item['uri'], 'verb' => $transmit_item['verb']]);
1995                                 $transmit = false;
1996                         }
1997                 }
1998
1999                 if ($transmit) {
2000                         Worker::add(['priority' => $priority, 'dont_fork' => true], 'Notifier', $notify_type, $current_post);
2001                 }
2002
2003                 return $current_post;
2004         }
2005
2006         /**
2007          * Change the owner of a parent item if it had been shared by a forum
2008          *
2009          * (public) forum posts in the new format consist of the regular post by the author
2010          * followed by an announce message sent from the forum account.
2011          * Changing the owner helps in grouping forum posts.
2012          *
2013          * @param array $item
2014          * @return void
2015          */
2016         private static function setOwnerforResharedItem(array $item)
2017         {
2018                 $parent = self::selectFirst(['id', 'causer-id', 'owner-id', 'author-id', 'author-link', 'origin', 'post-type'],
2019                         ['uri-id' => $item['thr-parent-id'], 'uid' => $item['uid']]);
2020                 if (!DBA::isResult($parent)) {
2021                         Logger::error('Parent not found', ['uri-id' => $item['thr-parent-id'], 'uid' => $item['uid']]);
2022                         return;
2023                 }
2024
2025                 $author = Contact::selectFirst(['url', 'contact-type'], ['id' => $item['author-id']]);
2026                 if (!DBA::isResult($author)) {
2027                         Logger::error('Author not found', ['id' => $item['author-id']]);
2028                         return;
2029                 }
2030
2031                 $cid = Contact::getIdForURL($author['url'], $item['uid']);
2032                 if (empty($cid) || !Contact::isSharing($cid, $item['uid'])) {
2033                         Logger::info('The resharer is not a following contact: quit', ['resharer' => $author['url'], 'uid' => $item['uid']]);
2034                         return;
2035                 }
2036
2037                 if ($author['contact-type'] != Contact::TYPE_COMMUNITY) {
2038                         if ($parent['post-type'] == self::PT_ANNOUNCEMENT) {
2039                                 Logger::info('The parent is already marked as announced: quit', ['causer' => $parent['causer-id'], 'owner' => $parent['owner-id'], 'author' => $parent['author-id'], 'uid' => $item['uid']]);
2040                                 return;
2041                         }
2042
2043                         if (Contact::isSharing($parent['owner-id'], $item['uid'])) {
2044                                 Logger::info('The resharer is no forum: quit', ['resharer' => $item['author-id'], 'owner' => $parent['owner-id'], 'author' => $parent['author-id'], 'uid' => $item['uid']]);
2045                                 return;
2046                         }
2047                         self::update(['post-type' => self::PT_ANNOUNCEMENT, 'causer-id' => $item['author-id']], ['id' => $parent['id']]);
2048                         Logger::info('Set announcement post-type', ['uri-id' => $item['uri-id'], 'thr-parent-id' => $item['thr-parent-id'], 'uid' => $item['uid']]);
2049                         return;
2050                 }
2051
2052                 self::update(['owner-id' => $item['author-id'], 'contact-id' => $cid], ['id' => $parent['id']]);
2053                 Logger::info('Change owner of the parent', ['uri-id' => $item['uri-id'], 'thr-parent-id' => $item['thr-parent-id'], 'uid' => $item['uid'], 'owner-id' => $item['author-id'], 'contact-id' => $cid]);
2054         }
2055
2056         /**
2057          * Distribute the given item to users who subscribed to their tags
2058          *
2059          * @param array $item     Processed item
2060          */
2061         private static function distributeByTags(array $item)
2062         {
2063                 if (($item['uid'] != 0) || ($item['gravity'] != GRAVITY_PARENT) || !in_array($item['network'], Protocol::FEDERATED)) {
2064                         return;
2065                 }
2066
2067                 $uids = Tag::getUIDListByURIId($item['uri-id']);
2068                 foreach ($uids as $uid) {
2069                         if (Contact::isSharing($item['author-id'], $uid)) {
2070                                 $fields = [];
2071                         } else {
2072                                 $fields = ['post-type' => self::PT_TAG];
2073                         }
2074
2075                         $stored = self::storeForUserByUriId($item['uri-id'], $uid, $fields);
2076                         Logger::info('Stored item for users', ['uri-id' => $item['uri-id'], 'uid' => $uid, 'fields' => $fields, 'stored' => $stored]);
2077                 }
2078         }
2079
2080         /**
2081          * Insert a new item content entry
2082          *
2083          * @param array $item The item fields that are to be inserted
2084          * @throws \Exception
2085          */
2086         private static function insertContent(array $item)
2087         {
2088                 $fields = ['uri-plink-hash' => (string)$item['uri-id'], 'uri-id' => $item['uri-id']];
2089
2090                 foreach (array_merge(self::CONTENT_FIELDLIST, self::MIXED_CONTENT_FIELDLIST) as $field) {
2091                         if (isset($item[$field])) {
2092                                 $fields[$field] = $item[$field];
2093                         }
2094                 }
2095
2096                 $item_content = DBA::selectFirst('item-content', ['id'], ['uri-id' => $item['uri-id']]);
2097                 if (DBA::isResult($item_content)) {
2098                         $icid = $item_content['id'];
2099                         Logger::info('Existing content found', ['icid' => $icid, 'uri' => $item['uri']]);
2100                         return $icid;
2101                 }
2102
2103                 DBA::replace('item-content', $fields);
2104
2105                 $item_content = DBA::selectFirst('item-content', ['id'], ['uri-id' => $item['uri-id']]);
2106                 if (DBA::isResult($item_content)) {
2107                         $icid = $item_content['id'];
2108                         Logger::notice('Content inserted', ['icid' => $icid, 'uri' => $item['uri']]);
2109                         return $icid;
2110                 }
2111
2112                 // This shouldn't happen.
2113                 Logger::error("Content wasn't inserted", $item);
2114                 return null;
2115         }
2116
2117         /**
2118          * Update existing item content entries
2119          *
2120          * @param array $item      The item fields that are to be changed
2121          * @param array $condition The condition for finding the item content entries
2122          * @throws \Exception
2123          */
2124         private static function updateContent($item, $condition)
2125         {
2126                 // We have to select only the fields from the "item-content" table
2127                 $fields = [];
2128                 foreach (array_merge(self::CONTENT_FIELDLIST, self::MIXED_CONTENT_FIELDLIST) as $field) {
2129                         if (isset($item[$field])) {
2130                                 $fields[$field] = $item[$field];
2131                         }
2132                 }
2133
2134                 if (empty($fields)) {
2135                         return;
2136                 }
2137
2138                 DBA::update('item-content', $fields, $condition, true);
2139                 Logger::info('Updated content', ['condition' => $condition]);
2140         }
2141
2142         /**
2143          * Distributes public items to the receivers
2144          *
2145          * @param integer $itemid      Item ID that should be added
2146          * @param string  $signed_text Original text (for Diaspora signatures), JSON encoded.
2147          * @throws \Exception
2148          */
2149         public static function distribute($itemid, $signed_text = '')
2150         {
2151                 $condition = ["`id` IN (SELECT `parent` FROM `item` WHERE `id` = ?)", $itemid];
2152                 $parent = self::selectFirst(['owner-id'], $condition);
2153                 if (!DBA::isResult($parent)) {
2154                         return;
2155                 }
2156
2157                 // Only distribute public items from native networks
2158                 $condition = ['id' => $itemid, 'uid' => 0,
2159                         'network' => array_merge(Protocol::FEDERATED ,['']),
2160                         'visible' => true, 'deleted' => false, 'moderated' => false, 'private' => [self::PUBLIC, self::UNLISTED]];
2161                 $item = self::selectFirst(self::ITEM_FIELDLIST, $condition);
2162                 if (!DBA::isResult($item)) {
2163                         return;
2164                 }
2165
2166                 $origin = $item['origin'];
2167
2168                 $users = [];
2169
2170                 /// @todo add a field "pcid" in the contact table that referrs to the public contact id.
2171                 $owner = DBA::selectFirst('contact', ['url', 'nurl', 'alias'], ['id' => $parent['owner-id']]);
2172                 if (!DBA::isResult($owner)) {
2173                         return;
2174                 }
2175
2176                 $condition = ['nurl' => $owner['nurl'], 'rel' => [Contact::SHARING, Contact::FRIEND]];
2177                 $contacts = DBA::select('contact', ['uid'], $condition);
2178                 while ($contact = DBA::fetch($contacts)) {
2179                         if ($contact['uid'] == 0) {
2180                                 continue;
2181                         }
2182
2183                         $users[$contact['uid']] = $contact['uid'];
2184                 }
2185                 DBA::close($contacts);
2186
2187                 $condition = ['alias' => $owner['url'], 'rel' => [Contact::SHARING, Contact::FRIEND]];
2188                 $contacts = DBA::select('contact', ['uid'], $condition);
2189                 while ($contact = DBA::fetch($contacts)) {
2190                         if ($contact['uid'] == 0) {
2191                                 continue;
2192                         }
2193
2194                         $users[$contact['uid']] = $contact['uid'];
2195                 }
2196                 DBA::close($contacts);
2197
2198                 if (!empty($owner['alias'])) {
2199                         $condition = ['nurl' => Strings::normaliseLink($owner['alias']), 'rel' => [Contact::SHARING, Contact::FRIEND]];
2200                         $contacts = DBA::select('contact', ['uid'], $condition);
2201                         while ($contact = DBA::fetch($contacts)) {
2202                                 if ($contact['uid'] == 0) {
2203                                         continue;
2204                                 }
2205
2206                                 $users[$contact['uid']] = $contact['uid'];
2207                         }
2208                         DBA::close($contacts);
2209                 }
2210
2211                 $origin_uid = 0;
2212
2213                 if ($item['uri'] != $item['parent-uri']) {
2214                         $parents = self::select(['uid', 'origin'], ["`uri` = ? AND `uid` != 0", $item['parent-uri']]);
2215                         while ($parent = self::fetch($parents)) {
2216                                 $users[$parent['uid']] = $parent['uid'];
2217                                 if ($parent['origin'] && !$origin) {
2218                                         $origin_uid = $parent['uid'];
2219                                 }
2220                         }
2221                 }
2222
2223                 foreach ($users as $uid) {
2224                         if ($origin_uid == $uid) {
2225                                 $item['diaspora_signed_text'] = $signed_text;
2226                         }
2227                         self::storeForUser($item, $uid);
2228                 }
2229         }
2230
2231         /**
2232          * Store a public item defined by their URI-ID for the given users
2233          *
2234          * @param integer $uri_id URI-ID of the given item
2235          * @param integer $uid    The user that will receive the item entry
2236          * @param array   $fields Additional fields to be stored
2237          * @return integer stored item id
2238          */
2239         public static function storeForUserByUriId(int $uri_id, int $uid, array $fields = [])
2240         {
2241                 $item = self::selectFirst(self::ITEM_FIELDLIST, ['uri-id' => $uri_id, 'uid' => 0]);
2242                 if (!DBA::isResult($item)) {
2243                         return 0;
2244                 }
2245
2246                 if (($item['private'] == self::PRIVATE) || !in_array($item['network'], Protocol::FEDERATED)) {
2247                         Logger::notice('Item is private or not from a federated network. It will not be stored for the user.', ['uri-id' => $uri_id, 'uid' => $uid, 'private' => $item['private'], 'network' => $item['network']]);
2248                         return 0;
2249                 }
2250
2251                 $item['post-type'] = self::PT_STORED;
2252
2253                 $item = array_merge($item, $fields);
2254
2255                 $stored = self::storeForUser($item, $uid);
2256                 Logger::info('Public item stored for user', ['uri-id' => $item['uri-id'], 'uid' => $uid, 'stored' => $stored]);
2257                 return $stored;
2258         }
2259
2260         /**
2261          * Store a public item array for the given users
2262          *
2263          * @param array   $item   The item entry that will be stored
2264          * @param integer $uid    The user that will receive the item entry
2265          * @return integer stored item id
2266          * @throws \Exception
2267          */
2268         private static function storeForUser(array $item, int $uid)
2269         {
2270                 if (self::exists(['uri-id' => $item['uri-id'], 'uid' => $uid])) {
2271                         Logger::info('Item already exists', ['uri-id' => $item['uri-id'], 'uid' => $uid]);
2272                         return 0;
2273                 }
2274
2275                 unset($item['id']);
2276                 unset($item['parent']);
2277                 unset($item['mention']);
2278                 unset($item['starred']);
2279                 unset($item['unseen']);
2280                 unset($item['psid']);
2281
2282                 $item['uid'] = $uid;
2283                 $item['origin'] = 0;
2284                 $item['wall'] = 0;
2285
2286                 if ($item['gravity'] == GRAVITY_PARENT) {
2287                         $contact = Contact::getByURLForUser($item['owner-link'], $uid, false, ['id']);
2288                 } else {
2289                         $contact = Contact::getByURLForUser($item['author-link'], $uid, false, ['id']);
2290                 }
2291
2292                 if (!empty($contact['id'])) {
2293                         $item['contact-id'] = $contact['id'];
2294                 } else {
2295                         // Shouldn't happen at all
2296                         Logger::warning('contact-id could not be fetched', ['uid' => $uid, 'item' => $item]);
2297                         $self = DBA::selectFirst('contact', ['id'], ['self' => true, 'uid' => $uid]);
2298                         if (!DBA::isResult($self)) {
2299                                 // Shouldn't happen even less
2300                                 Logger::warning('self contact could not be fetched', ['uid' => $uid, 'item' => $item]);
2301                                 return 0;
2302                         }
2303                         $item['contact-id'] = $self['id'];
2304                 }
2305
2306                 /// @todo Handling of "event-id"
2307
2308                 $notify = false;
2309                 if ($item['gravity'] == GRAVITY_PARENT) {
2310                         $contact = DBA::selectFirst('contact', [], ['id' => $item['contact-id'], 'self' => false]);
2311                         if (DBA::isResult($contact)) {
2312                                 $notify = self::isRemoteSelf($contact, $item);
2313                         }
2314                 }
2315
2316                 $distributed = self::insert($item, $notify, true);
2317
2318                 if (!$distributed) {
2319                         Logger::info("Distributed public item wasn't stored", ['uri-id' => $item['uri-id'], 'user' => $uid]);
2320                 } else {
2321                         Logger::info('Distributed public item was stored', ['uri-id' => $item['uri-id'], 'user' => $uid, 'stored' => $distributed]);
2322                 }
2323                 return $distributed;
2324         }
2325
2326         /**
2327          * Add a shadow entry for a given item id that is a thread starter
2328          *
2329          * We store every public item entry additionally with the user id "0".
2330          * This is used for the community page and for the search.
2331          * It is planned that in the future we will store public item entries only once.
2332          *
2333          * @param integer $itemid Item ID that should be added
2334          * @throws \Exception
2335          */
2336         private static function addShadow($itemid)
2337         {
2338                 $fields = ['uid', 'private', 'moderated', 'visible', 'deleted', 'network', 'uri'];
2339                 $condition = ['id' => $itemid, 'parent' => [0, $itemid]];
2340                 $item = self::selectFirst($fields, $condition);
2341
2342                 if (!DBA::isResult($item)) {
2343                         return;
2344                 }
2345
2346                 // is it already a copy?
2347                 if (($itemid == 0) || ($item['uid'] == 0)) {
2348                         return;
2349                 }
2350
2351                 // Is it a visible public post?
2352                 if (!$item["visible"] || $item["deleted"] || $item["moderated"] || ($item["private"] == Item::PRIVATE)) {
2353                         return;
2354                 }
2355
2356                 // is it an entry from a connector? Only add an entry for natively connected networks
2357                 if (!in_array($item["network"], array_merge(Protocol::FEDERATED ,['']))) {
2358                         return;
2359                 }
2360
2361                 if (self::exists(['uri' => $item['uri'], 'uid' => 0])) {
2362                         return;
2363                 }
2364
2365                 $item = self::selectFirst(self::ITEM_FIELDLIST, ['id' => $itemid]);
2366
2367                 if (DBA::isResult($item)) {
2368                         // Preparing public shadow (removing user specific data)
2369                         $item['uid'] = 0;
2370                         unset($item['id']);
2371                         unset($item['parent']);
2372                         unset($item['wall']);
2373                         unset($item['mention']);
2374                         unset($item['origin']);
2375                         unset($item['starred']);
2376                         unset($item['postopts']);
2377                         unset($item['inform']);
2378                         unset($item['post-type']);
2379                         if ($item['uri'] == $item['parent-uri']) {
2380                                 $item['contact-id'] = $item['owner-id'];
2381                         } else {
2382                                 $item['contact-id'] = $item['author-id'];
2383                         }
2384
2385                         $public_shadow = self::insert($item, false, true);
2386
2387                         Logger::info('Stored public shadow', ['thread' => $itemid, 'id' => $public_shadow]);
2388                 }
2389         }
2390
2391         /**
2392          * Add a shadow entry for a given item id that is a comment
2393          *
2394          * This function does the same like the function above - but for comments
2395          *
2396          * @param integer $itemid Item ID that should be added
2397          * @throws \Exception
2398          */
2399         private static function addShadowPost($itemid)
2400         {
2401                 $item = self::selectFirst(self::ITEM_FIELDLIST, ['id' => $itemid]);
2402                 if (!DBA::isResult($item)) {
2403                         return;
2404                 }
2405
2406                 // Is it a toplevel post?
2407                 if ($item['gravity'] == GRAVITY_PARENT) {
2408                         self::addShadow($itemid);
2409                         return;
2410                 }
2411
2412                 // Is this a shadow entry?
2413                 if ($item['uid'] == 0) {
2414                         return;
2415                 }
2416
2417                 // Is there a shadow parent?
2418                 if (!self::exists(['uri' => $item['parent-uri'], 'uid' => 0])) {
2419                         return;
2420                 }
2421
2422                 // Is there already a shadow entry?
2423                 if (self::exists(['uri' => $item['uri'], 'uid' => 0])) {
2424                         return;
2425                 }
2426
2427                 // Save "origin" and "parent" state
2428                 $origin = $item['origin'];
2429                 $parent = $item['parent'];
2430
2431                 // Preparing public shadow (removing user specific data)
2432                 $item['uid'] = 0;
2433                 unset($item['id']);
2434                 unset($item['parent']);
2435                 unset($item['wall']);
2436                 unset($item['mention']);
2437                 unset($item['origin']);
2438                 unset($item['starred']);
2439                 unset($item['postopts']);
2440                 unset($item['inform']);
2441                 unset($item['post-type']);
2442                 $item['contact-id'] = Contact::getIdForURL($item['author-link']);
2443
2444                 $public_shadow = self::insert($item, false, true);
2445
2446                 Logger::info('Stored public shadow', ['uri' => $item['uri'], 'id' => $public_shadow]);
2447
2448                 // If this was a comment to a Diaspora post we don't get our comment back.
2449                 // This means that we have to distribute the comment by ourselves.
2450                 if ($origin && self::exists(['id' => $parent, 'network' => Protocol::DIASPORA])) {
2451                         self::distribute($public_shadow);
2452                 }
2453         }
2454
2455         /**
2456          * Adds a language specification in a "language" element of given $arr.
2457          * Expects "body" element to exist in $arr.
2458          *
2459          * @param array $item
2460          * @return string detected language
2461          * @throws \Text_LanguageDetect_Exception
2462          */
2463         private static function getLanguage(array $item)
2464         {
2465                 if (!in_array($item['gravity'], [GRAVITY_PARENT, GRAVITY_COMMENT]) || empty($item['body'])) {
2466                         return '';
2467                 }
2468
2469                 // Convert attachments to links
2470                 $naked_body = BBCode::removeAttachment($item['body']);
2471                 if (empty($naked_body)) {
2472                         return '';
2473                 }
2474
2475                 // Remove links and pictures
2476                 $naked_body = BBCode::removeLinks($naked_body);
2477
2478                 // Convert the title and the body to plain text
2479                 $naked_body = trim($item['title'] . "\n" . BBCode::toPlaintext($naked_body));
2480
2481                 // Remove possibly remaining links
2482                 $naked_body = preg_replace(Strings::autoLinkRegEx(), '', $naked_body);
2483
2484                 if (empty($naked_body)) {
2485                         return '';
2486                 }
2487
2488                 $ld = new Language(DI::l10n()->getAvailableLanguages());
2489                 $languages = $ld->detect($naked_body)->limit(0, 3)->close();
2490                 if (is_array($languages)) {
2491                         return json_encode($languages);
2492                 }
2493
2494                 return '';
2495         }
2496
2497         public static function getLanguageMessage(array $item)
2498         {
2499                 $iso639 = new \Matriphe\ISO639\ISO639;
2500
2501                 $used_languages = '';
2502                 foreach (json_decode($item['language'], true) as $language => $reliability) {
2503                         $used_languages .= $iso639->languageByCode1($language) . ' (' . $language . "): " . number_format($reliability, 5) . '\n';
2504                 }
2505                 $used_languages = DI::l10n()->t('Detected languages in this post:\n%s', $used_languages);
2506                 return $used_languages;
2507         }
2508
2509         /**
2510          * Creates an unique guid out of a given uri
2511          *
2512          * @param string $uri uri of an item entry
2513          * @param string $host hostname for the GUID prefix
2514          * @return string unique guid
2515          */
2516         public static function guidFromUri($uri, $host)
2517         {
2518                 // Our regular guid routine is using this kind of prefix as well
2519                 // We have to avoid that different routines could accidentally create the same value
2520                 $parsed = parse_url($uri);
2521
2522                 // We use a hash of the hostname as prefix for the guid
2523                 $guid_prefix = hash("crc32", $host);
2524
2525                 // Remove the scheme to make sure that "https" and "http" doesn't make a difference
2526                 unset($parsed["scheme"]);
2527
2528                 // Glue it together to be able to make a hash from it
2529                 $host_id = implode("/", $parsed);
2530
2531                 // We could use any hash algorithm since it isn't a security issue
2532                 $host_hash = hash("ripemd128", $host_id);
2533
2534                 return $guid_prefix.$host_hash;
2535         }
2536
2537         /**
2538          * generate an unique URI
2539          *
2540          * @param integer $uid  User id
2541          * @param string  $guid An existing GUID (Otherwise it will be generated)
2542          *
2543          * @return string
2544          * @throws \Friendica\Network\HTTPException\InternalServerErrorException
2545          */
2546         public static function newURI($uid, $guid = "")
2547         {
2548                 if ($guid == "") {
2549                         $guid = System::createUUID();
2550                 }
2551
2552                 return DI::baseUrl()->get() . '/objects/' . $guid;
2553         }
2554
2555         /**
2556          * Set "success_update" and "last-item" to the date of the last time we heard from this contact
2557          *
2558          * This can be used to filter for inactive contacts.
2559          * Only do this for public postings to avoid privacy problems, since poco data is public.
2560          * Don't set this value if it isn't from the owner (could be an author that we don't know)
2561          *
2562          * @param array $arr Contains the just posted item record
2563          * @throws \Exception
2564          */
2565         private static function updateContact($arr)
2566         {
2567                 // Unarchive the author
2568                 $contact = DBA::selectFirst('contact', [], ['id' => $arr["author-id"]]);
2569                 if (DBA::isResult($contact)) {
2570                         Contact::unmarkForArchival($contact);
2571                 }
2572
2573                 // Unarchive the contact if it's not our own contact
2574                 $contact = DBA::selectFirst('contact', [], ['id' => $arr["contact-id"], 'self' => false]);
2575                 if (DBA::isResult($contact)) {
2576                         Contact::unmarkForArchival($contact);
2577                 }
2578
2579                 /// @todo On private posts we could obfuscate the date
2580                 $update = ($arr['private'] != self::PRIVATE) || in_array($arr['network'], Protocol::FEDERATED);
2581
2582                 // Is it a forum? Then we don't care about the rules from above
2583                 if (!$update && in_array($arr["network"], [Protocol::ACTIVITYPUB, Protocol::DFRN]) && ($arr["parent-uri"] === $arr["uri"])) {
2584                         if (DBA::exists('contact', ['id' => $arr['contact-id'], 'forum' => true])) {
2585                                 $update = true;
2586                         }
2587                 }
2588
2589                 if ($update) {
2590                         // The "self" contact id is used (for example in the connectors) when the contact is unknown
2591                         // So we have to ensure to only update the last item when it had been our own post,
2592                         // or it had been done by a "regular" contact.
2593                         if (!empty($arr['wall'])) {
2594                                 $condition = ['id' => $arr['contact-id']];
2595                         } else { 
2596                                 $condition = ['id' => $arr['contact-id'], 'self' => false];
2597                         }
2598                         DBA::update('contact', ['failed' => false, 'success_update' => $arr['received'], 'last-item' => $arr['received']], $condition);
2599                 }
2600                 // Now do the same for the system wide contacts with uid=0
2601                 if ($arr['private'] != self::PRIVATE) {
2602                         DBA::update('contact', ['failed' => false, 'success_update' => $arr['received'], 'last-item' => $arr['received']],
2603                                 ['id' => $arr['owner-id']]);
2604
2605                         if ($arr['owner-id'] != $arr['author-id']) {
2606                                 DBA::update('contact', ['failed' => false, 'success_update' => $arr['received'], 'last-item' => $arr['received']],
2607                                         ['id' => $arr['author-id']]);
2608                         }
2609                 }
2610         }
2611
2612         public static function setHashtags($body)
2613         {
2614                 $body = BBCode::performWithEscapedTags($body, ['noparse', 'pre', 'code'], function ($body) {
2615                         $tags = BBCode::getTags($body);
2616
2617                         // No hashtags?
2618                         if (!count($tags)) {
2619                                 return $body;
2620                         }
2621
2622                         // This sorting is important when there are hashtags that are part of other hashtags
2623                         // Otherwise there could be problems with hashtags like #test and #test2
2624                         // Because of this we are sorting from the longest to the shortest tag.
2625                         usort($tags, function ($a, $b) {
2626                                 return strlen($b) <=> strlen($a);
2627                         });
2628
2629                         $URLSearchString = "^\[\]";
2630
2631                         // All hashtags should point to the home server if "local_tags" is activated
2632                         if (DI::config()->get('system', 'local_tags')) {
2633                                 $body = preg_replace("/#\[url\=([$URLSearchString]*)\](.*?)\[\/url\]/ism",
2634                                         "#[url=" . DI::baseUrl() . "/search?tag=$2]$2[/url]", $body);
2635                         }
2636
2637                         // mask hashtags inside of url, bookmarks and attachments to avoid urls in urls
2638                         $body = preg_replace_callback("/\[url\=([$URLSearchString]*)\](.*?)\[\/url\]/ism",
2639                                 function ($match) {
2640                                         return ("[url=" . str_replace("#", "&num;", $match[1]) . "]" . str_replace("#", "&num;", $match[2]) . "[/url]");
2641                                 }, $body);
2642
2643                         $body = preg_replace_callback("/\[bookmark\=([$URLSearchString]*)\](.*?)\[\/bookmark\]/ism",
2644                                 function ($match) {
2645                                         return ("[bookmark=" . str_replace("#", "&num;", $match[1]) . "]" . str_replace("#", "&num;", $match[2]) . "[/bookmark]");
2646                                 }, $body);
2647
2648                         $body = preg_replace_callback("/\[attachment (.*)\](.*?)\[\/attachment\]/ism",
2649                                 function ($match) {
2650                                         return ("[attachment " . str_replace("#", "&num;", $match[1]) . "]" . $match[2] . "[/attachment]");
2651                                 }, $body);
2652
2653                         // Repair recursive urls
2654                         $body = preg_replace("/&num;\[url\=([$URLSearchString]*)\](.*?)\[\/url\]/ism",
2655                                 "&num;$2", $body);
2656
2657                         foreach ($tags as $tag) {
2658                                 if ((strpos($tag, '#') !== 0) || strpos($tag, '[url=') || strlen($tag) < 2 || $tag[1] == '#') {
2659                                         continue;
2660                                 }
2661
2662                                 $basetag = str_replace('_', ' ', substr($tag, 1));
2663                                 $newtag = '#[url=' . DI::baseUrl() . '/search?tag=' . $basetag . ']' . $basetag . '[/url]';
2664
2665                                 $body = str_replace($tag, $newtag, $body);
2666                         }
2667
2668                         // Convert back the masked hashtags
2669                         $body = str_replace("&num;", "#", $body);
2670
2671                         return $body;
2672                 });
2673
2674                 return $body;
2675         }
2676
2677         /**
2678          * look for mention tags and setup a second delivery chain for forum/community posts if appropriate
2679          *
2680          * @param int $uid
2681          * @param int $item_id
2682          * @return boolean true if item was deleted, else false
2683          * @throws \Friendica\Network\HTTPException\InternalServerErrorException
2684          * @throws \ImagickException
2685          */
2686         private static function tagDeliver($uid, $item_id)
2687         {
2688                 $mention = false;
2689
2690                 $user = DBA::selectFirst('user', [], ['uid' => $uid]);
2691                 if (!DBA::isResult($user)) {
2692                         return false;
2693                 }
2694
2695                 $community_page = (($user['page-flags'] == User::PAGE_FLAGS_COMMUNITY) ? true : false);
2696                 $prvgroup = (($user['page-flags'] == User::PAGE_FLAGS_PRVGROUP) ? true : false);
2697
2698                 $item = self::selectFirst(self::ITEM_FIELDLIST, ['id' => $item_id]);
2699                 if (!DBA::isResult($item)) {
2700                         return false;
2701                 }
2702
2703                 $link = Strings::normaliseLink(DI::baseUrl() . '/profile/' . $user['nickname']);
2704
2705                 /*
2706                  * Diaspora uses their own hardwired link URL in @-tags
2707                  * instead of the one we supply with webfinger
2708                  */
2709                 $dlink = Strings::normaliseLink(DI::baseUrl() . '/u/' . $user['nickname']);
2710
2711                 $cnt = preg_match_all('/[\@\!]\[url\=(.*?)\](.*?)\[\/url\]/ism', $item['body'], $matches, PREG_SET_ORDER);
2712                 if ($cnt) {
2713                         foreach ($matches as $mtch) {
2714                                 if (Strings::compareLink($link, $mtch[1]) || Strings::compareLink($dlink, $mtch[1])) {
2715                                         $mention = true;
2716                                         Logger::log('mention found: ' . $mtch[2]);
2717                                 }
2718                         }
2719                 }
2720
2721                 if (!$mention) {
2722                         $tags = Tag::getByURIId($item['uri-id'], [Tag::MENTION, Tag::EXCLUSIVE_MENTION]);
2723                         foreach ($tags as $tag) {
2724                                 if (Strings::compareLink($link, $tag['url']) || Strings::compareLink($dlink, $tag['url'])) {
2725                                         $mention = true;
2726                                         DI::logger()->info('mention found in tag.', ['url' => $tag['url']]);
2727                                 }
2728                         }
2729                 }
2730                 
2731                 if (!$mention) {
2732                         if (($community_page || $prvgroup) &&
2733                                   !$item['wall'] && !$item['origin'] && ($item['gravity'] == GRAVITY_PARENT)) {
2734                                 Logger::info('Delete private group/communiy top-level item without mention', ['id' => $item_id, 'guid'=> $item['guid']]);
2735                                 DBA::delete('item', ['id' => $item_id]);
2736                                 return true;
2737                         }
2738                         return false;
2739                 }
2740
2741                 $arr = ['item' => $item, 'user' => $user];
2742
2743                 Hook::callAll('tagged', $arr);
2744
2745                 if (!$community_page && !$prvgroup) {
2746                         return false;
2747                 }
2748
2749                 /*
2750                  * tgroup delivery - setup a second delivery chain
2751                  * prevent delivery looping - only proceed
2752                  * if the message originated elsewhere and is a top-level post
2753                  */
2754                 if ($item['wall'] || $item['origin'] || ($item['id'] != $item['parent'])) {
2755                         return false;
2756                 }
2757
2758                 // now change this copy of the post to a forum head message and deliver to all the tgroup members
2759                 $self = DBA::selectFirst('contact', ['id', 'name', 'url', 'thumb'], ['uid' => $uid, 'self' => true]);
2760                 if (!DBA::isResult($self)) {
2761                         return false;
2762                 }
2763
2764                 $owner_id = Contact::getIdForURL($self['url']);
2765
2766                 // also reset all the privacy bits to the forum default permissions
2767
2768                 $private = ($user['allow_cid'] || $user['allow_gid'] || $user['deny_cid'] || $user['deny_gid']) ? self::PRIVATE : self::PUBLIC;
2769
2770                 $psid = PermissionSet::getIdFromACL(
2771                         $user['uid'],
2772                         $user['allow_cid'],
2773                         $user['allow_gid'],
2774                         $user['deny_cid'],
2775                         $user['deny_gid']
2776                 );
2777
2778                 $forum_mode = ($prvgroup ? 2 : 1);
2779
2780                 $fields = ['wall' => true, 'origin' => true, 'forum_mode' => $forum_mode, 'contact-id' => $self['id'],
2781                         'owner-id' => $owner_id, 'private' => $private, 'psid' => $psid];
2782                 self::update($fields, ['id' => $item_id]);
2783
2784                 Worker::add(['priority' => PRIORITY_HIGH, 'dont_fork' => true], 'Notifier', Delivery::POST, $item_id);
2785
2786                 Item::performActivity($item_id, 'announce', $uid);
2787
2788                 return false;
2789         }
2790
2791         public static function isRemoteSelf($contact, &$datarray)
2792         {
2793                 if (!$contact['remote_self']) {
2794                         return false;
2795                 }
2796
2797                 // Prevent the forwarding of posts that are forwarded
2798                 if (!empty($datarray["extid"]) && ($datarray["extid"] == Protocol::DFRN)) {
2799                         Logger::info('Already forwarded');
2800                         return false;
2801                 }
2802
2803                 // Prevent to forward already forwarded posts
2804                 if ($datarray["app"] == DI::baseUrl()->getHostname()) {
2805                         Logger::info('Already forwarded (second test)');
2806                         return false;
2807                 }
2808
2809                 // Only forward posts
2810                 if ($datarray["verb"] != Activity::POST) {
2811                         Logger::info('No post');
2812                         return false;
2813                 }
2814
2815                 if (($contact['network'] != Protocol::FEED) && ($datarray['private'] == self::PRIVATE)) {
2816                         Logger::info('Not public');
2817                         return false;
2818                 }
2819
2820                 $datarray2 = $datarray;
2821                 Logger::info('remote-self start', ['contact' => $contact['url'], 'remote_self'=> $contact['remote_self'], 'item' => $datarray]);
2822                 if ($contact['remote_self'] == 2) {
2823                         $self = DBA::selectFirst('contact', ['id', 'name', 'url', 'thumb'],
2824                                         ['uid' => $contact['uid'], 'self' => true]);
2825                         if (DBA::isResult($self)) {
2826                                 $datarray['contact-id'] = $self["id"];
2827
2828                                 $datarray['owner-name'] = $self["name"];
2829                                 $datarray['owner-link'] = $self["url"];
2830                                 $datarray['owner-avatar'] = $self["thumb"];
2831
2832                                 $datarray['author-name']   = $datarray['owner-name'];
2833                                 $datarray['author-link']   = $datarray['owner-link'];
2834                                 $datarray['author-avatar'] = $datarray['owner-avatar'];
2835
2836                                 unset($datarray['edited']);
2837
2838                                 unset($datarray['network']);
2839                                 unset($datarray['owner-id']);
2840                                 unset($datarray['author-id']);
2841                         }
2842
2843                         if ($contact['network'] != Protocol::FEED) {
2844                                 $old_uri_id = $datarray["uri-id"] ?? 0;
2845                                 $datarray["guid"] = System::createUUID();
2846                                 unset($datarray["plink"]);
2847                                 $datarray["uri"] = self::newURI($contact['uid'], $datarray["guid"]);
2848                                 $datarray["uri-id"] = ItemURI::getIdByURI($datarray["uri"]);
2849                                 $datarray["extid"] = Protocol::DFRN;
2850                                 $urlpart = parse_url($datarray2['author-link']);
2851                                 $datarray["app"] = $urlpart["host"];
2852                                 if (!empty($old_uri_id)) {
2853                                         Post\Media::copy($old_uri_id, $datarray["uri-id"]);
2854                                 }
2855
2856                                 unset($datarray["parent-uri"]);
2857                                 unset($datarray["thr-parent"]);
2858                         } else {
2859                                 $datarray['private'] = self::PUBLIC;
2860                         }
2861                 }
2862
2863                 if ($contact['network'] != Protocol::FEED) {
2864                         // Store the original post
2865                         $result = self::insert($datarray2);
2866                         Logger::info('remote-self post original item', ['contact' => $contact['url'], 'result'=> $result, 'item' => $datarray2]);
2867                 } else {
2868                         $datarray["app"] = "Feed";
2869                         $result = true;
2870                 }
2871
2872                 // Trigger automatic reactions for addons
2873                 $datarray['api_source'] = true;
2874
2875                 // We have to tell the hooks who we are - this really should be improved
2876                 $_SESSION["authenticated"] = true;
2877                 $_SESSION["uid"] = $contact['uid'];
2878
2879                 return $result;
2880         }
2881
2882         /**
2883          *
2884          * @param string $s
2885          * @param int    $uid
2886          * @param array  $item
2887          * @param int    $cid
2888          * @return string
2889          * @throws \Friendica\Network\HTTPException\InternalServerErrorException
2890          * @throws \ImagickException
2891          */
2892         public static function fixPrivatePhotos($s, $uid, $item = null, $cid = 0)
2893         {
2894                 if (DI::config()->get('system', 'disable_embedded')) {
2895                         return $s;
2896                 }
2897
2898                 Logger::info('check for photos');
2899                 $site = substr(DI::baseUrl(), strpos(DI::baseUrl(), '://'));
2900
2901                 $orig_body = $s;
2902                 $new_body = '';
2903
2904                 $img_start = strpos($orig_body, '[img');
2905                 $img_st_close = ($img_start !== false ? strpos(substr($orig_body, $img_start), ']') : false);
2906                 $img_len = ($img_start !== false ? strpos(substr($orig_body, $img_start + $img_st_close + 1), '[/img]') : false);
2907
2908                 while (($img_st_close !== false) && ($img_len !== false)) {
2909                         $img_st_close++; // make it point to AFTER the closing bracket
2910                         $image = substr($orig_body, $img_start + $img_st_close, $img_len);
2911
2912                         Logger::info('found photo', ['image' => $image]);
2913
2914                         if (stristr($image, $site . '/photo/')) {
2915                                 // Only embed locally hosted photos
2916                                 $replace = false;
2917                                 $i = basename($image);
2918                                 $i = str_replace(['.jpg', '.png', '.gif'], ['', '', ''], $i);
2919                                 $x = strpos($i, '-');
2920
2921                                 if ($x) {
2922                                         $res = substr($i, $x + 1);
2923                                         $i = substr($i, 0, $x);
2924                                         $photo = Photo::getPhotoForUser($uid, $i, $res);
2925                                         if (DBA::isResult($photo)) {
2926                                                 /*
2927                                                  * Check to see if we should replace this photo link with an embedded image
2928                                                  * 1. No need to do so if the photo is public
2929                                                  * 2. If there's a contact-id provided, see if they're in the access list
2930                                                  *    for the photo. If so, embed it.
2931                                                  * 3. Otherwise, if we have an item, see if the item permissions match the photo
2932                                                  *    permissions, regardless of order but first check to see if they're an exact
2933                                                  *    match to save some processing overhead.
2934                                                  */
2935                                                 if (self::hasPermissions($photo)) {
2936                                                         if ($cid) {
2937                                                                 $recips = self::enumeratePermissions($photo);
2938                                                                 if (in_array($cid, $recips)) {
2939                                                                         $replace = true;
2940                                                                 }
2941                                                         } elseif ($item) {
2942                                                                 if (self::samePermissions($uid, $item, $photo)) {
2943                                                                         $replace = true;
2944                                                                 }
2945                                                         }
2946                                                 }
2947                                                 if ($replace) {
2948                                                         $photo_img = Photo::getImageForPhoto($photo);
2949                                                         // If a custom width and height were specified, apply before embedding
2950                                                         if (preg_match("/\[img\=([0-9]*)x([0-9]*)\]/is", substr($orig_body, $img_start, $img_st_close), $match)) {
2951                                                                 Logger::info('scaling photo');
2952
2953                                                                 $width = intval($match[1]);
2954                                                                 $height = intval($match[2]);
2955
2956                                                                 $photo_img->scaleDown(max($width, $height));
2957                                                         }
2958
2959                                                         $data = $photo_img->asString();
2960                                                         $type = $photo_img->getType();
2961
2962                                                         Logger::info('replacing photo');
2963                                                         $image = 'data:' . $type . ';base64,' . base64_encode($data);
2964                                                         Logger::debug('replaced', ['image' => $image]);
2965                                                 }
2966                                         }
2967                                 }
2968                         }
2969
2970                         $new_body = $new_body . substr($orig_body, 0, $img_start + $img_st_close) . $image . '[/img]';
2971                         $orig_body = substr($orig_body, $img_start + $img_st_close + $img_len + strlen('[/img]'));
2972                         if ($orig_body === false) {
2973                                 $orig_body = '';
2974                         }
2975
2976                         $img_start = strpos($orig_body, '[img');
2977                         $img_st_close = ($img_start !== false ? strpos(substr($orig_body, $img_start), ']') : false);
2978                         $img_len = ($img_start !== false ? strpos(substr($orig_body, $img_start + $img_st_close + 1), '[/img]') : false);
2979                 }
2980
2981                 $new_body = $new_body . $orig_body;
2982
2983                 return $new_body;
2984         }
2985
2986         private static function hasPermissions($obj)
2987         {
2988                 return !empty($obj['allow_cid']) || !empty($obj['allow_gid']) ||
2989                         !empty($obj['deny_cid']) || !empty($obj['deny_gid']);
2990         }
2991
2992         private static function samePermissions($uid, $obj1, $obj2)
2993         {
2994                 // first part is easy. Check that these are exactly the same.
2995                 if (($obj1['allow_cid'] == $obj2['allow_cid'])
2996                         && ($obj1['allow_gid'] == $obj2['allow_gid'])
2997                         && ($obj1['deny_cid'] == $obj2['deny_cid'])
2998                         && ($obj1['deny_gid'] == $obj2['deny_gid'])) {
2999                         return true;
3000                 }
3001
3002                 // This is harder. Parse all the permissions and compare the resulting set.
3003                 $recipients1 = self::enumeratePermissions($obj1);
3004                 $recipients2 = self::enumeratePermissions($obj2);
3005                 sort($recipients1);
3006                 sort($recipients2);
3007
3008                 /// @TODO Comparison of arrays, maybe use array_diff_assoc() here?
3009                 return ($recipients1 == $recipients2);
3010         }
3011
3012         /**
3013          * Returns an array of contact-ids that are allowed to see this object
3014          *
3015          * @param array $obj        Item array with at least uid, allow_cid, allow_gid, deny_cid and deny_gid
3016          * @param bool  $check_dead Prunes unavailable contacts from the result
3017          * @return array
3018          * @throws \Exception
3019          */
3020         public static function enumeratePermissions(array $obj, bool $check_dead = false)
3021         {
3022                 $aclFormater = DI::aclFormatter();
3023
3024                 $allow_people = $aclFormater->expand($obj['allow_cid']);
3025                 $allow_groups = Group::expand($obj['uid'], $aclFormater->expand($obj['allow_gid']), $check_dead);
3026                 $deny_people  = $aclFormater->expand($obj['deny_cid']);
3027                 $deny_groups  = Group::expand($obj['uid'], $aclFormater->expand($obj['deny_gid']), $check_dead);
3028                 $recipients   = array_unique(array_merge($allow_people, $allow_groups));
3029                 $deny         = array_unique(array_merge($deny_people, $deny_groups));
3030                 $recipients   = array_diff($recipients, $deny);
3031                 return $recipients;
3032         }
3033
3034         public static function expire($uid, $days, $network = "", $force = false)
3035         {
3036                 if (!$uid || ($days < 1)) {
3037                         return;
3038                 }
3039
3040                 $condition = ["`uid` = ? AND NOT `deleted` AND `gravity` = ?",
3041                         $uid, GRAVITY_PARENT];
3042
3043                 /*
3044                  * $expire_network_only = save your own wall posts
3045                  * and just expire conversations started by others
3046                  */
3047                 $expire_network_only = DI::pConfig()->get($uid, 'expire', 'network_only', false);
3048
3049                 if ($expire_network_only) {
3050                         $condition[0] .= " AND NOT `wall`";
3051                 }
3052
3053                 if ($network != "") {
3054                         $condition[0] .= " AND `network` = ?";
3055                         $condition[] = $network;
3056                 }
3057
3058                 $condition[0] .= " AND `received` < UTC_TIMESTAMP() - INTERVAL ? DAY";
3059                 $condition[] = $days;
3060
3061                 $items = self::select(['file', 'resource-id', 'starred', 'type', 'id', 'post-type'], $condition);
3062
3063                 if (!DBA::isResult($items)) {
3064                         return;
3065                 }
3066
3067                 $expire_items = DI::pConfig()->get($uid, 'expire', 'items', true);
3068
3069                 // Forcing expiring of items - but not notes and marked items
3070                 if ($force) {
3071                         $expire_items = true;
3072                 }
3073
3074                 $expire_notes = DI::pConfig()->get($uid, 'expire', 'notes', true);
3075                 $expire_starred = DI::pConfig()->get($uid, 'expire', 'starred', true);
3076                 $expire_photos = DI::pConfig()->get($uid, 'expire', 'photos', false);
3077
3078                 $expired = 0;
3079
3080                 while ($item = Item::fetch($items)) {
3081                         // don't expire filed items
3082
3083                         if (strpos($item['file'], '[') !== false) {
3084                                 continue;
3085                         }
3086
3087                         // Only expire posts, not photos and photo comments
3088
3089                         if (!$expire_photos && strlen($item['resource-id'])) {
3090                                 continue;
3091                         } elseif (!$expire_starred && intval($item['starred'])) {
3092                                 continue;
3093                         } elseif (!$expire_notes && (($item['type'] == 'note') || ($item['post-type'] == Item::PT_PERSONAL_NOTE))) {
3094                                 continue;
3095                         } elseif (!$expire_items && ($item['type'] != 'note') && ($item['post-type'] != Item::PT_PERSONAL_NOTE)) {
3096                                 continue;
3097                         }
3098
3099                         self::markForDeletionById($item['id'], PRIORITY_LOW);
3100
3101                         ++$expired;
3102                 }
3103                 DBA::close($items);
3104                 Logger::log('User ' . $uid . ": expired $expired items; expire items: $expire_items, expire notes: $expire_notes, expire starred: $expire_starred, expire photos: $expire_photos");
3105         }
3106
3107         public static function firstPostDate($uid, $wall = false)
3108         {
3109                 $condition = ['uid' => $uid, 'wall' => $wall, 'deleted' => false, 'visible' => true, 'moderated' => false];
3110                 $params = ['order' => ['received' => false]];
3111                 $thread = DBA::selectFirst('thread', ['received'], $condition, $params);
3112                 if (DBA::isResult($thread)) {
3113                         return substr(DateTimeFormat::local($thread['received']), 0, 10);
3114                 }
3115                 return false;
3116         }
3117
3118         /**
3119          * add/remove activity to an item
3120          *
3121          * Toggle activities as like,dislike,attend of an item
3122          *
3123          * @param int $item_id
3124          * @param string $verb
3125          *            Activity verb. One of
3126          *            like, unlike, dislike, undislike, attendyes, unattendyes,
3127          *            attendno, unattendno, attendmaybe, unattendmaybe,
3128          *            announce, unannouce
3129          * @return bool
3130          * @throws \Friendica\Network\HTTPException\InternalServerErrorException
3131          * @throws \ImagickException
3132          * @hook  'post_local_end'
3133          *            array $arr
3134          *            'post_id' => ID of posted item
3135          */
3136         public static function performActivity(int $item_id, string $verb, int $uid)
3137         {
3138                 if (empty($uid)) {
3139                         return false;
3140                 }
3141
3142                 Logger::notice('Start create activity', ['verb' => $verb, 'item' => $item_id, 'user' => $uid]);
3143
3144                 $item = self::selectFirst(self::ITEM_FIELDLIST, ['id' => $item_id]);
3145                 if (!DBA::isResult($item)) {
3146                         Logger::log('like: unknown item ' . $item_id);
3147                         return false;
3148                 }
3149
3150                 $item_uri = $item['uri'];
3151
3152                 if (!in_array($item['uid'], [0, $uid])) {
3153                         return false;
3154                 }
3155
3156                 if (!Item::exists(['uri-id' => $item['parent-uri-id'], 'uid' => $uid])) {
3157                         $stored = self::storeForUserByUriId($item['parent-uri-id'], $uid);
3158                         if (($item['parent-uri-id'] == $item['uri-id']) && !empty($stored)) {
3159                                 $item = self::selectFirst(self::ITEM_FIELDLIST, ['id' => $stored]);
3160                                 if (!DBA::isResult($item)) {
3161                                         Logger::info('Could not fetch just created item - should not happen', ['stored' => $stored, 'uid' => $uid, 'item-uri' => $item_uri]);
3162                                         return false;
3163                                 }
3164                         }
3165                 }
3166
3167                 // Retrieves the local post owner
3168                 $owner = User::getOwnerDataById($uid);
3169                 if (empty($owner)) {
3170                         Logger::info('Empty owner for user', ['uid' => $uid]);
3171                         return false;
3172                 }
3173
3174                 // Retrieve the current logged in user's public contact
3175                 $author_id = Contact::getIdForURL($owner['url']);
3176                 if (empty($author_id)) {
3177                         Logger::info('Empty public contact');
3178                         return false;
3179                 }
3180
3181                 $activity = null;
3182                 switch ($verb) {
3183                         case 'like':
3184                         case 'unlike':
3185                                 $activity = Activity::LIKE;
3186                                 break;
3187                         case 'dislike':
3188                         case 'undislike':
3189                                 $activity = Activity::DISLIKE;
3190                                 break;
3191                         case 'attendyes':
3192                         case 'unattendyes':
3193                                 $activity = Activity::ATTEND;
3194                                 break;
3195                         case 'attendno':
3196                         case 'unattendno':
3197                                 $activity = Activity::ATTENDNO;
3198                                 break;
3199                         case 'attendmaybe':
3200                         case 'unattendmaybe':
3201                                 $activity = Activity::ATTENDMAYBE;
3202                                 break;
3203                         case 'follow':
3204                         case 'unfollow':
3205                                 $activity = Activity::FOLLOW;
3206                                 break;
3207                         case 'announce':
3208                         case 'unannounce':
3209                                 $activity = Activity::ANNOUNCE;
3210                                 break;
3211                         default:
3212                                 Logger::notice('unknown verb', ['verb' => $verb, 'item' => $item_id]);
3213                                 return false;
3214                 }
3215
3216                 $mode = Strings::startsWith($verb, 'un') ? 'delete' : 'create';
3217
3218                 // Enable activity toggling instead of on/off
3219                 $event_verb_flag = $activity === Activity::ATTEND || $activity === Activity::ATTENDNO || $activity === Activity::ATTENDMAYBE;
3220
3221                 // Look for an existing verb row
3222                 // Event participation activities are mutually exclusive, only one of them can exist at all times.
3223                 if ($event_verb_flag) {
3224                         $verbs = [Activity::ATTEND, Activity::ATTENDNO, Activity::ATTENDMAYBE];
3225
3226                         // Translate to the index based activity index
3227                         $vids = [];
3228                         foreach ($verbs as $verb) {
3229                                 $vids[] = Verb::getID($verb);
3230                         }
3231                 } else {
3232                         $vids = Verb::getID($activity);
3233                 }
3234
3235                 $condition = ['vid' => $vids, 'deleted' => false, 'gravity' => GRAVITY_ACTIVITY,
3236                         'author-id' => $author_id, 'uid' => $item['uid'], 'thr-parent' => $item_uri];
3237                 $like_item = self::selectFirst(['id', 'guid', 'verb'], $condition);
3238
3239                 if (DBA::isResult($like_item)) {
3240                         /**
3241                          * Truth table for existing activities
3242                          *
3243                          * |          Inputs            ||      Outputs      |
3244                          * |----------------------------||-------------------|
3245                          * |  Mode  | Event | Same verb || Delete? | Return? |
3246                          * |--------|-------|-----------||---------|---------|
3247                          * | create |  Yes  |    Yes    ||   No    |   Yes   |
3248                          * | create |  Yes  |    No     ||   Yes   |   No    |
3249                          * | create |  No   |    Yes    ||   No    |   Yes   |
3250                          * | create |  No   |    No     ||        N/A†       |
3251                          * | delete |  Yes  |    Yes    ||   Yes   |   N/A‡  |
3252                          * | delete |  Yes  |    No     ||   No    |   N/A‡  |
3253                          * | delete |  No   |    Yes    ||   Yes   |   N/A‡  |
3254                          * | delete |  No   |    No     ||        N/A†       |
3255                          * |--------|-------|-----------||---------|---------|
3256                          * |   A    |   B   |     C     || A xor C | !B or C |
3257                          *
3258                          * â€  Can't happen: It's impossible to find an existing non-event activity without
3259                          *                 the same verb because we are only looking for this single verb.
3260                          *
3261                          * â€¡ The "mode = delete" is returning early whether an existing activity was found or not.
3262                          */
3263                         if ($mode == 'create' xor $like_item['verb'] == $activity) {
3264                                 self::markForDeletionById($like_item['id']);
3265                         }
3266
3267                         if (!$event_verb_flag || $like_item['verb'] == $activity) {
3268                                 return true;
3269                         }
3270                 }
3271
3272                 // No need to go further if we aren't creating anything
3273                 if ($mode == 'delete') {
3274                         return true;
3275                 }
3276
3277                 $objtype = $item['resource-id'] ? Activity\ObjectType::IMAGE : Activity\ObjectType::NOTE;
3278
3279                 $new_item = [
3280                         'guid'          => System::createUUID(),
3281                         'uri'           => self::newURI($item['uid']),
3282                         'uid'           => $item['uid'],
3283                         'contact-id'    => $owner['id'],
3284                         'wall'          => $item['wall'],
3285                         'origin'        => 1,
3286                         'network'       => Protocol::DFRN,
3287                         'gravity'       => GRAVITY_ACTIVITY,
3288                         'parent'        => $item['id'],
3289                         'thr-parent'    => $item['uri'],
3290                         'owner-id'      => $author_id,
3291                         'author-id'     => $author_id,
3292                         'body'          => $activity,
3293                         'verb'          => $activity,
3294                         'object-type'   => $objtype,
3295                         'allow_cid'     => $item['allow_cid'],
3296                         'allow_gid'     => $item['allow_gid'],
3297                         'deny_cid'      => $item['deny_cid'],
3298                         'deny_gid'      => $item['deny_gid'],
3299                         'visible'       => 1,
3300                         'unseen'        => 1,
3301                 ];
3302
3303                 $signed = Diaspora::createLikeSignature($uid, $new_item);
3304                 if (!empty($signed)) {
3305                         $new_item['diaspora_signed_text'] = json_encode($signed);
3306                 }
3307
3308                 $new_item_id = self::insert($new_item);
3309
3310                 // If the parent item isn't visible then set it to visible
3311                 if (!$item['visible']) {
3312                         self::update(['visible' => true], ['id' => $item['id']]);
3313                 }
3314
3315                 $new_item['id'] = $new_item_id;
3316
3317                 Hook::callAll('post_local_end', $new_item);
3318
3319                 return true;
3320         }
3321
3322         private static function addThread($itemid, $onlyshadow = false)
3323         {
3324                 $fields = ['uid', 'created', 'edited', 'commented', 'received', 'changed', 'wall', 'private', 'pubmail',
3325                         'moderated', 'visible', 'starred', 'contact-id', 'post-type', 'uri-id',
3326                         'deleted', 'origin', 'forum_mode', 'mention', 'network', 'author-id', 'owner-id'];
3327                 $condition = ["`id` = ? AND (`parent` = ? OR `parent` = 0)", $itemid, $itemid];
3328                 $item = self::selectFirst($fields, $condition);
3329
3330                 if (!DBA::isResult($item)) {
3331                         return;
3332                 }
3333
3334                 $item['iid'] = $itemid;
3335
3336                 if (!$onlyshadow) {
3337                         $result = DBA::replace('thread', $item);
3338
3339                         Logger::info('Add thread', ['item' => $itemid, 'result' => $result]);
3340                 }
3341         }
3342
3343         private static function updateThread($itemid, $setmention = false)
3344         {
3345                 $fields = ['uid', 'guid', 'created', 'edited', 'commented', 'received', 'changed', 'post-type',
3346                         'wall', 'private', 'pubmail', 'moderated', 'visible', 'starred', 'contact-id', 'uri-id',
3347                         'deleted', 'origin', 'forum_mode', 'network', 'author-id', 'owner-id'];
3348
3349                 $item = self::selectFirst($fields, ['id' => $itemid, 'gravity' => GRAVITY_PARENT]);
3350                 if (!DBA::isResult($item)) {
3351                         return;
3352                 }
3353
3354                 if ($setmention) {
3355                         $item["mention"] = 1;
3356                 }
3357
3358                 $fields = [];
3359
3360                 foreach ($item as $field => $data) {
3361                         if (!in_array($field, ["guid"])) {
3362                                 $fields[$field] = $data;
3363                         }
3364                 }
3365
3366                 $result = DBA::update('thread', $fields, ['iid' => $itemid]);
3367
3368                 Logger::info('Update thread', ['item' => $itemid, 'guid' => $item["guid"], 'result' => $result]);
3369         }
3370
3371         private static function deleteThread($itemid, $itemuri = "")
3372         {
3373                 $item = DBA::selectFirst('thread', ['uid'], ['iid' => $itemid]);
3374                 if (!DBA::isResult($item)) {
3375                         Logger::info('No thread found', ['id' => $itemid]);
3376                         return;
3377                 }
3378
3379                 $result = DBA::delete('thread', ['iid' => $itemid], ['cascade' => false]);
3380
3381                 Logger::info('Deleted thread', ['item' => $itemid, 'result' => $result]);
3382
3383                 if ($itemuri != "") {
3384                         $condition = ["`uri` = ? AND NOT `deleted` AND NOT (`uid` IN (?, 0))", $itemuri, $item["uid"]];
3385                         if (!self::exists($condition)) {
3386                                 DBA::delete('item', ['uri' => $itemuri, 'uid' => 0]);
3387                                 Logger::debug('Deleted shadow item', ['id' => $itemid, 'uri' => $itemuri]);
3388                         }
3389                 }
3390         }
3391
3392         /**
3393          * Fetch the SQL condition for the given user id
3394          *
3395          * @param integer $owner_id User ID for which the permissions should be fetched
3396          * @return array condition
3397          */
3398         public static function getPermissionsConditionArrayByUserId(int $owner_id)
3399         {
3400                 $local_user = local_user();
3401                 $remote_user = Session::getRemoteContactID($owner_id);
3402
3403                 // default permissions - anonymous user
3404                 $condition = ["`private` != ?", self::PRIVATE];
3405
3406                 if ($local_user && ($local_user == $owner_id)) {
3407                         // Profile owner - everything is visible
3408                         $condition = [];
3409                 } elseif ($remote_user) {
3410                          // Authenticated visitor - fetch the matching permissionsets
3411                         $set = PermissionSet::get($owner_id, $remote_user);
3412                         if (!empty($set)) {
3413                                 $condition = ["(`private` != ? OR (`private` = ? AND `wall`
3414                                         AND `psid` IN (" . implode(', ', array_fill(0, count($set), '?')) . ")))",
3415                                         Item::PRIVATE, Item::PRIVATE];
3416                                 $condition = array_merge($condition, $set);
3417                         }
3418                 }
3419
3420                 return $condition;
3421         }
3422
3423         public static function getPermissionsSQLByUserId($owner_id)
3424         {
3425                 $local_user = local_user();
3426                 $remote_user = Session::getRemoteContactID($owner_id);
3427
3428                 /*
3429                  * Construct permissions
3430                  *
3431                  * default permissions - anonymous user
3432                  */
3433                 $sql = sprintf(" AND `item`.`private` != %d", self::PRIVATE);
3434
3435                 // Profile owner - everything is visible
3436                 if ($local_user && ($local_user == $owner_id)) {
3437                         $sql = '';
3438                 } elseif ($remote_user) {
3439                         /*
3440                          * Authenticated visitor. Unless pre-verified,
3441                          * check that the contact belongs to this $owner_id
3442                          * and load the groups the visitor belongs to.
3443                          * If pre-verified, the caller is expected to have already
3444                          * done this and passed the groups into this function.
3445                          */
3446                         $set = PermissionSet::get($owner_id, $remote_user);
3447
3448                         if (!empty($set)) {
3449                                 $sql_set = sprintf(" OR (`item`.`private` = %d AND `item`.`wall` AND `item`.`psid` IN (", self::PRIVATE) . implode(',', $set) . "))";
3450                         } else {
3451                                 $sql_set = '';
3452                         }
3453
3454                         $sql = sprintf(" AND (`item`.`private` != %d", self::PRIVATE) . $sql_set . ")";
3455                 }
3456
3457                 return $sql;
3458         }
3459
3460         /**
3461          * get translated item type
3462          *
3463          * @param $item
3464          * @return string
3465          */
3466         public static function postType($item)
3467         {
3468                 if (!empty($item['event-id'])) {
3469                         return DI::l10n()->t('event');
3470                 } elseif (!empty($item['resource-id'])) {
3471                         return DI::l10n()->t('photo');
3472                 } elseif ($item['gravity'] == GRAVITY_ACTIVITY) {
3473                         return DI::l10n()->t('activity');
3474                 } elseif ($item['gravity'] == GRAVITY_COMMENT) {
3475                         return DI::l10n()->t('comment');
3476                 }
3477
3478                 return DI::l10n()->t('post');
3479         }
3480
3481         /**
3482          * Sets the "rendered-html" field of the provided item
3483          *
3484          * Body is preserved to avoid side-effects as we modify it just-in-time for spoilers and private image links
3485          *
3486          * @param array $item
3487          * @param bool  $update
3488          *
3489          * @throws \Friendica\Network\HTTPException\InternalServerErrorException
3490          * @todo Remove reference, simply return "rendered-html" and "rendered-hash"
3491          */
3492         public static function putInCache(&$item, $update = false)
3493         {
3494                 $body = $item["body"];
3495
3496                 $rendered_hash = $item['rendered-hash'] ?? '';
3497                 $rendered_html = $item['rendered-html'] ?? '';
3498
3499                 if ($rendered_hash == ''
3500                         || $rendered_html == ""
3501                         || $rendered_hash != hash("md5", $item["body"])
3502                         || DI::config()->get("system", "ignore_cache")
3503                 ) {
3504                         self::addRedirToImageTags($item);
3505
3506                         $item["rendered-html"] = BBCode::convert($item["body"]);
3507                         $item["rendered-hash"] = hash("md5", $item["body"]);
3508
3509                         $hook_data = ['item' => $item, 'rendered-html' => $item['rendered-html'], 'rendered-hash' => $item['rendered-hash']];
3510                         Hook::callAll('put_item_in_cache', $hook_data);
3511                         $item['rendered-html'] = $hook_data['rendered-html'];
3512                         $item['rendered-hash'] = $hook_data['rendered-hash'];
3513                         unset($hook_data);
3514
3515                         // Force an update if the generated values differ from the existing ones
3516                         if ($rendered_hash != $item["rendered-hash"]) {
3517                                 $update = true;
3518                         }
3519
3520                         // Only compare the HTML when we forcefully ignore the cache
3521                         if (DI::config()->get("system", "ignore_cache") && ($rendered_html != $item["rendered-html"])) {
3522                                 $update = true;
3523                         }
3524
3525                         if ($update && !empty($item["id"])) {
3526                                 self::update(
3527                                         [
3528                                                 'rendered-html' => $item["rendered-html"],
3529                                                 'rendered-hash' => $item["rendered-hash"]
3530                                         ],
3531                                         ['id' => $item["id"]]
3532                                 );
3533                         }
3534                 }
3535
3536                 $item["body"] = $body;
3537         }
3538
3539         /**
3540          * Find any non-embedded images in private items and add redir links to them
3541          *
3542          * @param array &$item The field array of an item row
3543          */
3544         private static function addRedirToImageTags(array &$item)
3545         {
3546                 $app = DI::app();
3547
3548                 $matches = [];
3549                 $cnt = preg_match_all('|\[img\](http[^\[]*?/photo/[a-fA-F0-9]+?(-[0-9]\.[\w]+?)?)\[\/img\]|', $item['body'], $matches, PREG_SET_ORDER);
3550                 if ($cnt) {
3551                         foreach ($matches as $mtch) {
3552                                 if (strpos($mtch[1], '/redir') !== false) {
3553                                         continue;
3554                                 }
3555
3556                                 if ((local_user() == $item['uid']) && ($item['private'] == self::PRIVATE) && ($item['contact-id'] != $app->contact['id']) && ($item['network'] == Protocol::DFRN)) {
3557                                         $img_url = 'redir/' . $item['contact-id'] . '?url=' . urlencode($mtch[1]);
3558                                         $item['body'] = str_replace($mtch[0], '[img]' . $img_url . '[/img]', $item['body']);
3559                                 }
3560                         }
3561                 }
3562         }
3563
3564         /**
3565          * Given an item array, convert the body element from bbcode to html and add smilie icons.
3566          * If attach is true, also add icons for item attachments.
3567          *
3568          * @param array   $item
3569          * @param boolean $attach
3570          * @param boolean $is_preview
3571          * @return string item body html
3572          * @throws \Friendica\Network\HTTPException\InternalServerErrorException
3573          * @throws \ImagickException
3574          * @hook  prepare_body_init item array before any work
3575          * @hook  prepare_body_content_filter ('item'=>item array, 'filter_reasons'=>string array) before first bbcode to html
3576          * @hook  prepare_body ('item'=>item array, 'html'=>body string, 'is_preview'=>boolean, 'filter_reasons'=>string array) after first bbcode to html
3577          * @hook  prepare_body_final ('item'=>item array, 'html'=>body string) after attach icons and blockquote special case handling (spoiler, author)
3578          */
3579         public static function prepareBody(array &$item, $attach = false, $is_preview = false)
3580         {
3581                 $a = DI::app();
3582                 Hook::callAll('prepare_body_init', $item);
3583
3584                 // In order to provide theme developers more possibilities, event items
3585                 // are treated differently.
3586                 if ($item['object-type'] === Activity\ObjectType::EVENT && isset($item['event-id'])) {
3587                         $ev = Event::getItemHTML($item);
3588                         return $ev;
3589                 }
3590
3591                 $tags = Tag::populateFromItem($item);
3592
3593                 $item['tags'] = $tags['tags'];
3594                 $item['hashtags'] = $tags['hashtags'];
3595                 $item['mentions'] = $tags['mentions'];
3596
3597                 // Compile eventual content filter reasons
3598                 $filter_reasons = [];
3599                 if (!$is_preview && public_contact() != $item['author-id']) {
3600                         if (!empty($item['content-warning']) && (!local_user() || !DI::pConfig()->get(local_user(), 'system', 'disable_cw', false))) {
3601                                 $filter_reasons[] = DI::l10n()->t('Content warning: %s', $item['content-warning']);
3602                         }
3603
3604                         $hook_data = [
3605                                 'item' => $item,
3606                                 'filter_reasons' => $filter_reasons
3607                         ];
3608                         Hook::callAll('prepare_body_content_filter', $hook_data);
3609                         $filter_reasons = $hook_data['filter_reasons'];
3610                         unset($hook_data);
3611                 }
3612
3613                 // Update the cached values if there is no "zrl=..." on the links.
3614                 $update = (!Session::isAuthenticated() && ($item["uid"] == 0));
3615
3616                 // Or update it if the current viewer is the intented viewer.
3617                 if (($item["uid"] == local_user()) && ($item["uid"] != 0)) {
3618                         $update = true;
3619                 }
3620
3621                 self::putInCache($item, $update);
3622                 $s = $item["rendered-html"];
3623
3624                 $hook_data = [
3625                         'item' => $item,
3626                         'html' => $s,
3627                         'preview' => $is_preview,
3628                         'filter_reasons' => $filter_reasons
3629                 ];
3630                 Hook::callAll('prepare_body', $hook_data);
3631                 $s = $hook_data['html'];
3632                 unset($hook_data);
3633
3634                 if (!$attach) {
3635                         // Replace the blockquotes with quotes that are used in mails.
3636                         $mailquote = '<blockquote type="cite" class="gmail_quote" style="margin:0 0 0 .8ex;border-left:1px #ccc solid;padding-left:1ex;">';
3637                         $s = str_replace(['<blockquote>', '<blockquote class="spoiler">', '<blockquote class="author">'], [$mailquote, $mailquote, $mailquote], $s);
3638                         return $s;
3639                 }
3640
3641                 $as = '';
3642                 $vhead = false;
3643                 foreach (Post\Media::getByURIId($item['uri-id'], [Post\Media::DOCUMENT, Post\Media::TORRENT, Post\Media::UNKNOWN]) as $attachment) {
3644                         $mime = $attachment['mimetype'];
3645
3646                         $the_url = Contact::magicLinkById($item['author-id'], $attachment['url']);
3647
3648                         if (strpos($mime, 'video') !== false) {
3649                                 if (!$vhead) {
3650                                         $vhead = true;
3651                                         DI::page()['htmlhead'] .= Renderer::replaceMacros(Renderer::getMarkupTemplate('videos_head.tpl'));
3652                                 }
3653
3654                                 $as .= Renderer::replaceMacros(Renderer::getMarkupTemplate('video_top.tpl'), [
3655                                         '$video' => [
3656                                                 'id'     => $item['author-id'],
3657                                                 'title'  => DI::l10n()->t('View Video'),
3658                                                 'src'    => $the_url,
3659                                                 'mime'   => $mime,
3660                                         ],
3661                                 ]);
3662                         }
3663
3664                         $filetype = strtolower(substr($mime, 0, strpos($mime, '/')));
3665                         if ($filetype) {
3666                                 $filesubtype = strtolower(substr($mime, strpos($mime, '/') + 1));
3667                                 $filesubtype = str_replace('.', '-', $filesubtype);
3668                         } else {
3669                                 $filetype = 'unkn';
3670                                 $filesubtype = 'unkn';
3671                         }
3672
3673                         $title = Strings::escapeHtml(trim(($attachment['description'] ?? '') ?: $attachment['url']));
3674                         $title .= ' ' . ($attachment['size'] ?? 0) . ' ' . DI::l10n()->t('bytes');
3675
3676                         $icon = '<div class="attachtype icon s22 type-' . $filetype . ' subtype-' . $filesubtype . '"></div>';
3677                         $as .= '<a href="' . strip_tags($the_url) . '" title="' . $title . '" class="attachlink" target="_blank" rel="noopener noreferrer" >' . $icon . '</a>';
3678                 }
3679
3680                 if ($as != '') {
3681                         $s .= '<div class="body-attach">'.$as.'<div class="clear"></div></div>';
3682                 }
3683
3684                 // Map.
3685                 if (strpos($s, '<div class="map">') !== false && !empty($item['coord'])) {
3686                         $x = Map::byCoordinates(trim($item['coord']));
3687                         if ($x) {
3688                                 $s = preg_replace('/\<div class\=\"map\"\>/', '$0' . $x, $s);
3689                         }
3690                 }
3691
3692                 // Replace friendica image url size with theme preference.
3693                 if (!empty($a->theme_info['item_image_size'])) {
3694                         $ps = $a->theme_info['item_image_size'];
3695                         $s = preg_replace('|(<img[^>]+src="[^"]+/photo/[0-9a-f]+)-[0-9]|', "$1-" . $ps, $s);
3696                 }
3697
3698                 $s = HTML::applyContentFilter($s, $filter_reasons);
3699
3700                 $hook_data = ['item' => $item, 'html' => $s];
3701                 Hook::callAll('prepare_body_final', $hook_data);
3702
3703                 return $hook_data['html'];
3704         }
3705
3706         /**
3707          * get private link for item
3708          *
3709          * @param array $item
3710          * @return boolean|array False if item has not plink, otherwise array('href'=>plink url, 'title'=>translated title)
3711          * @throws \Exception
3712          */
3713         public static function getPlink($item)
3714         {
3715                 if (local_user()) {
3716                         $ret = [
3717                                 'href' => "display/" . $item['guid'],
3718                                 'orig' => "display/" . $item['guid'],
3719                                 'title' => DI::l10n()->t('View on separate page'),
3720                                 'orig_title' => DI::l10n()->t('view on separate page'),
3721                         ];
3722
3723                         if (!empty($item['plink'])) {
3724                                 $ret["href"] = DI::baseUrl()->remove($item['plink']);
3725                                 $ret["title"] = DI::l10n()->t('link to source');
3726                         }
3727                 } elseif (!empty($item['plink']) && ($item['private'] != self::PRIVATE)) {
3728                         $ret = [
3729                                 'href' => $item['plink'],
3730                                 'orig' => $item['plink'],
3731                                 'title' => DI::l10n()->t('link to source'),
3732                         ];
3733                 } else {
3734                         $ret = [];
3735                 }
3736
3737                 return $ret;
3738         }
3739
3740         /**
3741          * Is the given item array a post that is sent as starting post to a forum?
3742          *
3743          * @param array $item
3744          * @param array $owner
3745          *
3746          * @return boolean "true" when it is a forum post
3747          */
3748         public static function isForumPost(array $item, array $owner = [])
3749         {
3750                 if (empty($owner)) {
3751                         $owner = User::getOwnerDataById($item['uid']);
3752                         if (empty($owner)) {
3753                                 return false;
3754                         }
3755                 }
3756
3757                 if (($item['author-id'] == $item['owner-id']) ||
3758                         ($owner['id'] == $item['contact-id']) ||
3759                         ($item['uri'] != $item['parent-uri']) ||
3760                         $item['origin']) {
3761                         return false;
3762                 }
3763
3764                 return Contact::isForum($item['contact-id']);
3765         }
3766
3767         /**
3768          * Search item id for given URI or plink
3769          *
3770          * @param string $uri
3771          * @param integer $uid
3772          *
3773          * @return integer item id
3774          */
3775         public static function searchByLink($uri, $uid = 0)
3776         {
3777                 $ssl_uri = str_replace('http://', 'https://', $uri);
3778                 $uris = [$uri, $ssl_uri, Strings::normaliseLink($uri)];
3779
3780                 $item = DBA::selectFirst('item', ['id'], ['uri' => $uris, 'uid' => $uid]);
3781                 if (DBA::isResult($item)) {
3782                         return $item['id'];
3783                 }
3784
3785                 $itemcontent = DBA::selectFirst('item-content', ['uri-id'], ['plink' => $uris]);
3786                 if (!DBA::isResult($itemcontent)) {
3787                         return 0;
3788                 }
3789
3790                 $itemuri = DBA::selectFirst('item-uri', ['uri'], ['id' => $itemcontent['uri-id']]);
3791                 if (!DBA::isResult($itemuri)) {
3792                         return 0;
3793                 }
3794
3795                 $item = DBA::selectFirst('item', ['id'], ['uri' => $itemuri['uri'], 'uid' => $uid]);
3796                 if (DBA::isResult($item)) {
3797                         return $item['id'];
3798                 }
3799
3800                 return 0;
3801         }
3802
3803         /**
3804          * Return the URI for a link to the post 
3805          * 
3806          * @param string $uri URI or link to post
3807          *
3808          * @return string URI
3809          */
3810         public static function getURIByLink(string $uri)
3811         {
3812                 $ssl_uri = str_replace('http://', 'https://', $uri);
3813                 $uris = [$uri, $ssl_uri, Strings::normaliseLink($uri)];
3814
3815                 $item = DBA::selectFirst('item', ['uri'], ['uri' => $uris]);
3816                 if (DBA::isResult($item)) {
3817                         return $item['uri'];
3818                 }
3819
3820                 $itemcontent = DBA::selectFirst('item-content', ['uri-id'], ['plink' => $uris]);
3821                 if (!DBA::isResult($itemcontent)) {
3822                         return '';
3823                 }
3824
3825                 $itemuri = DBA::selectFirst('item-uri', ['uri'], ['id' => $itemcontent['uri-id']]);
3826                 if (DBA::isResult($itemuri)) {
3827                         return $itemuri['uri'];
3828                 }
3829
3830                 return '';
3831         }
3832
3833         /**
3834          * Fetches item for given URI or plink
3835          *
3836          * @param string $uri
3837          * @param integer $uid
3838          *
3839          * @return integer item id
3840          */
3841         public static function fetchByLink(string $uri, int $uid = 0)
3842         {
3843                 Logger::info('Trying to fetch link', ['uid' => $uid, 'uri' => $uri]);
3844                 $item_id = self::searchByLink($uri, $uid);
3845                 if (!empty($item_id)) {
3846                         Logger::info('Link found', ['uid' => $uid, 'uri' => $uri, 'id' => $item_id]);
3847                         return $item_id;
3848                 }
3849
3850                 if ($fetched_uri = ActivityPub\Processor::fetchMissingActivity($uri)) {
3851                         $item_id = self::searchByLink($fetched_uri, $uid);
3852                 } else {
3853                         $item_id = Diaspora::fetchByURL($uri);
3854                 }
3855
3856                 if (!empty($item_id)) {
3857                         Logger::info('Link fetched', ['uid' => $uid, 'uri' => $uri, 'id' => $item_id]);
3858                         return $item_id;
3859                 }
3860
3861                 Logger::info('Link not found', ['uid' => $uid, 'uri' => $uri]);
3862                 return 0;
3863         }
3864
3865         /**
3866          * Return share data from an item array (if the item is shared item)
3867          * We are providing the complete Item array, because at some time in the future
3868          * we hopefully will define these values not in the body anymore but in some item fields.
3869          * This function is meant to replace all similar functions in the system.
3870          *
3871          * @param array $item
3872          *
3873          * @return array with share information
3874          */
3875         public static function getShareArray($item)
3876         {
3877                 if (!preg_match("/(.*?)\[share(.*?)\]\s?(.*?)\s?\[\/share\]\s?/ism", $item['body'], $matches)) {
3878                         return [];
3879                 }
3880
3881                 $attribute_string = $matches[2];
3882                 $attributes = ['comment' => trim($matches[1]), 'shared' => trim($matches[3])];
3883                 foreach (['author', 'profile', 'avatar', 'guid', 'posted', 'link'] as $field) {
3884                         if (preg_match("/$field=(['\"])(.+?)\\1/ism", $attribute_string, $matches)) {
3885                                 $attributes[$field] = trim(html_entity_decode($matches[2] ?? '', ENT_QUOTES, 'UTF-8'));
3886                         }
3887                 }
3888                 return $attributes;
3889         }
3890
3891         /**
3892          * Fetch item information for shared items from the original items and adds it.
3893          *
3894          * @param array $item
3895          *
3896          * @return array item array with data from the original item
3897          */
3898         public static function addShareDataFromOriginal(array $item)
3899         {
3900                 $shared = self::getShareArray($item);
3901                 if (empty($shared)) {
3902                         return $item;
3903                 }
3904
3905                 // Real reshares always have got a GUID.
3906                 if (empty($shared['guid'])) {
3907                         return $item;
3908                 }
3909
3910                 $uid = $item['uid'] ?? 0;
3911
3912                 // first try to fetch the item via the GUID. This will work for all reshares that had been created on this system
3913                 $shared_item = self::selectFirst(['title', 'body'], ['guid' => $shared['guid'], 'uid' => [0, $uid]]);
3914                 if (!DBA::isResult($shared_item)) {
3915                         if (empty($shared['link'])) {
3916                                 return $item;
3917                         }
3918
3919                         // Otherwhise try to find (and possibly fetch) the item via the link. This should work for Diaspora and ActivityPub posts
3920                         $id = self::fetchByLink($shared['link'] ?? '', $uid);
3921                         if (empty($id)) {
3922                                 Logger::info('Original item not found', ['url' => $shared['link'] ?? '', 'callstack' => System::callstack()]);
3923                                 return $item;
3924                         }
3925
3926                         $shared_item = self::selectFirst(['title', 'body'], ['id' => $id]);
3927                         if (!DBA::isResult($shared_item)) {
3928                                 return $item;
3929                         }
3930                         Logger::info('Got shared data from url', ['url' => $shared['link'], 'callstack' => System::callstack()]);
3931                 } else {
3932                         Logger::info('Got shared data from guid', ['guid' => $shared['guid'], 'callstack' => System::callstack()]);
3933                 }
3934
3935                 if (!empty($shared_item['title'])) {
3936                         $body = '[h3]' . $shared_item['title'] . "[/h3]\n" . $shared_item['body'];
3937                         unset($shared_item['title']);
3938                 } else {
3939                         $body = $shared_item['body'];
3940                 }
3941
3942                 $item['body'] = preg_replace("/\[share ([^\[\]]*)\].*\[\/share\]/ism", '[share $1]' . $body . '[/share]', $item['body']);
3943                 unset($shared_item['body']);
3944
3945                 return array_merge($item, $shared_item);
3946         }
3947
3948         /**
3949          * Check a prospective item array against user-level permissions
3950          *
3951          * @param array $item Expected keys: uri, gravity, and
3952          *                    author-link if is author-id is set,
3953          *                    owner-link if is owner-id is set,
3954          *                    causer-link if is causer-id is set.
3955          * @param int   $user_id Local user ID
3956          * @return bool
3957          * @throws \Exception
3958          */
3959         protected static function isAllowedByUser(array $item, int $user_id)
3960         {
3961                 if (!empty($item['author-id']) && Contact\User::isBlocked($item['author-id'], $user_id)) {
3962                         Logger::notice('Author is blocked by user', ['author-link' => $item['author-link'], 'uid' => $user_id, 'item-uri' => $item['uri']]);
3963                         return false;
3964                 }
3965
3966                 if (!empty($item['owner-id']) && Contact\User::isBlocked($item['owner-id'], $user_id)) {
3967                         Logger::notice('Owner is blocked by user', ['owner-link' => $item['owner-link'], 'uid' => $user_id, 'item-uri' => $item['uri']]);
3968                         return false;
3969                 }
3970
3971                 // The causer is set during a thread completion, for example because of a reshare. It countains the responsible actor.
3972                 if (!empty($item['causer-id']) && Contact\User::isBlocked($item['causer-id'], $user_id)) {
3973                         Logger::notice('Causer is blocked by user', ['causer-link' => $item['causer-link'], 'uid' => $user_id, 'item-uri' => $item['uri']]);
3974                         return false;
3975                 }
3976
3977                 if (!empty($item['causer-id']) && ($item['gravity'] === GRAVITY_PARENT) && Contact\User::isIgnored($item['causer-id'], $user_id)) {
3978                         Logger::notice('Causer is ignored by user', ['causer-link' => $item['causer-link'], 'uid' => $user_id, 'item-uri' => $item['uri']]);
3979                         return false;
3980                 }
3981
3982                 return true;
3983         }
3984 }