]> git.mxchange.org Git - friendica.git/blob - src/Module/Api/Mastodon/Apps.php
Merge pull request #10251 from nupplaphil/feat/drone_phptest
[friendica.git] / src / Module / Api / Mastodon / Apps.php
1 <?php
2 /**
3  * @copyright Copyright (C) 2010-2021, the Friendica project
4  *
5  * @license GNU AGPL version 3 or any later version
6  *
7  * This program is free software: you can redistribute it and/or modify
8  * it under the terms of the GNU Affero General Public License as
9  * published by the Free Software Foundation, either version 3 of the
10  * License, or (at your option) any later version.
11  *
12  * This program is distributed in the hope that it will be useful,
13  * but WITHOUT ANY WARRANTY; without even the implied warranty of
14  * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
15  * GNU Affero General Public License for more details.
16  *
17  * You should have received a copy of the GNU Affero General Public License
18  * along with this program.  If not, see <https://www.gnu.org/licenses/>.
19  *
20  */
21
22 namespace Friendica\Module\Api\Mastodon;
23
24 use Friendica\Core\System;
25 use Friendica\Database\DBA;
26 use Friendica\DI;
27 use Friendica\Module\BaseApi;
28 use Friendica\Util\Network;
29
30 /**
31  * Apps class to register new OAuth clients
32  */
33 class Apps extends BaseApi
34 {
35         /**
36          * @param array $parameters
37          * @throws \Friendica\Network\HTTPException\InternalServerErrorException
38          */
39         public static function post(array $parameters = [])
40         {
41                 // Workaround for AndStatus, see issue https://github.com/andstatus/andstatus/issues/538
42                 if (empty($_REQUEST['client_name']) || empty($_REQUEST['redirect_uris'])) {
43                         $postdata = Network::postdata();
44                         if (!empty($postdata)) {
45                                 $_REQUEST = json_decode($postdata, true);
46                                 if (empty($_REQUEST)) {
47                                         DI::mstdnError()->UnprocessableEntity(DI::l10n()->t('Missing parameters'));
48                                 }
49                         }
50                 }
51
52                 $name     = $_REQUEST['client_name'] ?? '';
53                 $redirect = $_REQUEST['redirect_uris'] ?? '';
54                 $scopes   = $_REQUEST['scopes'] ?? 'read';
55                 $website  = $_REQUEST['website'] ?? '';
56
57                 if (empty($name) || empty($redirect)) {
58                         DI::mstdnError()->UnprocessableEntity(DI::l10n()->t('Missing parameters'));
59                 }
60
61                 $client_id     = bin2hex(random_bytes(32));
62                 $client_secret = bin2hex(random_bytes(32));
63
64                 $fields = ['client_id' => $client_id, 'client_secret' => $client_secret, 'name' => $name, 'redirect_uri' => $redirect];
65
66                 if (!empty($scopes)) {
67                         $fields['scopes'] = $scopes;
68                 }
69
70                 $fields['read']   = (stripos($scopes, self::SCOPE_READ) !== false);
71                 $fields['write']  = (stripos($scopes, self::SCOPE_WRITE) !== false);
72                 $fields['follow'] = (stripos($scopes, self::SCOPE_FOLLOW) !== false);
73                 $fields['push'] = (stripos($scopes, self::SCOPE_PUSH) !== false);
74
75                 if (!empty($website)) {
76                         $fields['website'] = $website;
77                 }
78
79                 if (!DBA::insert('application', $fields)) {
80                         DI::mstdnError()->InternalError();
81                 }
82
83                 System::jsonExit(DI::mstdnApplication()->createFromApplicationId(DBA::lastInsertId()));
84         }
85 }