]> git.mxchange.org Git - friendica.git/blobdiff - mod/acl.php
New item field "Post-type" and new table "permissionset" (#5408)
[friendica.git] / mod / acl.php
index e325e4668d0ef7385d6b492d4c2bf7967c1445ee..dd5dd90281d0140782d45195dead24039635b8ae 100644 (file)
@@ -4,11 +4,12 @@
 
 use Friendica\App;
 use Friendica\Content\Widget;
+use Friendica\Core\ACL;
 use Friendica\Core\Addon;
 use Friendica\Database\DBM;
 use Friendica\Model\Contact;
+use Friendica\Model\Item;
 
-require_once 'include/acl_selectors.php';
 require_once 'include/dba.php';
 require_once 'mod/proxy.php';
 
@@ -18,21 +19,21 @@ function acl_content(App $a)
                return '';
        }
 
-       $start = defaults($_REQUEST, 'start', 0);
-       $count = defaults($_REQUEST, 'count', 100);
-       $search = defaults($_REQUEST, 'search', '');
-       $type = defaults($_REQUEST, 'type', '');
+       $start   = defaults($_REQUEST, 'start'       , 0);
+       $count   = defaults($_REQUEST, 'count'       , 100);
+       $search  = defaults($_REQUEST, 'search'      , '');
+       $type    = defaults($_REQUEST, 'type'        , '');
        $conv_id = defaults($_REQUEST, 'conversation', null);
 
        // For use with jquery.textcomplete for private mail completion
-       if (x($_REQUEST, 'query')) {
+       if (!empty($_REQUEST['query'])) {
                if (!$type) {
                        $type = 'm';
                }
                $search = $_REQUEST['query'];
        }
 
-       logger('Searching for ' . $search . ' - type ' . $type, LOGGER_DEBUG);
+       logger("Searching for ".$search." - type ".$type." conversation ".$conv_id, LOGGER_DEBUG);
 
        if ($search != '') {
                $sql_extra = "AND `name` LIKE '%%" . dbesc($search) . "%%'";
@@ -43,17 +44,17 @@ function acl_content(App $a)
        }
 
        // count groups and contacts
+       $group_count = 0;
        if ($type == '' || $type == 'g') {
                $r = q("SELECT COUNT(*) AS g FROM `group` WHERE `deleted` = 0 AND `uid` = %d $sql_extra",
                        intval(local_user())
                );
                $group_count = (int) $r[0]['g'];
-       } else {
-               $group_count = 0;
        }
 
        $sql_extra2 .= ' ' . Widget::unavailableNetworks();
 
+       $contact_count = 0;
        if ($type == '' || $type == 'c') {
                // autocomplete for editor mentions
                $r = q("SELECT COUNT(*) AS c FROM `contact`
@@ -95,8 +96,6 @@ function acl_content(App $a)
                        intval(local_user())
                );
                $contact_count = (int) $r[0]['c'];
-       } else {
-               $contact_count = 0;
        }
 
        $tot = $group_count + $contact_count;
@@ -122,12 +121,12 @@ function acl_content(App $a)
 
                foreach ($r as $g) {
                        $groups[] = [
-                               'type' => 'g',
+                               'type'  => 'g',
                                'photo' => 'images/twopeople.png',
-                               'name' => htmlentities($g['name']),
-                               'id' => intval($g['id']),
-                               'uids' => array_map('intval', explode(',', $g['uids'])),
-                               'link' => '',
+                               'name'  => htmlentities($g['name']),
+                               'id'    => intval($g['id']),
+                               'uids'  => array_map('intval', explode(',', $g['uids'])),
+                               'link'  => '',
                                'forum' => '0'
                        ];
                }
@@ -136,64 +135,69 @@ function acl_content(App $a)
                }
        }
 
+       $r = [];
        if ($type == '') {
                $r = q("SELECT `id`, `name`, `nick`, `micro`, `network`, `url`, `attag`, `addr`, `forum`, `prv`, (`prv` OR `forum`) AS `frm` FROM `contact`
-                       WHERE `uid` = %d AND NOT `self` AND NOT `blocked` AND NOT `pending` AND NOT `archive` AND `notify` != ''
-                       AND `success_update` >= `failure_update` AND NOT (`network` IN ('%s', '%s'))
-                       $sql_extra2
-                       ORDER BY `name` ASC ",
+                               WHERE `uid` = %d AND NOT `self` AND NOT `blocked` AND NOT `pending` AND NOT `archive` AND `notify` != ''
+                               AND `success_update` >= `failure_update` AND NOT (`network` IN ('%s', '%s'))
+                               $sql_extra2
+                               ORDER BY `name` ASC ",
                        intval(local_user()),
                        dbesc(NETWORK_OSTATUS),
                        dbesc(NETWORK_STATUSNET)
                );
        } elseif ($type == 'c') {
                $r = q("SELECT `id`, `name`, `nick`, `micro`, `network`, `url`, `attag`, `addr`, `forum`, `prv` FROM `contact`
-                       WHERE `uid` = %d AND NOT `self` AND NOT `blocked` AND NOT `pending` AND NOT `archive` AND `notify` != ''
-                       AND `success_update` >= `failure_update` AND NOT (`network` IN ('%s'))
-                       $sql_extra2
-                       ORDER BY `name` ASC ",
+                               WHERE `uid` = %d AND NOT `self` AND NOT `blocked` AND NOT `pending` AND NOT `archive` AND `notify` != ''
+                               AND `success_update` >= `failure_update` AND NOT (`network` IN ('%s'))
+                               $sql_extra2
+                               ORDER BY `name` ASC ",
                        intval(local_user()),
                        dbesc(NETWORK_STATUSNET)
                );
        } elseif ($type == 'f') {
                $r = q("SELECT `id`, `name`, `nick`, `micro`, `network`, `url`, `attag`, `addr`, `forum`, `prv` FROM `contact`
-                       WHERE `uid` = %d AND NOT `self` AND NOT `blocked` AND NOT `pending` AND NOT `archive` AND `notify` != ''
-                       AND `success_update` >= `failure_update` AND NOT (`network` IN ('%s'))
-                       AND (`forum` OR `prv`)
-                       $sql_extra2
-                       ORDER BY `name` ASC ",
+                               WHERE `uid` = %d AND NOT `self` AND NOT `blocked` AND NOT `pending` AND NOT `archive` AND `notify` != ''
+                               AND `success_update` >= `failure_update` AND NOT (`network` IN ('%s'))
+                               AND (`forum` OR `prv`)
+                               $sql_extra2
+                               ORDER BY `name` ASC ",
                        intval(local_user()),
                        dbesc(NETWORK_STATUSNET)
                );
        } elseif ($type == 'm') {
                $r = q("SELECT `id`, `name`, `nick`, `micro`, `network`, `url`, `attag`, `addr` FROM `contact`
-                       WHERE `uid` = %d AND NOT `self` AND NOT `blocked` AND NOT `pending` AND NOT `archive`
-                       AND `success_update` >= `failure_update` AND `network` IN ('%s', '%s')
-                       $sql_extra2
-                       ORDER BY `name` ASC ",
+                               WHERE `uid` = %d AND NOT `self` AND NOT `blocked` AND NOT `pending` AND NOT `archive`
+                               AND `success_update` >= `failure_update` AND `network` IN ('%s', '%s')
+                               $sql_extra2
+                               ORDER BY `name` ASC ",
                        intval(local_user()),
                        dbesc(NETWORK_DFRN),
                        dbesc(NETWORK_DIASPORA)
                );
        } elseif ($type == 'a') {
                $r = q("SELECT `id`, `name`, `nick`, `micro`, `network`, `url`, `attag`, `addr`, `forum`, `prv` FROM `contact`
-                       WHERE `uid` = %d AND `pending` = 0 AND `success_update` >= `failure_update`
-                       $sql_extra2
-                       ORDER BY `name` ASC ",
+                               WHERE `uid` = %d AND `pending` = 0 AND `success_update` >= `failure_update`
+                               $sql_extra2
+                               ORDER BY `name` ASC ",
                        intval(local_user())
                );
        } elseif ($type == 'x') {
                // autocomplete for global contact search (e.g. navbar search)
-               $r = navbar_complete($a);
+               $search = notags(trim($_REQUEST['search']));
+               $mode = $_REQUEST['smode'];
+
+               $r = ACL::contactAutocomplete($search, $mode);
+
                $contacts = [];
                foreach ($r as $g) {
                        $contacts[] = [
                                'photo'   => proxy_url($g['photo'], false, PROXY_SIZE_MICRO),
                                'name'    => $g['name'],
-                               'nick'    => (x($g['addr']) ? $g['addr'] : $g['url']),
+                               'nick'    => defaults($g, 'addr', $g['url']),
                                'network' => $g['network'],
                                'link'    => $g['url'],
-                               'forum'   => (x($g['community']) ? 1 : 0),
+                               'forum'   => !empty($g['community']) ? 1 : 0,
                        ];
                }
                $o = [
@@ -202,9 +206,7 @@ function acl_content(App $a)
                        'items' => $contacts,
                ];
                echo json_encode($o);
-               killme();
-       } else {
-               $r = [];
+               exit;
        }
 
        if (DBM::is_result($r)) {
@@ -217,9 +219,9 @@ function acl_content(App $a)
                                'id'      => intval($g['id']),
                                'network' => $g['network'],
                                'link'    => $g['url'],
-                               'nick'    => htmlentities(($g['attag']) ? $g['attag'] : $g['nick']),
-                               'addr'    => htmlentities(($g['addr']) ? $g['addr'] : $g['url']),
-                               'forum'   => ((x($g, 'forum') || x($g, 'prv')) ? 1 : 0),
+                               'nick'    => htmlentities(defaults($g, 'attag', $g['nick'])),
+                               'addr'    => htmlentities(defaults($g, 'addr', $g['url'])),
+                               'forum'   => !empty($g['forum']) || !empty($g['prv']) ? 1 : 0,
                        ];
                        if ($entry['forum']) {
                                $forums[] = $entry;
@@ -238,44 +240,50 @@ function acl_content(App $a)
        $items = array_merge($groups, $contacts);
 
        if ($conv_id) {
+               // In multi threaded posts the conv_id is not the parent of the whole thread
+               $parent_item = Item::selectFirst(['parent'], ['id' => $conv_id]);
+               if (DBM::is_result($parent_item)) {
+                       $conv_id = $parent_item['parent'];
+               }
+
                /*
                 * if $conv_id is set, get unknown contacts in thread
                 * but first get known contacts url to filter them out
                 */
                $known_contacts = array_map(function ($i) {
-                       return dbesc($i['link']);
+                       return $i['link'];
                }, $contacts);
 
                $unknown_contacts = [];
-               $r = q("SELECT `author-link`
-                               FROM `item` WHERE `parent` = %d
-                                       AND (`author-name` LIKE '%%%s%%' OR `author-link` LIKE '%%%s%%')
-                                       AND `author-link` NOT IN ('%s')
-                               GROUP BY `author-link`, `author-avatar`, `author-name`
-                               ORDER BY `author-name` ASC
-                               ",
-                       intval($conv_id),
-                       dbesc($search),
-                       dbesc($search),
-                       implode("', '", $known_contacts)
-               );
-               if (DBM::is_result($r)) {
-                       foreach ($r as $row) {
-                               $contact = Contact::getDetailsByURL($row['author-link']);
-
-                               if (count($contact) > 0) {
-                                       $unknown_contacts[] = [
-                                               'type' => 'c',
-                                               'photo' => proxy_url($contact['micro'], false, PROXY_SIZE_MICRO),
-                                               'name' => htmlentities($contact['name']),
-                                               'id' => intval($contact['cid']),
-                                               'network' => $contact['network'],
-                                               'link' => $contact['url'],
-                                               'nick' => htmlentities($contact['nick'] ?: $contact['addr']),
-                                               'addr' => htmlentities(($contact['addr']) ? $contact['addr'] : $contact['url']),
-                                               'forum' => $contact['forum']
-                                       ];
-                               }
+
+               $condition = ["`parent` = ?", $conv_id];
+               $params = ['order' => ['author-name' => true]];
+               $authors = Item::selectForUser(local_user(), ['author-link'], $condition, $params);
+               $item_authors = [];
+               while ($author = Item::fetch($authors)) {
+                       $item_authors[$author['author-link']] = $author['author-link'];
+               }
+               dba::close($authors);
+
+               foreach ($item_authors as $author) {
+                       if (in_array($author, $known_contacts)) {
+                               continue;
+                       }
+
+                       $contact = Contact::getDetailsByURL($author);
+
+                       if (count($contact) > 0) {
+                               $unknown_contacts[] = [
+                                       'type'    => 'c',
+                                       'photo'   => proxy_url($contact['micro'], false, PROXY_SIZE_MICRO),
+                                       'name'    => htmlentities($contact['name']),
+                                       'id'      => intval($contact['cid']),
+                                       'network' => $contact['network'],
+                                       'link'    => $contact['url'],
+                                       'nick'    => htmlentities(defaults($contact, 'nick', $contact['addr'])),
+                                       'addr'    => htmlentities(defaults($contact, 'addr', $contact['url'])),
+                                       'forum'   => $contact['forum']
+                               ];
                        }
                }
 
@@ -297,13 +305,12 @@ function acl_content(App $a)
        Addon::callHooks('acl_lookup_end', $results);
 
        $o = [
-               'tot' => $results['tot'],
+               'tot'   => $results['tot'],
                'start' => $results['start'],
                'count' => $results['count'],
                'items' => $results['items'],
        ];
 
        echo json_encode($o);
-
-       killme();
+       exit;
 }