X-Git-Url: https://git.mxchange.org/?a=blobdiff_plain;f=include%2Fapi.php;h=dd24a92c9b105bf22e2bbc25532fc7f258e24d78;hb=cbe4e2bf8c7b6fea2e700811a15b427e6141c9dd;hp=374a718479345db80f6f0ecdef0d8e9cc7f219a0;hpb=53f3b8ab53f167471a7b0a8390d95438a10d8151;p=friendica.git
diff --git a/include/api.php b/include/api.php
index 374a718479..dd24a92c9b 100644
--- a/include/api.php
+++ b/include/api.php
@@ -7,6 +7,9 @@
require_once("include/conversation.php");
require_once("include/oauth.php");
require_once("include/html2plain.php");
+ require_once("mod/share.php");
+ require_once("include/Photo.php");
+
/*
* Twitter-Like API
*
@@ -96,24 +99,52 @@
}
$user = $_SERVER['PHP_AUTH_USER'];
- $encrypted = hash('whirlpool',trim($_SERVER['PHP_AUTH_PW']));
+ $password = $_SERVER['PHP_AUTH_PW'];
+ $encrypted = hash('whirlpool',trim($password));
+ // allow "user@server" login (but ignore 'server' part)
+ $at=strstr($user, "@", true);
+ if ( $at ) $user=$at;
/**
* next code from mod/auth.php. needs better solution
*/
+ $record = null;
- // process normal login request
-
- $r = q("SELECT * FROM `user` WHERE ( `email` = '%s' OR `nickname` = '%s' )
- AND `password` = '%s' AND `blocked` = 0 AND `account_expired` = 0 AND `account_removed` = 0 AND `verified` = 1 LIMIT 1",
- dbesc(trim($user)),
- dbesc(trim($user)),
- dbesc($encrypted)
+ $addon_auth = array(
+ 'username' => trim($user),
+ 'password' => trim($password),
+ 'authenticated' => 0,
+ 'user_record' => null
);
- if(count($r)){
- $record = $r[0];
- } else {
+
+ /**
+ *
+ * A plugin indicates successful login by setting 'authenticated' to non-zero value and returning a user record
+ * Plugins should never set 'authenticated' except to indicate success - as hooks may be chained
+ * and later plugins should not interfere with an earlier one that succeeded.
+ *
+ */
+
+ call_hooks('authenticate', $addon_auth);
+
+ if(($addon_auth['authenticated']) && (count($addon_auth['user_record']))) {
+ $record = $addon_auth['user_record'];
+ }
+ else {
+ // process normal login request
+
+ $r = q("SELECT * FROM `user` WHERE ( `email` = '%s' OR `nickname` = '%s' )
+ AND `password` = '%s' AND `blocked` = 0 AND `account_expired` = 0 AND `account_removed` = 0 AND `verified` = 1 LIMIT 1",
+ dbesc(trim($user)),
+ dbesc(trim($user)),
+ dbesc($encrypted)
+ );
+ if(count($r))
+ $record = $r[0];
+ }
+
+ if((! $record) || (! count($record))) {
logger('API_login failure: ' . print_r($_SERVER,true), LOGGER_DEBUG);
header('WWW-Authenticate: Basic realm="Friendica"');
header('HTTP/1.0 401 Unauthorized');
@@ -169,7 +200,7 @@
$json = json_encode($rr);
if ($_GET['callback'])
$json = $_GET['callback']."(".$json.")";
- return $json;
+ return $json;
break;
case "rss":
header ("Content-Type: application/rss+xml");
@@ -197,6 +228,7 @@
}
function api_error(&$a, $type, $error) {
+ # TODO: https://dev.twitter.com/overview/api/response-codes
$r = "".$error."".$a->query_string."";
switch($type){
case "xml":
@@ -681,6 +713,7 @@
logger('api_statuses_update: no user');
return false;
}
+
$user_info = api_get_user($a);
// convert $_POST array items to the form we use for web posts.
@@ -706,8 +739,7 @@
$_REQUEST['body'] = html2bbcode($txt);
}
- }
- else
+ } else
$_REQUEST['body'] = requestdata('status');
$_REQUEST['title'] = requestdata('title');
@@ -725,14 +757,85 @@
if($parent)
$_REQUEST['type'] = 'net-comment';
else {
+ // Check for throttling (maximum posts per day, week and month)
+ $throttle_day = get_config('system','throttle_limit_day');
+ if ($throttle_day > 0) {
+ $datefrom = date("Y-m-d H:i:s", time() - 24*60*60);
+
+ $r = q("SELECT COUNT(*) AS `posts_day` FROM `item` WHERE `uid`=%d AND `wall`
+ AND `created` > '%s' AND `id` = `parent`",
+ intval(api_user()), dbesc($datefrom));
+
+ if ($r)
+ $posts_day = $r[0]["posts_day"];
+ else
+ $posts_day = 0;
+
+ if ($posts_day > $throttle_day) {
+ logger('Daily posting limit reached for user '.api_user(), LOGGER_DEBUG);
+ die(api_error($a, $type, sprintf(t("Daily posting limit of %d posts reached. The post was rejected."), $throttle_day)));
+ }
+ }
+
+ $throttle_week = get_config('system','throttle_limit_week');
+ if ($throttle_week > 0) {
+ $datefrom = date("Y-m-d H:i:s", time() - 24*60*60*7);
+
+ $r = q("SELECT COUNT(*) AS `posts_week` FROM `item` WHERE `uid`=%d AND `wall`
+ AND `created` > '%s' AND `id` = `parent`",
+ intval(api_user()), dbesc($datefrom));
+
+ if ($r)
+ $posts_week = $r[0]["posts_week"];
+ else
+ $posts_week = 0;
+
+ if ($posts_week > $throttle_week) {
+ logger('Weekly posting limit reached for user '.api_user(), LOGGER_DEBUG);
+ die(api_error($a, $type, sprintf(t("Weekly posting limit of %d posts reached. The post was rejected."), $throttle_week)));
+ }
+ }
+
+ $throttle_month = get_config('system','throttle_limit_month');
+ if ($throttle_month > 0) {
+ $datefrom = date("Y-m-d H:i:s", time() - 24*60*60*30);
+
+ $r = q("SELECT COUNT(*) AS `posts_month` FROM `item` WHERE `uid`=%d AND `wall`
+ AND `created` > '%s' AND `id` = `parent`",
+ intval(api_user()), dbesc($datefrom));
+
+ if ($r)
+ $posts_month = $r[0]["posts_month"];
+ else
+ $posts_month = 0;
+
+ if ($posts_month > $throttle_month) {
+ logger('Monthly posting limit reached for user '.api_user(), LOGGER_DEBUG);
+ die(api_error($a, $type, sprintf(t("Monthly posting limit of %d posts reached. The post was rejected."), $throttle_month)));
+ }
+ }
+
$_REQUEST['type'] = 'wall';
- if(x($_FILES,'media')) {
- // upload the image if we have one
- $_REQUEST['hush']='yeah'; //tell wall_upload function to return img info instead of echo
- require_once('mod/wall_upload.php');
- $media = wall_upload_post($a);
- if(strlen($media)>0)
- $_REQUEST['body'] .= "\n\n".$media;
+ }
+
+ if(x($_FILES,'media')) {
+ // upload the image if we have one
+ $_REQUEST['hush']='yeah'; //tell wall_upload function to return img info instead of echo
+ require_once('mod/wall_upload.php');
+ $media = wall_upload_post($a);
+ if(strlen($media)>0)
+ $_REQUEST['body'] .= "\n\n".$media;
+ }
+
+ // To-Do: Multiple IDs
+ if (requestdata('media_ids')) {
+ $r = q("SELECT `resource-id`, `scale`, `nickname`, `type` FROM `photo` INNER JOIN `user` ON `user`.`uid` = `photo`.`uid` WHERE `resource-id` IN (SELECT `resource-id` FROM `photo` WHERE `id` = %d) AND `scale` > 0 AND `photo`.`uid` = %d ORDER BY `photo`.`width` DESC LIMIT 1",
+ intval(requestdata('media_ids')), api_user());
+ if ($r) {
+ $phototypes = Photo::supportedTypes();
+ $ext = $phototypes[$r[0]['type']];
+ $_REQUEST['body'] .= "\n\n".'[url='.$a->get_baseurl().'/photos/'.$r[0]['nickname'].'/image/'.$r[0]['resource-id'].']';
+ $_REQUEST['body'] .= '[img]'.$a->get_baseurl()."/photo/".$r[0]['resource-id']."-".$r[0]['scale'].".".$ext."[/img][/url]";
}
}
@@ -755,6 +858,41 @@
api_register_func('api/statuses/update_with_media','api_statuses_update', true);
+ function api_media_upload(&$a, $type) {
+ if (api_user()===false) {
+ logger('no user');
+ return false;
+ }
+
+ $user_info = api_get_user($a);
+
+ if(!x($_FILES,'media')) {
+ // Output error
+ return false;
+ }
+
+ require_once('mod/wall_upload.php');
+ $media = wall_upload_post($a, false);
+ if(!$media) {
+ // Output error
+ return false;
+ }
+
+ $returndata = array();
+ $returndata["media_id"] = $media["id"];
+ $returndata["media_id_string"] = (string)$media["id"];
+ $returndata["size"] = $media["size"];
+ $returndata["image"] = array("w" => $media["width"],
+ "h" => $media["height"],
+ "image_type" => $media["type"]);
+
+ logger("Media uploaded: ".print_r($returndata, true), LOGGER_DEBUG);
+
+ return array("media" => $returndata);
+ }
+
+ api_register_func('api/media/upload','api_media_upload', true);
+
function api_status_show(&$a, $type){
$user_info = api_get_user($a);
@@ -763,7 +901,7 @@
// get last public wall message
$lastwall = q("SELECT `item`.*, `i`.`contact-id` as `reply_uid`, `i`.`author-link` AS `item-author`
FROM `item`, `item` as `i`
- WHERE `item`.`contact-id` = %d
+ WHERE `item`.`contact-id` = %d AND `item`.`uid` = %d
AND ((`item`.`author-link` IN ('%s', '%s')) OR (`item`.`owner-link` IN ('%s', '%s')))
AND `i`.`id` = `item`.`parent`
AND `item`.`type`!='activity'
@@ -771,6 +909,7 @@
ORDER BY `item`.`created` DESC
LIMIT 1",
intval($user_info['cid']),
+ intval(api_user()),
dbesc($user_info['url']),
dbesc(normalise_link($user_info['url'])),
dbesc($user_info['url']),
@@ -812,8 +951,10 @@
$in_reply_to_screen_name = NULL;
}
+ $converted = api_convert_item($item);
+
$status_info = array(
- 'text' => trim(html2plain(bbcode(api_clean_plain_items($lastwall['body']), false, false, 2, true), 0)),
+ 'text' => $converted["text"],
'truncated' => false,
'created_at' => api_date($lastwall['created']),
'in_reply_to_status_id' => $in_reply_to_status_id,
@@ -825,19 +966,17 @@
'in_reply_to_user_id_str' => $in_reply_to_user_id_str,
'in_reply_to_screen_name' => $in_reply_to_screen_name,
'geo' => NULL,
- 'favorited' => false,
- // attachments
+ 'favorited' => $lastwall['starred'] ? true : false,
'user' => $user_info,
- 'statusnet_html' => trim(bbcode($lastwall['body'], false, false)),
+ 'statusnet_html' => $converted["html"],
'statusnet_conversation_id' => $lastwall['parent'],
);
- if ($lastwall['title'] != "")
- $status_info['statusnet_html'] = "
".bbcode($lastwall['title'])."
\n".$status_info['statusnet_html'];
+ if (count($converted["attachments"]) > 0)
+ $status_info["attachments"] = $converted["attachments"];
- $entities = api_get_entitities($status_info['text'], $lastwall['body']);
- if (count($entities) > 0)
- $status_info['entities'] = $entities;
+ if (count($converted["entities"]) > 0)
+ $status_info["entities"] = $converted["entities"];
if (($lastwall['item_network'] != "") AND ($status["source"] == 'web'))
$status_info["source"] = network_to_name($lastwall['item_network']);
@@ -911,8 +1050,11 @@
}
}
}
+
+ $converted = api_convert_item($item);
+
$user_info['status'] = array(
- 'text' => trim(html2plain(bbcode(api_clean_plain_items($lastwall['body']), false, false, 2, true), 0)),
+ 'text' => $converted["text"],
'truncated' => false,
'created_at' => api_date($lastwall['created']),
'in_reply_to_status_id' => $in_reply_to_status_id,
@@ -924,17 +1066,16 @@
'in_reply_to_user_id_str' => $in_reply_to_user_id_str,
'in_reply_to_screen_name' => $in_reply_to_screen_name,
'geo' => NULL,
- 'favorited' => false,
- 'statusnet_html' => trim(bbcode($lastwall['body'], false, false)),
+ 'favorited' => $lastwall['starred'] ? true : false,
+ 'statusnet_html' => $converted["html"],
'statusnet_conversation_id' => $lastwall['parent'],
);
- if ($lastwall['title'] != "")
- $user_info['statusnet_html'] = "".bbcode($lastwall['title'])."
\n".$user_info['statusnet_html'];
+ if (count($converted["attachments"]) > 0)
+ $user_info["status"]["attachments"] = $converted["attachments"];
- $entities = api_get_entitities($user_info['text'], $lastwall['body']);
- if (count($entities) > 0)
- $user_info['entities'] = $entities;
+ if (count($converted["entities"]) > 0)
+ $user_info["status"]["entities"] = $converted["entities"];
if (($lastwall['item_network'] != "") AND ($user_info["status"]["source"] == 'web'))
$user_info["status"]["source"] = network_to_name($lastwall['item_network']);
@@ -1041,15 +1182,15 @@
$ret = api_format_items($r,$user_info);
- // We aren't going to try to figure out at the item, group, and page
- // level which items you've seen and which you haven't. If you're looking
- // at the network timeline just mark everything seen.
+ // Set all posts from the query above to seen
+ $idarray = array();
+ foreach ($r AS $item)
+ $idarray[] = intval($item["id"]);
- $r = q("UPDATE `item` SET `unseen` = 0
- WHERE `unseen` = 1 AND `uid` = %d",
- //intval($user_info['uid'])
- intval(api_user())
- );
+ $idlist = implode(",", $idarray);
+
+ if ($idlist != "")
+ $r = q("UPDATE `item` SET `unseen` = 0 WHERE `unseen` AND `id` IN (%s)", $idlist);
$data = array('$statuses' => $ret);
@@ -1139,7 +1280,7 @@
api_register_func('api/statuses/public_timeline','api_statuses_public_timeline', true);
/**
- *
+ *
*/
function api_statuses_show(&$a, $type){
if (api_user()===false) return false;
@@ -1302,10 +1443,8 @@
$pos = strpos($r[0]['body'], "[share");
$post = substr($r[0]['body'], $pos);
} else {
- $post = "[share author='".str_replace("'", "'", $r[0]['author-name']).
- "' profile='".$r[0]['author-link'].
- "' avatar='".$r[0]['author-avatar'].
- "' link='".$r[0]['plink']."']";
+ $post = share_header($r[0]['author-name'], $r[0]['author-link'], $r[0]['author-avatar'], $r[0]['guid'], $r[0]['created'], $r[0]['plink']);
+
$post .= $r[0]['body'];
$post .= "[/share]";
}
@@ -1360,9 +1499,9 @@
api_register_func('api/statuses/destroy','api_statuses_destroy', true);
/**
- *
+ *
* http://developer.twitter.com/doc/get/statuses/mentions
- *
+ *
*/
function api_statuses_mentions(&$a, $type){
if (api_user()===false) return false;
@@ -1509,6 +1648,69 @@
api_register_func('api/statuses/user_timeline','api_statuses_user_timeline', true);
+ /**
+ * Star/unstar an item
+ * param: id : id of the item
+ *
+ * api v1 : https://web.archive.org/web/20131019055350/https://dev.twitter.com/docs/api/1/post/favorites/create/%3Aid
+ */
+ function api_favorites_create_destroy(&$a, $type){
+ if (api_user()===false) return false;
+
+ # for versioned api.
+ # TODO: we need a better global soluton
+ $action_argv_id=2;
+ if ($a->argv[1]=="1.1") $action_argv_id=3;
+
+ if ($a->argc<=$action_argv_id) die(api_error($a, $type, t("Invalid request.")));
+ $action = str_replace(".".$type,"",$a->argv[$action_argv_id]);
+ if ($a->argc==$action_argv_id+2) {
+ $itemid = intval($a->argv[$action_argv_id+1]);
+ } else {
+ $itemid = intval($_REQUEST['id']);
+ }
+
+ $item = q("SELECT * FROM item WHERE id=%d AND uid=%d",
+ $itemid, api_user());
+
+ if ($item===false || count($item)==0) die(api_error($a, $type, t("Invalid item.")));
+
+ switch($action){
+ case "create":
+ $item[0]['starred']=1;
+ break;
+ case "destroy":
+ $item[0]['starred']=0;
+ break;
+ default:
+ die(api_error($a, $type, t("Invalid action. ".$action)));
+ }
+ $r = q("UPDATE item SET starred=%d WHERE id=%d AND uid=%d",
+ $item[0]['starred'], $itemid, api_user());
+
+ q("UPDATE thread SET starred=%d WHERE iid=%d AND uid=%d",
+ $item[0]['starred'], $itemid, api_user());
+
+ if ($r===false) die(api_error($a, $type, t("DB error")));
+
+
+ $user_info = api_get_user($a);
+ $rets = api_format_items($item,$user_info);
+ $ret = $rets[0];
+
+ $data = array('$status' => $ret);
+ switch($type){
+ case "atom":
+ case "rss":
+ $data = api_rss_extra($a, $data, $user_info);
+ }
+
+ return api_apply_template("status", $type, $data);
+ }
+
+ api_register_func('api/favorites/create', 'api_favorites_create_destroy', true);
+ api_register_func('api/favorites/destroy', 'api_favorites_create_destroy', true);
+
function api_favorites(&$a, $type){
global $called_api;
@@ -1544,7 +1746,7 @@
`contact`.`network`, `contact`.`thumb`, `contact`.`dfrn-id`, `contact`.`self`,
`contact`.`id` AS `cid`, `contact`.`uid` AS `contact-uid`
FROM `item`, `contact`
- WHERE `item`.`uid` = %d AND `verb` = '%s'
+ WHERE `item`.`uid` = %d
AND `item`.`visible` = 1 and `item`.`moderated` = 0 AND `item`.`deleted` = 0
AND `item`.`starred` = 1
AND `contact`.`id` = `item`.`contact-id`
@@ -1553,7 +1755,6 @@
AND `item`.`id`>%d
ORDER BY `item`.`id` DESC LIMIT %d ,%d ",
intval(api_user()),
- dbesc(ACTIVITY_POST),
intval($since_id),
intval($start), intval($count)
);
@@ -1574,6 +1775,9 @@
api_register_func('api/favorites','api_favorites', true);
+
+
+
function api_format_as($a, $ret, $user_info) {
$as = array();
@@ -1681,6 +1885,65 @@
return $ret;
}
+ function api_convert_item($item) {
+
+ $body = $item['body'];
+ $attachments = api_get_attachments($body);
+
+ // Workaround for ostatus messages where the title is identically to the body
+ $html = bbcode(api_clean_plain_items($body), false, false, 2, true);
+ $statusbody = trim(html2plain($html, 0));
+
+ // handle data: images
+ $statusbody = api_format_items_embeded_images($item,$statusbody);
+
+ $statustitle = trim($item['title']);
+
+ if (($statustitle != '') and (strpos($statusbody, $statustitle) !== false))
+ $statustext = trim($statusbody);
+ else
+ $statustext = trim($statustitle."\n\n".$statusbody);
+
+ if (($item["network"] == NETWORK_FEED) and (strlen($statustext)> 1000))
+ $statustext = substr($statustext, 0, 1000)."... \n".$item["plink"];
+
+ $statushtml = trim(bbcode($body, false, false));
+
+ if ($item['title'] != "")
+ $statushtml = "".bbcode($item['title'])."
\n".$statushtml;
+
+ $entities = api_get_entitities($statustext, $body);
+
+ return(array("text" => $statustext, "html" => $statushtml, "attachments" => $attachments, "entities" => $entities));
+ }
+
+ function api_get_attachments(&$body) {
+
+ $text = $body;
+ $text = preg_replace("/\[img\=([0-9]*)x([0-9]*)\](.*?)\[\/img\]/ism", '[img]$3[/img]', $text);
+
+ $URLSearchString = "^\[\]";
+ $ret = preg_match_all("/\[img\]([$URLSearchString]*)\[\/img\]/ism", $text, $images);
+
+ if (!$ret)
+ return false;
+
+ $attachments = array();
+
+ foreach ($images[1] AS $image) {
+ $imagedata = get_photo_info($image);
+
+ if ($imagedata)
+ $attachments[] = array("url" => $image, "mimetype" => $imagedata["mime"], "size" => $imagedata["size"]);
+ }
+
+ if (strstr($_SERVER['HTTP_USER_AGENT'], "AndStatus"))
+ foreach ($images[0] AS $orig)
+ $body = str_replace($orig, "", $body);
+
+ return $attachments;
+ }
+
function api_get_entitities(&$text, $bbcode) {
/*
To-Do:
@@ -1790,7 +2053,6 @@
$start = iconv_strpos($text, $url, $offset, "UTF-8");
if (!($start === false)) {
- require_once("include/Photo.php");
$image = get_photo_info($url);
if ($image) {
// If image cache is activated, then use the following sizes:
@@ -1848,14 +2110,14 @@
$text);
return $text;
}
-
+
function api_format_items($r,$user_info, $filter_user = false) {
$a = get_app();
$ret = Array();
foreach($r as $item) {
- api_share_as_retweet($a, api_user(), $item);
+ api_share_as_retweet($item);
localize_item($item);
$status_user = api_item_get_user($a,$item);
@@ -1902,29 +2164,10 @@
$in_reply_to_status_id_str = NULL;
}
- // Workaround for ostatus messages where the title is identically to the body
- //$statusbody = trim(html2plain(bbcode(api_clean_plain_items($item['body']), false, false, 5, true), 0));
- $html = bbcode(api_clean_plain_items($item['body']), false, false, 2, true);
- $statusbody = trim(html2plain($html, 0));
-
- // handle data: images
- $statusbody = api_format_items_embeded_images($item,$statusbody);
-
- $statustitle = trim($item['title']);
-
- if (($statustitle != '') and (strpos($statusbody, $statustitle) !== false))
- $statustext = trim($statusbody);
- else
- $statustext = trim($statustitle."\n\n".$statusbody);
-
- if (($item["network"] == NETWORK_FEED) and (strlen($statustext)> 1000))
- $statustext = substr($statustext, 0, 1000)."... \n".$item["plink"];
-
- $statushtml = trim(bbcode($item['body'], false, false));
-
-
+ $converted = api_convert_item($item);
+
$status = array(
- 'text' => $statustext,
+ 'text' => $converted["text"],
'truncated' => False,
'created_at'=> api_date($item['created']),
'in_reply_to_status_id' => $in_reply_to_status_id,
@@ -1937,19 +2180,17 @@
'in_reply_to_screen_name' => $in_reply_to_screen_name,
'geo' => NULL,
'favorited' => $item['starred'] ? true : false,
- //'attachments' => array(),
'user' => $status_user ,
//'entities' => NULL,
- 'statusnet_html' => $statushtml,
+ 'statusnet_html' => $converted["html"],
'statusnet_conversation_id' => $item['parent'],
);
- if ($item['title'] != "")
- $status['statusnet_html'] = "".bbcode($item['title'])."
\n".$status['statusnet_html'];
+ if (count($converted["attachments"]) > 0)
+ $status["attachments"] = $converted["attachments"];
- $entities = api_get_entitities($status['text'], $item['body']);
- if (count($entities) > 0)
- $status['entities'] = $entities;
+ if (count($converted["entities"]) > 0)
+ $status["entities"] = $converted["entities"];
if (($item['item_network'] != "") AND ($status["source"] == 'web'))
$status["source"] = network_to_name($item['item_network']);
@@ -2308,7 +2549,7 @@
if ($user_id !="") {
$sql_extra .= ' AND `mail`.`contact-id` = ' . intval($user_id);
- }
+ }
elseif($screen_name !=""){
$sql_extra .= " AND `contact`.`nick` = '" . dbesc($screen_name). "'";
}
@@ -2318,7 +2559,7 @@
intval($since_id),
intval($start), intval($count)
);
-
+
$ret = Array();
foreach($r as $item) {
@@ -2420,7 +2661,7 @@
echo json_encode($r[0]);
}
- killme();
+ killme();
}
api_register_func('api/friendica/photos/list', 'api_fr_photos_list', true);
@@ -2428,7 +2669,71 @@
-function api_share_as_retweet($a, $uid, &$item) {
+ /**
+ * similar as /mod/redir.php
+ * redirect to 'url' after dfrn auth
+ *
+ * why this when there is mod/redir.php already?
+ * This use api_user() and api_login()
+ *
+ * params
+ * c_url: url of remote contact to auth to
+ * url: string, url to redirect after auth
+ */
+ function api_friendica_remoteauth(&$a) {
+ $url = ((x($_GET,'url')) ? $_GET['url'] : '');
+ $c_url = ((x($_GET,'c_url')) ? $_GET['c_url'] : '');
+
+ if ($url === '' || $c_url === '')
+ die((api_error($a, 'json', "Wrong parameters")));
+
+ $c_url = normalise_link($c_url);
+
+ // traditional DFRN
+
+ $r = q("SELECT * FROM `contact` WHERE `id` = %d AND `nurl` = '%s' LIMIT 1",
+ dbesc($c_url),
+ intval(api_user())
+ );
+
+ if ((! count($r)) || ($r[0]['network'] !== NETWORK_DFRN))
+ die((api_error($a, 'json', "Unknown contact")));
+
+ $cid = $r[0]['id'];
+
+ $dfrn_id = $orig_id = (($r[0]['issued-id']) ? $r[0]['issued-id'] : $r[0]['dfrn-id']);
+
+ if($r[0]['duplex'] && $r[0]['issued-id']) {
+ $orig_id = $r[0]['issued-id'];
+ $dfrn_id = '1:' . $orig_id;
+ }
+ if($r[0]['duplex'] && $r[0]['dfrn-id']) {
+ $orig_id = $r[0]['dfrn-id'];
+ $dfrn_id = '0:' . $orig_id;
+ }
+
+ $sec = random_string();
+
+ q("INSERT INTO `profile_check` ( `uid`, `cid`, `dfrn_id`, `sec`, `expire`)
+ VALUES( %d, %s, '%s', '%s', %d )",
+ intval(api_user()),
+ intval($cid),
+ dbesc($dfrn_id),
+ dbesc($sec),
+ intval(time() + 45)
+ );
+
+ logger($r[0]['name'] . ' ' . $sec, LOGGER_DEBUG);
+ $dest = (($url) ? '&destination_url=' . $url : '');
+ goaway ($r[0]['poll'] . '?dfrn_id=' . $dfrn_id
+ . '&dfrn_version=' . DFRN_PROTOCOL_VERSION
+ . '&type=profile&sec=' . $sec . $dest . $quiet );
+ }
+ api_register_func('api/friendica/remoteauth', 'api_friendica_remoteauth', true);
+
+
+
+function api_share_as_retweet(&$item) {
$body = trim($item["body"]);
// Skip if it isn't a pure repeated messages
@@ -2472,6 +2777,15 @@ function api_share_as_retweet($a, $uid, &$item) {
if ($matches[1] != "")
$avatar = $matches[1];
+ $link = "";
+ preg_match("/link='(.*?)'/ism", $attributes, $matches);
+ if ($matches[1] != "")
+ $link = $matches[1];
+
+ preg_match('/link="(.*?)"/ism', $attributes, $matches);
+ if ($matches[1] != "")
+ $link = $matches[1];
+
$shared_body = preg_replace("/\[share(.*?)\]\s?(.*?)\s?\[\/share\]\s?/ism","$2",$body);
if (($shared_body == "") OR ($profile == "") OR ($author == "") OR ($avatar == ""))
@@ -2481,6 +2795,7 @@ function api_share_as_retweet($a, $uid, &$item) {
$item["author-name"] = $author;
$item["author-link"] = $profile;
$item["author-avatar"] = $avatar;
+ $item["plink"] = $link;
return(true);
@@ -2636,11 +2951,9 @@ function api_best_nickname(&$contacts) {
$contacts = array($contacts[0]);
}
+
/*
Not implemented by now:
-favorites
-favorites/create
-favorites/destroy
statuses/retweets_of_me
friendships/create
friendships/destroy