template
[mailer.git] / 0.2.1 / inc / modules / member / what-transfer.php
1 <?php
2 /************************************************************************
3  * MXChange v0.2.1                                    Start: 10/07/2004 *
4  * ================                             Last change: 10/07/2004 *
5  *                                                                      *
6  * -------------------------------------------------------------------- *
7  * File              : what-transfer.php                                *
8  * -------------------------------------------------------------------- *
9  * Short description : Point transfers                                  *
10  * -------------------------------------------------------------------- *
11  * Kurzbeschreibung  : Punktetransfers                                  *
12  * -------------------------------------------------------------------- *
13  *                                                                      *
14  * -------------------------------------------------------------------- *
15  * Copyright (c) 2003 - 2008 by Roland Haeder                           *
16  * For more information visit: http://www.mxchange.org                  *
17  *                                                                      *
18  * This program is free software; you can redistribute it and/or modify *
19  * it under the terms of the GNU General Public License as published by *
20  * the Free Software Foundation; either version 2 of the License, or    *
21  * (at your option) any later version.                                  *
22  *                                                                      *
23  * This program is distributed in the hope that it will be useful,      *
24  * but WITHOUT ANY WARRANTY; without even the implied warranty of       *
25  * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the        *
26  * GNU General Public License for more details.                         *
27  *                                                                      *
28  * You should have received a copy of the GNU General Public License    *
29  * along with this program; if not, write to the Free Software          *
30  * Foundation, Inc., 51 Franklin St, Fifth Floor, Boston,               *
31  * MA  02110-1301  USA                                                  *
32  ************************************************************************/
33
34 // Some security stuff...
35 if (ereg(basename(__FILE__), $_SERVER['PHP_SELF']))
36 {
37         $INC = substr(dirname(__FILE__), 0, strpos(dirname(__FILE__), "/inc") + 4) . "/security.php";
38         require($INC);
39 }
40  elseif (!IS_LOGGED_IN())
41 {
42         LOAD_URL(URL."/modules.php?module=index");
43 }
44  elseif ((!EXT_IS_ACTIVE("transfer")) && (!IS_ADMIN()))
45 {
46         ADD_FATAL(EXTENSION_PROBLEM_EXT_INACTIVE, "transfer");
47         return;
48 }
49
50 // Add description as navigation point
51 ADD_DESCR("member", basename(__FILE__));
52
53 // Load data
54 $result = SQL_QUERY_ESC("SELECT opt_in FROM "._MYSQL_PREFIX."_user_data WHERE userid=%d LIMIT 1",
55  array($GLOBALS['userid']), __FILE__, __LINE__);
56 list($opt_in) = SQL_FETCHROW($result);
57
58 // Free memory
59 SQL_FREERESULT($result);
60
61 $MODE = "";
62 if (!empty($_GET['mode'])) $MODE = $_GET['mode'];
63
64 // Check for "faker"
65 if (($opt_in == "N") && ($MODE == "new")) $MODE = "";
66
67 switch ($MODE)
68 {
69 case "new": // Start new transfer
70         // Get total points and subtract the balance amount from it = maximum transferable points
71         $result = SQL_QUERY_ESC("SELECT SUM(points) FROM "._MYSQL_PREFIX."_user_points WHERE userid=%d AND points > 0",
72          array($GLOBALS['userid']), __FILE__, __LINE__);
73         list($total) = SQL_FETCHROW($result);
74         SQL_FREERESULT($result);
75
76         // Get totally used points and password
77         $result = SQL_QUERY_ESC("SELECT used_points, password FROM "._MYSQL_PREFIX."_user_data WHERE userid=%d LIMIT 1",
78          array($GLOBALS['userid']), __FILE__, __LINE__);
79         list($used, $pass) = SQL_FETCHROW($result);
80         SQL_FREERESULT($result);
81
82         // Remember maximum value for template
83         define('__TRANSFER_MAX_VALUE', round($total - $used - $CONFIG['transfer_balance'] - 0.5));
84
85         if (isset($_POST['ok']))
86         {
87                 // Add new transfer
88                 if ($CONFIG['transfer_code'] > 0)
89                 {
90                         // Check for code
91                         $code = GEN_RANDOM_CODE($CONFIG['transfer_code'], $_POST['code_chk'], $GLOBALS['userid'], __TRANSFER_MAX_VALUE);
92                         $valid_code = ($code == $_POST['code']);
93                 }
94                  else
95                 {
96                         // Zero length (= disabled) is always valid!
97                         $valid_code = true;
98                 }
99
100                 // Test password
101                 $valid_pass = ($pass == generateHash($_POST['password'], $pass));
102
103                 // Test transfer amount
104                 $valid_amount = ((!empty($_POST['points'])) && ($_POST['points'] <= __TRANSFER_MAX_VALUE));
105
106                 // Test reason for transfer
107                 $valid_reason = (!empty($_POST['reason']));
108
109                 // Test if a recipient is selected
110                 $valid_recipient = ($_POST['to_uid'] > 0);
111
112                 // Check for nickname extension and set additional data
113                 $nick = false; $ADD = ", userid";
114                 if (EXT_IS_ACTIVE("nickname"))
115                 {
116                         $ADD = ", nickname";
117                         $nick = true;
118                 }
119                 // Re-check receivers and own personal data
120                 $result = SQL_QUERY_ESC("SELECT userid, sex, surname, family, email".$ADD." FROM "._MYSQL_PREFIX."_user_data WHERE userid IN ('%s', '%s') AND status='CONFIRMED' ORDER BY userid LIMIT 2",
121                  array($GLOBALS['userid'], bigintval($_POST['to_uid'])), __FILE__, __LINE__);
122                 $valid_data = (SQL_NUMROWS($result) == 2);
123
124                 if ($valid_code && $valid_pass && $valid_amount && $valid_reason && $valid_recipient)
125                 {
126                         // Let's start the transfer and load user data
127                         list($uid1, $sex1, $sname1, $fname1, $email1, $nick1) = SQL_FETCHROW($result);
128                         list($uid2, $sex2, $sname2, $fname2, $email2, $nick2) = SQL_FETCHROW($result);
129                         SQL_FREERESULT($result);
130                         if ($uid1 == $GLOBALS['userid'])
131                         {
132                                 // Data row 1 is sender's data
133                                 define('__SENDER_SEX'     , TRANSLATE_SEX($sex1));
134                                 define('__SENDER_NICK'    , $nick1);
135                                 define('__SENDER_SNAME'   , $sname1);
136                                 define('__SENDER_FNAME'   , $fname1);
137                                 define('__SENDER_EMAIL'   , $email1);
138                                 // Data row 2 is recpient's data
139                                 define('__RECIPIENT_SEX'  , TRANSLATE_SEX($sex2));
140                                 define('__RECIPIENT_NICK' , $nick2);
141                                 define('__RECIPIENT_SNAME', $sname2);
142                                 define('__RECIPIENT_FNAME', $fname2);
143                                 define('__RECIPIENT_EMAIL', $email2);
144
145                                 // Prepare variables for testing
146                                 $TEST_NICK_SENDER = $nick1;
147                                 $TEST_NICK_REC = $nick2;
148                         }
149                          else
150                         {
151                                 // Data row 2 is sender's data
152                                 define('__SENDER_SEX'     , TRANSLATE_SEX($sex2));
153                                 define('__SENDER_NICK'    , $nick2);
154                                 define('__SENDER_SNAME'   , $sname2);
155                                 define('__SENDER_FNAME'   , $fname2);
156                                 define('__SENDER_EMAIL'   , $email2);
157                                 // Data row 1 is recpient's data
158                                 define('__RECIPIENT_SEX'  , TRANSLATE_SEX($sex1));
159                                 define('__RECIPIENT_NICK' , $nick1);
160                                 define('__RECIPIENT_SNAME', $sname1);
161                                 define('__RECIPIENT_FNAME', $fname1);
162                                 define('__RECIPIENT_EMAIL', $email1);
163
164                                 // Prepare variables for testing
165                                 $TEST_NICK_SENDER = $nick2;
166                                 $TEST_NICK_REC = $nick1;
167                         }
168                         // Sender's UID is always currently stored in cookie userid...
169                         define('__SENDER_UID'     , $GLOBALS['userid']);
170                         define('__RECIPIENT_UID'  , $_POST['to_uid']);
171
172                         $SENDER = __SENDER_UID;
173                         $RECIPIENT = __RECIPIENT_UID;
174                         if ($nick)
175                         {
176                                 if (($TEST_NICK_SENDER != __SENDER_UID) && (!empty($TEST_NICK_SENDER)))
177                                 {
178                                         $SENDER = __SENDER_NICK;
179                                 }
180                                 if (($TEST_NICK_REC != __RECIPIENT_UID) && (!empty($TEST_NICK_REC)))
181                                 {
182                                         $RECIPIENT = __RECIPIENT_NICK;
183                                 }
184                         }
185
186                         // Remember transfer reason and fancy date/time in constants
187                         define('__TRANSFER_REASON', $_POST['reason']);
188                         if (function_exists('CREATE_FANCY_TIME'))
189                         {
190                                 define('__TRANSFER_EXPIRES', CREATE_FANCY_TIME($CONFIG['transfer_age']));
191                         }
192                          else
193                         {
194                                 define('__TRANSFER_EXPIRES', round($CONFIG['transfer_age']/60/60/24)." ".DAYS);
195                         }
196
197                         // Generate tranafer id
198                         define('__TRANS_ID', bigintval(GEN_RANDOM_CODE("10", rand(0, 99999), $GLOBALS['userid'], $_POST['reason'])));
199
200                         // Add entries to both tables
201                         $result = SQL_QUERY_ESC("INSERT INTO "._MYSQL_PREFIX."_user_transfers_in (userid, from_uid, points, reason, time_trans, trans_id) VALUES ('%s', '%s', '%s', '%s', UNIX_TIMESTAMP(), '%s')",
202                          array(bigintval($_POST['to_uid']), $GLOBALS['userid'], bigintval($_POST['points']), addslashes($_POST['reason']), __TRANS_ID),
203                          __FILE__, __LINE__);
204                         $result = SQL_QUERY_ESC("INSERT INTO "._MYSQL_PREFIX."_user_transfers_out (userid, to_uid, points, reason, time_trans, trans_id) VALUES ('%s', '%s', '%s', '%s', UNIX_TIMESTAMP(), '%s')",
205                          array($GLOBALS['userid'], bigintval($_POST['to_uid']), bigintval($_POST['points']), addslashes($_POST['reason']), __TRANS_ID),
206                          __FILE__, __LINE__);
207
208                         // Add points to account *directly* ...
209                         $result = SQL_QUERY_ESC("UPDATE "._MYSQL_PREFIX."_user_points SET points=points+%s WHERE userid=%d AND ref_depth='0' LIMIT 1",
210                          array(bigintval($_POST['points']), bigintval($_POST['to_uid'])), __FILE__, __LINE__);
211
212                         // ... and add it to current user's used points
213                         $result = SQL_QUERY_ESC("UPDATE "._MYSQL_PREFIX."_user_data SET used_points=used_points+%s WHERE userid=%d LIMIT 1",
214                          array(bigintval($_POST['points']), $GLOBALS['userid']), __FILE__, __LINE__);
215
216                         // First send email to recipient
217                         $msg = LOAD_EMAIL_TEMPLATE("member_transfer_recipient", "", __RECIPIENT_UID);
218                         SEND_EMAIL(__RECIPIENT_EMAIL, TRANSFER_MEMBER_RECIPIENT_SUBJ.": ".$SENDER, $msg);
219
220                         // Second send email to sender
221                         $msg = LOAD_EMAIL_TEMPLATE("member_transfer_sender", "", __SENDER_UID);
222                         SEND_EMAIL(__SENDER_EMAIL, TRANSFER_MEMBER_SENDER_SUBJ.": ".$RECIPIENT, $msg);
223
224                         // At last send admin mail(s)
225                         $ADMIN_SUBJ = TRANSFER_ADMIN_SUBJECT." (".$SENDER."->".$RECIPIENT.")";
226                         if (GET_EXT_VERSION("admins") >= "0.4.1")
227                         {
228                                 SEND_ADMIN_EMAILS_PRO($ADMIN_SUBJ, "admin_transfer_points");
229                         }
230                          else
231                         {
232                                 $msg = LOAD_EMAIL_TEMPLATE("admin_transfer_points");
233                                 SEND_ADMIN_EMAILS($ADMIN_SUBJ, $msg);
234                         }
235
236                         // Transfer is completed
237                         OUTPUT_HTML ("<P>");
238                         LOAD_TEMPLATE("admin_settings_saved", false, TRANSFER_COMPLETED."<BR><A href=\"".URL."/modules.php?module=login&amp;what=transfer\">".TRANSFER_CONTINUE_OVERVIEW."</A>");
239                         OUTPUT_HTML ("</P>");
240                 }
241                  elseif (!$valid_code)
242                 {
243                         // Invalid Touring code!
244                         OUTPUT_HTML ("<P><STRONG class=\"member_note\">".TRANSFER_INVALID_CODE."</STRONG></P>");
245                         unset($_POST['ok']);
246                 }
247                  elseif (!$valid_pass)
248                 {
249                         // Wrong password entered
250                         OUTPUT_HTML ("<P><STRONG class=\"member_note\">".TRANSFER_INVALID_PASSWORD."</STRONG></P>");
251                         unset($_POST['ok']);
252                 }
253                  elseif (!$valid_amount)
254                 {
255                         // Too much points entered
256                         OUTPUT_HTML ("<P><STRONG class=\"member_note\">".TRANSFER_INVALID_POINTS."</STRONG></P>");
257                         unset($_POST['ok']);
258                 }
259                  elseif (!$valid_reason)
260                 {
261                         // No transfer reason entered
262                         OUTPUT_HTML ("<P><STRONG class=\"member_note\">".TRANSFER_INVALID_REASON."</STRONG></P>");
263                         unset($_POST['ok']);
264                 }
265                  elseif (!$valid_recipient)
266                 {
267                         // No recipient selected
268                         OUTPUT_HTML ("<P><STRONG class=\"member_note\">".TRANSFER_INVALID_RECIPIENT."</STRONG></P>");
269                         unset($_POST['ok']);
270                 }
271                  elseif (!$valid_data)
272                 {
273                         // No recipient selected
274                         OUTPUT_HTML ("<P><STRONG class=\"member_note\">".TRANSFER_INVALID_DATA."</STRONG></P>");
275                         unset($_POST['ok']);
276                 }
277         }
278         if (!isset($_POST['ok']))
279         {
280                 // Load member list
281                 if (EXT_IS_ACTIVE("nickname"))
282                 {
283                         // Load userid and nickname
284                         $result = SQL_QUERY_ESC("SELECT userid, nickname FROM "._MYSQL_PREFIX."_user_data WHERE status='CONFIRMED' AND opt_in='Y' AND userid != '%s' ORDER BY userid",
285                          array($GLOBALS['userid']), __FILE__, __LINE__);
286                 }
287                  else
288                 {
289                         // Load only userid
290                         $result = SQL_QUERY_ESC("SELECT userid, userid FROM "._MYSQL_PREFIX."_user_data WHERE status='CONFIRMED' AND opt_in='Y' AND userid != '%s' ORDER BY userid",
291                          array($GLOBALS['userid']), __FILE__, __LINE__);
292                 }
293                 if (SQL_NUMROWS($result) > 0)
294                 {
295                         // Load list
296                         $OUT  = "<SELECT name=\"to_uid\" size=\"1\" class=\"member_select\">
297   <OPTION value=\"0\">".SELECT_NONE."</OPTION>\n";
298                         while (list($uid, $nick) = SQL_FETCHROW($result))
299                         {
300                                 $OUT .= "<OPTION value=\"".$uid."\"";
301                                 if ((isset($_POST['to_uid'])) && ($_POST['to_uid'] == $uid)) $OUT .= " selected=\"selected\"";
302                                 $OUT .= ">";
303                                 if (($nick != $uid) && (!empty($nick)))
304                                 {
305                                         // Output nickname
306                                         $OUT .= $nick;
307                                 }
308                                  else
309                                 {
310                                         // Output userid
311                                         $OUT .= $uid;
312                                 }
313                                 $OUT .= "</OPTION>\n";
314                         }
315                         $OUT .= "</SELECT>\n";
316                         define('__TRANSFER_TO_DISABLED', "");
317
318                         // Free memory
319                         SQL_FREERESULT($result);
320                 }
321                  else
322                 {
323                         // No one else is opt-in
324                         $OUT = TRANSFER_NO_ONE_ELSE_OPT_IN;
325                         define('__TRANSFER_TO_DISABLED', " disabled");
326                 }
327                 // Transfer output to constant for the template
328                 define('__TRANSFER_USERID_SELECTION', $OUT);
329
330                 // Generate Code
331                 if ($CONFIG['transfer_code'] > 0)
332                 {
333                         $rand = rand(0, 99999);
334                         $code = GEN_RANDOM_CODE($CONFIG['transfer_code'], $rand, $GLOBALS['userid'], __TRANSFER_MAX_VALUE);
335                         $img = GENERATE_IMAGE($code, false);
336                         define('__TRANSFER_IMAGE_INPUT', "<INPUT type=\"hidden\" name=\"code_chk\" value=\"".$rand."\"><INPUT type=\"text\" name=\"code\" class=\"member_normal\" size=\"5\" maxlength=\"7\"".__TRANSFER_TO_DISABLED.">&nbsp;".$img);
337                 }
338                  else
339                 {
340                         $code = "00000";
341                         define('__TRANSFER_IMAGE_INPUT', TRANSFER_NO_CODE);
342                 }
343
344                 // Transfer maybe already entered valued'
345                 if (isset($_GET['ok'])) {
346                         // Get values from form
347                         define('__TRANSFER_POINTS_VALUE', bigintval($_POST['points']));
348                         define('__TRANSFER_REASON_VALUE', strip_tags($_POST['reason']));
349                 } else {
350                         // Set empty values
351                         define('__TRANSFER_POINTS_VALUE', "");
352                         define('__TRANSFER_REASON_VALUE', "");
353                 }
354
355                 // Output form
356                 LOAD_TEMPLATE("member_transfer_new");
357         }
358         break;
359
360 case "list_in": // List only incoming transactions
361 case "list_out": // List only outgoing transactions
362         // As you can see I put list_in and list_out together. I now do a switch() again on it for the right SQL command
363         switch ($MODE)
364         {
365         case "list_in":
366                 $SQL = "SELECT trans_id, from_uid, points, reason, time_trans FROM "._MYSQL_PREFIX."_user_transfers_in WHERE userid=%d ORDER BY time_trans DESC LIMIT ".$CONFIG['transfer_max'];
367                 $NOTHING = TRANSFER_NO_INCOMING_TRANSFERS;
368                 define('__TRANSFER_SUM', TRANSFER_TOTAL_INCOMING);
369                 define('__TRANSFER_TITLE', TRANSFER_LIST_INCOMING);
370                 break;
371
372         case "list_out":
373                 $SQL = "SELECT trans_id, to_uid, points, reason, time_trans FROM "._MYSQL_PREFIX."_user_transfers_out WHERE userid=%d ORDER BY time_trans DESC LIMIT ".$CONFIG['transfer_max'];
374                 $NOTHING = TRANSFER_NO_OUTGOING_TRANSFERS;
375                 define('__TRANSFER_SUM', TRANSFER_TOTAL_OUTGOING);
376                 define('__TRANSFER_TITLE', TRANSFER_LIST_OUTGOING);
377                 break;
378         }
379
380         // Run the SQL command
381         $total = "0";
382         $result = SQL_QUERY_ESC($SQL, array($GLOBALS['userid']), __FILE__, __LINE__);
383         if (SQL_NUMROWS($result) > 0)
384         {
385                 $OUT = ""; $SW = 2;
386                 while (list($tid, $uid, $points, $reason, $stamp) = SQL_FETCHROW($result))
387                 {
388                         if ($type == "OUT") $points = "$points-";
389                         $OUT .= "<TR>
390   <TD class=\"transfer_row1 switch_sw".$SW." bottom2 right2\">
391     <FONT class=\"transfer_row1\">".$tid."</FONT>
392   </TD>
393   <TD class=\"transfer_row2 switch_sw".$SW." bottom2 right2\">
394     <FONT class=\"transfer_row2\">".MAKE_DATETIME($stamp, "3")."</FONT>
395   </TD>
396   <TD class=\"transfer_row3 switch_sw".$SW." bottom2 right2\">
397     <FONT class=\"transfer_row3\">".$uid."</FONT>
398   </TD>
399   <TD class=\"transfer_row4 switch_sw".$SW." bottom2 right2\">
400     <FONT class=\"transfer_row4\">".$reason."</FONT>
401   </TD>
402   <TD class=\"transfer_row5 switch_sw".$SW." bottom2\">
403     <FONT class=\"transfer_row5\">".$points."</FONT>
404   </TD>
405 </TR>\n";
406                         $total += $points;
407                         $SW = 3 - $SW;
408                 }
409
410                 // Free memory
411                 SQL_FREERESULT($result);
412         }
413          else
414         {
415                 // Nothing for in or out
416                 $OUT = "<TR>
417   <TD colspan=\"5\" align=\"center\" class=\"bottom2\" height=\"70\">
418     ".LOAD_TEMPLATE("admin_settings_saved", true, $NOTHING)."
419   </TD>
420 </TR>";
421         }
422
423         // ... and add them to a constant for the template
424         define('__TRANSFER_ROWS', $OUT);
425
426         // Remeber total amount
427         define('__TRANSFER_TOTAL_VALUE', $total);
428
429         // Load final template
430         LOAD_TEMPLATE("member_transfer_list");
431         break;
432
433 case "list_all": // List all transactions
434         // We fill a temporay table with data from both tables. This is much easier
435         // to code and unstand by you as sub-SELECT queries. I know this is not the
436         // fastest way but it shall be fine for now.
437         //
438         // First of all create the temporary table
439         $result = SQL_QUERY("CREATE TEMPORARY TABLE "._MYSQL_PREFIX."_transfers_tmp (
440 trans_id varchar(12) not null default '',
441 party_uid bigint(20) not null default '0',
442 points bigint(20) not null default '0',
443 reason varchar(255) not null default '',
444 time_trans varchar(10) not null default '0',
445 trans_type enum('IN', 'OUT') not null default 'IN',
446 KEY(party_uid)
447 ) TYPE=HEAP", __FILE__, __LINE__);
448
449         // Let's begin with the incoming list
450         $result = SQL_QUERY_ESC("SELECT trans_id, from_uid, points, reason, time_trans FROM "._MYSQL_PREFIX."_user_transfers_in WHERE userid=%d ORDER BY id LIMIT %s",
451 array($GLOBALS['userid'], $CONFIG['transfer_max']), __FILE__, __LINE__);
452         while ($DATA = SQL_FETCHROW($result))
453         {
454                 $DATA[] = "IN";
455                 $DATA = implode("', '", $DATA);
456                 $res_temp = SQL_QUERY("INSERT INTO "._MYSQL_PREFIX."_transfers_tmp (trans_id, party_uid, points, reason, time_trans, trans_type) VALUES ('".$DATA."')", __FILE__, __LINE__);
457         }
458
459         // Free memory
460         SQL_FREERESULT($result);
461
462         // As the last table transfer data from outgoing table to temporary
463         $result = SQL_QUERY_ESC("SELECT trans_id, to_uid, points, reason, time_trans FROM "._MYSQL_PREFIX."_user_transfers_out WHERE userid=%d ORDER BY id LIMIT %s",
464 array($GLOBALS['userid'], $CONFIG['transfer_max']), __FILE__, __LINE__);
465         while ($DATA = SQL_FETCHROW($result))
466         {
467                 $DATA[] = "OUT";
468                 $DATA = implode("', '", $DATA);
469                 $res_temp = SQL_QUERY("INSERT INTO "._MYSQL_PREFIX."_transfers_tmp (trans_id, party_uid, points, reason, time_trans, trans_type) VALUES ('".$DATA."')", __FILE__, __LINE__);
470         }
471
472         // Free memory
473         SQL_FREERESULT($result);
474
475         $total = "0";
476         if (SQL_NUMROWS($result) > 0)
477         {
478                 // Output rows
479                 $OUT = ""; $SW = 2;
480                 $result = SQL_QUERY("SELECT party_uid, trans_id, points, reason, time_trans, trans_type FROM "._MYSQL_PREFIX."_transfers_tmp ORDER BY time_trans DESC", __FILE__, __LINE__);
481                 while(list($uid, $idx, $points, $reason, $stamp, $type) = SQL_FETCHROW($result))
482                 {
483                         if ($type == "OUT") $points = "-$points";
484                         $OUT .= "<TR>
485   <TD class=\"transfer_row1 switch_sw".$SW." bottom2 right2\">
486     <FONT class=\"transfer_row1\">".$idx."</FONT>
487   </TD>
488   <TD class=\"transfer_row2 switch_sw".$SW." bottom2 right2\">
489     <FONT class=\"transfer_row2\">".MAKE_DATETIME($stamp, "3")."</FONT>
490   </TD>
491   <TD class=\"transfer_row3 switch_sw".$SW." bottom2 right2\">
492     <FONT class=\"transfer_row3\">".$uid."</FONT>
493   </TD>
494   <TD class=\"transfer_row4 switch_sw".$SW." bottom2 right2\">
495     <FONT class=\"transfer_row4\">".$reason."</FONT>
496   </TD>
497   <TD class=\"transfer_row5 switch_sw".$SW." bottom2\">
498     <FONT class=\"transfer_row5\">".$points."</FONT>
499   </TD>
500 </TR>\n";
501                         $total += $points;
502                         $SW = 3 - $SW;
503                 }
504
505                 // Free memory
506                 SQL_FREERESULT($result);
507         }
508          else
509         {
510                 // Nothing for in and out
511                 $OUT = "<TR>
512   <TD colspan=\"5\" align=\"center\" class=\"bottom2\" height=\"70\">
513     ".LOAD_TEMPLATE("admin_settings_saved", true, TRANSFER_NO_INOUT_TRANSFERS)."
514   </TD>
515 </TR>";
516         }
517
518         // ... and add them to a constant for the template
519         define('__TRANSFER_ROWS', $OUT);
520
521         // Remeber total amount
522         define('__TRANSFER_TOTAL_VALUE', $total);
523
524         // Set title
525         define('__TRANSFER_TITLE', TRANSFER_LIST_ALL);
526
527         // Set "balance" word
528         define('__TRANSFER_SUM', TRANSFER_TOTAL_BALANCE);
529
530         // Load final template
531         LOAD_TEMPLATE("member_transfer_list");
532
533         // At the end we don't need a temporay table in memory
534         $result = SQL_QUERY("DROP TABLE IF EXISTS "._MYSQL_PREFIX."_transfers_tmp", __FILE__, __LINE__);
535
536         // Free some memory...
537         SQL_FREERESULT($result);
538         break;
539
540 case "": // Overview page
541         // Check incoming transfers
542         $result = SQL_QUERY_ESC("SELECT COUNT(id) FROM "._MYSQL_PREFIX."_user_transfers_in WHERE userid=%d", array($GLOBALS['userid']), __FILE__, __LINE__);
543         list($dmy) = SQL_FETCHROW($result);
544         SQL_FREERESULT($result);
545
546         $total=$dmy;
547         if ($dmy > 0)
548         {
549                 define('__TRANSFER_IN_LINK', "<A href=\"".URL."/modules.php?module=login&amp;what=transfer&amp;mode=list_in\">".$dmy."</A>");
550         }
551          else
552         {
553                 define('__TRANSFER_IN_LINK', $dmy);
554         }
555
556         // Check outgoing transfers
557         $result = SQL_QUERY_ESC("SELECT COUNT(id) FROM "._MYSQL_PREFIX."_user_transfers_out WHERE userid=%d", array($GLOBALS['userid']), __FILE__, __LINE__);
558         list($dmy) = SQL_FETCHROW($result);
559         SQL_FREERESULT($result);
560
561         $total+=$dmy;
562         if ($dmy > 0)
563         {
564                 define('__TRANSFER_OUT_LINK', "<A href=\"".URL."/modules.php?module=login&amp;what=transfer&amp;mode=list_out\">".$dmy."</A>");
565         }
566          else
567         {
568                 define('__TRANSFER_OUT_LINK', $dmy);
569         }
570
571         // Total transactions
572         if ($total > 0)
573         {
574                 define('__TRANSFER_ALL_LINK', "<A href=\"".URL."/modules.php?module=login&amp;what=transfer&amp;mode=list_all\">".$total."</A>");
575         }
576          else
577         {
578                 define('__TRANSFER_ALL_LINK', $total);
579         }
580
581         if (isset($_POST['ok']))
582         {
583                 // Save settings
584                 $result = SQL_QUERY_ESC("UPDATE "._MYSQL_PREFIX."_user_data SET opt_in='%s' WHERE userid=%d LIMIT 1",
585                  array($_POST['opt_in'], $GLOBALS['userid']), __FILE__, __LINE__);
586
587                 // Rember for next switch() command
588                 $opt_in = $_POST['opt_in'];
589
590                 // "Settings saved..."
591                 OUTPUT_HTML ("<P><STRONG class=\"member_done\">".SETTINGS_SAVED."</STRONG></P>");
592         }
593         switch ($opt_in)
594         {
595         case "Y":
596                 define('__TRANSFER_ALLOW_Y', " checked");
597                 define('__TRANSFER_ALLOW_N', "");
598                 define('__TRANSFER_NEW_LINK', "<A href=\"".URL."/modules.php?module=login&amp;what=transfer&amp;mode=new\">".TRANSFER_NOW_LINK."</A>");
599                 break;
600
601         case "N":
602                 define('__TRANSFER_ALLOW_Y', "");
603                 define('__TRANSFER_ALLOW_N', " checked");
604                 define('__TRANSFER_NEW_LINK', TRANSFER_PLEASE_ALLOW_OPT_IN);
605                 break;
606         }
607
608         // Check for latest out-transfers
609         $result = SQL_QUERY_ESC("SELECT time_trans FROM "._MYSQL_PREFIX."_user_transfers_out WHERE time_trans > ".(time() - $CONFIG['transfer_timeout'])." AND userid=%d ORDER BY time_trans DESC LIMIT 1", array($GLOBALS['userid']), __FILE__, __LINE__);
610         if (SQL_NUMROWS($result) == 0)
611         {
612                 // Load template
613                 define('__TRANSFER_SETTINGS_CONTENT', LOAD_TEMPLATE("member_transfer_settings", true));
614         }
615          else
616         {
617                 // Load newest transaction
618                 list($newest) = SQL_FETCHROW($result);
619                 SQL_FREERESULT($result);
620                 define('__TRANSFER_SETTINGS_CONTENT', TRANSFER_LATEST_IS_1.MAKE_DATETIME($newest, "3").TRANSFER_LATEST_IS_2);
621         }
622         // Load template
623         LOAD_TEMPLATE("member_transfer_overview");
624         break;
625 }
626 //
627 ?>