- Surfbar extended with dynamic percentage (only config)
[mailer.git] / inc / modules / member / what-transfer.php
1 <?php
2 /************************************************************************
3  * MXChange v0.2.1                                    Start: 10/07/2004 *
4  * ================                             Last change: 10/07/2004 *
5  *                                                                      *
6  * -------------------------------------------------------------------- *
7  * File              : what-transfer.php                                *
8  * -------------------------------------------------------------------- *
9  * Short description : Point transfers                                  *
10  * -------------------------------------------------------------------- *
11  * Kurzbeschreibung  : Punktetransfers                                  *
12  * -------------------------------------------------------------------- *
13  *                                                                      *
14  * -------------------------------------------------------------------- *
15  * Copyright (c) 2003 - 2008 by Roland Haeder                           *
16  * For more information visit: http://www.mxchange.org                  *
17  *                                                                      *
18  * This program is free software; you can redistribute it and/or modify *
19  * it under the terms of the GNU General Public License as published by *
20  * the Free Software Foundation; either version 2 of the License, or    *
21  * (at your option) any later version.                                  *
22  *                                                                      *
23  * This program is distributed in the hope that it will be useful,      *
24  * but WITHOUT ANY WARRANTY; without even the implied warranty of       *
25  * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the        *
26  * GNU General Public License for more details.                         *
27  *                                                                      *
28  * You should have received a copy of the GNU General Public License    *
29  * along with this program; if not, write to the Free Software          *
30  * Foundation, Inc., 51 Franklin St, Fifth Floor, Boston,               *
31  * MA  02110-1301  USA                                                  *
32  ************************************************************************/
33
34 // Some security stuff...
35 if (ereg(basename(__FILE__), $_SERVER['PHP_SELF'])) {
36         $INC = substr(dirname(__FILE__), 0, strpos(dirname(__FILE__), "/inc") + 4) . "/security.php";
37         require($INC);
38 } elseif (!IS_LOGGED_IN()) {
39         LOAD_URL("modules.php?module=index");
40 } elseif ((!EXT_IS_ACTIVE("transfer")) && (!IS_ADMIN())) {
41         ADD_FATAL(EXTENSION_PROBLEM_EXT_INACTIVE, "transfer");
42         return;
43 }
44
45 // Add description as navigation point
46 ADD_DESCR("member", basename(__FILE__));
47
48 // Load data
49 $result = SQL_QUERY_ESC("SELECT opt_in FROM "._MYSQL_PREFIX."_user_data WHERE userid=%d LIMIT 1",
50  array($GLOBALS['userid']), __FILE__, __LINE__);
51 list($opt_in) = SQL_FETCHROW($result);
52
53 // Free memory
54 SQL_FREERESULT($result);
55
56 $MODE = "";
57 if (!empty($_GET['mode'])) $MODE = $_GET['mode'];
58
59 // Check for "faker"
60 if (($opt_in == "N") && ($MODE == "new")) $MODE = "";
61
62 switch ($MODE)
63 {
64 case "new": // Start new transfer
65         // Get total points and subtract the balance amount from it = maximum transferable points
66         $result = SQL_QUERY_ESC("SELECT SUM(points) FROM "._MYSQL_PREFIX."_user_points WHERE userid=%d AND points > 0",
67          array($GLOBALS['userid']), __FILE__, __LINE__);
68         list($total) = SQL_FETCHROW($result);
69         SQL_FREERESULT($result);
70
71         // Get totally used points and password
72         $result = SQL_QUERY_ESC("SELECT used_points, password FROM "._MYSQL_PREFIX."_user_data WHERE userid=%d LIMIT 1",
73          array($GLOBALS['userid']), __FILE__, __LINE__);
74         list($used, $pass) = SQL_FETCHROW($result);
75         SQL_FREERESULT($result);
76
77         // Remember maximum value for template
78         define('__TRANSFER_MAX_VALUE', round($total - $used - $_CONFIG['transfer_balance'] - 0.5));
79
80         if (isset($_POST['ok']))
81         {
82                 // Add new transfer
83                 if ($_CONFIG['transfer_code'] > 0)
84                 {
85                         // Check for code
86                         $code = GEN_RANDOM_CODE($_CONFIG['transfer_code'], $_POST['code_chk'], $GLOBALS['userid'], __TRANSFER_MAX_VALUE);
87                         $valid_code = ($code == $_POST['code']);
88                 }
89                  else
90                 {
91                         // Zero length (= disabled) is always valid!
92                         $valid_code = true;
93                 }
94
95                 // Test password
96                 $valid_pass = ($pass == generateHash($_POST['password'], $pass));
97
98                 // Test transfer amount
99                 $valid_amount = ((!empty($_POST['points'])) && ($_POST['points'] <= __TRANSFER_MAX_VALUE));
100
101                 // Test reason for transfer
102                 $valid_reason = (!empty($_POST['reason']));
103
104                 // Test if a recipient is selected
105                 $valid_recipient = ($_POST['to_uid'] > 0);
106
107                 // Check for nickname extension and set additional data
108                 $nick = false; $ADD = ", userid";
109                 if (EXT_IS_ACTIVE("nickname"))
110                 {
111                         $ADD = ", nickname";
112                         $nick = true;
113                 }
114                 // Re-check receivers and own personal data
115                 $result = SQL_QUERY_ESC("SELECT userid, sex, surname, family, email".$ADD." FROM "._MYSQL_PREFIX."_user_data WHERE userid IN ('%s', '%s') AND status='CONFIRMED' ORDER BY userid LIMIT 2",
116                  array($GLOBALS['userid'], bigintval($_POST['to_uid'])), __FILE__, __LINE__);
117                 $valid_data = (SQL_NUMROWS($result) == 2);
118
119                 if ($valid_code && $valid_pass && $valid_amount && $valid_reason && $valid_recipient)
120                 {
121                         // Let's start the transfer and load user data
122                         list($uid1, $sex1, $sname1, $fname1, $email1, $nick1) = SQL_FETCHROW($result);
123                         list($uid2, $sex2, $sname2, $fname2, $email2, $nick2) = SQL_FETCHROW($result);
124                         SQL_FREERESULT($result);
125                         if ($uid1 == $GLOBALS['userid'])
126                         {
127                                 // Data row 1 is sender's data
128                                 define('__SENDER_SEX'     , TRANSLATE_SEX($sex1));
129                                 define('__SENDER_NICK'    , $nick1);
130                                 define('__SENDER_SNAME'   , $sname1);
131                                 define('__SENDER_FNAME'   , $fname1);
132                                 define('__SENDER_EMAIL'   , $email1);
133                                 // Data row 2 is recpient's data
134                                 define('__RECIPIENT_SEX'  , TRANSLATE_SEX($sex2));
135                                 define('__RECIPIENT_NICK' , $nick2);
136                                 define('__RECIPIENT_SNAME', $sname2);
137                                 define('__RECIPIENT_FNAME', $fname2);
138                                 define('__RECIPIENT_EMAIL', $email2);
139
140                                 // Prepare variables for testing
141                                 $TEST_NICK_SENDER = $nick1;
142                                 $TEST_NICK_REC = $nick2;
143                         }
144                          else
145                         {
146                                 // Data row 2 is sender's data
147                                 define('__SENDER_SEX'     , TRANSLATE_SEX($sex2));
148                                 define('__SENDER_NICK'    , $nick2);
149                                 define('__SENDER_SNAME'   , $sname2);
150                                 define('__SENDER_FNAME'   , $fname2);
151                                 define('__SENDER_EMAIL'   , $email2);
152                                 // Data row 1 is recpient's data
153                                 define('__RECIPIENT_SEX'  , TRANSLATE_SEX($sex1));
154                                 define('__RECIPIENT_NICK' , $nick1);
155                                 define('__RECIPIENT_SNAME', $sname1);
156                                 define('__RECIPIENT_FNAME', $fname1);
157                                 define('__RECIPIENT_EMAIL', $email1);
158
159                                 // Prepare variables for testing
160                                 $TEST_NICK_SENDER = $nick2;
161                                 $TEST_NICK_REC = $nick1;
162                         }
163                         // Sender's UID is always currently stored in cookie userid...
164                         define('__SENDER_UID'     , $GLOBALS['userid']);
165                         define('__RECIPIENT_UID'  , $_POST['to_uid']);
166
167                         $SENDER = __SENDER_UID;
168                         $RECIPIENT = __RECIPIENT_UID;
169                         if ($nick)
170                         {
171                                 if (($TEST_NICK_SENDER != __SENDER_UID) && (!empty($TEST_NICK_SENDER)))
172                                 {
173                                         $SENDER = __SENDER_NICK;
174                                 }
175                                 if (($TEST_NICK_REC != __RECIPIENT_UID) && (!empty($TEST_NICK_REC)))
176                                 {
177                                         $RECIPIENT = __RECIPIENT_NICK;
178                                 }
179                         }
180
181                         // Remember transfer reason and fancy date/time in constants
182                         define('__TRANSFER_REASON', $_POST['reason']);
183                         if (function_exists('CREATE_FANCY_TIME'))
184                         {
185                                 define('__TRANSFER_EXPIRES', CREATE_FANCY_TIME($_CONFIG['transfer_age']));
186                         }
187                          else
188                         {
189                                 define('__TRANSFER_EXPIRES', round($_CONFIG['transfer_age']/60/60/24)." ".DAYS);
190                         }
191
192                         // Generate tranafer id
193                         define('__TRANS_ID', bigintval(GEN_RANDOM_CODE("10", rand(0, 99999), $GLOBALS['userid'], $_POST['reason'])));
194
195                         // Add entries to both tables
196                         $result = SQL_QUERY_ESC("INSERT INTO "._MYSQL_PREFIX."_user_transfers_in (userid, from_uid, points, reason, time_trans, trans_id) VALUES ('%s', '%s', '%s', '%s', UNIX_TIMESTAMP(), '%s')",
197                          array(bigintval($_POST['to_uid']), $GLOBALS['userid'], bigintval($_POST['points']), addslashes($_POST['reason']), __TRANS_ID),
198                          __FILE__, __LINE__);
199                         $result = SQL_QUERY_ESC("INSERT INTO "._MYSQL_PREFIX."_user_transfers_out (userid, to_uid, points, reason, time_trans, trans_id) VALUES ('%s', '%s', '%s', '%s', UNIX_TIMESTAMP(), '%s')",
200                          array($GLOBALS['userid'], bigintval($_POST['to_uid']), bigintval($_POST['points']), addslashes($_POST['reason']), __TRANS_ID),
201                          __FILE__, __LINE__);
202
203                         // Add points to account *directly* ...
204                         $result = SQL_QUERY_ESC("UPDATE "._MYSQL_PREFIX."_user_points SET points=points+%s WHERE userid=%d AND ref_depth=0 LIMIT 1",
205                          array(bigintval($_POST['points']), bigintval($_POST['to_uid'])), __FILE__, __LINE__);
206
207                         // ... and add it to current user's used points
208                         $result = SQL_QUERY_ESC("UPDATE "._MYSQL_PREFIX."_user_data SET used_points=used_points+%s WHERE userid=%d LIMIT 1",
209                          array(bigintval($_POST['points']), $GLOBALS['userid']), __FILE__, __LINE__);
210
211                         // First send email to recipient
212                         $msg = LOAD_EMAIL_TEMPLATE("member_transfer_recipient", "", __RECIPIENT_UID);
213                         SEND_EMAIL(__RECIPIENT_EMAIL, TRANSFER_MEMBER_RECIPIENT_SUBJ.": ".$SENDER, $msg);
214
215                         // Second send email to sender
216                         $msg = LOAD_EMAIL_TEMPLATE("member_transfer_sender", "", __SENDER_UID);
217                         SEND_EMAIL(__SENDER_EMAIL, TRANSFER_MEMBER_SENDER_SUBJ.": ".$RECIPIENT, $msg);
218
219                         // At last send admin mail(s)
220                         $ADMIN_SUBJ = sprintf("%s (%s->%s)", TRANSFER_ADMIN_SUBJECT, $SENDER, $RECIPIENT);
221                         SEND_ADMIN_NOTIFICATION($ADMIN_SUBJ, "admin_transfer_points");
222
223                         // Transfer is completed
224                         LOAD_TEMPLATE("admin_settings_saved", false, TRANSFER_COMPLETED."<br /><A href=\"".URL."/modules.php?module=login&amp;what=transfer\">".TRANSFER_CONTINUE_OVERVIEW."</A>");
225                 }
226                  elseif (!$valid_code)
227                 {
228                         // Invalid Touring code!
229                         OUTPUT_HTML("<P><STRONG class=\"member_note\">".TRANSFER_INVALID_CODE."</STRONG></P>");
230                         unset($_POST['ok']);
231                 }
232                  elseif (!$valid_pass)
233                 {
234                         // Wrong password entered
235                         OUTPUT_HTML("<P><STRONG class=\"member_note\">".TRANSFER_INVALID_PASSWORD."</STRONG></P>");
236                         unset($_POST['ok']);
237                 }
238                  elseif (!$valid_amount)
239                 {
240                         // Too much points entered
241                         OUTPUT_HTML("<P><STRONG class=\"member_note\">".TRANSFER_INVALID_POINTS."</STRONG></P>");
242                         unset($_POST['ok']);
243                 }
244                  elseif (!$valid_reason)
245                 {
246                         // No transfer reason entered
247                         OUTPUT_HTML("<P><STRONG class=\"member_note\">".TRANSFER_INVALID_REASON."</STRONG></P>");
248                         unset($_POST['ok']);
249                 }
250                  elseif (!$valid_recipient)
251                 {
252                         // No recipient selected
253                         OUTPUT_HTML("<P><STRONG class=\"member_note\">".TRANSFER_INVALID_RECIPIENT."</STRONG></P>");
254                         unset($_POST['ok']);
255                 }
256                  elseif (!$valid_data)
257                 {
258                         // No recipient selected
259                         OUTPUT_HTML("<P><STRONG class=\"member_note\">".TRANSFER_INVALID_DATA."</STRONG></P>");
260                         unset($_POST['ok']);
261                 }
262         }
263         if (!isset($_POST['ok']))
264         {
265                 // Load member list
266                 if (EXT_IS_ACTIVE("nickname"))
267                 {
268                         // Load userid and nickname
269                         $result = SQL_QUERY_ESC("SELECT userid, nickname FROM "._MYSQL_PREFIX."_user_data WHERE status='CONFIRMED' AND opt_in='Y' AND userid != '%s' ORDER BY userid",
270                          array($GLOBALS['userid']), __FILE__, __LINE__);
271                 }
272                  else
273                 {
274                         // Load only userid
275                         $result = SQL_QUERY_ESC("SELECT userid, userid FROM "._MYSQL_PREFIX."_user_data WHERE status='CONFIRMED' AND opt_in='Y' AND userid != '%s' ORDER BY userid",
276                          array($GLOBALS['userid']), __FILE__, __LINE__);
277                 }
278                 if (SQL_NUMROWS($result) > 0)
279                 {
280                         // Load list
281                         $OUT  = "<SELECT name=\"to_uid\" size=\"1\" class=\"member_select\">
282   <OPTION value=\"0\">".SELECT_NONE."</OPTION>\n";
283                         while (list($uid, $nick) = SQL_FETCHROW($result))
284                         {
285                                 $OUT .= "<OPTION value=\"".$uid."\"";
286                                 if ((isset($_POST['to_uid'])) && ($_POST['to_uid'] == $uid)) $OUT .= " selected=\"selected\"";
287                                 $OUT .= ">";
288                                 if (($nick != $uid) && (!empty($nick)))
289                                 {
290                                         // Output nickname
291                                         $OUT .= $nick;
292                                 }
293                                  else
294                                 {
295                                         // Output userid
296                                         $OUT .= $uid;
297                                 }
298                                 $OUT .= "</OPTION>\n";
299                         }
300                         $OUT .= "</SELECT>\n";
301                         define('__TRANSFER_TO_DISABLED', "");
302
303                         // Free memory
304                         SQL_FREERESULT($result);
305                 }
306                  else
307                 {
308                         // No one else is opt-in
309                         $OUT = TRANSFER_NO_ONE_ELSE_OPT_IN;
310                         define('__TRANSFER_TO_DISABLED', " disabled");
311                 }
312                 // Transfer output to constant for the template
313                 define('__TRANSFER_USERID_SELECTION', $OUT);
314
315                 // Generate Code
316                 if ($_CONFIG['transfer_code'] > 0)
317                 {
318                         $rand = rand(0, 99999);
319                         $code = GEN_RANDOM_CODE($_CONFIG['transfer_code'], $rand, $GLOBALS['userid'], __TRANSFER_MAX_VALUE);
320                         $img = GENERATE_IMAGE($code, false);
321                         define('__TRANSFER_IMAGE_INPUT', "<INPUT type=\"hidden\" name=\"code_chk\" value=\"".$rand."\"><INPUT type=\"text\" name=\"code\" class=\"member_normal\" size=\"5\" maxlength=\"7\"".__TRANSFER_TO_DISABLED.">&nbsp;".$img);
322                 }
323                  else
324                 {
325                         $code = "00000";
326                         define('__TRANSFER_IMAGE_INPUT', TRANSFER_NO_CODE);
327                 }
328
329                 // Transfer maybe already entered valued'
330                 if (isset($_GET['ok'])) {
331                         // Get values from form
332                         define('__TRANSFER_POINTS_VALUE', bigintval($_POST['points']));
333                         define('__TRANSFER_REASON_VALUE', strip_tags($_POST['reason']));
334                 } else {
335                         // Set empty values
336                         define('__TRANSFER_POINTS_VALUE', "");
337                         define('__TRANSFER_REASON_VALUE', "");
338                 }
339
340                 // Output form
341                 LOAD_TEMPLATE("member_transfer_new");
342         }
343         break;
344
345 case "list_in": // List only incoming transactions
346 case "list_out": // List only outgoing transactions
347         // As you can see I put list_in and list_out together. I now do a switch() again on it for the right SQL command
348         switch ($MODE)
349         {
350         case "list_in":
351                 $SQL = "SELECT trans_id, from_uid, points, reason, time_trans FROM "._MYSQL_PREFIX."_user_transfers_in WHERE userid=%d ORDER BY time_trans DESC LIMIT ".$_CONFIG['transfer_max'];
352                 $NOTHING = TRANSFER_NO_INCOMING_TRANSFERS;
353                 define('__TRANSFER_SUM', TRANSFER_TOTAL_INCOMING);
354                 define('__TRANSFER_TITLE', TRANSFER_LIST_INCOMING);
355                 break;
356
357         case "list_out":
358                 $SQL = "SELECT trans_id, to_uid, points, reason, time_trans FROM "._MYSQL_PREFIX."_user_transfers_out WHERE userid=%d ORDER BY time_trans DESC LIMIT ".$_CONFIG['transfer_max'];
359                 $NOTHING = TRANSFER_NO_OUTGOING_TRANSFERS;
360                 define('__TRANSFER_SUM', TRANSFER_TOTAL_OUTGOING);
361                 define('__TRANSFER_TITLE', TRANSFER_LIST_OUTGOING);
362                 break;
363         }
364
365         // Run the SQL command
366         $total = "0";
367         $result = SQL_QUERY_ESC($SQL, array($GLOBALS['userid']), __FILE__, __LINE__);
368         if (SQL_NUMROWS($result) > 0)
369         {
370                 $OUT = ""; $SW = 2;
371                 while (list($tid, $uid, $points, $reason, $stamp) = SQL_FETCHROW($result))
372                 {
373                         if ($type == "OUT") $points = "$points-";
374                         $OUT .= "<TR>
375   <TD class=\"transfer_row1 switch_sw".$SW." bottom2 right2\">
376     <FONT class=\"transfer_row1\">".$tid."</FONT>
377   </TD>
378   <TD class=\"transfer_row2 switch_sw".$SW." bottom2 right2\">
379     <FONT class=\"transfer_row2\">".MAKE_DATETIME($stamp, "3")."</FONT>
380   </TD>
381   <TD class=\"transfer_row3 switch_sw".$SW." bottom2 right2\">
382     <FONT class=\"transfer_row3\">".$uid."</FONT>
383   </TD>
384   <TD class=\"transfer_row4 switch_sw".$SW." bottom2 right2\">
385     <FONT class=\"transfer_row4\">".$reason."</FONT>
386   </TD>
387   <TD class=\"transfer_row5 switch_sw".$SW." bottom2\">
388     <FONT class=\"transfer_row5\">".$points."</FONT>
389   </TD>
390 </TR>\n";
391                         $total += $points;
392                         $SW = 3 - $SW;
393                 }
394
395                 // Free memory
396                 SQL_FREERESULT($result);
397         }
398          else
399         {
400                 // Nothing for in or out
401                 $OUT = "<TR>
402   <TD colspan=\"5\" align=\"center\" class=\"bottom2\" height=\"70\">
403     ".LOAD_TEMPLATE("admin_settings_saved", true, $NOTHING)."
404   </TD>
405 </TR>";
406         }
407
408         // ... and add them to a constant for the template
409         define('__TRANSFER_ROWS', $OUT);
410
411         // Remeber total amount
412         define('__TRANSFER_TOTAL_VALUE', $total);
413
414         // Load final template
415         LOAD_TEMPLATE("member_transfer_list");
416         break;
417
418 case "list_all": // List all transactions
419         // We fill a temporary table with data from both tables. This is much easier
420         // to code and unstand by you as sub-SELECT queries. I know this is not the
421         // fastest way but it shall be fine for now.
422         //
423         // First of all create the temporary table
424         $result = SQL_QUERY("CREATE TEMPORARY TABLE "._MYSQL_PREFIX."_transfers_tmp (
425 trans_id VARCHAR(12) NOT NULL DEFAULT '',
426 party_uid BIGINT(20) NOT NULL DEFAULT '0',
427 points BIGINT(20) NOT NULL DEFAULT '0',
428 reason VARCHAR(255) NOT NULL DEFAULT '',
429 time_trans VARCHAR(10) NOT NULL DEFAULT '0',
430 trans_type ENUM('IN', 'OUT') NOT NULL DEFAULT 'IN',
431 KEY(party_uid)
432 ) TYPE=HEAP", __FILE__, __LINE__);
433
434         // Let's begin with the incoming list
435         $result = SQL_QUERY_ESC("SELECT trans_id, from_uid, points, reason, time_trans FROM "._MYSQL_PREFIX."_user_transfers_in WHERE userid=%d ORDER BY id LIMIT %s",
436 array($GLOBALS['userid'], $_CONFIG['transfer_max']), __FILE__, __LINE__);
437         while ($DATA = SQL_FETCHROW($result))
438         {
439                 $DATA[] = "IN";
440                 $DATA = implode("', '", $DATA);
441                 $res_temp = SQL_QUERY("INSERT INTO "._MYSQL_PREFIX."_transfers_tmp (trans_id, party_uid, points, reason, time_trans, trans_type) VALUES ('".$DATA."')", __FILE__, __LINE__);
442         }
443
444         // Free memory
445         SQL_FREERESULT($result);
446
447         // As the last table transfer data from outgoing table to temporary
448         $result = SQL_QUERY_ESC("SELECT trans_id, to_uid, points, reason, time_trans FROM "._MYSQL_PREFIX."_user_transfers_out WHERE userid=%d ORDER BY id LIMIT %s",
449 array($GLOBALS['userid'], $_CONFIG['transfer_max']), __FILE__, __LINE__);
450         while ($DATA = SQL_FETCHROW($result))
451         {
452                 $DATA[] = "OUT";
453                 $DATA = implode("', '", $DATA);
454                 $res_temp = SQL_QUERY("INSERT INTO "._MYSQL_PREFIX."_transfers_tmp (trans_id, party_uid, points, reason, time_trans, trans_type) VALUES ('".$DATA."')", __FILE__, __LINE__);
455         }
456
457         // Free memory
458         SQL_FREERESULT($result);
459
460         $total = "0";
461         if (SQL_NUMROWS($result) > 0)
462         {
463                 // Output rows
464                 $OUT = ""; $SW = 2;
465                 $result = SQL_QUERY("SELECT party_uid, trans_id, points, reason, time_trans, trans_type FROM "._MYSQL_PREFIX."_transfers_tmp ORDER BY time_trans DESC", __FILE__, __LINE__);
466                 while(list($uid, $idx, $points, $reason, $stamp, $type) = SQL_FETCHROW($result))
467                 {
468                         if ($type == "OUT") $points = "-$points";
469                         $OUT .= "<TR>
470   <TD class=\"transfer_row1 switch_sw".$SW." bottom2 right2\">
471     <FONT class=\"transfer_row1\">".$idx."</FONT>
472   </TD>
473   <TD class=\"transfer_row2 switch_sw".$SW." bottom2 right2\">
474     <FONT class=\"transfer_row2\">".MAKE_DATETIME($stamp, "3")."</FONT>
475   </TD>
476   <TD class=\"transfer_row3 switch_sw".$SW." bottom2 right2\">
477     <FONT class=\"transfer_row3\">".$uid."</FONT>
478   </TD>
479   <TD class=\"transfer_row4 switch_sw".$SW." bottom2 right2\">
480     <FONT class=\"transfer_row4\">".$reason."</FONT>
481   </TD>
482   <TD class=\"transfer_row5 switch_sw".$SW." bottom2\">
483     <FONT class=\"transfer_row5\">".$points."</FONT>
484   </TD>
485 </TR>\n";
486                         $total += $points;
487                         $SW = 3 - $SW;
488                 }
489
490                 // Free memory
491                 SQL_FREERESULT($result);
492         }
493          else
494         {
495                 // Nothing for in and out
496                 $OUT = "<TR>
497   <TD colspan=\"5\" align=\"center\" class=\"bottom2\" height=\"70\">
498     ".LOAD_TEMPLATE("admin_settings_saved", true, TRANSFER_NO_INOUT_TRANSFERS)."
499   </TD>
500 </TR>";
501         }
502
503         // ... and add them to a constant for the template
504         define('__TRANSFER_ROWS', $OUT);
505
506         // Remeber total amount
507         define('__TRANSFER_TOTAL_VALUE', $total);
508
509         // Set title
510         define('__TRANSFER_TITLE', TRANSFER_LIST_ALL);
511
512         // Set "balance" word
513         define('__TRANSFER_SUM', TRANSFER_TOTAL_BALANCE);
514
515         // Load final template
516         LOAD_TEMPLATE("member_transfer_list");
517
518         // At the end we don't need a temporary table in memory
519         $result = SQL_QUERY("DROP TABLE IF EXISTS "._MYSQL_PREFIX."_transfers_tmp", __FILE__, __LINE__);
520
521         // Free some memory...
522         SQL_FREERESULT($result);
523         break;
524
525 case "": // Overview page
526         // Check incoming transfers
527         $result = SQL_QUERY_ESC("SELECT COUNT(id) FROM "._MYSQL_PREFIX."_user_transfers_in WHERE userid=%d", array($GLOBALS['userid']), __FILE__, __LINE__);
528         list($dmy) = SQL_FETCHROW($result);
529         SQL_FREERESULT($result);
530
531         $total=$dmy;
532         if ($dmy > 0)
533         {
534                 define('__TRANSFER_IN_LINK', "<A href=\"".URL."/modules.php?module=login&amp;what=transfer&amp;mode=list_in\">".$dmy."</A>");
535         }
536          else
537         {
538                 define('__TRANSFER_IN_LINK', $dmy);
539         }
540
541         // Check outgoing transfers
542         $result = SQL_QUERY_ESC("SELECT COUNT(id) FROM "._MYSQL_PREFIX."_user_transfers_out WHERE userid=%d", array($GLOBALS['userid']), __FILE__, __LINE__);
543         list($dmy) = SQL_FETCHROW($result);
544         SQL_FREERESULT($result);
545
546         $total+=$dmy;
547         if ($dmy > 0)
548         {
549                 define('__TRANSFER_OUT_LINK', "<A href=\"".URL."/modules.php?module=login&amp;what=transfer&amp;mode=list_out\">".$dmy."</A>");
550         }
551          else
552         {
553                 define('__TRANSFER_OUT_LINK', $dmy);
554         }
555
556         // Total transactions
557         if ($total > 0)
558         {
559                 define('__TRANSFER_ALL_LINK', "<A href=\"".URL."/modules.php?module=login&amp;what=transfer&amp;mode=list_all\">".$total."</A>");
560         }
561          else
562         {
563                 define('__TRANSFER_ALL_LINK', $total);
564         }
565
566         if (isset($_POST['ok']))
567         {
568                 // Save settings
569                 $result = SQL_QUERY_ESC("UPDATE "._MYSQL_PREFIX."_user_data SET opt_in='%s' WHERE userid=%d LIMIT 1",
570                  array($_POST['opt_in'], $GLOBALS['userid']), __FILE__, __LINE__);
571
572                 // Rember for next switch() command
573                 $opt_in = $_POST['opt_in'];
574
575                 // "Settings saved..."
576                 OUTPUT_HTML("<P><STRONG class=\"member_done\">".SETTINGS_SAVED."</STRONG></P>");
577         }
578         switch ($opt_in)
579         {
580         case 'Y':
581                 define('__TRANSFER_ALLOW_Y', ' checked');
582                 define('__TRANSFER_ALLOW_N', "");
583                 define('__TRANSFER_NEW_LINK', "<A href=\"".URL."/modules.php?module=login&amp;what=transfer&amp;mode=new\">".TRANSFER_NOW_LINK."</A>");
584                 break;
585
586         case 'N':
587                 define('__TRANSFER_ALLOW_Y', "");
588                 define('__TRANSFER_ALLOW_N', ' checked');
589                 define('__TRANSFER_NEW_LINK', TRANSFER_PLEASE_ALLOW_OPT_IN);
590                 break;
591         }
592
593         // Check for latest out-transfers
594         $result = SQL_QUERY_ESC("SELECT time_trans FROM "._MYSQL_PREFIX."_user_transfers_out WHERE time_trans > ".(time() - $_CONFIG['transfer_timeout'])." AND userid=%d ORDER BY time_trans DESC LIMIT 1", array($GLOBALS['userid']), __FILE__, __LINE__);
595         if (SQL_NUMROWS($result) == 0)
596         {
597                 // Load template
598                 define('__TRANSFER_SETTINGS_CONTENT', LOAD_TEMPLATE("member_transfer_settings", true));
599         }
600          else
601         {
602                 // Load newest transaction
603                 list($newest) = SQL_FETCHROW($result);
604                 SQL_FREERESULT($result);
605                 define('__TRANSFER_SETTINGS_CONTENT', TRANSFER_LATEST_IS_1.MAKE_DATETIME($newest, "3").TRANSFER_LATEST_IS_2);
606         }
607         // Load template
608         LOAD_TEMPLATE("member_transfer_overview");
609         break;
610 }
611 //
612 ?>