Heavy rewrite:
[mailer.git] / inc / modules / member / what-transfer.php
1 <?php
2 /************************************************************************
3  * MXChange v0.2.1                                    Start: 10/07/2004 *
4  * ================                             Last change: 10/07/2004 *
5  *                                                                      *
6  * -------------------------------------------------------------------- *
7  * File              : what-transfer.php                                *
8  * -------------------------------------------------------------------- *
9  * Short description : Point transfers                                  *
10  * -------------------------------------------------------------------- *
11  * Kurzbeschreibung  : Punktetransfers                                  *
12  * -------------------------------------------------------------------- *
13  * $Revision::                                                        $ *
14  * $Date::                                                            $ *
15  * $Tag:: 0.2.1-FINAL                                                 $ *
16  * $Author::                                                          $ *
17  * Needs to be in all Files and every File needs "svn propset           *
18  * svn:keywords Date Revision" (autoprobset!) at least!!!!!!            *
19  * -------------------------------------------------------------------- *
20  * Copyright (c) 2003 - 2008 by Roland Haeder                           *
21  * For more information visit: http://www.mxchange.org                  *
22  *                                                                      *
23  * This program is free software; you can redistribute it and/or modify *
24  * it under the terms of the GNU General Public License as published by *
25  * the Free Software Foundation; either version 2 of the License, or    *
26  * (at your option) any later version.                                  *
27  *                                                                      *
28  * This program is distributed in the hope that it will be useful,      *
29  * but WITHOUT ANY WARRANTY; without even the implied warranty of       *
30  * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the        *
31  * GNU General Public License for more details.                         *
32  *                                                                      *
33  * You should have received a copy of the GNU General Public License    *
34  * along with this program; if not, write to the Free Software          *
35  * Foundation, Inc., 51 Franklin St, Fifth Floor, Boston,               *
36  * MA  02110-1301  USA                                                  *
37  ************************************************************************/
38
39 // Some security stuff...
40 if (!defined('__SECURITY')) {
41         $INC = substr(dirname(__FILE__), 0, strpos(dirname(__FILE__), '/inc') + 4) . '/security.php';
42         require($INC);
43 } elseif (!IS_MEMBER()) {
44         redirectToUrl('modules.php?module=index');
45 } elseif ((!EXT_IS_ACTIVE('transfer')) && (!IS_ADMIN())) {
46         addFatalMessage(__FILE__, __LINE__, generateExtensionInactiveNotInstalledMessage('transfer'));
47         return;
48 }
49
50 // Add description as navigation point
51 ADD_DESCR('member', __FILE__);
52
53 // Load data
54 $result = SQL_QUERY_ESC("SELECT opt_in FROM `{!_MYSQL_PREFIX!}_user_data` WHERE userid=%s LIMIT 1",
55 array(getUserId()), __FILE__, __LINE__);
56 list($opt_in) = SQL_FETCHROW($result);
57
58 // Free memory
59 SQL_FREERESULT($result);
60
61 $mode = '';
62 if (REQUEST_ISSET_GET('mode')) $mode = REQUEST_GET('mode');
63
64 // Check for "faker"
65 if (($opt_in == 'N') && ($mode == 'new')) $mode = '';
66
67 switch ($mode) {
68         case 'new': // Start new transfer
69                 // Get total points and subtract the balance amount from it = maximum transferable points
70                 $total = GET_TOTAL_DATA(getUserId(), 'user_points', 'points')  - GET_TOTAL_DATA(getUserId(), 'user_data', 'used_points');
71
72                 // Remember maximum value for template
73                 define('__TRANSFER_MAX_VALUE', round($total - getConfig('transfer_balance') - 0.5));
74
75                 if (isFormSent()) {
76                         // Add new transfer
77                         if (getConfig('transfer_code') > 0) {
78                                 // Check for code
79                                 $code = generateRandomCode(getConfig('transfer_code'), REQUEST_POST('code_chk'), getUserId(), constant('__TRANSFER_MAX_VALUE'));
80                                 $valid_code = ($code == REQUEST_POST('code'));
81                         } else {
82                                 // Zero length (= disabled) is always valid!
83                                 $valid_code = true;
84                         }
85
86                         // Test password
87                         $valid_pass = ($pass == generateHash(REQUEST_POST('password'), $pass));
88
89                         // Test transfer amount
90                         $valid_amount = ((REQUEST_ISSET_POST('points')) && (REQUEST_POST('points') <= constant('__TRANSFER_MAX_VALUE')));
91
92                         // Test reason for transfer
93                         $valid_reason = (REQUEST_ISSET_POST('reason'));
94
95                         // Test if a recipient is selected
96                         $valid_recipient = (REQUEST_POST('to_uid') > 0);
97
98                         // Check for nickname extension and set additional data
99                         $nick = false; $add = ', `userid`';
100                         if (EXT_IS_ACTIVE('nickname')) {
101                                 $add = ', `nickname`';
102                                 $nick = true;
103                         }
104
105                         // Re-check receivers and own personal data
106                         $result = SQL_QUERY_ESC("SELECT `userid`, `gender`, `surname`, `family`, `email`".$add." FROM `{!_MYSQL_PREFIX!}_user_data` WHERE `userid` IN ('%s','%s') AND `status`='CONFIRMED' ORDER BY `userid` ASC LIMIT 2",
107                                 array(getUserId(), bigintval(REQUEST_POST('to_uid'))), __FILE__, __LINE__);
108                         $valid_data = (SQL_NUMROWS($result) == 2);
109
110                         if ($valid_code && $valid_pass && $valid_amount && $valid_reason && $valid_recipient) {
111                                 // Let's start the transfer and load user data
112                                 list($uid1, $gender1, $sname1, $fname1, $email1, $nick1) = SQL_FETCHROW($result);
113                                 list($uid2, $gender2, $sname2, $fname2, $email2, $nick2) = SQL_FETCHROW($result);
114                                 SQL_FREERESULT($result);
115                                 // @TODO Rewrite all these constants to array elements
116                                 if ($uid1 == getUserId()) {
117                                         // Data row 1 is sender's data
118                                         define('__SENDER_GENDER'   , translateGender($gender1));
119                                         define('__SENDER_NICK'     , $nick1);
120                                         define('__SENDER_SNAME'    , $sname1);
121                                         define('__SENDER_FNAME'    , $fname1);
122                                         define('__SENDER_EMAIL'    , $email1);
123                                         // Data row 2 is recpient's data
124                                         define('__RECIPIENT_GENDER', translateGender($gender2));
125                                         define('__RECIPIENT_NICK'  , $nick2);
126                                         define('__RECIPIENT_SNAME' , $sname2);
127                                         define('__RECIPIENT_FNAME' , $fname2);
128                                         define('__RECIPIENT_EMAIL' , $email2);
129
130                                         // Prepare variables for testing
131                                         $TEST_NICK_SENDER = $nick1;
132                                         $TEST_NICK_REC = $nick2;
133                                 } else {
134                                         // Data row 2 is sender's data
135                                         define('__SENDER_GENDER'   , translateGender($gender2));
136                                         define('__SENDER_NICK'     , $nick2);
137                                         define('__SENDER_SNAME'    , $sname2);
138                                         define('__SENDER_FNAME'    , $fname2);
139                                         define('__SENDER_EMAIL'    , $email2);
140                                         // Data row 1 is recpient's data
141                                         define('__RECIPIENT_GENDER', translateGender($gender1));
142                                         define('__RECIPIENT_NICK'  , $nick1);
143                                         define('__RECIPIENT_SNAME' , $sname1);
144                                         define('__RECIPIENT_FNAME' , $fname1);
145                                         define('__RECIPIENT_EMAIL' , $email1);
146
147                                         // Prepare variables for testing
148                                         $TEST_NICK_SENDER = $nick2;
149                                         $TEST_NICK_REC = $nick1;
150                                 }
151
152                                 // Sender's UID is always currently stored in cookie userid...
153                                 define('__SENDER_UID'     , getUserId());
154                                 define('__RECIPIENT_UID'  , REQUEST_POST('to_uid'));
155
156                                 $SENDER = constant('__SENDER_UID');
157                                 $RECIPIENT = constant('__RECIPIENT_UID');
158                                 if ($nick) {
159                                         if (($TEST_NICK_SENDER != constant('__SENDER_UID')) && (!empty($TEST_NICK_SENDER))) {
160                                                 $SENDER = constant('__SENDER_NICK');
161                                         }
162
163                                         if (($TEST_NICK_REC != constant('__RECIPIENT_UID')) && (!empty($TEST_NICK_REC))) {
164                                                 $RECIPIENT = constant('__RECIPIENT_NICK');
165                                         }
166                                 }
167
168                                 // Remember transfer reason and fancy date/time in constants
169                                 define('__TRANSFER_REASON', REQUEST_POST('reason'));
170                                 define('__TRANSFER_EXPIRES', createFancyTime(getConfig('transfer_age')));
171
172                                 // Generate tranafer id
173                                 define('__TRANS_ID', bigintval(generateRandomCode("10", mt_rand(0, 99999), getUserId(), REQUEST_POST('reason'))));
174
175                                 // Add entries to both tables
176                                 SQL_QUERY_ESC("INSERT INTO `{!_MYSQL_PREFIX!}_user_transfers_in` (`userid`, `from_uid`, `points`, `reason`, `time_trans`, `trans_id`) VALUES ('%s','%s','%s','%s', UNIX_TIMESTAMP(),'%s')",
177                                         array(bigintval(REQUEST_POST('to_uid')), getUserId(), bigintval(REQUEST_POST('points')), REQUEST_POST('reason'), __TRANS_ID),
178                                 __FILE__, __LINE__);
179                                 SQL_QUERY_ESC("INSERT INTO `{!_MYSQL_PREFIX!}_user_transfers_out` (`userid`, `to_uid`, `points`, `reason`, `time_trans`, `trans_id`) VALUES ('%s','%s','%s','%s', UNIX_TIMESTAMP(),'%s')",
180                                         array(getUserId(), bigintval(REQUEST_POST('to_uid')), bigintval(REQUEST_POST('points')), REQUEST_POST('reason'), __TRANS_ID),
181                                 __FILE__, __LINE__);
182
183                                 // Add points to account *directly* ...
184                                 ADD_POINTS_REFSYSTEM_DIRECT('member_transfer', bigintval(REQUEST_POST('to_uid')), bigintval(REQUEST_POST('points')));
185
186                                 // ... and add it to current user's used points
187                                 SUB_POINTS('transfer', getUserId(), REQUEST_POST('points'));
188
189                                 // First send email to recipient
190                                 $msg = LOAD_EMAIL_TEMPLATE('member_transfer_recipient', '', constant('__RECIPIENT_UID'));
191                                 sendEmail(constant('__RECIPIENT_EMAIL'), getMessage('TRANSFER_MEMBER_RECIPIENT_SUBJ') . ': ' . $SENDER, $msg);
192
193                                 // Second send email to sender
194                                 $msg = LOAD_EMAIL_TEMPLATE('member_transfer_sender', '', constant('__SENDER_UID'));
195                                 sendEmail(constant('__SENDER_EMAIL'), getMessage('TRANSFER_MEMBER_SENDER_SUBJ') . ': ' . $RECIPIENT, $msg);
196
197                                 // At last send admin mail(s)
198                                 $ADMIN_SUBJ = sprintf("%s (%s->%s)", getMessage('TRANSFER_ADMIN_SUBJECT'), $SENDER, $RECIPIENT);
199                                 sendAdminNotification($ADMIN_SUBJ, 'admin_transfer_points');
200
201                                 // Transfer is completed
202                                 LOAD_TEMPLATE('admin_settings_saved', false, getMessage('TRANSFER_COMPLETED')."<br /><a href=\"{!URL!}/modules.php?module=login&amp;what=transfer\">{--TRANSFER_CONTINUE_OVERVIEW--}</a>");
203                         } elseif (!$valid_code) {
204                                 // Invalid Touring code!
205                                 LOAD_TEMPLATE('admin_settings_saved', false, "<div class=\"member_note\">{--TRANSFER_INVALID_CODE--}</div>");
206                                 REQUEST_UNSET_POST('ok');
207                         } elseif (!$valid_pass) {
208                                 // Wrong password entered
209                                 LOAD_TEMPLATE('admin_settings_saved', false, "<div class=\"member_note\">{--TRANSFER_INVALID_PASSWORD--}</div>");
210                                 REQUEST_UNSET_POST('ok');
211                         } elseif (!$valid_amount) {
212                                 // Too much points entered
213                                 LOAD_TEMPLATE('admin_settings_saved', false, "<div class=\"member_note\">{--TRANSFER_INVALID_POINTS--}</div>");
214                                 REQUEST_UNSET_POST('ok');
215                         } elseif (!$valid_reason) {
216                                 // No transfer reason entered
217                                 LOAD_TEMPLATE('admin_settings_saved', false, "<div class=\"member_note\">{--TRANSFER_INVALID_REASON--}</div>");
218                                 REQUEST_UNSET_POST('ok');
219                         } elseif (!$valid_recipient) {
220                                 // No recipient selected
221                                 LOAD_TEMPLATE('admin_settings_saved', false, "<div class=\"member_note\">{--TRANSFER_INVALID_RECIPIENT--}</div>");
222                                 REQUEST_UNSET_POST('ok');
223                         } elseif (!$valid_data) {
224                                 // No recipient selected
225                                 LOAD_TEMPLATE('admin_settings_saved', false, "<div class=\"member_note\">{--TRANSFER_INVALID_DATA--}</div>");
226                                 REQUEST_UNSET_POST('ok');
227                         }
228                 }
229
230                 if (!isFormSent()) {
231                         // Load member list
232                         if (EXT_IS_ACTIVE('nickname')) {
233                                 // Load userid and nickname
234                                 $result = SQL_QUERY_ESC("SELECT `userid`, `nickname` FROM `{!_MYSQL_PREFIX!}_user_data` WHERE `status`='CONFIRMED' AND `opt_in`='Y' AND `userid` != '%s' ORDER BY `userid` ASC",
235                                         array(getUserId()), __FILE__, __LINE__);
236                         } else {
237                                 // Load only userid
238                                 $result = SQL_QUERY_ESC("SELECT `userid`, `userid` FROM `{!_MYSQL_PREFIX!}_user_data` WHERE `status`='CONFIRMED' AND `opt_in`='Y' AND `userid` != '%s' ORDER BY `userid` ASC",
239                                         array(getUserId()), __FILE__, __LINE__);
240                         }
241
242                         if (SQL_NUMROWS($result) > 0) {
243                                 // Load list
244                                 $OUT  = "<select name=\"to_uid\" size=\"1\" class=\"member_select\">
245         <option value=\"0\">{--SELECT_NONE--}</option>\n";
246                                 // @TODO Try to rewrite his to $content = SQL_FETCHARRAY(), see some lines above for two different queries
247                                 while (list($uid, $nick) = SQL_FETCHROW($result)) {
248                                         $OUT .= "       <option value=\"".$uid."\"";
249                                         if ((REQUEST_ISSET_POST(('to_uid'))) && (REQUEST_POST('to_uid') == $uid)) $OUT .= ' selected="selected"';
250                                         $OUT .= ">";
251                                         if (($nick != $uid) && (!empty($nick))) {
252                                                 // Output nickname
253                                                 $OUT .= $nick;
254                                         } else {
255                                                 // Output userid
256                                                 $OUT .= $uid;
257                                         }
258                                         $OUT .= "</option>\n";
259                                 }
260                                 $OUT .= "</select>\n";
261                                 define('__TRANSFER_TO_DISABLED', '');
262
263                                 // Free memory
264                                 SQL_FREERESULT($result);
265                         } else {
266                                 // No one else is opt-in
267                                 $OUT = getMessage('TRANSFER_NO_ONE_ELSE_OPT_IN');
268                                 define('__TRANSFER_TO_DISABLED', ' disabled="disabled"');
269                         }
270
271                         // Transfer output to constant for the template
272                         define('__TRANSFER_USERID_SELECTION', $OUT);
273
274                         // Generate Code
275                         if (getConfig('transfer_code') > 0) {
276                                 $rand = mt_rand(0, 99999);
277                                 $code = generateRandomCode(getConfig('transfer_code'), $rand, getUserId(), constant('__TRANSFER_MAX_VALUE'));
278                                 $img = GENERATE_IMAGE($code, false);
279                                 define('__TRANSFER_IMAGE_INPUT', "<input type=\"hidden\" name=\"code_chk\" value=\"".$rand."\" /><input type=\"text\" name=\"code\" class=\"member_normal\" size=\"5\" maxlength=\"7\"{!__TRANSFER_TO_DISABLED!} />&nbsp;".$img);
280                         } else {
281                                 $code = '00000';
282                                 define('__TRANSFER_IMAGE_INPUT', getMessage('TRANSFER_NO_CODE'));
283                         }
284
285                         // Transfer maybe already entered valued'
286                         if (REQUEST_ISSET_GET('ok')) {
287                                 // Get values from form
288                                 define('__TRANSFER_POINTS_VALUE', bigintval(REQUEST_POST('points')));
289                                 define('__TRANSFER_REASON_VALUE', strip_tags(REQUEST_POST('reason')));
290                         } else {
291                                 // Set empty values
292                                 define('__TRANSFER_POINTS_VALUE', '');
293                                 define('__TRANSFER_REASON_VALUE', '');
294                         }
295
296                         // Output form
297                         LOAD_TEMPLATE('member_transfer_new');
298                 }
299                 break;
300
301         case 'list_in': // List only incoming transactions
302         case 'list_out': // List only outgoing transactions
303                 // As you can see I put list_in and list_out together. I now do a switch() again on it for the right SQL command
304                 switch ($mode)
305                 {
306                         case 'list_in':
307                                 $sql = "SELECT `trans_id`, `from_uid`, `points`, `reason`, `time_trans` FROM `{!_MYSQL_PREFIX!}_user_transfers_in` WHERE `userid`=%s ORDER BY `time_trans` DESC LIMIT ".getConfig('transfer_max');
308                                 // @TODO Rewrite these constants
309                                 $NOTHING = getMessage('TRANSFER_NO_INCOMING_TRANSFERS');
310                                 define('__TRANSFER_SUM', getMessage('TRANSFER_TOTAL_INCOMING'));
311                                 define('__TRANSFER_TITLE', getMessage('TRANSFER_LIST_INCOMING'));
312                                 break;
313
314                         case 'list_out':
315                                 $sql = "SELECT `trans_id`, `to_uid`, `points`, `reason`, `time_trans` FROM `{!_MYSQL_PREFIX!}_user_transfers_out` WHERE `userid`=%s ORDER BY `time_trans` DESC LIMIT ".getConfig('transfer_max');
316                                 // @TODO Rewrite these constants
317                                 $NOTHING = getMessage('TRANSFER_NO_OUTGOING_TRANSFERS');
318                                 define('__TRANSFER_SUM', getMessage('TRANSFER_TOTAL_OUTGOING'));
319                                 define('__TRANSFER_TITLE', getMessage('TRANSFER_LIST_OUTGOING'));
320                                 break;
321                 }
322
323                 // Run the SQL command
324                 $total = 0;
325                 $result = SQL_QUERY_ESC($sql, array(getUserId()), __FILE__, __LINE__);
326                 if (SQL_NUMROWS($result) > 0) {
327                         $OUT = ''; $SW = 2;
328                         // @TODO This should be somehow rewritten to $content = SQL_FETCHARRAY(), see switch() block above for SQL queries
329                         while (list($tid, $uid, $points, $reason, $stamp) = SQL_FETCHROW($result)) {
330                                 // Rewrite points
331                                 if ($type == 'OUT') $points = $points.'-';
332
333                                 // Prepare content for template
334                                 $content = array(
335                                 'sw'     => $SW,
336                                 'tid'    => $id,
337                                 'stamp'  => generateDateTime($stamp, '3'),
338                                 'uid'    => $uid,
339                                 'reason' => $reason,
340                                 'points' => translateComma($points)
341                                 );
342
343                                 // Load row template
344                                 $OUT .= LOAD_TEMPLATE('member_transfer_row2', true, $content);
345
346                                 // Add points and switch color
347                                 $total += $points;
348                                 $SW = 3 - $SW;
349                         } // END - while
350
351                         // Free memory
352                         SQL_FREERESULT($result);
353                 } else {
354                         // Nothing for in or out
355                         $OUT = "<tr>
356   <td colspan=\"5\" align=\"center\" class=\"bottom2\" height=\"70\">
357     ".LOAD_TEMPLATE('admin_settings_saved', true, $NOTHING)."
358   </td>
359 </tr>";
360                 }
361
362                 // ... and add them to a constant for the template
363                 // @TODO Rewrite these constants
364                 define('__TRANSFER_ROWS', $OUT);
365
366                 // Remeber total amount
367                 define('__TRANSFER_TOTAL_VALUE', $total);
368
369                 // Load final template
370                 LOAD_TEMPLATE('member_transfer_list');
371                 break;
372
373         case 'list_all': // List all transactions
374                 // We fill a temporary table with data from both tables. This is much easier
375                 // to code and unstand by you as sub-SELECT queries. I know this is not the
376                 // fastest way but it shall be fine for now.
377                 //
378                 // First of all create the temporary table
379                 $result = SQL_QUERY("CREATE TEMPORARY TABLE `{!_MYSQL_PREFIX!}_transfers_tmp` (
380 trans_id VARCHAR(12) NOT NULL DEFAULT '',
381 party_uid BIGINT(20) UNSIGNED NOT NULL DEFAULT '0',
382 points BIGINT(20) UNSIGNED NOT NULL DEFAULT '0',
383 reason VARCHAR(255) NOT NULL DEFAULT '',
384 time_trans VARCHAR(10) NOT NULL DEFAULT '0',
385 trans_type ENUM('IN','OUT') NOT NULL DEFAULT 'IN',
386 KEY(party_uid)
387 ) TYPE=HEAP", __FILE__, __LINE__);
388
389                 // Let's begin with the incoming list
390                 $result = SQL_QUERY_ESC("SELECT `trans_id`, `from_uid`, `points`, `reason`, `time_trans` FROM `{!_MYSQL_PREFIX!}_user_transfers_in` WHERE `userid`=%s ORDER BY `id` ASC LIMIT %s",
391                         array(getUserId(), getConfig('transfer_max')), __FILE__, __LINE__);
392                 while ($DATA = SQL_FETCHROW($result)) {
393                         $DATA[] = 'IN';
394                         $DATA = implode("','", $DATA);
395                         $res_temp = SQL_QUERY("INSERT INTO `{!_MYSQL_PREFIX!}_transfers_tmp` (`trans_id`, `party_uid`, `points`, `reason`, `time_trans`, `trans_type`) VALUES ('".$DATA."')", __FILE__, __LINE__);
396                 }
397
398                 // Free memory
399                 SQL_FREERESULT($result);
400
401                 // As the last table transfer data from outgoing table to temporary
402                 $result = SQL_QUERY_ESC("SELECT `trans_id`, `to_uid`, `points`, `reason`, `time_trans` FROM `{!_MYSQL_PREFIX!}_user_transfers_out` WHERE `userid`=%s ORDER BY `id` LIMIT %s",
403                         array(getUserId(), getConfig('transfer_max')), __FILE__, __LINE__);
404                 while ($DATA = SQL_FETCHROW($result)) {
405                         $DATA[] = 'OUT';
406                         $DATA = implode("','", $DATA);
407                         $res_temp = SQL_QUERY("INSERT INTO `{!_MYSQL_PREFIX!}_transfers_tmp` (`trans_id`, `party_uid`, `points`, `reason`, `time_trans`, `trans_type`) VALUES ('".$DATA."')", __FILE__, __LINE__);
408                 } // END - while
409
410                 // Free memory
411                 SQL_FREERESULT($result);
412
413                 $total = 0;
414                 if (SQL_NUMROWS($result) > 0) {
415                         // Search for entries
416                         $result = SQL_QUERY("SELECT `party_uid`, `trans_id`, `points`, `reason`, `time_trans`, `trans_type` FROM `{!_MYSQL_PREFIX!}_transfers_tmp` ORDER BY `time_trans` DESC",
417                                 __FILE__, __LINE__);
418
419                         // Output rows
420                         $OUT = ''; $SW = 2;
421                         while ($content = SQL_FETCHARRAY($result)) {
422                                 // Rewrite points
423                                 if ($content['trans_type'] == 'OUT') $content['points'] = '-'.$content['points']."";
424
425                                 // Prepare content for template
426                                 $content['sw']     = $SW;
427                                 $content['time']   = generateDateTime($content['time_trans'], '3');
428                                 $content['points'] = translateComma($content['points']);
429
430                                 // Load row template
431                                 $OUT .= LOAD_TEMPLATE('member_transfer_row', true, $content);
432
433                                 // Add points and switch color
434                                 $total += $content['points'];
435                                 $SW = 3 - $SW;
436                         } // END - while
437
438                         // Free memory
439                         SQL_FREERESULT($result);
440                 } else {
441                         // Nothing for in and out
442                         $OUT = "<tr>
443   <td colspan=\"5\" align=\"center\" class=\"bottom2\" height=\"70\">
444     ".LOAD_TEMPLATE('admin_settings_saved', true, getMessage('TRANSFER_NO_INOUT_TRANSFERS'))."
445   </td>
446 </tr>";
447                 }
448
449                 // ... and add them to a constant for the template
450                 // @TODO Rewrite all these constants
451                 define('__TRANSFER_ROWS', $OUT);
452
453                 // Remeber total amount
454                 define('__TRANSFER_TOTAL_VALUE', $total);
455
456                 // Set title
457                 define('__TRANSFER_TITLE', getMessage('TRANSFER_LIST_ALL'));
458
459                 // Set "balance" word
460                 define('__TRANSFER_SUM', getMessage('TRANSFER_TOTAL_BALANCE'));
461
462                 // Load final template
463                 LOAD_TEMPLATE('member_transfer_list');
464
465                 // At the end we don't need a temporary table in memory
466                 $result = SQL_QUERY("DROP TABLE IF EXISTS `{!_MYSQL_PREFIX!}_transfers_tmp`", __FILE__, __LINE__);
467
468                 // Free some memory...
469                 SQL_FREERESULT($result);
470                 break;
471
472         case '': // Overview page
473                 // Check incoming transfers
474                 $total = GET_TOTAL_DATA(getUserId(), 'user_transfers_in', 'id', 'userid', true);
475                 if ($total > 0) {
476                         define('__TRANSFER_IN_LINK', "<a href=\"{!URL!}/modules.php?module=login&amp;what=transfer&amp;mode=list_in\">".$dmy."</a>");
477                 } else {
478                         define('__TRANSFER_IN_LINK', $dmy);
479                 }
480
481                 // Check outgoing transfers
482                 $dmy = GET_TOTAL_DATA(getUserId(), 'user_transfers_out', 'id', 'userid', true);
483
484                 // Add to total amount
485                 $total += $dmy;
486
487                 if ($dmy > 0) {
488                         define('__TRANSFER_OUT_LINK', "<a href=\"{!URL!}/modules.php?module=login&amp;what=transfer&amp;mode=list_out\">".$dmy."</a>");
489                 } else {
490                         define('__TRANSFER_OUT_LINK', $dmy);
491                 }
492
493                 // Total transactions
494                 if ($total > 0) {
495                         define('__TRANSFER_ALL_LINK', "<a href=\"{!URL!}/modules.php?module=login&amp;what=transfer&amp;mode=list_all\">".$total."</a>");
496                 } else {
497                         define('__TRANSFER_ALL_LINK', $total);
498                 }
499
500                 if (isFormSent()) {
501                         // Save settings
502                         SQL_QUERY_ESC("UPDATE `{!_MYSQL_PREFIX!}_user_data` SET `opt_in`='%s' WHERE `userid`=%s LIMIT 1",
503                                 array(REQUEST_POST('opt_in'), getUserId()), __FILE__, __LINE__);
504
505                         // Rember for next switch() command
506                         $opt_in = REQUEST_POST('opt_in');
507
508                         // "Settings saved..."
509                         LOAD_TEMPLATE('admin_settings_saved', false, "<div class=\"member_done\">{--SETTINGS_SAVED--}</div>");
510                 } // END - if
511
512                 switch ($opt_in) {
513                         case 'Y':
514                                 define('__TRANSFER_ALLOW_Y', ' checked="checked"');
515                                 define('__TRANSFER_ALLOW_N', '');
516                                 define('__TRANSFER_NEW_LINK', "<a href=\"{!URL!}/modules.php?module=login&amp;what=transfer&amp;mode=new\">{--TRANSFER_NOW_LINK--}</a>");
517                                 break;
518
519                         case 'N':
520                                 define('__TRANSFER_ALLOW_Y', '');
521                                 define('__TRANSFER_ALLOW_N', ' checked="checked"');
522                                 define('__TRANSFER_NEW_LINK', getMessage('TRANSFER_PLEASE_ALLOW_OPT_IN'));
523                                 break;
524                 } // END - switch
525
526                 // Check for latest out-transfers
527                 $result = SQL_QUERY_ESC("SELECT
528         `time_trans`
529 FROM
530         `{!_MYSQL_PREFIX!}_user_transfers_out`
531 WHERE
532         `time_trans` > (UNIX_TIMESTAMP() - %s) AND `userid`=%s
533 ORDER BY
534         `time_trans` DESC
535 LIMIT 1",
536                         array(getConfig('transfer_timeout'), getUserId()), __FILE__, __LINE__);
537                 if (SQL_NUMROWS($result) == 0) {
538                         // Load template
539                         define('__TRANSFER_SETTINGS_CONTENT', LOAD_TEMPLATE('member_transfer_settings', true));
540                 } else {
541                         // Load newest transaction
542                         list($newest) = SQL_FETCHROW($result);
543                         define('__TRANSFER_SETTINGS_CONTENT', sprintf(getMessage('TRANSFER_LATEST_IS'), generateDateTime($newest, '3')));
544                 }
545
546                 // Free result
547                 SQL_FREERESULT($result);
548
549                 // Load template
550                 LOAD_TEMPLATE('member_transfer_overview');
551                 break;
552 } // END - switch
553
554 //
555 ?>