Template fixes, lesser admin data will be loaded from database
[mailer.git] / inc / modules / member / what-transfer.php
1 <?php
2 /************************************************************************
3  * MXChange v0.2.1                                    Start: 10/07/2004 *
4  * ================                             Last change: 10/07/2004 *
5  *                                                                      *
6  * -------------------------------------------------------------------- *
7  * File              : what-transfer.php                                *
8  * -------------------------------------------------------------------- *
9  * Short description : Point transfers                                  *
10  * -------------------------------------------------------------------- *
11  * Kurzbeschreibung  : Punktetransfers                                  *
12  * -------------------------------------------------------------------- *
13  *                                                                      *
14  * -------------------------------------------------------------------- *
15  * Copyright (c) 2003 - 2008 by Roland Haeder                           *
16  * For more information visit: http://www.mxchange.org                  *
17  *                                                                      *
18  * This program is free software; you can redistribute it and/or modify *
19  * it under the terms of the GNU General Public License as published by *
20  * the Free Software Foundation; either version 2 of the License, or    *
21  * (at your option) any later version.                                  *
22  *                                                                      *
23  * This program is distributed in the hope that it will be useful,      *
24  * but WITHOUT ANY WARRANTY; without even the implied warranty of       *
25  * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the        *
26  * GNU General Public License for more details.                         *
27  *                                                                      *
28  * You should have received a copy of the GNU General Public License    *
29  * along with this program; if not, write to the Free Software          *
30  * Foundation, Inc., 51 Franklin St, Fifth Floor, Boston,               *
31  * MA  02110-1301  USA                                                  *
32  ************************************************************************/
33
34 // Some security stuff...
35 if (!defined('__SECURITY')) {
36         $INC = substr(dirname(__FILE__), 0, strpos(dirname(__FILE__), "/inc") + 4) . "/security.php";
37         require($INC);
38 } elseif (!IS_MEMBER()) {
39         LOAD_URL("modules.php?module=index");
40 } elseif ((!EXT_IS_ACTIVE("transfer")) && (!IS_ADMIN())) {
41         ADD_FATAL(EXTENSION_PROBLEM_EXT_INACTIVE, "transfer");
42         return;
43 }
44
45 // Add description as navigation point
46 ADD_DESCR("member", basename(__FILE__));
47
48 // Load data
49 $result = SQL_QUERY_ESC("SELECT opt_in FROM "._MYSQL_PREFIX."_user_data WHERE userid=%s LIMIT 1",
50  array($GLOBALS['userid']), __FILE__, __LINE__);
51 list($opt_in) = SQL_FETCHROW($result);
52
53 // Free memory
54 SQL_FREERESULT($result);
55
56 $MODE = "";
57 if (!empty($_GET['mode'])) $MODE = $_GET['mode'];
58
59 // Check for "faker"
60 if (($opt_in == "N") && ($MODE == "new")) $MODE = "";
61
62 switch ($MODE)
63 {
64 case "new": // Start new transfer
65         // Get total points and subtract the balance amount from it = maximum transferable points
66         $result = SQL_QUERY_ESC("SELECT SUM(points) FROM "._MYSQL_PREFIX."_user_points WHERE userid=%s AND points > 0",
67          array($GLOBALS['userid']), __FILE__, __LINE__);
68         list($total) = SQL_FETCHROW($result);
69         SQL_FREERESULT($result);
70
71         // Get totally used points and password
72         $result = SQL_QUERY_ESC("SELECT used_points, password FROM "._MYSQL_PREFIX."_user_data WHERE userid=%s LIMIT 1",
73          array($GLOBALS['userid']), __FILE__, __LINE__);
74         list($used, $pass) = SQL_FETCHROW($result);
75         SQL_FREERESULT($result);
76
77         // Remember maximum value for template
78         define('__TRANSFER_MAX_VALUE', round($total - $used - $_CONFIG['transfer_balance'] - 0.5));
79
80         if (isset($_POST['ok']))
81         {
82                 // Add new transfer
83                 if ($_CONFIG['transfer_code'] > 0)
84                 {
85                         // Check for code
86                         $code = GEN_RANDOM_CODE($_CONFIG['transfer_code'], $_POST['code_chk'], $GLOBALS['userid'], __TRANSFER_MAX_VALUE);
87                         $valid_code = ($code == $_POST['code']);
88                 }
89                  else
90                 {
91                         // Zero length (= disabled) is always valid!
92                         $valid_code = true;
93                 }
94
95                 // Test password
96                 $valid_pass = ($pass == generateHash($_POST['password'], $pass));
97
98                 // Test transfer amount
99                 $valid_amount = ((!empty($_POST['points'])) && ($_POST['points'] <= __TRANSFER_MAX_VALUE));
100
101                 // Test reason for transfer
102                 $valid_reason = (!empty($_POST['reason']));
103
104                 // Test if a recipient is selected
105                 $valid_recipient = ($_POST['to_uid'] > 0);
106
107                 // Check for nickname extension and set additional data
108                 $nick = false; $ADD = ", userid";
109                 if (EXT_IS_ACTIVE("nickname"))
110                 {
111                         $ADD = ", nickname";
112                         $nick = true;
113                 }
114                 // Re-check receivers and own personal data
115                 $result = SQL_QUERY_ESC("SELECT userid, gender, surname, family, email".$ADD." FROM "._MYSQL_PREFIX."_user_data WHERE userid IN ('%s','%s') AND status='CONFIRMED' ORDER BY userid LIMIT 2",
116                  array($GLOBALS['userid'], bigintval($_POST['to_uid'])), __FILE__, __LINE__);
117                 $valid_data = (SQL_NUMROWS($result) == 2);
118
119                 if ($valid_code && $valid_pass && $valid_amount && $valid_reason && $valid_recipient)
120                 {
121                         // Let's start the transfer and load user data
122                         list($uid1, $gender1, $sname1, $fname1, $email1, $nick1) = SQL_FETCHROW($result);
123                         list($uid2, $gender2, $sname2, $fname2, $email2, $nick2) = SQL_FETCHROW($result);
124                         SQL_FREERESULT($result);
125                         if ($uid1 == $GLOBALS['userid'])
126                         {
127                                 // Data row 1 is sender's data
128                                 define('__SENDER_GENDER'     , TRANSLATE_GENDER($gender1));
129                                 define('__SENDER_NICK'    , $nick1);
130                                 define('__SENDER_SNAME'   , $sname1);
131                                 define('__SENDER_FNAME'   , $fname1);
132                                 define('__SENDER_EMAIL'   , $email1);
133                                 // Data row 2 is recpient's data
134                                 define('__RECIPIENT_GENDER'  , TRANSLATE_GENDER($gender2));
135                                 define('__RECIPIENT_NICK' , $nick2);
136                                 define('__RECIPIENT_SNAME', $sname2);
137                                 define('__RECIPIENT_FNAME', $fname2);
138                                 define('__RECIPIENT_EMAIL', $email2);
139
140                                 // Prepare variables for testing
141                                 $TEST_NICK_SENDER = $nick1;
142                                 $TEST_NICK_REC = $nick2;
143                         }
144                          else
145                         {
146                                 // Data row 2 is sender's data
147                                 define('__SENDER_GENDER'     , TRANSLATE_GENDER($gender2));
148                                 define('__SENDER_NICK'    , $nick2);
149                                 define('__SENDER_SNAME'   , $sname2);
150                                 define('__SENDER_FNAME'   , $fname2);
151                                 define('__SENDER_EMAIL'   , $email2);
152                                 // Data row 1 is recpient's data
153                                 define('__RECIPIENT_GENDER'  , TRANSLATE_GENDER($gender1));
154                                 define('__RECIPIENT_NICK' , $nick1);
155                                 define('__RECIPIENT_SNAME', $sname1);
156                                 define('__RECIPIENT_FNAME', $fname1);
157                                 define('__RECIPIENT_EMAIL', $email1);
158
159                                 // Prepare variables for testing
160                                 $TEST_NICK_SENDER = $nick2;
161                                 $TEST_NICK_REC = $nick1;
162                         }
163                         // Sender's UID is always currently stored in cookie userid...
164                         define('__SENDER_UID'     , $GLOBALS['userid']);
165                         define('__RECIPIENT_UID'  , $_POST['to_uid']);
166
167                         $SENDER = __SENDER_UID;
168                         $RECIPIENT = __RECIPIENT_UID;
169                         if ($nick)
170                         {
171                                 if (($TEST_NICK_SENDER != __SENDER_UID) && (!empty($TEST_NICK_SENDER)))
172                                 {
173                                         $SENDER = __SENDER_NICK;
174                                 }
175                                 if (($TEST_NICK_REC != __RECIPIENT_UID) && (!empty($TEST_NICK_REC)))
176                                 {
177                                         $RECIPIENT = __RECIPIENT_NICK;
178                                 }
179                         }
180
181                         // Remember transfer reason and fancy date/time in constants
182                         define('__TRANSFER_REASON', $_POST['reason']);
183                         if (function_exists('CREATE_FANCY_TIME'))
184                         {
185                                 define('__TRANSFER_EXPIRES', CREATE_FANCY_TIME($_CONFIG['transfer_age']));
186                         }
187                          else
188                         {
189                                 define('__TRANSFER_EXPIRES', round($_CONFIG['transfer_age']/60/60/24)." ".DAYS);
190                         }
191
192                         // Generate tranafer id
193                         define('__TRANS_ID', bigintval(GEN_RANDOM_CODE("10", rand(0, 99999), $GLOBALS['userid'], $_POST['reason'])));
194
195                         // Add entries to both tables
196                         $result = SQL_QUERY_ESC("INSERT INTO "._MYSQL_PREFIX."_user_transfers_in (userid, from_uid, points, reason, time_trans, trans_id) VALUES ('%s','%s','%s','%s', UNIX_TIMESTAMP(),'%s')",
197                          array(bigintval($_POST['to_uid']), $GLOBALS['userid'], bigintval($_POST['points']), addslashes($_POST['reason']), __TRANS_ID),
198                          __FILE__, __LINE__);
199                         $result = SQL_QUERY_ESC("INSERT INTO "._MYSQL_PREFIX."_user_transfers_out (userid, to_uid, points, reason, time_trans, trans_id) VALUES ('%s','%s','%s','%s', UNIX_TIMESTAMP(),'%s')",
200                          array($GLOBALS['userid'], bigintval($_POST['to_uid']), bigintval($_POST['points']), addslashes($_POST['reason']), __TRANS_ID),
201                          __FILE__, __LINE__);
202
203                         // Add points to account *directly* ...
204                         ADD_POINTS_REFSYSTEM(bigintval($_POST['to_uid']), bigintval($_POST['points']), false, "0", false, "direct");
205
206                         // ... and add it to current user's used points
207                         SUB_POINTS($GLOBALS['userid'], $_POST['points']);
208
209                         // First send email to recipient
210                         $msg = LOAD_EMAIL_TEMPLATE("member_transfer_recipient", "", __RECIPIENT_UID);
211                         SEND_EMAIL(__RECIPIENT_EMAIL, TRANSFER_MEMBER_RECIPIENT_SUBJ.": ".$SENDER, $msg);
212
213                         // Second send email to sender
214                         $msg = LOAD_EMAIL_TEMPLATE("member_transfer_sender", "", __SENDER_UID);
215                         SEND_EMAIL(__SENDER_EMAIL, TRANSFER_MEMBER_SENDER_SUBJ.": ".$RECIPIENT, $msg);
216
217                         // At last send admin mail(s)
218                         $ADMIN_SUBJ = sprintf("%s (%s->%s)", TRANSFER_ADMIN_SUBJECT, $SENDER, $RECIPIENT);
219                         SEND_ADMIN_NOTIFICATION($ADMIN_SUBJ, "admin_transfer_points");
220
221                         // Transfer is completed
222                         LOAD_TEMPLATE("admin_settings_saved", false, TRANSFER_COMPLETED."<br /><A href=\"".URL."/modules.php?module=login&amp;what=transfer\">".TRANSFER_CONTINUE_OVERVIEW."</A>");
223                 }
224                  elseif (!$valid_code)
225                 {
226                         // Invalid Touring code!
227                         OUTPUT_HTML("<P><STRONG class=\"member_note\">".TRANSFER_INVALID_CODE."</STRONG></P>");
228                         unset($_POST['ok']);
229                 }
230                  elseif (!$valid_pass)
231                 {
232                         // Wrong password entered
233                         OUTPUT_HTML("<P><STRONG class=\"member_note\">".TRANSFER_INVALID_PASSWORD."</STRONG></P>");
234                         unset($_POST['ok']);
235                 }
236                  elseif (!$valid_amount)
237                 {
238                         // Too much points entered
239                         OUTPUT_HTML("<P><STRONG class=\"member_note\">".TRANSFER_INVALID_POINTS."</STRONG></P>");
240                         unset($_POST['ok']);
241                 }
242                  elseif (!$valid_reason)
243                 {
244                         // No transfer reason entered
245                         OUTPUT_HTML("<P><STRONG class=\"member_note\">".TRANSFER_INVALID_REASON."</STRONG></P>");
246                         unset($_POST['ok']);
247                 }
248                  elseif (!$valid_recipient)
249                 {
250                         // No recipient selected
251                         OUTPUT_HTML("<P><STRONG class=\"member_note\">".TRANSFER_INVALID_RECIPIENT."</STRONG></P>");
252                         unset($_POST['ok']);
253                 }
254                  elseif (!$valid_data)
255                 {
256                         // No recipient selected
257                         OUTPUT_HTML("<P><STRONG class=\"member_note\">".TRANSFER_INVALID_DATA."</STRONG></P>");
258                         unset($_POST['ok']);
259                 }
260         }
261         if (!isset($_POST['ok']))
262         {
263                 // Load member list
264                 if (EXT_IS_ACTIVE("nickname"))
265                 {
266                         // Load userid and nickname
267                         $result = SQL_QUERY_ESC("SELECT userid, nickname FROM "._MYSQL_PREFIX."_user_data WHERE status='CONFIRMED' AND opt_in='Y' AND userid != '%s' ORDER BY userid",
268                          array($GLOBALS['userid']), __FILE__, __LINE__);
269                 }
270                  else
271                 {
272                         // Load only userid
273                         $result = SQL_QUERY_ESC("SELECT userid, userid FROM "._MYSQL_PREFIX."_user_data WHERE status='CONFIRMED' AND opt_in='Y' AND userid != '%s' ORDER BY userid",
274                          array($GLOBALS['userid']), __FILE__, __LINE__);
275                 }
276                 if (SQL_NUMROWS($result) > 0)
277                 {
278                         // Load list
279                         $OUT  = "<SELECT name=\"to_uid\" size=\"1\" class=\"member_select\">
280   <OPTION value=\"0\">".SELECT_NONE."</OPTION>\n";
281                         while (list($uid, $nick) = SQL_FETCHROW($result))
282                         {
283                                 $OUT .= "<OPTION value=\"".$uid."\"";
284                                 if ((isset($_POST['to_uid'])) && ($_POST['to_uid'] == $uid)) $OUT .= " selected=\"selected\"";
285                                 $OUT .= ">";
286                                 if (($nick != $uid) && (!empty($nick)))
287                                 {
288                                         // Output nickname
289                                         $OUT .= $nick;
290                                 }
291                                  else
292                                 {
293                                         // Output userid
294                                         $OUT .= $uid;
295                                 }
296                                 $OUT .= "</OPTION>\n";
297                         }
298                         $OUT .= "</SELECT>\n";
299                         define('__TRANSFER_TO_DISABLED', "");
300
301                         // Free memory
302                         SQL_FREERESULT($result);
303                 }
304                  else
305                 {
306                         // No one else is opt-in
307                         $OUT = TRANSFER_NO_ONE_ELSE_OPT_IN;
308                         define('__TRANSFER_TO_DISABLED', " disabled");
309                 }
310                 // Transfer output to constant for the template
311                 define('__TRANSFER_USERID_SELECTION', $OUT);
312
313                 // Generate Code
314                 if ($_CONFIG['transfer_code'] > 0)
315                 {
316                         $rand = rand(0, 99999);
317                         $code = GEN_RANDOM_CODE($_CONFIG['transfer_code'], $rand, $GLOBALS['userid'], __TRANSFER_MAX_VALUE);
318                         $img = GENERATE_IMAGE($code, false);
319                         define('__TRANSFER_IMAGE_INPUT', "<INPUT type=\"hidden\" name=\"code_chk\" value=\"".$rand."\"><INPUT type=\"text\" name=\"code\" class=\"member_normal\" size=\"5\" maxlength=\"7\"".__TRANSFER_TO_DISABLED.">&nbsp;".$img);
320                 }
321                  else
322                 {
323                         $code = "00000";
324                         define('__TRANSFER_IMAGE_INPUT', TRANSFER_NO_CODE);
325                 }
326
327                 // Transfer maybe already entered valued'
328                 if (isset($_GET['ok'])) {
329                         // Get values from form
330                         define('__TRANSFER_POINTS_VALUE', bigintval($_POST['points']));
331                         define('__TRANSFER_REASON_VALUE', strip_tags($_POST['reason']));
332                 } else {
333                         // Set empty values
334                         define('__TRANSFER_POINTS_VALUE', "");
335                         define('__TRANSFER_REASON_VALUE', "");
336                 }
337
338                 // Output form
339                 LOAD_TEMPLATE("member_transfer_new");
340         }
341         break;
342
343 case "list_in": // List only incoming transactions
344 case "list_out": // List only outgoing transactions
345         // As you can see I put list_in and list_out together. I now do a switch() again on it for the right SQL command
346         switch ($MODE)
347         {
348         case "list_in":
349                 $SQL = "SELECT trans_id, from_uid, points, reason, time_trans FROM "._MYSQL_PREFIX."_user_transfers_in WHERE userid=%s ORDER BY time_trans DESC LIMIT ".$_CONFIG['transfer_max'];
350                 $NOTHING = TRANSFER_NO_INCOMING_TRANSFERS;
351                 define('__TRANSFER_SUM', TRANSFER_TOTAL_INCOMING);
352                 define('__TRANSFER_TITLE', TRANSFER_LIST_INCOMING);
353                 break;
354
355         case "list_out":
356                 $SQL = "SELECT trans_id, to_uid, points, reason, time_trans FROM "._MYSQL_PREFIX."_user_transfers_out WHERE userid=%s ORDER BY time_trans DESC LIMIT ".$_CONFIG['transfer_max'];
357                 $NOTHING = TRANSFER_NO_OUTGOING_TRANSFERS;
358                 define('__TRANSFER_SUM', TRANSFER_TOTAL_OUTGOING);
359                 define('__TRANSFER_TITLE', TRANSFER_LIST_OUTGOING);
360                 break;
361         }
362
363         // Run the SQL command
364         $total = 0;
365         $result = SQL_QUERY_ESC($SQL, array($GLOBALS['userid']), __FILE__, __LINE__);
366         if (SQL_NUMROWS($result) > 0)
367         {
368                 $OUT = ""; $SW = 2;
369                 while (list($tid, $uid, $points, $reason, $stamp) = SQL_FETCHROW($result))
370                 {
371                         if ($type == "OUT") $points = "$points-";
372                         $OUT .= "<TR>
373   <TD class=\"transfer_row1 switch_sw".$SW." bottom2 right2\">
374     <FONT class=\"transfer_row1\">".$tid."</FONT>
375   </TD>
376   <TD class=\"transfer_row2 switch_sw".$SW." bottom2 right2\">
377     <FONT class=\"transfer_row2\">".MAKE_DATETIME($stamp, "3")."</FONT>
378   </TD>
379   <TD class=\"transfer_row3 switch_sw".$SW." bottom2 right2\">
380     <FONT class=\"transfer_row3\">".$uid."</FONT>
381   </TD>
382   <TD class=\"transfer_row4 switch_sw".$SW." bottom2 right2\">
383     <FONT class=\"transfer_row4\">".$reason."</FONT>
384   </TD>
385   <TD class=\"transfer_row5 switch_sw".$SW." bottom2\">
386     <FONT class=\"transfer_row5\">".$points."</FONT>
387   </TD>
388 </TR>\n";
389                         $total += $points;
390                         $SW = 3 - $SW;
391                 }
392
393                 // Free memory
394                 SQL_FREERESULT($result);
395         }
396          else
397         {
398                 // Nothing for in or out
399                 $OUT = "<TR>
400   <TD colspan=\"5\" align=\"center\" class=\"bottom2\" height=\"70\">
401     ".LOAD_TEMPLATE("admin_settings_saved", true, $NOTHING)."
402   </TD>
403 </TR>";
404         }
405
406         // ... and add them to a constant for the template
407         define('__TRANSFER_ROWS', $OUT);
408
409         // Remeber total amount
410         define('__TRANSFER_TOTAL_VALUE', $total);
411
412         // Load final template
413         LOAD_TEMPLATE("member_transfer_list");
414         break;
415
416 case "list_all": // List all transactions
417         // We fill a temporary table with data from both tables. This is much easier
418         // to code and unstand by you as sub-SELECT queries. I know this is not the
419         // fastest way but it shall be fine for now.
420         //
421         // First of all create the temporary table
422         $result = SQL_QUERY("CREATE TEMPORARY TABLE "._MYSQL_PREFIX."_transfers_tmp (
423 trans_id VARCHAR(12) NOT NULL DEFAULT '',
424 party_uid BIGINT(20) UNSIGNED NOT NULL DEFAULT '0',
425 points BIGINT(20) UNSIGNED NOT NULL DEFAULT '0',
426 reason VARCHAR(255) NOT NULL DEFAULT '',
427 time_trans VARCHAR(10) NOT NULL DEFAULT '0',
428 trans_type ENUM('IN','OUT') NOT NULL DEFAULT 'IN',
429 KEY(party_uid)
430 ) TYPE=HEAP", __FILE__, __LINE__);
431
432         // Let's begin with the incoming list
433         $result = SQL_QUERY_ESC("SELECT trans_id, from_uid, points, reason, time_trans FROM "._MYSQL_PREFIX."_user_transfers_in WHERE userid=%s ORDER BY id LIMIT %s",
434 array($GLOBALS['userid'], $_CONFIG['transfer_max']), __FILE__, __LINE__);
435         while ($DATA = SQL_FETCHROW($result))
436         {
437                 $DATA[] = "IN";
438                 $DATA = implode("','", $DATA);
439                 $res_temp = SQL_QUERY("INSERT INTO "._MYSQL_PREFIX."_transfers_tmp (trans_id, party_uid, points, reason, time_trans, trans_type) VALUES ('".$DATA."')", __FILE__, __LINE__);
440         }
441
442         // Free memory
443         SQL_FREERESULT($result);
444
445         // As the last table transfer data from outgoing table to temporary
446         $result = SQL_QUERY_ESC("SELECT trans_id, to_uid, points, reason, time_trans FROM "._MYSQL_PREFIX."_user_transfers_out WHERE userid=%s ORDER BY id LIMIT %s",
447 array($GLOBALS['userid'], $_CONFIG['transfer_max']), __FILE__, __LINE__);
448         while ($DATA = SQL_FETCHROW($result))
449         {
450                 $DATA[] = "OUT";
451                 $DATA = implode("','", $DATA);
452                 $res_temp = SQL_QUERY("INSERT INTO "._MYSQL_PREFIX."_transfers_tmp (trans_id, party_uid, points, reason, time_trans, trans_type) VALUES ('".$DATA."')", __FILE__, __LINE__);
453         }
454
455         // Free memory
456         SQL_FREERESULT($result);
457
458         $total = 0;
459         if (SQL_NUMROWS($result) > 0)
460         {
461                 // Output rows
462                 $OUT = ""; $SW = 2;
463                 $result = SQL_QUERY("SELECT party_uid, trans_id, points, reason, time_trans, trans_type FROM "._MYSQL_PREFIX."_transfers_tmp ORDER BY time_trans DESC", __FILE__, __LINE__);
464                 while(list($uid, $idx, $points, $reason, $stamp, $type) = SQL_FETCHROW($result))
465                 {
466                         if ($type == "OUT") $points = "-$points";
467                         $OUT .= "<TR>
468   <TD class=\"transfer_row1 switch_sw".$SW." bottom2 right2\">
469     <FONT class=\"transfer_row1\">".$idx."</FONT>
470   </TD>
471   <TD class=\"transfer_row2 switch_sw".$SW." bottom2 right2\">
472     <FONT class=\"transfer_row2\">".MAKE_DATETIME($stamp, "3")."</FONT>
473   </TD>
474   <TD class=\"transfer_row3 switch_sw".$SW." bottom2 right2\">
475     <FONT class=\"transfer_row3\">".$uid."</FONT>
476   </TD>
477   <TD class=\"transfer_row4 switch_sw".$SW." bottom2 right2\">
478     <FONT class=\"transfer_row4\">".$reason."</FONT>
479   </TD>
480   <TD class=\"transfer_row5 switch_sw".$SW." bottom2\">
481     <FONT class=\"transfer_row5\">".$points."</FONT>
482   </TD>
483 </TR>\n";
484                         $total += $points;
485                         $SW = 3 - $SW;
486                 }
487
488                 // Free memory
489                 SQL_FREERESULT($result);
490         }
491          else
492         {
493                 // Nothing for in and out
494                 $OUT = "<TR>
495   <TD colspan=\"5\" align=\"center\" class=\"bottom2\" height=\"70\">
496     ".LOAD_TEMPLATE("admin_settings_saved", true, TRANSFER_NO_INOUT_TRANSFERS)."
497   </TD>
498 </TR>";
499         }
500
501         // ... and add them to a constant for the template
502         define('__TRANSFER_ROWS', $OUT);
503
504         // Remeber total amount
505         define('__TRANSFER_TOTAL_VALUE', $total);
506
507         // Set title
508         define('__TRANSFER_TITLE', TRANSFER_LIST_ALL);
509
510         // Set "balance" word
511         define('__TRANSFER_SUM', TRANSFER_TOTAL_BALANCE);
512
513         // Load final template
514         LOAD_TEMPLATE("member_transfer_list");
515
516         // At the end we don't need a temporary table in memory
517         $result = SQL_QUERY("DROP TABLE IF EXISTS "._MYSQL_PREFIX."_transfers_tmp", __FILE__, __LINE__);
518
519         // Free some memory...
520         SQL_FREERESULT($result);
521         break;
522
523 case "": // Overview page
524         // Check incoming transfers
525         $result = SQL_QUERY_ESC("SELECT COUNT(id) FROM "._MYSQL_PREFIX."_user_transfers_in WHERE userid=%s", array($GLOBALS['userid']), __FILE__, __LINE__);
526         list($dmy) = SQL_FETCHROW($result);
527         SQL_FREERESULT($result);
528
529         $total=$dmy;
530         if ($dmy > 0)
531         {
532                 define('__TRANSFER_IN_LINK', "<A href=\"".URL."/modules.php?module=login&amp;what=transfer&amp;mode=list_in\">".$dmy."</A>");
533         }
534          else
535         {
536                 define('__TRANSFER_IN_LINK', $dmy);
537         }
538
539         // Check outgoing transfers
540         $result = SQL_QUERY_ESC("SELECT COUNT(id) FROM "._MYSQL_PREFIX."_user_transfers_out WHERE userid=%s", array($GLOBALS['userid']), __FILE__, __LINE__);
541         list($dmy) = SQL_FETCHROW($result);
542         SQL_FREERESULT($result);
543
544         $total+=$dmy;
545         if ($dmy > 0)
546         {
547                 define('__TRANSFER_OUT_LINK', "<A href=\"".URL."/modules.php?module=login&amp;what=transfer&amp;mode=list_out\">".$dmy."</A>");
548         }
549          else
550         {
551                 define('__TRANSFER_OUT_LINK', $dmy);
552         }
553
554         // Total transactions
555         if ($total > 0)
556         {
557                 define('__TRANSFER_ALL_LINK', "<A href=\"".URL."/modules.php?module=login&amp;what=transfer&amp;mode=list_all\">".$total."</A>");
558         }
559          else
560         {
561                 define('__TRANSFER_ALL_LINK', $total);
562         }
563
564         if (isset($_POST['ok'])) {
565                 // Save settings
566                 $result = SQL_QUERY_ESC("UPDATE "._MYSQL_PREFIX."_user_data SET opt_in='%s' WHERE userid=%s LIMIT 1",
567                  array($_POST['opt_in'], $GLOBALS['userid']), __FILE__, __LINE__);
568
569                 // Rember for next switch() command
570                 $opt_in = $_POST['opt_in'];
571
572                 // "Settings saved..."
573                 OUTPUT_HTML("<P><STRONG class=\"member_done\">".SETTINGS_SAVED."</STRONG></P>");
574         }
575
576         switch ($opt_in)
577         {
578         case 'Y':
579                 define('__TRANSFER_ALLOW_Y', " checked");
580                 define('__TRANSFER_ALLOW_N', "");
581                 define('__TRANSFER_NEW_LINK', "<A href=\"".URL."/modules.php?module=login&amp;what=transfer&amp;mode=new\">".TRANSFER_NOW_LINK."</A>");
582                 break;
583
584         case 'N':
585                 define('__TRANSFER_ALLOW_Y', "");
586                 define('__TRANSFER_ALLOW_N', " checked");
587                 define('__TRANSFER_NEW_LINK', TRANSFER_PLEASE_ALLOW_OPT_IN);
588                 break;
589         }
590
591         // Check for latest out-transfers
592         $result = SQL_QUERY_ESC("SELECT time_trans FROM "._MYSQL_PREFIX."_user_transfers_out WHERE time_trans > (UNIX_TIMESTAMP() - ".$_CONFIG['transfer_timeout'].") AND userid=%s ORDER BY time_trans DESC LIMIT 1", array($GLOBALS['userid']), __FILE__, __LINE__);
593         if (SQL_NUMROWS($result) == 0) {
594                 // Load template
595                 define('__TRANSFER_SETTINGS_CONTENT', LOAD_TEMPLATE("member_transfer_settings", true));
596         } else {
597                 // Load newest transaction
598                 list($newest) = SQL_FETCHROW($result);
599                 SQL_FREERESULT($result);
600                 define('__TRANSFER_SETTINGS_CONTENT', TRANSFER_LATEST_IS_1.MAKE_DATETIME($newest, "3").TRANSFER_LATEST_IS_2);
601         }
602
603         // Load template
604         LOAD_TEMPLATE("member_transfer_overview");
605         break;
606 }
607 //
608 ?>