2018-12-23 13:04:54 -07:00
|
|
|
# Pleroma: A lightweight social networking server
|
|
|
|
# Copyright © 2017-2018 Pleroma Authors <https://pleroma.social/>
|
|
|
|
# SPDX-License-Identifier: AGPL-3.0-only
|
|
|
|
|
2017-03-21 10:53:20 -06:00
|
|
|
defmodule Pleroma.Web.TwitterAPI.TwitterAPI do
|
2018-06-12 05:52:54 -06:00
|
|
|
alias Pleroma.{UserInviteToken, User, Activity, Repo, Object}
|
2018-12-17 07:28:58 -07:00
|
|
|
alias Pleroma.{UserEmail, Mailer}
|
2017-03-21 10:53:20 -06:00
|
|
|
alias Pleroma.Web.ActivityPub.ActivityPub
|
2017-06-19 15:12:37 -06:00
|
|
|
alias Pleroma.Web.TwitterAPI.UserView
|
2018-12-09 02:12:48 -07:00
|
|
|
alias Pleroma.Web.CommonAPI
|
2018-12-17 07:28:58 -07:00
|
|
|
|
2017-09-16 06:33:47 -06:00
|
|
|
import Ecto.Query
|
2017-03-21 10:53:20 -06:00
|
|
|
|
2017-11-18 18:22:07 -07:00
|
|
|
def create_status(%User{} = user, %{"status" => _} = data) do
|
2017-09-15 06:17:36 -06:00
|
|
|
CommonAPI.post(user, data)
|
2017-03-21 10:53:20 -06:00
|
|
|
end
|
|
|
|
|
2018-04-18 04:00:40 -06:00
|
|
|
def delete(%User{} = user, id) do
|
2018-12-09 02:12:48 -07:00
|
|
|
with %Activity{data: %{"type" => _type}} <- Repo.get(Activity, id),
|
2018-06-13 19:29:55 -06:00
|
|
|
{:ok, activity} <- CommonAPI.delete(id, user) do
|
|
|
|
{:ok, activity}
|
2018-04-18 04:00:40 -06:00
|
|
|
end
|
|
|
|
end
|
|
|
|
|
2017-04-13 06:32:13 -06:00
|
|
|
def follow(%User{} = follower, params) do
|
2017-05-05 04:07:38 -06:00
|
|
|
with {:ok, %User{} = followed} <- get_user(params),
|
2018-05-25 03:31:42 -06:00
|
|
|
{:ok, follower} <- User.maybe_direct_follow(follower, followed),
|
2018-10-05 17:40:49 -06:00
|
|
|
{:ok, activity} <- ActivityPub.follow(follower, followed),
|
2018-10-06 19:05:59 -06:00
|
|
|
{:ok, follower, followed} <-
|
2018-11-06 11:34:57 -07:00
|
|
|
User.wait_and_refresh(
|
|
|
|
Pleroma.Config.get([:activitypub, :follow_handshake_timeout]),
|
|
|
|
follower,
|
|
|
|
followed
|
|
|
|
) do
|
2017-05-05 04:07:38 -06:00
|
|
|
{:ok, follower, followed, activity}
|
2017-04-12 08:34:36 -06:00
|
|
|
else
|
|
|
|
err -> err
|
2017-03-22 11:36:08 -06:00
|
|
|
end
|
|
|
|
end
|
|
|
|
|
2017-04-20 01:57:37 -06:00
|
|
|
def unfollow(%User{} = follower, params) do
|
2018-03-30 07:01:53 -06:00
|
|
|
with {:ok, %User{} = unfollowed} <- get_user(params),
|
2018-12-09 02:12:48 -07:00
|
|
|
{:ok, follower, _follow_activity} <- User.unfollow(follower, unfollowed),
|
2018-05-22 02:49:30 -06:00
|
|
|
{:ok, _activity} <- ActivityPub.unfollow(follower, unfollowed) do
|
2018-03-30 07:01:53 -06:00
|
|
|
{:ok, follower, unfollowed}
|
2017-04-12 08:34:36 -06:00
|
|
|
else
|
|
|
|
err -> err
|
2017-03-23 06:13:09 -06:00
|
|
|
end
|
|
|
|
end
|
|
|
|
|
2017-11-07 15:04:53 -07:00
|
|
|
def block(%User{} = blocker, params) do
|
|
|
|
with {:ok, %User{} = blocked} <- get_user(params),
|
2018-05-22 03:41:17 -06:00
|
|
|
{:ok, blocker} <- User.block(blocker, blocked),
|
|
|
|
{:ok, _activity} <- ActivityPub.block(blocker, blocked) do
|
2017-11-07 15:04:53 -07:00
|
|
|
{:ok, blocker, blocked}
|
|
|
|
else
|
|
|
|
err -> err
|
|
|
|
end
|
|
|
|
end
|
|
|
|
|
|
|
|
def unblock(%User{} = blocker, params) do
|
|
|
|
with {:ok, %User{} = blocked} <- get_user(params),
|
2018-05-22 03:41:17 -06:00
|
|
|
{:ok, blocker} <- User.unblock(blocker, blocked),
|
|
|
|
{:ok, _activity} <- ActivityPub.unblock(blocker, blocked) do
|
2017-11-07 15:04:53 -07:00
|
|
|
{:ok, blocker, blocked}
|
|
|
|
else
|
|
|
|
err -> err
|
|
|
|
end
|
|
|
|
end
|
|
|
|
|
2017-09-09 09:48:57 -06:00
|
|
|
def repeat(%User{} = user, ap_id_or_id) do
|
2018-06-03 11:11:22 -06:00
|
|
|
with {:ok, _announce, %{data: %{"id" => id}}} <- CommonAPI.repeat(ap_id_or_id, user),
|
2018-03-30 08:50:30 -06:00
|
|
|
%Activity{} = activity <- Activity.get_create_activity_by_object_ap_id(id) do
|
|
|
|
{:ok, activity}
|
2017-09-09 09:48:57 -06:00
|
|
|
end
|
2017-04-15 05:54:46 -06:00
|
|
|
end
|
|
|
|
|
2018-06-13 19:29:55 -06:00
|
|
|
def unrepeat(%User{} = user, ap_id_or_id) do
|
|
|
|
with {:ok, _unannounce, %{data: %{"id" => id}}} <- CommonAPI.unrepeat(ap_id_or_id, user),
|
|
|
|
%Activity{} = activity <- Activity.get_create_activity_by_object_ap_id(id) do
|
2018-04-18 04:00:40 -06:00
|
|
|
{:ok, activity}
|
|
|
|
end
|
|
|
|
end
|
|
|
|
|
2017-09-09 10:09:37 -06:00
|
|
|
def fav(%User{} = user, ap_id_or_id) do
|
2018-06-03 11:11:22 -06:00
|
|
|
with {:ok, _fav, %{data: %{"id" => id}}} <- CommonAPI.favorite(ap_id_or_id, user),
|
2018-03-30 08:50:30 -06:00
|
|
|
%Activity{} = activity <- Activity.get_create_activity_by_object_ap_id(id) do
|
|
|
|
{:ok, activity}
|
2017-09-09 10:09:37 -06:00
|
|
|
end
|
|
|
|
end
|
|
|
|
|
2017-09-09 10:30:02 -06:00
|
|
|
def unfav(%User{} = user, ap_id_or_id) do
|
2018-06-03 11:11:22 -06:00
|
|
|
with {:ok, _unfav, _fav, %{data: %{"id" => id}}} <- CommonAPI.unfavorite(ap_id_or_id, user),
|
2018-03-30 08:50:30 -06:00
|
|
|
%Activity{} = activity <- Activity.get_create_activity_by_object_ap_id(id) do
|
|
|
|
{:ok, activity}
|
2017-09-09 10:30:02 -06:00
|
|
|
end
|
|
|
|
end
|
|
|
|
|
2018-12-05 03:37:06 -07:00
|
|
|
def upload(%Plug.Upload{} = file, %User{} = user, format \\ "xml") do
|
2018-12-06 00:26:17 -07:00
|
|
|
{:ok, object} = ActivityPub.upload(file, actor: User.ap_id(user))
|
2017-03-28 18:05:51 -06:00
|
|
|
|
2017-03-30 08:08:23 -06:00
|
|
|
url = List.first(object.data["url"])
|
2018-11-23 09:40:45 -07:00
|
|
|
href = url["href"]
|
2017-03-30 08:08:23 -06:00
|
|
|
type = url["mediaType"]
|
|
|
|
|
2017-04-14 08:13:34 -06:00
|
|
|
case format do
|
|
|
|
"xml" ->
|
|
|
|
# Fake this as good as possible...
|
|
|
|
"""
|
|
|
|
<?xml version="1.0" encoding="UTF-8"?>
|
|
|
|
<rsp stat="ok" xmlns:atom="http://www.w3.org/2005/Atom">
|
|
|
|
<mediaid>#{object.id}</mediaid>
|
|
|
|
<media_id>#{object.id}</media_id>
|
|
|
|
<media_id_string>#{object.id}</media_id_string>
|
|
|
|
<media_url>#{href}</media_url>
|
|
|
|
<mediaurl>#{href}</mediaurl>
|
|
|
|
<atom:link rel="enclosure" href="#{href}" type="#{type}"></atom:link>
|
|
|
|
</rsp>
|
|
|
|
"""
|
2018-03-30 07:01:53 -06:00
|
|
|
|
2017-04-14 08:13:34 -06:00
|
|
|
"json" ->
|
|
|
|
%{
|
|
|
|
media_id: object.id,
|
|
|
|
media_id_string: "#{object.id}}",
|
|
|
|
media_url: href,
|
|
|
|
size: 0
|
2018-03-30 07:01:53 -06:00
|
|
|
}
|
|
|
|
|> Jason.encode!()
|
2017-04-14 08:13:34 -06:00
|
|
|
end
|
2017-03-28 18:05:51 -06:00
|
|
|
end
|
|
|
|
|
2017-04-16 02:25:27 -06:00
|
|
|
def register_user(params) do
|
2018-06-12 05:52:54 -06:00
|
|
|
tokenString = params["token"]
|
|
|
|
|
2017-04-16 02:25:27 -06:00
|
|
|
params = %{
|
|
|
|
nickname: params["nickname"],
|
|
|
|
name: params["fullname"],
|
2018-12-02 12:03:53 -07:00
|
|
|
bio: User.parse_bio(params["bio"]),
|
2017-04-16 02:25:27 -06:00
|
|
|
email: params["email"],
|
|
|
|
password: params["password"],
|
2018-12-14 15:31:19 -07:00
|
|
|
password_confirmation: params["confirm"],
|
|
|
|
captcha_solution: params["captcha_solution"],
|
|
|
|
captcha_token: params["captcha_token"]
|
2017-04-16 02:25:27 -06:00
|
|
|
}
|
|
|
|
|
2018-12-14 16:00:00 -07:00
|
|
|
captcha_enabled = Pleroma.Config.get([Pleroma.Captcha, :enabled])
|
|
|
|
# true if captcha is disabled or enabled and valid, false otherwise
|
2018-12-15 12:08:26 -07:00
|
|
|
captcha_ok =
|
|
|
|
if !captcha_enabled do
|
|
|
|
true
|
|
|
|
else
|
|
|
|
Pleroma.Captcha.validate(params[:captcha_token], params[:captcha_solution])
|
|
|
|
end
|
2018-12-14 16:00:00 -07:00
|
|
|
|
2018-12-14 15:31:19 -07:00
|
|
|
# Captcha invalid
|
2018-12-14 16:00:00 -07:00
|
|
|
if not captcha_ok do
|
2018-12-14 15:31:19 -07:00
|
|
|
# I have no idea how this error handling works
|
|
|
|
{:error, %{error: Jason.encode!(%{captcha: ["Invalid CAPTCHA"]})}}
|
|
|
|
else
|
|
|
|
registrations_open = Pleroma.Config.get([:instance, :registrations_open])
|
2018-11-06 11:34:57 -07:00
|
|
|
|
2018-12-14 15:31:19 -07:00
|
|
|
# no need to query DB if registration is open
|
|
|
|
token =
|
|
|
|
unless registrations_open || is_nil(tokenString) do
|
2018-12-15 12:08:26 -07:00
|
|
|
Repo.get_by(UserInviteToken, %{token: tokenString})
|
|
|
|
end
|
2017-04-16 02:25:27 -06:00
|
|
|
|
2018-12-18 07:30:30 -07:00
|
|
|
cond do
|
|
|
|
registrations_open || (!is_nil(token) && !token.used) ->
|
|
|
|
changeset = User.register_changeset(%User{}, params)
|
|
|
|
|
|
|
|
with {:ok, user} <- User.register(changeset) do
|
|
|
|
!registrations_open && UserInviteToken.mark_as_used(token.token)
|
|
|
|
|
|
|
|
{:ok, user}
|
|
|
|
else
|
|
|
|
{:error, changeset} ->
|
|
|
|
errors =
|
|
|
|
Ecto.Changeset.traverse_errors(changeset, fn {msg, _opts} -> msg end)
|
|
|
|
|> Jason.encode!()
|
2018-06-12 05:52:54 -06:00
|
|
|
|
2018-12-15 12:08:26 -07:00
|
|
|
{:error, %{error: errors}}
|
2018-12-14 15:31:19 -07:00
|
|
|
end
|
|
|
|
|
|
|
|
!registrations_open && is_nil(token) ->
|
2018-12-15 12:08:26 -07:00
|
|
|
{:error, "Invalid token"}
|
2018-03-30 07:01:53 -06:00
|
|
|
|
2018-12-14 15:31:19 -07:00
|
|
|
!registrations_open && token.used ->
|
2018-12-15 12:08:26 -07:00
|
|
|
{:error, "Expired token"}
|
2018-12-14 15:31:19 -07:00
|
|
|
end
|
2017-04-16 02:25:27 -06:00
|
|
|
end
|
|
|
|
end
|
|
|
|
|
2018-12-13 03:17:49 -07:00
|
|
|
def password_reset(nickname_or_email) do
|
|
|
|
with true <- is_binary(nickname_or_email),
|
|
|
|
%User{local: true} = user <- User.get_by_nickname_or_email(nickname_or_email),
|
|
|
|
{:ok, token_record} <- Pleroma.PasswordResetToken.create_token(user) do
|
|
|
|
user
|
2018-12-17 07:28:58 -07:00
|
|
|
|> UserEmail.password_reset_email(token_record.token)
|
|
|
|
|> Mailer.deliver()
|
2018-12-13 03:17:49 -07:00
|
|
|
else
|
|
|
|
false ->
|
|
|
|
{:error, "bad user identifier"}
|
|
|
|
|
|
|
|
%User{local: false} ->
|
|
|
|
{:error, "remote user"}
|
|
|
|
|
|
|
|
nil ->
|
|
|
|
{:error, "unknown user"}
|
|
|
|
end
|
|
|
|
end
|
|
|
|
|
2017-06-12 09:12:55 -06:00
|
|
|
def get_by_id_or_nickname(id_or_nickname) do
|
|
|
|
if !is_integer(id_or_nickname) && :error == Integer.parse(id_or_nickname) do
|
|
|
|
Repo.get_by(User, nickname: id_or_nickname)
|
|
|
|
else
|
|
|
|
Repo.get(User, id_or_nickname)
|
|
|
|
end
|
|
|
|
end
|
|
|
|
|
2017-04-20 01:39:18 -06:00
|
|
|
def get_user(user \\ nil, params) do
|
2017-04-16 07:44:30 -06:00
|
|
|
case params do
|
2017-05-05 04:07:38 -06:00
|
|
|
%{"user_id" => user_id} ->
|
2017-06-12 09:12:55 -06:00
|
|
|
case target = get_by_id_or_nickname(user_id) do
|
2017-04-16 07:44:30 -06:00
|
|
|
nil ->
|
|
|
|
{:error, "No user with such user_id"}
|
2018-03-30 07:01:53 -06:00
|
|
|
|
2017-04-16 07:44:30 -06:00
|
|
|
_ ->
|
|
|
|
{:ok, target}
|
|
|
|
end
|
2018-03-30 07:01:53 -06:00
|
|
|
|
2017-05-05 04:07:38 -06:00
|
|
|
%{"screen_name" => nickname} ->
|
2017-04-16 07:44:30 -06:00
|
|
|
case target = Repo.get_by(User, nickname: nickname) do
|
|
|
|
nil ->
|
|
|
|
{:error, "No user with such screen_name"}
|
2018-03-30 07:01:53 -06:00
|
|
|
|
2017-04-16 07:44:30 -06:00
|
|
|
_ ->
|
|
|
|
{:ok, target}
|
|
|
|
end
|
2018-03-30 07:01:53 -06:00
|
|
|
|
2017-04-16 07:44:30 -06:00
|
|
|
_ ->
|
|
|
|
if user do
|
|
|
|
{:ok, user}
|
|
|
|
else
|
2017-04-16 08:05:48 -06:00
|
|
|
{:error, "You need to specify screen_name or user_id"}
|
2017-04-16 07:44:30 -06:00
|
|
|
end
|
|
|
|
end
|
|
|
|
end
|
|
|
|
|
2017-11-18 18:22:07 -07:00
|
|
|
defp parse_int(string, default)
|
2018-03-30 07:01:53 -06:00
|
|
|
|
2017-09-16 06:33:47 -06:00
|
|
|
defp parse_int(string, default) when is_binary(string) do
|
|
|
|
with {n, _} <- Integer.parse(string) do
|
|
|
|
n
|
|
|
|
else
|
|
|
|
_e -> default
|
|
|
|
end
|
|
|
|
end
|
2018-03-30 07:01:53 -06:00
|
|
|
|
2017-09-16 06:33:47 -06:00
|
|
|
defp parse_int(_, default), do: default
|
|
|
|
|
2018-05-04 14:59:01 -06:00
|
|
|
def search(_user, %{"q" => query} = params) do
|
2017-09-16 06:33:47 -06:00
|
|
|
limit = parse_int(params["rpp"], 20)
|
|
|
|
page = parse_int(params["page"], 1)
|
|
|
|
offset = (page - 1) * limit
|
|
|
|
|
2018-03-30 07:01:53 -06:00
|
|
|
q =
|
|
|
|
from(
|
|
|
|
a in Activity,
|
|
|
|
where: fragment("?->>'type' = 'Create'", a.data),
|
2018-04-07 08:40:03 -06:00
|
|
|
where: "https://www.w3.org/ns/activitystreams#Public" in a.recipients,
|
2018-03-30 07:01:53 -06:00
|
|
|
where:
|
|
|
|
fragment(
|
|
|
|
"to_tsvector('english', ?->'object'->>'content') @@ plainto_tsquery('english', ?)",
|
|
|
|
a.data,
|
|
|
|
^query
|
|
|
|
),
|
|
|
|
limit: ^limit,
|
|
|
|
offset: ^offset,
|
|
|
|
# this one isn't indexed so psql won't take the wrong index.
|
|
|
|
order_by: [desc: :inserted_at]
|
|
|
|
)
|
2017-09-16 06:33:47 -06:00
|
|
|
|
2018-05-04 14:59:01 -06:00
|
|
|
_activities = Repo.all(q)
|
2017-09-16 06:33:47 -06:00
|
|
|
end
|
|
|
|
|
2018-04-02 07:28:35 -06:00
|
|
|
# DEPRECATED mostly, context objects are now created at insertion time.
|
2017-04-30 05:53:26 -06:00
|
|
|
def context_to_conversation_id(context) do
|
2017-05-01 08:15:21 -06:00
|
|
|
with %Object{id: id} <- Object.get_cached_by_ap_id(context) do
|
|
|
|
id
|
2018-03-30 07:01:53 -06:00
|
|
|
else
|
|
|
|
_e ->
|
2017-06-20 01:50:22 -06:00
|
|
|
changeset = Object.context_mapping(context)
|
2018-03-30 07:01:53 -06:00
|
|
|
|
2017-06-20 01:50:22 -06:00
|
|
|
case Repo.insert(changeset) do
|
2018-03-30 07:01:53 -06:00
|
|
|
{:ok, %{id: id}} ->
|
|
|
|
id
|
|
|
|
|
2017-06-20 01:50:22 -06:00
|
|
|
# This should be solved by an upsert, but it seems ecto
|
|
|
|
# has problems accessing the constraint inside the jsonb.
|
2018-03-30 07:01:53 -06:00
|
|
|
{:error, _} ->
|
|
|
|
Object.get_cached_by_ap_id(context).id
|
2017-06-20 01:50:22 -06:00
|
|
|
end
|
2017-05-01 08:15:21 -06:00
|
|
|
end
|
2017-04-30 05:53:26 -06:00
|
|
|
end
|
|
|
|
|
|
|
|
def conversation_id_to_context(id) do
|
|
|
|
with %Object{data: %{"id" => context}} <- Repo.get(Object, id) do
|
|
|
|
context
|
2018-03-30 07:01:53 -06:00
|
|
|
else
|
|
|
|
_e ->
|
|
|
|
{:error, "No such conversation"}
|
2017-04-30 05:53:26 -06:00
|
|
|
end
|
|
|
|
end
|
2017-05-10 10:44:57 -06:00
|
|
|
|
|
|
|
def get_external_profile(for_user, uri) do
|
2018-03-24 08:09:09 -06:00
|
|
|
with %User{} = user <- User.get_or_fetch(uri) do
|
2017-06-19 15:12:37 -06:00
|
|
|
{:ok, UserView.render("show.json", %{user: user, for: for_user})}
|
2018-03-30 07:01:53 -06:00
|
|
|
else
|
|
|
|
_e ->
|
2017-05-12 10:50:47 -06:00
|
|
|
{:error, "Couldn't find user"}
|
2017-05-10 10:44:57 -06:00
|
|
|
end
|
|
|
|
end
|
2017-03-21 10:53:20 -06:00
|
|
|
end
|