BaseApiController.php 12 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340
  1. <?php
  2. namespace App\Http\Controllers\Api;
  3. use Illuminate\Http\Request;
  4. use App\Http\Controllers\{
  5. Controller,
  6. AvatarController
  7. };
  8. use Auth, Cache, Storage, URL;
  9. use Carbon\Carbon;
  10. use App\{
  11. Avatar,
  12. Notification,
  13. Media,
  14. Profile,
  15. Status
  16. };
  17. use App\Transformer\Api\{
  18. AccountTransformer,
  19. NotificationTransformer,
  20. MediaTransformer,
  21. MediaDraftTransformer,
  22. StatusTransformer
  23. };
  24. use League\Fractal;
  25. use App\Util\Media\Filter;
  26. use League\Fractal\Serializer\ArraySerializer;
  27. use League\Fractal\Pagination\IlluminatePaginatorAdapter;
  28. use App\Jobs\AvatarPipeline\AvatarOptimize;
  29. use App\Jobs\ImageOptimizePipeline\ImageOptimize;
  30. use App\Jobs\VideoPipeline\{
  31. VideoOptimize,
  32. VideoPostProcess,
  33. VideoThumbnail
  34. };
  35. use App\Services\NotificationService;
  36. class BaseApiController extends Controller
  37. {
  38. protected $fractal;
  39. public function __construct()
  40. {
  41. // $this->middleware('auth');
  42. $this->fractal = new Fractal\Manager();
  43. $this->fractal->setSerializer(new ArraySerializer());
  44. }
  45. public function notifications(Request $request)
  46. {
  47. abort_if(!$request->user(), 403);
  48. $pid = $request->user()->profile_id;
  49. $pg = $request->input('pg');
  50. if($pg == true) {
  51. $timeago = Carbon::now()->subMonths(6);
  52. $notifications = Notification::whereProfileId($pid)
  53. ->whereDate('created_at', '>', $timeago)
  54. ->latest()
  55. ->simplePaginate(10);
  56. $resource = new Fractal\Resource\Collection($notifications, new NotificationTransformer());
  57. $res = $this->fractal->createData($resource)->toArray();
  58. } else {
  59. $this->validate($request, [
  60. 'page' => 'nullable|integer|min:1|max:10',
  61. 'limit' => 'nullable|integer|min:1|max:40'
  62. ]);
  63. $limit = $request->input('limit') ?? 10;
  64. $page = $request->input('page') ?? 1;
  65. $end = (int) $page * $limit;
  66. $start = (int) $end - $limit;
  67. $res = NotificationService::get($pid, $start, $end);
  68. }
  69. return response()->json($res);
  70. }
  71. public function accounts(Request $request, $id)
  72. {
  73. abort_if(!$request->user(), 403);
  74. $profile = Profile::findOrFail($id);
  75. $resource = new Fractal\Resource\Item($profile, new AccountTransformer());
  76. $res = $this->fractal->createData($resource)->toArray();
  77. return response()->json($res);
  78. }
  79. public function accountFollowers(Request $request, $id)
  80. {
  81. abort_if(!$request->user(), 403);
  82. $profile = Profile::findOrFail($id);
  83. $followers = $profile->followers;
  84. $resource = new Fractal\Resource\Collection($followers, new AccountTransformer());
  85. $res = $this->fractal->createData($resource)->toArray();
  86. return response()->json($res);
  87. }
  88. public function accountFollowing(Request $request, $id)
  89. {
  90. abort_if(!$request->user(), 403);
  91. $profile = Profile::findOrFail($id);
  92. $following = $profile->following;
  93. $resource = new Fractal\Resource\Collection($following, new AccountTransformer());
  94. $res = $this->fractal->createData($resource)->toArray();
  95. return response()->json($res);
  96. }
  97. public function accountStatuses(Request $request, $id)
  98. {
  99. abort_if(!$request->user(), 403);
  100. $this->validate($request, [
  101. 'only_media' => 'nullable',
  102. 'pinned' => 'nullable',
  103. 'exclude_replies' => 'nullable',
  104. 'max_id' => 'nullable|integer|min:1',
  105. 'since_id' => 'nullable|integer|min:1',
  106. 'min_id' => 'nullable|integer|min:1',
  107. 'limit' => 'nullable|integer|min:1|max:24'
  108. ]);
  109. $limit = $request->limit ?? 20;
  110. $max_id = $request->max_id ?? false;
  111. $min_id = $request->min_id ?? false;
  112. $since_id = $request->since_id ?? false;
  113. $only_media = $request->only_media ?? false;
  114. $user = Auth::user();
  115. $account = Profile::whereNull('status')->findOrFail($id);
  116. $statuses = $account->statuses()->getQuery();
  117. if($only_media == true) {
  118. $statuses = $statuses
  119. ->whereHas('media')
  120. ->whereNull('in_reply_to_id')
  121. ->whereNull('reblog_of_id');
  122. }
  123. if($id == $account->id && !$max_id && !$min_id && !$since_id) {
  124. $statuses = $statuses->orderBy('id', 'desc')
  125. ->paginate($limit);
  126. } else if($since_id) {
  127. $statuses = $statuses->where('id', '>', $since_id)
  128. ->orderBy('id', 'DESC')
  129. ->paginate($limit);
  130. } else if($min_id) {
  131. $statuses = $statuses->where('id', '>', $min_id)
  132. ->orderBy('id', 'ASC')
  133. ->paginate($limit);
  134. } else if($max_id) {
  135. $statuses = $statuses->where('id', '<', $max_id)
  136. ->orderBy('id', 'DESC')
  137. ->paginate($limit);
  138. } else {
  139. $statuses = $statuses->whereVisibility('public')->orderBy('id', 'desc')->paginate($limit);
  140. }
  141. $resource = new Fractal\Resource\Collection($statuses, new StatusTransformer());
  142. $res = $this->fractal->createData($resource)->toArray();
  143. return response()->json($res);
  144. }
  145. public function avatarUpdate(Request $request)
  146. {
  147. abort_if(!$request->user(), 403);
  148. $this->validate($request, [
  149. 'upload' => 'required|mimes:jpeg,png,gif|max:'.config('pixelfed.max_avatar_size'),
  150. ]);
  151. try {
  152. $user = Auth::user();
  153. $profile = $user->profile;
  154. $file = $request->file('upload');
  155. $path = (new AvatarController())->getPath($user, $file);
  156. $dir = $path['root'];
  157. $name = $path['name'];
  158. $public = $path['storage'];
  159. $currentAvatar = storage_path('app/'.$profile->avatar->media_path);
  160. $loc = $request->file('upload')->storeAs($public, $name);
  161. $avatar = Avatar::whereProfileId($profile->id)->firstOrFail();
  162. $opath = $avatar->media_path;
  163. $avatar->media_path = "$public/$name";
  164. $avatar->thumb_path = null;
  165. $avatar->change_count = ++$avatar->change_count;
  166. $avatar->last_processed_at = null;
  167. $avatar->save();
  168. Cache::forget("avatar:{$profile->id}");
  169. AvatarOptimize::dispatch($user->profile, $currentAvatar);
  170. } catch (Exception $e) {
  171. }
  172. return response()->json([
  173. 'code' => 200,
  174. 'msg' => 'Avatar successfully updated',
  175. ]);
  176. }
  177. public function showTempMedia(Request $request, $profileId, $mediaId, $timestamp)
  178. {
  179. abort_if(!$request->user(), 403);
  180. abort_if(!$request->hasValidSignature(), 404);
  181. abort_if(Auth::user()->profile_id != $profileId, 404);
  182. $media = Media::whereProfileId(Auth::user()->profile_id)->findOrFail($mediaId);
  183. $path = storage_path('app/'.$media->media_path);
  184. return response()->file($path);
  185. }
  186. public function uploadMedia(Request $request)
  187. {
  188. abort_if(!$request->user(), 403);
  189. $this->validate($request, [
  190. 'file.*' => function() {
  191. return [
  192. 'required',
  193. 'mimes:' . config('pixelfed.media_types'),
  194. 'max:' . config('pixelfed.max_photo_size'),
  195. ];
  196. },
  197. 'filter_name' => 'nullable|string|max:24',
  198. 'filter_class' => 'nullable|alpha_dash|max:24'
  199. ]);
  200. $user = Auth::user();
  201. $profile = $user->profile;
  202. if(config('pixelfed.enforce_account_limit') == true) {
  203. $size = Cache::remember($user->storageUsedKey(), now()->addDays(3), function() use($user) {
  204. return Media::whereUserId($user->id)->sum('size') / 1000;
  205. });
  206. $limit = (int) config('pixelfed.max_account_size');
  207. if ($size >= $limit) {
  208. abort(403, 'Account size limit reached.');
  209. }
  210. }
  211. $filterClass = in_array($request->input('filter_class'), Filter::classes()) ? $request->input('filter_class') : null;
  212. $filterName = in_array($request->input('filter_name'), Filter::names()) ? $request->input('filter_name') : null;
  213. $monthHash = hash('sha1', date('Y').date('m'));
  214. $userHash = hash('sha1', $user->id . (string) $user->created_at);
  215. $photo = $request->file('file');
  216. $mimes = explode(',', config('pixelfed.media_types'));
  217. if(in_array($photo->getMimeType(), $mimes) == false) {
  218. return;
  219. }
  220. $storagePath = "public/m/{$monthHash}/{$userHash}";
  221. $path = $photo->store($storagePath);
  222. $hash = \hash_file('sha256', $photo);
  223. $media = new Media();
  224. $media->status_id = null;
  225. $media->profile_id = $profile->id;
  226. $media->user_id = $user->id;
  227. $media->media_path = $path;
  228. $media->original_sha256 = $hash;
  229. $media->size = $photo->getSize();
  230. $media->mime = $photo->getMimeType();
  231. $media->filter_class = $filterClass;
  232. $media->filter_name = $filterName;
  233. $media->save();
  234. $url = URL::temporarySignedRoute(
  235. 'temp-media', now()->addHours(1), ['profileId' => $profile->id, 'mediaId' => $media->id, 'timestamp' => time()]
  236. );
  237. switch ($media->mime) {
  238. case 'image/jpeg':
  239. case 'image/png':
  240. ImageOptimize::dispatch($media);
  241. break;
  242. case 'video/mp4':
  243. VideoThumbnail::dispatch($media);
  244. $preview_url = '/storage/no-preview.png';
  245. $url = '/storage/no-preview.png';
  246. break;
  247. default:
  248. break;
  249. }
  250. $resource = new Fractal\Resource\Item($media, new MediaTransformer());
  251. $res = $this->fractal->createData($resource)->toArray();
  252. $res['preview_url'] = $url;
  253. $res['url'] = $url;
  254. return response()->json($res);
  255. }
  256. public function deleteMedia(Request $request)
  257. {
  258. abort_if(!$request->user(), 403);
  259. $this->validate($request, [
  260. 'id' => 'required|integer|min:1|exists:media,id'
  261. ]);
  262. $media = Media::whereNull('status_id')
  263. ->whereUserId(Auth::id())
  264. ->findOrFail($request->input('id'));
  265. Storage::delete($media->media_path);
  266. Storage::delete($media->thumbnail_path);
  267. $media->forceDelete();
  268. return response()->json([
  269. 'msg' => 'Successfully deleted',
  270. 'code' => 200
  271. ]);
  272. }
  273. public function verifyCredentials(Request $request)
  274. {
  275. $user = $request->user();
  276. abort_if(!$user, 403);
  277. if($user->status != null) {
  278. Auth::logout();
  279. return redirect('/login');
  280. }
  281. $resource = new Fractal\Resource\Item($user->profile, new AccountTransformer());
  282. $res = $this->fractal->createData($resource)->toArray();
  283. return response()->json($res);
  284. }
  285. public function drafts(Request $request)
  286. {
  287. $user = $request->user();
  288. abort_if(!$request->user(), 403);
  289. $medias = Media::whereUserId($user->id)
  290. ->whereNull('status_id')
  291. ->latest()
  292. ->take(13)
  293. ->get();
  294. $resource = new Fractal\Resource\Collection($medias, new MediaDraftTransformer());
  295. $res = $this->fractal->createData($resource)->toArray();
  296. return response()->json($res, 200, [], JSON_PRETTY_PRINT|JSON_UNESCAPED_SLASHES);
  297. }
  298. }