AdminUserController.php 8.1 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302
  1. <?php
  2. namespace App\Http\Controllers\Admin;
  3. use Cache, DB;
  4. use Illuminate\Http\Request;
  5. use App\ModLog;
  6. use App\Profile;
  7. use App\User;
  8. use App\Mail\AdminMessage;
  9. use Illuminate\Support\Facades\Mail;
  10. use App\Services\ModLogService;
  11. use App\Jobs\DeletePipeline\DeleteAccountPipeline;
  12. use App\Services\AccountService;
  13. trait AdminUserController
  14. {
  15. public function users(Request $request)
  16. {
  17. $search = $request->has('a') && $request->query('a') == 'search' ? $request->query('q') : null;
  18. $col = $request->query('col') ?? 'id';
  19. $dir = $request->query('dir') ?? 'desc';
  20. $offset = $request->has('page') ? $request->input('page') : 0;
  21. $pagination = [
  22. 'prev' => $offset > 0 ? $offset - 1 : null,
  23. 'next' => $offset + 1,
  24. 'query' => $search ? '&a=search&q=' . $search : null
  25. ];
  26. $users = User::select('id', 'username', 'status', 'profile_id', 'is_admin')
  27. ->orderBy($col, $dir)
  28. ->when($search, function($q, $search) {
  29. return $q->where('username', 'like', "%{$search}%");
  30. })
  31. ->when($offset, function($q, $offset) {
  32. return $q->offset(($offset * 10));
  33. })
  34. ->limit(10)
  35. ->get()
  36. ->map(function($u) {
  37. $u['account'] = AccountService::get($u->profile_id, true);
  38. return $u;
  39. });
  40. return view('admin.users.home', compact('users', 'pagination'));
  41. }
  42. public function userShow(Request $request, $id)
  43. {
  44. $user = User::findOrFail($id);
  45. $profile = $user->profile;
  46. return view('admin.users.show', compact('user', 'profile'));
  47. }
  48. public function userEdit(Request $request, $id)
  49. {
  50. $user = User::findOrFail($id);
  51. $profile = $user->profile;
  52. return view('admin.users.edit', compact('user', 'profile'));
  53. }
  54. public function userEditSubmit(Request $request, $id)
  55. {
  56. $user = User::findOrFail($id);
  57. $profile = $user->profile;
  58. $changed = false;
  59. $fields = [];
  60. if($request->filled('name') && $request->input('name') != $user->name) {
  61. $fields['name'] = ['old' => $user->name, 'new' => $request->input('name')];
  62. $user->name = $profile->name = $request->input('name');
  63. $changed = true;
  64. }
  65. if($request->filled('username') && $request->input('username') != $user->username) {
  66. $fields['username'] = ['old' => $user->username, 'new' => $request->input('username')];
  67. $user->username = $profile->username = $request->input('username');
  68. $changed = true;
  69. }
  70. if($request->filled('email') && $request->input('email') != $user->email) {
  71. if(filter_var($request->input('email'), FILTER_VALIDATE_EMAIL) == false) {
  72. abort(500, 'Invalid email address');
  73. }
  74. $fields['email'] = ['old' => $user->email, 'new' => $request->input('email')];
  75. $user->email = $request->input('email');
  76. $changed = true;
  77. }
  78. if($request->input('bio') != $profile->bio) {
  79. $fields['bio'] = ['old' => $user->bio, 'new' => $request->input('bio')];
  80. $profile->bio = $request->input('bio');
  81. $changed = true;
  82. }
  83. if($request->input('website') != $profile->website) {
  84. $fields['website'] = ['old' => $user->website, 'new' => $request->input('website')];
  85. $profile->website = $request->input('website');
  86. $changed = true;
  87. }
  88. if($changed == true) {
  89. ModLogService::boot()
  90. ->objectUid($user->id)
  91. ->objectId($user->id)
  92. ->objectType('App\User::class')
  93. ->user($request->user())
  94. ->action('admin.user.edit')
  95. ->metadata([
  96. 'fields' => $fields
  97. ])
  98. ->accessLevel('admin')
  99. ->save();
  100. $profile->save();
  101. $user->save();
  102. }
  103. return redirect('/i/admin/users/show/' . $user->id);
  104. }
  105. public function userActivity(Request $request, $id)
  106. {
  107. $user = User::findOrFail($id);
  108. $profile = $user->profile;
  109. $logs = $user->accountLog()->orderByDesc('created_at')->paginate(10);
  110. return view('admin.users.activity', compact('user', 'profile', 'logs'));
  111. }
  112. public function userMessage(Request $request, $id)
  113. {
  114. $user = User::findOrFail($id);
  115. $profile = $user->profile;
  116. return view('admin.users.message', compact('user', 'profile'));
  117. }
  118. public function userMessageSend(Request $request, $id)
  119. {
  120. $this->validate($request, [
  121. 'message' => 'required|string|min:5|max:500'
  122. ]);
  123. $user = User::findOrFail($id);
  124. $profile = $user->profile;
  125. $message = $request->input('message');
  126. Mail::to($user->email)->send(new AdminMessage($message));
  127. ModLogService::boot()
  128. ->objectUid($user->id)
  129. ->objectId($user->id)
  130. ->objectType('App\User::class')
  131. ->user($request->user())
  132. ->action('admin.user.mail')
  133. ->metadata([
  134. 'message' => $message
  135. ])
  136. ->accessLevel('admin')
  137. ->save();
  138. return redirect('/i/admin/users/show/' . $user->id);
  139. }
  140. public function userModTools(Request $request, $id)
  141. {
  142. $user = User::findOrFail($id);
  143. $profile = $user->profile;
  144. return view('admin.users.modtools', compact('user', 'profile'));
  145. }
  146. public function userModLogs(Request $request, $id)
  147. {
  148. $user = User::findOrFail($id);
  149. $profile = $user->profile;
  150. $logs = ModLog::whereObjectUid($user->id)
  151. ->orderByDesc('created_at')
  152. ->simplePaginate(10);
  153. return view('admin.users.modlogs', compact('user', 'profile', 'logs'));
  154. }
  155. public function userModLogsMessage(Request $request, $id)
  156. {
  157. $this->validate($request, [
  158. 'message' => 'required|string|min:5|max:500'
  159. ]);
  160. $user = User::findOrFail($id);
  161. $profile = $user->profile;
  162. $msg = $request->input('message');
  163. ModLogService::boot()
  164. ->objectUid($user->id)
  165. ->objectId($user->id)
  166. ->objectType('App\User::class')
  167. ->user($request->user())
  168. ->message($msg)
  169. ->accessLevel('admin')
  170. ->save();
  171. return redirect('/i/admin/users/modlogs/' . $user->id);
  172. }
  173. public function userDelete(Request $request, $id)
  174. {
  175. $user = User::findOrFail($id);
  176. $profile = $user->profile;
  177. return view('admin.users.delete', compact('user', 'profile'));
  178. }
  179. public function userDeleteProcess(Request $request, $id)
  180. {
  181. $user = User::findOrFail($id);
  182. $profile = $user->profile;
  183. if(config('pixelfed.account_deletion') == false) {
  184. abort(404);
  185. }
  186. if($user->is_admin == true) {
  187. $mid = $request->user()->id;
  188. abort_if($user->id < $mid, 403);
  189. }
  190. $ts = now()->addMonth();
  191. $user->status = 'delete';
  192. $profile->status = 'delete';
  193. $user->delete_after = $ts;
  194. $profile->delete_after = $ts;
  195. $user->save();
  196. $profile->save();
  197. ModLogService::boot()
  198. ->objectUid($user->id)
  199. ->objectId($user->id)
  200. ->objectType('App\User::class')
  201. ->user($request->user())
  202. ->action('admin.user.delete')
  203. ->accessLevel('admin')
  204. ->save();
  205. Cache::forget('profiles:private');
  206. DeleteAccountPipeline::dispatch($user);
  207. $msg = "Successfully deleted {$user->username}!";
  208. $request->session()->flash('status', $msg);
  209. return redirect('/i/admin/users/list');
  210. }
  211. public function userModerate(Request $request)
  212. {
  213. $this->validate($request, [
  214. 'profile_id' => 'required|exists:profiles,id',
  215. 'action' => 'required|in:cw,no_autolink,unlisted'
  216. ]);
  217. $pid = $request->input('profile_id');
  218. $action = $request->input('action');
  219. $profile = Profile::findOrFail($pid);
  220. if($profile->user->is_admin == true) {
  221. $mid = $request->user()->id;
  222. abort_if($profile->user_id < $mid, 403);
  223. }
  224. switch ($action) {
  225. case 'cw':
  226. $profile->cw = !$profile->cw;
  227. $msg = "Success!";
  228. break;
  229. case 'no_autolink':
  230. $profile->no_autolink = !$profile->no_autolink;
  231. $msg = "Success!";
  232. break;
  233. case 'unlisted':
  234. $profile->unlisted = !$profile->unlisted;
  235. $msg = "Success!";
  236. break;
  237. }
  238. $profile->save();
  239. ModLogService::boot()
  240. ->objectUid($profile->user_id)
  241. ->objectId($profile->user_id)
  242. ->objectType('App\User::class')
  243. ->user($request->user())
  244. ->action('admin.user.moderate')
  245. ->metadata([
  246. 'action' => $action,
  247. 'message' => $msg
  248. ])
  249. ->accessLevel('admin')
  250. ->save();
  251. $request->session()->flash('status', $msg);
  252. return redirect('/i/admin/users/modtools/' . $profile->user_id);
  253. }
  254. public function userModLogDelete(Request $request, $id)
  255. {
  256. $this->validate($request, [
  257. 'mid' => 'required|integer|exists:mod_logs,id'
  258. ]);
  259. $user = User::findOrFail($id);
  260. $uid = $request->user()->id;
  261. $mid = $request->input('mid');
  262. $ml = ModLog::whereUserId($uid)->findOrFail($mid)->delete();
  263. $msg = "Successfully deleted modlog comment!";
  264. $request->session()->flash('status', $msg);
  265. return redirect('/i/admin/users/modlogs/' . $user->id);
  266. }
  267. }