ParentalControlsController.php 7.6 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230
  1. <?php
  2. namespace App\Http\Controllers;
  3. use Illuminate\Http\Request;
  4. use App\Models\ParentalControls;
  5. use App\Models\UserRoles;
  6. use App\Profile;
  7. use App\User;
  8. use App\Http\Controllers\Auth\RegisterController;
  9. use Illuminate\Auth\Events\Registered;
  10. use Illuminate\Support\Facades\Auth;
  11. use App\Services\UserRoleService;
  12. use App\Jobs\ParentalControlsPipeline\DispatchChildInvitePipeline;
  13. class ParentalControlsController extends Controller
  14. {
  15. public function authPreflight($request, $maxUserCheck = false, $authCheck = true)
  16. {
  17. if($authCheck) {
  18. abort_unless($request->user(), 404);
  19. }
  20. abort_unless(config('instance.parental_controls.enabled'), 404);
  21. if(config_cache('pixelfed.open_registration') == false) {
  22. abort_if(config('instance.parental_controls.limits.respect_open_registration'), 404);
  23. }
  24. if($maxUserCheck == true) {
  25. $hasLimit = config('pixelfed.enforce_max_users');
  26. if($hasLimit) {
  27. $count = User::where(function($q){ return $q->whereNull('status')->orWhereNotIn('status', ['deleted','delete']); })->count();
  28. $limit = (int) config('pixelfed.max_users');
  29. abort_if($limit && $limit <= $count, 404);
  30. }
  31. }
  32. }
  33. public function index(Request $request)
  34. {
  35. $this->authPreflight($request);
  36. $children = ParentalControls::whereParentId($request->user()->id)->latest()->paginate(5);
  37. return view('settings.parental-controls.index', compact('children'));
  38. }
  39. public function add(Request $request)
  40. {
  41. $this->authPreflight($request, true);
  42. return view('settings.parental-controls.add');
  43. }
  44. public function view(Request $request, $id)
  45. {
  46. $this->authPreflight($request);
  47. $uid = $request->user()->id;
  48. $pc = ParentalControls::whereParentId($uid)->findOrFail($id);
  49. return view('settings.parental-controls.manage', compact('pc'));
  50. }
  51. public function update(Request $request, $id)
  52. {
  53. $this->authPreflight($request);
  54. $uid = $request->user()->id;
  55. $ff = $this->requestFormFields($request);
  56. $pc = ParentalControls::whereParentId($uid)->findOrFail($id);
  57. $pc->permissions = $ff;
  58. $pc->save();
  59. $roles = UserRoleService::mapActions($pc->child_id, $ff);
  60. if(isset($roles['account-force-private'])) {
  61. $c = Profile::whereUserId($pc->child_id)->first();
  62. $c->is_private = $roles['account-force-private'];
  63. $c->save();
  64. }
  65. UserRoles::whereUserId($pc->child_id)->update(['roles' => $roles]);
  66. return redirect($pc->manageUrl() . '?permissions');
  67. }
  68. public function store(Request $request)
  69. {
  70. $this->authPreflight($request, true);
  71. $this->validate($request, [
  72. 'email' => 'required|email|unique:parental_controls,email|unique:users,email',
  73. ]);
  74. $state = $this->requestFormFields($request);
  75. $pc = new ParentalControls;
  76. $pc->parent_id = $request->user()->id;
  77. $pc->email = $request->input('email');
  78. $pc->verify_code = str_random(32);
  79. $pc->permissions = $state;
  80. $pc->save();
  81. DispatchChildInvitePipeline::dispatch($pc);
  82. return redirect($pc->manageUrl());
  83. }
  84. public function inviteRegister(Request $request, $id, $code)
  85. {
  86. if($request->user()) {
  87. $title = 'You cannot complete this action on this device.';
  88. $body = 'Please log out or use a different device or browser to complete the invitation registration.';
  89. return view('errors.custom', compact('title', 'body'));
  90. }
  91. $this->authPreflight($request, true, false);
  92. $pc = ParentalControls::whereRaw('verify_code = BINARY ?', $code)->whereNull(['email_verified_at', 'child_id'])->findOrFail($id);
  93. abort_unless(User::whereId($pc->parent_id)->exists(), 404);
  94. return view('settings.parental-controls.invite-register-form', compact('pc'));
  95. }
  96. public function inviteRegisterStore(Request $request, $id, $code)
  97. {
  98. if($request->user()) {
  99. $title = 'You cannot complete this action on this device.';
  100. $body = 'Please log out or use a different device or browser to complete the invitation registration.';
  101. return view('errors.custom', compact('title', 'body'));
  102. }
  103. $this->authPreflight($request, true, false);
  104. $pc = ParentalControls::whereRaw('verify_code = BINARY ?', $code)->whereNull('email_verified_at')->findOrFail($id);
  105. $fields = $request->all();
  106. $fields['email'] = $pc->email;
  107. $defaults = UserRoleService::defaultRoles();
  108. $validator = (new RegisterController)->validator($fields);
  109. $valid = $validator->validate();
  110. abort_if(!$valid, 404);
  111. event(new Registered($user = (new RegisterController)->create($fields)));
  112. sleep(5);
  113. $user->has_roles = true;
  114. $user->parent_id = $pc->parent_id;
  115. if(config('instance.parental_controls.limits.auto_verify_email')) {
  116. $user->email_verified_at = now();
  117. $user->save();
  118. sleep(3);
  119. } else {
  120. $user->save();
  121. sleep(3);
  122. }
  123. $ur = UserRoles::updateOrCreate([
  124. 'user_id' => $user->id,
  125. ],[
  126. 'roles' => UserRoleService::mapInvite($user->id, $pc->permissions)
  127. ]);
  128. $pc->email_verified_at = now();
  129. $pc->child_id = $user->id;
  130. $pc->save();
  131. sleep(2);
  132. Auth::guard()->login($user);
  133. return redirect('/i/web');
  134. }
  135. public function cancelInvite(Request $request, $id)
  136. {
  137. $this->authPreflight($request);
  138. $pc = ParentalControls::whereParentId($request->user()->id)
  139. ->whereNull(['email_verified_at', 'child_id'])
  140. ->findOrFail($id);
  141. return view('settings.parental-controls.delete-invite', compact('pc'));
  142. }
  143. public function cancelInviteHandle(Request $request, $id)
  144. {
  145. $this->authPreflight($request);
  146. $pc = ParentalControls::whereParentId($request->user()->id)
  147. ->whereNull(['email_verified_at', 'child_id'])
  148. ->findOrFail($id);
  149. $pc->delete();
  150. return redirect('/settings/parental-controls');
  151. }
  152. public function stopManaging(Request $request, $id)
  153. {
  154. $this->authPreflight($request);
  155. $pc = ParentalControls::whereParentId($request->user()->id)
  156. ->whereNotNull(['email_verified_at', 'child_id'])
  157. ->findOrFail($id);
  158. return view('settings.parental-controls.stop-managing', compact('pc'));
  159. }
  160. public function stopManagingHandle(Request $request, $id)
  161. {
  162. $this->authPreflight($request);
  163. $pc = ParentalControls::whereParentId($request->user()->id)
  164. ->whereNotNull(['email_verified_at', 'child_id'])
  165. ->findOrFail($id);
  166. $pc->child()->update([
  167. 'has_roles' => false,
  168. 'parent_id' => null,
  169. ]);
  170. $pc->delete();
  171. return redirect('/settings/parental-controls');
  172. }
  173. protected function requestFormFields($request)
  174. {
  175. $state = [];
  176. $fields = [
  177. 'post',
  178. 'comment',
  179. 'like',
  180. 'share',
  181. 'follow',
  182. 'bookmark',
  183. 'story',
  184. 'collection',
  185. 'discovery_feeds',
  186. 'dms',
  187. 'federation',
  188. 'hide_network',
  189. 'private',
  190. 'hide_cw'
  191. ];
  192. foreach ($fields as $field) {
  193. $state[$field] = $request->input($field) == 'on';
  194. }
  195. return $state;
  196. }
  197. }