BaseApiController.php 13 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376
  1. <?php
  2. namespace App\Http\Controllers\Api;
  3. use Illuminate\Http\Request;
  4. use App\Http\Controllers\{
  5. Controller,
  6. AvatarController
  7. };
  8. use Auth, Cache, Storage, URL;
  9. use Carbon\Carbon;
  10. use App\{
  11. Avatar,
  12. Like,
  13. Media,
  14. Notification,
  15. Profile,
  16. Status
  17. };
  18. use App\Transformer\Api\{
  19. AccountTransformer,
  20. NotificationTransformer,
  21. MediaTransformer,
  22. MediaDraftTransformer,
  23. StatusTransformer,
  24. StatusStatelessTransformer
  25. };
  26. use League\Fractal;
  27. use App\Util\Media\Filter;
  28. use League\Fractal\Serializer\ArraySerializer;
  29. use League\Fractal\Pagination\IlluminatePaginatorAdapter;
  30. use App\Jobs\AvatarPipeline\AvatarOptimize;
  31. use App\Jobs\ImageOptimizePipeline\ImageOptimize;
  32. use App\Jobs\VideoPipeline\{
  33. VideoOptimize,
  34. VideoPostProcess,
  35. VideoThumbnail
  36. };
  37. use App\Services\NotificationService;
  38. use App\Services\MediaPathService;
  39. use App\Services\MediaBlocklistService;
  40. class BaseApiController extends Controller
  41. {
  42. protected $fractal;
  43. public function __construct()
  44. {
  45. // $this->middleware('auth');
  46. $this->fractal = new Fractal\Manager();
  47. $this->fractal->setSerializer(new ArraySerializer());
  48. }
  49. public function notifications(Request $request)
  50. {
  51. abort_if(!$request->user(), 403);
  52. $pid = $request->user()->profile_id;
  53. $pg = $request->input('pg');
  54. if($pg == true) {
  55. $timeago = Carbon::now()->subMonths(6);
  56. $notifications = Notification::whereProfileId($pid)
  57. ->whereDate('created_at', '>', $timeago)
  58. ->latest()
  59. ->simplePaginate(10);
  60. $resource = new Fractal\Resource\Collection($notifications, new NotificationTransformer());
  61. $res = $this->fractal->createData($resource)->toArray();
  62. } else {
  63. $this->validate($request, [
  64. 'page' => 'nullable|integer|min:1|max:10',
  65. 'limit' => 'nullable|integer|min:1|max:40'
  66. ]);
  67. $limit = $request->input('limit') ?? 10;
  68. $page = $request->input('page') ?? 1;
  69. $end = (int) $page * $limit;
  70. $start = (int) $end - $limit;
  71. $res = NotificationService::get($pid, $start, $end);
  72. }
  73. return response()->json($res);
  74. }
  75. public function accounts(Request $request, $id)
  76. {
  77. abort_if(!$request->user(), 403);
  78. $profile = Profile::findOrFail($id);
  79. $resource = new Fractal\Resource\Item($profile, new AccountTransformer());
  80. $res = $this->fractal->createData($resource)->toArray();
  81. return response()->json($res);
  82. }
  83. public function accountFollowers(Request $request, $id)
  84. {
  85. abort_if(!$request->user(), 403);
  86. $profile = Profile::findOrFail($id);
  87. $followers = $profile->followers;
  88. $resource = new Fractal\Resource\Collection($followers, new AccountTransformer());
  89. $res = $this->fractal->createData($resource)->toArray();
  90. return response()->json($res);
  91. }
  92. public function accountFollowing(Request $request, $id)
  93. {
  94. abort_if(!$request->user(), 403);
  95. $profile = Profile::findOrFail($id);
  96. $following = $profile->following;
  97. $resource = new Fractal\Resource\Collection($following, new AccountTransformer());
  98. $res = $this->fractal->createData($resource)->toArray();
  99. return response()->json($res);
  100. }
  101. public function accountStatuses(Request $request, $id)
  102. {
  103. abort_if(!$request->user(), 403);
  104. $this->validate($request, [
  105. 'only_media' => 'nullable',
  106. 'pinned' => 'nullable',
  107. 'exclude_replies' => 'nullable',
  108. 'max_id' => 'nullable|integer|min:1',
  109. 'since_id' => 'nullable|integer|min:1',
  110. 'min_id' => 'nullable|integer|min:1',
  111. 'limit' => 'nullable|integer|min:1|max:24'
  112. ]);
  113. $limit = $request->limit ?? 20;
  114. $max_id = $request->max_id ?? false;
  115. $min_id = $request->min_id ?? false;
  116. $since_id = $request->since_id ?? false;
  117. $only_media = $request->only_media ?? false;
  118. $user = Auth::user();
  119. $account = Profile::whereNull('status')->findOrFail($id);
  120. $statuses = $account->statuses()->getQuery();
  121. if($only_media == true) {
  122. $statuses = $statuses
  123. ->whereIn('scope', ['public','unlisted'])
  124. ->whereHas('media')
  125. ->whereNull('in_reply_to_id')
  126. ->whereNull('reblog_of_id');
  127. }
  128. if($id == $account->id && !$max_id && !$min_id && !$since_id) {
  129. $statuses = $statuses->orderBy('id', 'desc')
  130. ->paginate($limit);
  131. } else if($since_id) {
  132. $statuses = $statuses->where('id', '>', $since_id)
  133. ->orderBy('id', 'DESC')
  134. ->paginate($limit);
  135. } else if($min_id) {
  136. $statuses = $statuses->where('id', '>', $min_id)
  137. ->orderBy('id', 'ASC')
  138. ->paginate($limit);
  139. } else if($max_id) {
  140. $statuses = $statuses->where('id', '<', $max_id)
  141. ->orderBy('id', 'DESC')
  142. ->paginate($limit);
  143. } else {
  144. $statuses = $statuses->whereScope('public')->orderBy('id', 'desc')->paginate($limit);
  145. }
  146. $resource = new Fractal\Resource\Collection($statuses, new StatusTransformer());
  147. $res = $this->fractal->createData($resource)->toArray();
  148. return response()->json($res);
  149. }
  150. public function avatarUpdate(Request $request)
  151. {
  152. abort_if(!$request->user(), 403);
  153. $this->validate($request, [
  154. 'upload' => 'required|mimes:jpeg,png,gif|max:'.config('pixelfed.max_avatar_size'),
  155. ]);
  156. try {
  157. $user = Auth::user();
  158. $profile = $user->profile;
  159. $file = $request->file('upload');
  160. $path = (new AvatarController())->getPath($user, $file);
  161. $dir = $path['root'];
  162. $name = $path['name'];
  163. $public = $path['storage'];
  164. $currentAvatar = storage_path('app/'.$profile->avatar->media_path);
  165. $loc = $request->file('upload')->storeAs($public, $name);
  166. $avatar = Avatar::whereProfileId($profile->id)->firstOrFail();
  167. $opath = $avatar->media_path;
  168. $avatar->media_path = "$public/$name";
  169. $avatar->thumb_path = null;
  170. $avatar->change_count = ++$avatar->change_count;
  171. $avatar->last_processed_at = null;
  172. $avatar->save();
  173. Cache::forget("avatar:{$profile->id}");
  174. AvatarOptimize::dispatch($user->profile, $currentAvatar);
  175. } catch (Exception $e) {
  176. }
  177. return response()->json([
  178. 'code' => 200,
  179. 'msg' => 'Avatar successfully updated',
  180. ]);
  181. }
  182. public function showTempMedia(Request $request, $profileId, $mediaId, $timestamp)
  183. {
  184. abort_if(!$request->user(), 403);
  185. abort_if(!$request->hasValidSignature(), 404);
  186. abort_if(Auth::user()->profile_id != $profileId, 404);
  187. $media = Media::whereProfileId(Auth::user()->profile_id)->findOrFail($mediaId);
  188. $path = storage_path('app/'.$media->media_path);
  189. return response()->file($path);
  190. }
  191. public function uploadMedia(Request $request)
  192. {
  193. abort_if(!$request->user(), 403);
  194. $this->validate($request, [
  195. 'file.*' => function() {
  196. return [
  197. 'required',
  198. 'mimes:' . config('pixelfed.media_types'),
  199. 'max:' . config('pixelfed.max_photo_size'),
  200. ];
  201. },
  202. 'filter_name' => 'nullable|string|max:24',
  203. 'filter_class' => 'nullable|alpha_dash|max:24'
  204. ]);
  205. $user = Auth::user();
  206. $profile = $user->profile;
  207. if(config('pixelfed.enforce_account_limit') == true) {
  208. $size = Cache::remember($user->storageUsedKey(), now()->addDays(3), function() use($user) {
  209. return Media::whereUserId($user->id)->sum('size') / 1000;
  210. });
  211. $limit = (int) config('pixelfed.max_account_size');
  212. if ($size >= $limit) {
  213. abort(403, 'Account size limit reached.');
  214. }
  215. }
  216. $filterClass = in_array($request->input('filter_class'), Filter::classes()) ? $request->input('filter_class') : null;
  217. $filterName = in_array($request->input('filter_name'), Filter::names()) ? $request->input('filter_name') : null;
  218. $photo = $request->file('file');
  219. $mimes = explode(',', config('pixelfed.media_types'));
  220. if(in_array($photo->getMimeType(), $mimes) == false) {
  221. return;
  222. }
  223. $storagePath = MediaPathService::get($user, 2);
  224. $path = $photo->store($storagePath);
  225. $hash = \hash_file('sha256', $photo);
  226. abort_if(MediaBlocklistService::exists($hash) == true, 451);
  227. $media = new Media();
  228. $media->status_id = null;
  229. $media->profile_id = $profile->id;
  230. $media->user_id = $user->id;
  231. $media->media_path = $path;
  232. $media->original_sha256 = $hash;
  233. $media->size = $photo->getSize();
  234. $media->mime = $photo->getMimeType();
  235. $media->filter_class = $filterClass;
  236. $media->filter_name = $filterName;
  237. $media->save();
  238. $url = URL::temporarySignedRoute(
  239. 'temp-media', now()->addHours(1), ['profileId' => $profile->id, 'mediaId' => $media->id, 'timestamp' => time()]
  240. );
  241. switch ($media->mime) {
  242. case 'image/jpeg':
  243. case 'image/png':
  244. ImageOptimize::dispatch($media);
  245. break;
  246. case 'video/mp4':
  247. VideoThumbnail::dispatch($media);
  248. $preview_url = '/storage/no-preview.png';
  249. $url = '/storage/no-preview.png';
  250. break;
  251. default:
  252. break;
  253. }
  254. $resource = new Fractal\Resource\Item($media, new MediaTransformer());
  255. $res = $this->fractal->createData($resource)->toArray();
  256. $res['preview_url'] = $url;
  257. $res['url'] = $url;
  258. return response()->json($res);
  259. }
  260. public function deleteMedia(Request $request)
  261. {
  262. abort_if(!$request->user(), 403);
  263. $this->validate($request, [
  264. 'id' => 'required|integer|min:1|exists:media,id'
  265. ]);
  266. $media = Media::whereNull('status_id')
  267. ->whereUserId(Auth::id())
  268. ->findOrFail($request->input('id'));
  269. Storage::delete($media->media_path);
  270. Storage::delete($media->thumbnail_path);
  271. $media->forceDelete();
  272. return response()->json([
  273. 'msg' => 'Successfully deleted',
  274. 'code' => 200
  275. ]);
  276. }
  277. public function verifyCredentials(Request $request)
  278. {
  279. $user = $request->user();
  280. abort_if(!$user, 403);
  281. if($user->status != null) {
  282. Auth::logout();
  283. return redirect('/login');
  284. }
  285. $key = 'user:last_active_at:id:'.$user->id;
  286. $ttl = now()->addMinutes(5);
  287. Cache::remember($key, $ttl, function() use($user) {
  288. $user->last_active_at = now();
  289. $user->save();
  290. return;
  291. });
  292. $resource = new Fractal\Resource\Item($user->profile, new AccountTransformer());
  293. $res = $this->fractal->createData($resource)->toArray();
  294. return response()->json($res);
  295. }
  296. public function drafts(Request $request)
  297. {
  298. $user = $request->user();
  299. abort_if(!$request->user(), 403);
  300. $medias = Media::whereUserId($user->id)
  301. ->whereNull('status_id')
  302. ->latest()
  303. ->take(13)
  304. ->get();
  305. $resource = new Fractal\Resource\Collection($medias, new MediaDraftTransformer());
  306. $res = $this->fractal->createData($resource)->toArray();
  307. return response()->json($res, 200, [], JSON_PRETTY_PRINT|JSON_UNESCAPED_SLASHES);
  308. }
  309. public function accountLikes(Request $request)
  310. {
  311. $user = $request->user();
  312. abort_if(!$request->user(), 403);
  313. $limit = 10;
  314. $page = (int) $request->input('page', 1);
  315. if($page > 20) {
  316. return [];
  317. }
  318. $favourites = $user->profile->likes()
  319. ->latest()
  320. ->simplePaginate($limit)
  321. ->pluck('status_id');
  322. $statuses = Status::find($favourites)->reverse();
  323. $resource = new Fractal\Resource\Collection($statuses, new StatusStatelessTransformer());
  324. $res = $this->fractal->createData($resource)->toArray();
  325. return response()->json($res, 200, [], JSON_PRETTY_PRINT|JSON_UNESCAPED_SLASHES);
  326. }
  327. }