BaseApiController.php 12 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341
  1. <?php
  2. namespace App\Http\Controllers\Api;
  3. use Illuminate\Http\Request;
  4. use App\Http\Controllers\{
  5. Controller,
  6. AvatarController
  7. };
  8. use Auth, Cache, Storage, URL;
  9. use Carbon\Carbon;
  10. use App\{
  11. Avatar,
  12. Notification,
  13. Media,
  14. Profile,
  15. Status
  16. };
  17. use App\Transformer\Api\{
  18. AccountTransformer,
  19. NotificationTransformer,
  20. MediaTransformer,
  21. MediaDraftTransformer,
  22. StatusTransformer
  23. };
  24. use League\Fractal;
  25. use App\Util\Media\Filter;
  26. use League\Fractal\Serializer\ArraySerializer;
  27. use League\Fractal\Pagination\IlluminatePaginatorAdapter;
  28. use App\Jobs\AvatarPipeline\AvatarOptimize;
  29. use App\Jobs\ImageOptimizePipeline\ImageOptimize;
  30. use App\Jobs\VideoPipeline\{
  31. VideoOptimize,
  32. VideoPostProcess,
  33. VideoThumbnail
  34. };
  35. use App\Services\NotificationService;
  36. use App\Services\MediaPathService;
  37. use App\Services\MediaBlocklistService;
  38. class BaseApiController extends Controller
  39. {
  40. protected $fractal;
  41. public function __construct()
  42. {
  43. // $this->middleware('auth');
  44. $this->fractal = new Fractal\Manager();
  45. $this->fractal->setSerializer(new ArraySerializer());
  46. }
  47. public function notifications(Request $request)
  48. {
  49. abort_if(!$request->user(), 403);
  50. $pid = $request->user()->profile_id;
  51. $pg = $request->input('pg');
  52. if($pg == true) {
  53. $timeago = Carbon::now()->subMonths(6);
  54. $notifications = Notification::whereProfileId($pid)
  55. ->whereDate('created_at', '>', $timeago)
  56. ->latest()
  57. ->simplePaginate(10);
  58. $resource = new Fractal\Resource\Collection($notifications, new NotificationTransformer());
  59. $res = $this->fractal->createData($resource)->toArray();
  60. } else {
  61. $this->validate($request, [
  62. 'page' => 'nullable|integer|min:1|max:10',
  63. 'limit' => 'nullable|integer|min:1|max:40'
  64. ]);
  65. $limit = $request->input('limit') ?? 10;
  66. $page = $request->input('page') ?? 1;
  67. $end = (int) $page * $limit;
  68. $start = (int) $end - $limit;
  69. $res = NotificationService::get($pid, $start, $end);
  70. }
  71. return response()->json($res);
  72. }
  73. public function accounts(Request $request, $id)
  74. {
  75. abort_if(!$request->user(), 403);
  76. $profile = Profile::findOrFail($id);
  77. $resource = new Fractal\Resource\Item($profile, new AccountTransformer());
  78. $res = $this->fractal->createData($resource)->toArray();
  79. return response()->json($res);
  80. }
  81. public function accountFollowers(Request $request, $id)
  82. {
  83. abort_if(!$request->user(), 403);
  84. $profile = Profile::findOrFail($id);
  85. $followers = $profile->followers;
  86. $resource = new Fractal\Resource\Collection($followers, new AccountTransformer());
  87. $res = $this->fractal->createData($resource)->toArray();
  88. return response()->json($res);
  89. }
  90. public function accountFollowing(Request $request, $id)
  91. {
  92. abort_if(!$request->user(), 403);
  93. $profile = Profile::findOrFail($id);
  94. $following = $profile->following;
  95. $resource = new Fractal\Resource\Collection($following, new AccountTransformer());
  96. $res = $this->fractal->createData($resource)->toArray();
  97. return response()->json($res);
  98. }
  99. public function accountStatuses(Request $request, $id)
  100. {
  101. abort_if(!$request->user(), 403);
  102. $this->validate($request, [
  103. 'only_media' => 'nullable',
  104. 'pinned' => 'nullable',
  105. 'exclude_replies' => 'nullable',
  106. 'max_id' => 'nullable|integer|min:1',
  107. 'since_id' => 'nullable|integer|min:1',
  108. 'min_id' => 'nullable|integer|min:1',
  109. 'limit' => 'nullable|integer|min:1|max:24'
  110. ]);
  111. $limit = $request->limit ?? 20;
  112. $max_id = $request->max_id ?? false;
  113. $min_id = $request->min_id ?? false;
  114. $since_id = $request->since_id ?? false;
  115. $only_media = $request->only_media ?? false;
  116. $user = Auth::user();
  117. $account = Profile::whereNull('status')->findOrFail($id);
  118. $statuses = $account->statuses()->getQuery();
  119. if($only_media == true) {
  120. $statuses = $statuses
  121. ->whereHas('media')
  122. ->whereNull('in_reply_to_id')
  123. ->whereNull('reblog_of_id');
  124. }
  125. if($id == $account->id && !$max_id && !$min_id && !$since_id) {
  126. $statuses = $statuses->orderBy('id', 'desc')
  127. ->paginate($limit);
  128. } else if($since_id) {
  129. $statuses = $statuses->where('id', '>', $since_id)
  130. ->orderBy('id', 'DESC')
  131. ->paginate($limit);
  132. } else if($min_id) {
  133. $statuses = $statuses->where('id', '>', $min_id)
  134. ->orderBy('id', 'ASC')
  135. ->paginate($limit);
  136. } else if($max_id) {
  137. $statuses = $statuses->where('id', '<', $max_id)
  138. ->orderBy('id', 'DESC')
  139. ->paginate($limit);
  140. } else {
  141. $statuses = $statuses->whereVisibility('public')->orderBy('id', 'desc')->paginate($limit);
  142. }
  143. $resource = new Fractal\Resource\Collection($statuses, new StatusTransformer());
  144. $res = $this->fractal->createData($resource)->toArray();
  145. return response()->json($res);
  146. }
  147. public function avatarUpdate(Request $request)
  148. {
  149. abort_if(!$request->user(), 403);
  150. $this->validate($request, [
  151. 'upload' => 'required|mimes:jpeg,png,gif|max:'.config('pixelfed.max_avatar_size'),
  152. ]);
  153. try {
  154. $user = Auth::user();
  155. $profile = $user->profile;
  156. $file = $request->file('upload');
  157. $path = (new AvatarController())->getPath($user, $file);
  158. $dir = $path['root'];
  159. $name = $path['name'];
  160. $public = $path['storage'];
  161. $currentAvatar = storage_path('app/'.$profile->avatar->media_path);
  162. $loc = $request->file('upload')->storeAs($public, $name);
  163. $avatar = Avatar::whereProfileId($profile->id)->firstOrFail();
  164. $opath = $avatar->media_path;
  165. $avatar->media_path = "$public/$name";
  166. $avatar->thumb_path = null;
  167. $avatar->change_count = ++$avatar->change_count;
  168. $avatar->last_processed_at = null;
  169. $avatar->save();
  170. Cache::forget("avatar:{$profile->id}");
  171. AvatarOptimize::dispatch($user->profile, $currentAvatar);
  172. } catch (Exception $e) {
  173. }
  174. return response()->json([
  175. 'code' => 200,
  176. 'msg' => 'Avatar successfully updated',
  177. ]);
  178. }
  179. public function showTempMedia(Request $request, $profileId, $mediaId, $timestamp)
  180. {
  181. abort_if(!$request->user(), 403);
  182. abort_if(!$request->hasValidSignature(), 404);
  183. abort_if(Auth::user()->profile_id != $profileId, 404);
  184. $media = Media::whereProfileId(Auth::user()->profile_id)->findOrFail($mediaId);
  185. $path = storage_path('app/'.$media->media_path);
  186. return response()->file($path);
  187. }
  188. public function uploadMedia(Request $request)
  189. {
  190. abort_if(!$request->user(), 403);
  191. $this->validate($request, [
  192. 'file.*' => function() {
  193. return [
  194. 'required',
  195. 'mimes:' . config('pixelfed.media_types'),
  196. 'max:' . config('pixelfed.max_photo_size'),
  197. ];
  198. },
  199. 'filter_name' => 'nullable|string|max:24',
  200. 'filter_class' => 'nullable|alpha_dash|max:24'
  201. ]);
  202. $user = Auth::user();
  203. $profile = $user->profile;
  204. if(config('pixelfed.enforce_account_limit') == true) {
  205. $size = Cache::remember($user->storageUsedKey(), now()->addDays(3), function() use($user) {
  206. return Media::whereUserId($user->id)->sum('size') / 1000;
  207. });
  208. $limit = (int) config('pixelfed.max_account_size');
  209. if ($size >= $limit) {
  210. abort(403, 'Account size limit reached.');
  211. }
  212. }
  213. $filterClass = in_array($request->input('filter_class'), Filter::classes()) ? $request->input('filter_class') : null;
  214. $filterName = in_array($request->input('filter_name'), Filter::names()) ? $request->input('filter_name') : null;
  215. $photo = $request->file('file');
  216. $mimes = explode(',', config('pixelfed.media_types'));
  217. if(in_array($photo->getMimeType(), $mimes) == false) {
  218. return;
  219. }
  220. $storagePath = MediaPathService::get($user, 2);
  221. $path = $photo->store($storagePath);
  222. $hash = \hash_file('sha256', $photo);
  223. abort_if(MediaBlocklistService::exists($hash) == true, 451);
  224. $media = new Media();
  225. $media->status_id = null;
  226. $media->profile_id = $profile->id;
  227. $media->user_id = $user->id;
  228. $media->media_path = $path;
  229. $media->original_sha256 = $hash;
  230. $media->size = $photo->getSize();
  231. $media->mime = $photo->getMimeType();
  232. $media->filter_class = $filterClass;
  233. $media->filter_name = $filterName;
  234. $media->save();
  235. $url = URL::temporarySignedRoute(
  236. 'temp-media', now()->addHours(1), ['profileId' => $profile->id, 'mediaId' => $media->id, 'timestamp' => time()]
  237. );
  238. switch ($media->mime) {
  239. case 'image/jpeg':
  240. case 'image/png':
  241. ImageOptimize::dispatch($media);
  242. break;
  243. case 'video/mp4':
  244. VideoThumbnail::dispatch($media);
  245. $preview_url = '/storage/no-preview.png';
  246. $url = '/storage/no-preview.png';
  247. break;
  248. default:
  249. break;
  250. }
  251. $resource = new Fractal\Resource\Item($media, new MediaTransformer());
  252. $res = $this->fractal->createData($resource)->toArray();
  253. $res['preview_url'] = $url;
  254. $res['url'] = $url;
  255. return response()->json($res);
  256. }
  257. public function deleteMedia(Request $request)
  258. {
  259. abort_if(!$request->user(), 403);
  260. $this->validate($request, [
  261. 'id' => 'required|integer|min:1|exists:media,id'
  262. ]);
  263. $media = Media::whereNull('status_id')
  264. ->whereUserId(Auth::id())
  265. ->findOrFail($request->input('id'));
  266. Storage::delete($media->media_path);
  267. Storage::delete($media->thumbnail_path);
  268. $media->forceDelete();
  269. return response()->json([
  270. 'msg' => 'Successfully deleted',
  271. 'code' => 200
  272. ]);
  273. }
  274. public function verifyCredentials(Request $request)
  275. {
  276. $user = $request->user();
  277. abort_if(!$user, 403);
  278. if($user->status != null) {
  279. Auth::logout();
  280. return redirect('/login');
  281. }
  282. $resource = new Fractal\Resource\Item($user->profile, new AccountTransformer());
  283. $res = $this->fractal->createData($resource)->toArray();
  284. return response()->json($res);
  285. }
  286. public function drafts(Request $request)
  287. {
  288. $user = $request->user();
  289. abort_if(!$request->user(), 403);
  290. $medias = Media::whereUserId($user->id)
  291. ->whereNull('status_id')
  292. ->latest()
  293. ->take(13)
  294. ->get();
  295. $resource = new Fractal\Resource\Collection($medias, new MediaDraftTransformer());
  296. $res = $this->fractal->createData($resource)->toArray();
  297. return response()->json($res, 200, [], JSON_PRETTY_PRINT|JSON_UNESCAPED_SLASHES);
  298. }
  299. }