middleware('auth'); $this->fractal = new Fractal\Manager(); $this->fractal->setSerializer(new ArraySerializer()); } // deprecated v2 compose api public function compose(Request $request) { return redirect('/'); } // deprecated public function discover(Request $request) { return; } public function discoverPosts(Request $request) { $profile = Auth::user()->profile; $pid = $profile->id; $following = Cache::remember('feature:discover:following:'.$pid, now()->addMinutes(15), function() use ($pid) { return Follower::whereProfileId($pid)->pluck('following_id')->toArray(); }); $filters = Cache::remember("user:filter:list:$pid", now()->addMinutes(15), function() use($pid) { $private = Profile::whereIsPrivate(true) ->orWhere('unlisted', true) ->orWhere('status', '!=', null) ->pluck('id') ->toArray(); $filters = UserFilter::whereUserId($pid) ->whereFilterableType('App\Profile') ->whereIn('filter_type', ['mute', 'block']) ->pluck('filterable_id') ->toArray(); return array_merge($private, $filters); }); $following = array_merge($following, $filters); $posts = Status::select( 'id', 'caption', 'profile_id', 'type' ) ->whereNull('uri') ->whereIn('type', ['photo','photo:album', 'video']) ->whereIsNsfw(false) ->whereVisibility('public') ->whereNotIn('profile_id', $following) ->whereDate('created_at', '>', now()->subMonths(3)) ->with('media') ->inRandomOrder() ->latest() ->take(37) ->get(); $res = [ 'posts' => $posts->map(function($post) { return [ 'type' => $post->type, 'url' => $post->url(), 'thumb' => $post->thumb(), ]; }) ]; return response()->json($res); } public function directMessage(Request $request, $profileId, $threadId) { $profile = Auth::user()->profile; if($profileId != $profile->id) { abort(403); } $msg = DirectMessage::whereToId($profile->id) ->orWhere('from_id',$profile->id) ->findOrFail($threadId); $thread = DirectMessage::with('status')->whereIn('to_id', [$profile->id, $msg->from_id]) ->whereIn('from_id', [$profile->id,$msg->from_id]) ->orderBy('created_at', 'asc') ->paginate(30); return response()->json(compact('msg', 'profile', 'thread'), 200, [], JSON_PRETTY_PRINT); } public function statusReplies(Request $request, int $id) { $parent = Status::whereScope('public')->findOrFail($id); $children = Status::whereInReplyToId($parent->id) ->orderBy('created_at', 'desc') ->take(3) ->get(); $resource = new Fractal\Resource\Collection($children, new StatusTransformer()); $res = $this->fractal->createData($resource)->toArray(); return response()->json($res); } public function stories(Request $request) { } public function discoverCategories(Request $request) { $categories = DiscoverCategory::whereActive(true)->orderBy('order')->take(10)->get(); $res = $categories->map(function($item) { return [ 'name' => $item->name, 'url' => $item->url(), 'thumb' => $item->thumb() ]; }); return response()->json($res); } public function modAction(Request $request) { abort_unless(Auth::user()->is_admin, 403); $this->validate($request, [ 'action' => [ 'required', 'string', Rule::in([ 'autocw', 'noautolink', 'unlisted', 'disable', 'suspend' ]) ], 'item_id' => 'required|integer|min:1', 'item_type' => [ 'required', 'string', Rule::in(['status']) ] ]); $action = $request->input('action'); $item_id = $request->input('item_id'); $item_type = $request->input('item_type'); switch($action) { case 'autocw': $profile = $item_type == 'status' ? Status::findOrFail($item_id)->profile : null; $profile->cw = true; $profile->save(); break; case 'noautolink': $profile = $item_type == 'status' ? Status::findOrFail($item_id)->profile : null; $profile->no_autolink = true; $profile->save(); break; case 'unlisted': $profile = $item_type == 'status' ? Status::findOrFail($item_id)->profile : null; $profile->unlisted = true; $profile->save(); break; case 'disable': $profile = $item_type == 'status' ? Status::findOrFail($item_id)->profile : null; $user = $profile->user; $profile->status = 'disabled'; $user->status = 'disabled'; $profile->save(); $user->save(); break; case 'suspend': $profile = $item_type == 'status' ? Status::findOrFail($item_id)->profile : null; $user = $profile->user; $profile->status = 'suspended'; $user->status = 'suspended'; $profile->save(); $user->save(); break; default: # code... break; } Cache::forget('profiles:private'); return ['msg' => 200]; } public function composePost(Request $request) { $this->validate($request, [ 'caption' => 'nullable|string|max:'.config('pixelfed.max_caption_length', 500), 'media.*' => 'required', 'media.*.id' => 'required|integer|min:1', 'media.*.filter_class' => 'nullable|alpha_dash|max:30', 'media.*.license' => 'nullable|string|max:140', 'media.*.alt' => 'nullable|string|max:140', 'cw' => 'nullable|boolean', 'visibility' => 'required|string|in:public,private,unlisted|min:2|max:10', 'place' => 'nullable', 'comments_disabled' => 'nullable' ]); if(config('costar.enabled') == true) { $blockedKeywords = config('costar.keyword.block'); if($blockedKeywords !== null && $request->caption) { $keywords = config('costar.keyword.block'); foreach($keywords as $kw) { if(Str::contains($request->caption, $kw) == true) { abort(400, 'Invalid object'); } } } } $user = Auth::user(); $profile = $user->profile; $visibility = $request->input('visibility'); $medias = $request->input('media'); $attachments = []; $status = new Status; $mimes = []; $place = $request->input('place'); $cw = $request->input('cw'); foreach($medias as $k => $media) { if($k + 1 > config('pixelfed.max_album_length')) { continue; } $m = Media::findOrFail($media['id']); if($m->profile_id !== $profile->id || $m->status_id) { abort(403, 'Invalid media id'); } $m->filter_class = in_array($media['filter_class'], Filter::classes()) ? $media['filter_class'] : null; $m->license = $media['license']; $m->caption = isset($media['alt']) ? strip_tags($media['alt']) : null; $m->order = isset($media['cursor']) && is_int($media['cursor']) ? (int) $media['cursor'] : $k; if($cw == true || $profile->cw == true) { $m->is_nsfw = $cw; $status->is_nsfw = $cw; } $m->save(); $attachments[] = $m; array_push($mimes, $m->mime); } $mediaType = StatusController::mimeTypeCheck($mimes); if(in_array($mediaType, ['photo', 'video', 'photo:album']) == false) { abort(400, __('exception.compose.invalid.album')); } if($place && is_array($place)) { $status->place_id = $place['id']; } if($request->filled('comments_disabled')) { $status->comments_disabled = (bool) $request->input('comments_disabled'); } $status->caption = strip_tags($request->caption); $status->scope = 'draft'; $status->profile_id = $profile->id; $status->save(); foreach($attachments as $media) { $media->status_id = $status->id; $media->save(); } $visibility = $profile->unlisted == true && $visibility == 'public' ? 'unlisted' : $visibility; $cw = $profile->cw == true ? true : $cw; $status->is_nsfw = $cw; $status->visibility = $visibility; $status->scope = $visibility; $status->type = $mediaType; $status->save(); NewStatusPipeline::dispatch($status); Cache::forget('user:account:id:'.$profile->user_id); Cache::forget('profile:status_count:'.$profile->id); Cache::forget($user->storageUsedKey()); return $status->url(); } public function bookmarks(Request $request) { $statuses = Auth::user()->profile ->bookmarks() ->withCount(['likes','comments']) ->orderBy('created_at', 'desc') ->simplePaginate(10); $resource = new Fractal\Resource\Collection($statuses, new StatusTransformer()); $res = $this->fractal->createData($resource)->toArray(); return response()->json($res); } public function remoteProfile(Request $request, $id) { $profile = Profile::whereNull('status') ->whereNotNull('domain') ->findOrFail($id); $settings = [ 'crawlable' => false, 'following' => [ 'count' => true, 'list' => false ], 'followers' => [ 'count' => true, 'list' => false ] ]; return view('profile.show', compact('profile', 'settings')); } public function accountStatuses(Request $request, $id) { $this->validate($request, [ 'only_media' => 'nullable', 'pinned' => 'nullable', 'exclude_replies' => 'nullable', 'max_id' => 'nullable|integer|min:0|max:' . PHP_INT_MAX, 'since_id' => 'nullable|integer|min:0|max:' . PHP_INT_MAX, 'min_id' => 'nullable|integer|min:0|max:' . PHP_INT_MAX, 'limit' => 'nullable|integer|min:1|max:24' ]); $profile = Profile::whereNull('status')->findOrFail($id); $limit = $request->limit ?? 9; $max_id = $request->max_id; $min_id = $request->min_id; $scope = $request->only_media == true ? ['photo', 'photo:album', 'video', 'video:album'] : ['photo', 'photo:album', 'video', 'video:album', 'share', 'reply']; if($profile->is_private) { if(!Auth::check()) { return response()->json([]); } $pid = Auth::user()->profile->id; $following = Cache::remember('profile:following:'.$pid, now()->addMinutes(1440), function() use($pid) { $following = Follower::whereProfileId($pid)->pluck('following_id'); return $following->push($pid)->toArray(); }); $visibility = true == in_array($profile->id, $following) ? ['public', 'unlisted', 'private'] : []; } else { if(Auth::check()) { $pid = Auth::user()->profile->id; $following = Cache::remember('profile:following:'.$pid, now()->addMinutes(1440), function() use($pid) { $following = Follower::whereProfileId($pid)->pluck('following_id'); return $following->push($pid)->toArray(); }); $visibility = true == in_array($profile->id, $following) ? ['public', 'unlisted', 'private'] : ['public', 'unlisted']; } else { $visibility = ['public', 'unlisted']; } } $dir = $min_id ? '>' : '<'; $id = $min_id ?? $max_id; $timeline = Status::select( 'id', 'uri', 'caption', 'rendered', 'profile_id', 'type', 'in_reply_to_id', 'reblog_of_id', 'is_nsfw', 'likes_count', 'reblogs_count', 'scope', 'local', 'created_at', 'updated_at' )->whereProfileId($profile->id) ->whereIn('type', $scope) ->where('id', $dir, $id) ->whereIn('visibility', $visibility) ->latest() ->limit($limit) ->get(); $resource = new Fractal\Resource\Collection($timeline, new StatusTransformer()); $res = $this->fractal->createData($resource)->toArray(); return response()->json($res); } public function remoteStatus(Request $request, $profileId, $statusId) { $user = Profile::whereNull('status') ->whereNotNull('domain') ->findOrFail($profileId); $status = Status::whereProfileId($user->id) ->whereNull('reblog_of_id') ->whereVisibility('public') ->findOrFail($statusId); $template = $status->in_reply_to_id ? 'status.reply' : 'status.show'; return view($template, compact('user', 'status')); } }