indexController.php 10 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346
  1. <?php
  2. declare(strict_types=1);
  3. /**
  4. * This class handles main actions of FreshRSS.
  5. */
  6. class FreshRSS_index_Controller extends FreshRSS_ActionController {
  7. #[\Override]
  8. public function firstAction(): void {
  9. $this->view->html_url = Minz_Url::display(['c' => 'index', 'a' => 'index'], 'html', 'root');
  10. }
  11. /**
  12. * This action only redirect on the default view mode (normal or global)
  13. */
  14. public function indexAction(): void {
  15. $preferred_output = FreshRSS_Context::userConf()->view_mode;
  16. Minz_Request::forward([
  17. 'c' => 'index',
  18. 'a' => $preferred_output,
  19. ]);
  20. }
  21. /**
  22. * This action displays the normal view of FreshRSS.
  23. */
  24. public function normalAction(): void {
  25. $allow_anonymous = FreshRSS_Context::systemConf()->allow_anonymous;
  26. if (!FreshRSS_Auth::hasAccess() && !$allow_anonymous) {
  27. Minz_Request::forward(['c' => 'auth', 'a' => 'login']);
  28. return;
  29. }
  30. $id = Minz_Request::paramInt('id');
  31. if ($id !== 0) {
  32. $view = Minz_Request::paramString('a');
  33. $url_redirect = ['c' => 'subscription', 'a' => 'feed', 'params' => ['id' => (string)$id, 'from' => $view]];
  34. Minz_Request::forward($url_redirect, true);
  35. return;
  36. }
  37. try {
  38. FreshRSS_Context::updateUsingRequest(true);
  39. } catch (FreshRSS_Context_Exception $e) {
  40. Minz_Error::error(404);
  41. }
  42. $this->_csp([
  43. 'default-src' => "'self'",
  44. 'frame-src' => '*',
  45. 'img-src' => '* data:',
  46. 'media-src' => '*',
  47. ]);
  48. $this->view->categories = FreshRSS_Context::categories();
  49. $this->view->rss_title = FreshRSS_Context::$name . ' | ' . FreshRSS_View::title();
  50. $title = FreshRSS_Context::$name;
  51. if (FreshRSS_Context::$get_unread > 0) {
  52. $title = '(' . FreshRSS_Context::$get_unread . ') ' . $title;
  53. }
  54. FreshRSS_View::prependTitle($title . ' · ');
  55. if (FreshRSS_Context::$id_max === '0') {
  56. FreshRSS_Context::$id_max = time() . '000000';
  57. }
  58. $this->view->callbackBeforeFeeds = static function (FreshRSS_View $view) {
  59. $view->tags = FreshRSS_Context::labels(true);
  60. $view->nbUnreadTags = 0;
  61. foreach ($view->tags as $tag) {
  62. $view->nbUnreadTags += $tag->nbUnread();
  63. }
  64. };
  65. $this->view->callbackBeforeEntries = static function (FreshRSS_View $view) {
  66. try {
  67. // +1 to account for paging logic
  68. $view->entries = FreshRSS_index_Controller::listEntriesByContext(FreshRSS_Context::$number + 1);
  69. ob_start(); //Buffer "one entry at a time"
  70. } catch (FreshRSS_EntriesGetter_Exception $e) {
  71. Minz_Log::notice($e->getMessage());
  72. Minz_Error::error(404);
  73. }
  74. };
  75. $this->view->callbackBeforePagination = static function (?FreshRSS_View $view, int $nbEntries, FreshRSS_Entry $lastEntry) {
  76. if ($nbEntries > FreshRSS_Context::$number) {
  77. //We have enough entries: we discard the last one to use it for the next articles' page
  78. ob_clean();
  79. FreshRSS_Context::$continuation_id = $lastEntry->id();
  80. } else {
  81. FreshRSS_Context::$continuation_id = '0';
  82. }
  83. ob_end_flush();
  84. };
  85. }
  86. /**
  87. * This action displays the reader view of FreshRSS.
  88. *
  89. * @todo: change this view into specific CSS rules?
  90. */
  91. public function readerAction(): void {
  92. $this->normalAction();
  93. }
  94. /**
  95. * This action displays the global view of FreshRSS.
  96. */
  97. public function globalAction(): void {
  98. $allow_anonymous = FreshRSS_Context::systemConf()->allow_anonymous;
  99. if (!FreshRSS_Auth::hasAccess() && !$allow_anonymous) {
  100. Minz_Request::forward(['c' => 'auth', 'a' => 'login']);
  101. return;
  102. }
  103. FreshRSS_View::appendScript(Minz_Url::display('/scripts/extra.js?' . @filemtime(PUBLIC_PATH . '/scripts/extra.js')));
  104. FreshRSS_View::appendScript(Minz_Url::display('/scripts/global_view.js?' . @filemtime(PUBLIC_PATH . '/scripts/global_view.js')));
  105. try {
  106. FreshRSS_Context::updateUsingRequest(true);
  107. } catch (FreshRSS_Context_Exception) {
  108. Minz_Error::error(404);
  109. }
  110. $this->view->categories = FreshRSS_Context::categories();
  111. $this->view->rss_title = FreshRSS_Context::$name . ' | ' . FreshRSS_View::title();
  112. $title = _t('index.feed.title_global');
  113. if (FreshRSS_Context::$get_unread > 0) {
  114. $title = '(' . FreshRSS_Context::$get_unread . ') ' . $title;
  115. }
  116. FreshRSS_View::prependTitle($title . ' · ');
  117. $this->_csp([
  118. 'default-src' => "'self'",
  119. 'frame-src' => '*',
  120. 'img-src' => '* data:',
  121. 'media-src' => '*',
  122. ]);
  123. }
  124. /**
  125. * This action displays the RSS feed of FreshRSS.
  126. * @deprecated See user query RSS sharing instead
  127. */
  128. public function rssAction(): void {
  129. $allow_anonymous = FreshRSS_Context::systemConf()->allow_anonymous;
  130. $token = FreshRSS_Context::userConf()->token;
  131. $token_param = Minz_Request::paramString('token');
  132. $token_is_ok = ($token != '' && $token === $token_param);
  133. // Check if user has access.
  134. if (!FreshRSS_Auth::hasAccess() &&
  135. !$allow_anonymous &&
  136. !$token_is_ok) {
  137. Minz_Error::error(403);
  138. }
  139. try {
  140. FreshRSS_Context::updateUsingRequest(false);
  141. } catch (FreshRSS_Context_Exception $e) {
  142. Minz_Error::error(404);
  143. }
  144. try {
  145. $this->view->entries = FreshRSS_index_Controller::listEntriesByContext();
  146. } catch (FreshRSS_EntriesGetter_Exception $e) {
  147. Minz_Log::notice($e->getMessage());
  148. Minz_Error::error(404);
  149. }
  150. $this->view->html_url = Minz_Url::display('', 'html', true);
  151. $this->view->rss_title = FreshRSS_Context::$name . ' | ' . FreshRSS_View::title();
  152. $queryString = $_SERVER['QUERY_STRING'] ?? '';
  153. $this->view->rss_url = htmlspecialchars(
  154. PUBLIC_TO_INDEX_PATH . '/' . ($queryString === '' || !is_string($queryString) ? '' : '?' . $queryString), ENT_COMPAT, 'UTF-8');
  155. // No layout for RSS output.
  156. $this->view->_layout(null);
  157. header('Content-Type: application/rss+xml; charset=utf-8');
  158. }
  159. /**
  160. * @deprecated See user query OPML sharing instead
  161. */
  162. public function opmlAction(): void {
  163. $allow_anonymous = FreshRSS_Context::systemConf()->allow_anonymous;
  164. $token = FreshRSS_Context::userConf()->token;
  165. $token_param = Minz_Request::paramString('token');
  166. $token_is_ok = ($token != '' && $token === $token_param);
  167. // Check if user has access.
  168. if (!FreshRSS_Auth::hasAccess() && !$allow_anonymous && !$token_is_ok) {
  169. Minz_Error::error(403);
  170. }
  171. try {
  172. FreshRSS_Context::updateUsingRequest(false);
  173. } catch (FreshRSS_Context_Exception) {
  174. Minz_Error::error(404);
  175. }
  176. $get = FreshRSS_Context::currentGet(true);
  177. $type = (string)$get[0];
  178. $id = (int)$get[1];
  179. $this->view->excludeMutedFeeds = $type !== 'f'; // Exclude muted feeds except when we focus on a feed
  180. switch ($type) {
  181. case 'a': // All PRIORITY_MAIN_STREAM
  182. case 'A': // All except PRIORITY_ARCHIVED
  183. case 'Z': // All including PRIORITY_ARCHIVED
  184. $this->view->categories = FreshRSS_Context::categories();
  185. break;
  186. case 'c':
  187. $cat = FreshRSS_Context::categories()[$id] ?? null;
  188. if ($cat == null) {
  189. Minz_Error::error(404);
  190. return;
  191. }
  192. $this->view->categories = [$cat->id() => $cat];
  193. break;
  194. case 'f':
  195. // We most likely already have the feed object in cache
  196. $feed = FreshRSS_Category::findFeed(FreshRSS_Context::categories(), $id);
  197. if ($feed === null) {
  198. $feedDAO = FreshRSS_Factory::createFeedDao();
  199. $feed = $feedDAO->searchById($id);
  200. if ($feed == null) {
  201. Minz_Error::error(404);
  202. return;
  203. }
  204. }
  205. $this->view->feeds = [$feed->id() => $feed];
  206. break;
  207. case 's':
  208. case 't':
  209. case 'T':
  210. default:
  211. Minz_Error::error(404);
  212. return;
  213. }
  214. // No layout for OPML output.
  215. $this->view->_layout(null);
  216. header('Content-Type: application/xml; charset=utf-8');
  217. }
  218. /**
  219. * This method returns a list of entries based on the Context object.
  220. * @param int $postsPerPage override `FreshRSS_Context::$number`
  221. * @return Traversable<FreshRSS_Entry>
  222. * @throws FreshRSS_EntriesGetter_Exception
  223. */
  224. public static function listEntriesByContext(?int $postsPerPage = null): Traversable {
  225. $entryDAO = FreshRSS_Factory::createEntryDao();
  226. $get = FreshRSS_Context::currentGet(true);
  227. if (is_array($get)) {
  228. $type = $get[0];
  229. $id = (int)($get[1]);
  230. } else {
  231. $type = $get;
  232. $id = 0;
  233. }
  234. $id_min = '0';
  235. if (FreshRSS_Context::$sinceHours > 0) {
  236. $id_min = (time() - (FreshRSS_Context::$sinceHours * 3600)) . '000000';
  237. }
  238. $continuation_value = 0;
  239. if (FreshRSS_Context::$continuation_id !== '0') {
  240. if (in_array(FreshRSS_Context::$sort, ['date', 'link', 'title'], true)) {
  241. $pagingEntry = $entryDAO->searchById(FreshRSS_Context::$continuation_id);
  242. $continuation_value = $pagingEntry === null ? 0 : match (FreshRSS_Context::$sort) {
  243. 'date' => $pagingEntry->date(true),
  244. 'link' => $pagingEntry->link(true),
  245. 'title' => $pagingEntry->title(),
  246. };
  247. } elseif (FreshRSS_Context::$sort === 'rand') {
  248. FreshRSS_Context::$continuation_id = '0';
  249. }
  250. }
  251. foreach ($entryDAO->listWhere(
  252. $type, $id, FreshRSS_Context::$state, FreshRSS_Context::$search,
  253. id_min: $id_min, id_max: FreshRSS_Context::$id_max, sort: FreshRSS_Context::$sort, order: FreshRSS_Context::$order,
  254. continuation_id: FreshRSS_Context::$continuation_id, continuation_value: $continuation_value,
  255. limit: $postsPerPage ?? FreshRSS_Context::$number, offset: FreshRSS_Context::$offset) as $entry) {
  256. yield $entry;
  257. }
  258. }
  259. /**
  260. * This action displays the about page of FreshRSS.
  261. */
  262. public function aboutAction(): void {
  263. FreshRSS_View::prependTitle(_t('index.about.title') . ' · ');
  264. }
  265. /**
  266. * This action displays the EULA/TOS (Terms of Service) page of FreshRSS.
  267. * This page is enabled only if admin created a data/tos.html file.
  268. * The content of the page is the content of data/tos.html.
  269. * It returns 404 if there is no EULA/TOS.
  270. */
  271. public function tosAction(): void {
  272. $terms_of_service = file_get_contents(TOS_FILENAME);
  273. if ($terms_of_service === false) {
  274. Minz_Error::error(404);
  275. return;
  276. }
  277. $this->view->terms_of_service = $terms_of_service;
  278. $this->view->can_register = !max_registrations_reached();
  279. FreshRSS_View::prependTitle(_t('index.tos.title') . ' · ');
  280. }
  281. /**
  282. * This action displays logs of FreshRSS for the current user.
  283. */
  284. public function logsAction(): void {
  285. if (!FreshRSS_Auth::hasAccess()) {
  286. Minz_Error::error(403);
  287. }
  288. FreshRSS_View::prependTitle(_t('index.log.title') . ' · ');
  289. if (Minz_Request::isPost()) {
  290. FreshRSS_LogDAO::truncate();
  291. }
  292. $logs = FreshRSS_LogDAO::lines(); //TODO: ask only the necessary lines
  293. //gestion pagination
  294. $page = Minz_Request::paramInt('page') ?: 1;
  295. $this->view->logsPaginator = new Minz_Paginator($logs);
  296. $this->view->logsPaginator->_nbItemsPerPage(50);
  297. $this->view->logsPaginator->_currentPage($page);
  298. }
  299. }