profile.phtml 7.4 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181
  1. <?php
  2. declare(strict_types=1);
  3. /** @var FreshRSS_View $this */
  4. if (!$this->disable_aside) {
  5. $this->partial('aside_configure');
  6. }
  7. ?>
  8. <main class="post">
  9. <form id="crypto-form" method="post" action="<?= _url('user', 'profile') ?>" data-auto-leave-validation="1">
  10. <input type="hidden" name="_csrf" value="<?= FreshRSS_Auth::csrfToken() ?>" />
  11. <h1><?= _t('conf.profile') ?></h1>
  12. <div class="form-group">
  13. <label class="group-name" for="current_user"><?= _t('conf.user.current') ?></label>
  14. <div class="group-controls">
  15. <input id="current_user" type="text" disabled="disabled" value="<?= Minz_User::name() ?>" />
  16. </div>
  17. </div>
  18. <?php if (FreshRSS_Auth::hasAccess('admin')) { ?>
  19. <div class="form-group">
  20. <div class="group-controls">
  21. <label class="checkbox" for="is_admin">
  22. <input type="checkbox" id="is_admin" disabled="disabled" checked="checked" />
  23. <?= _t('conf.user.is_admin') ?>
  24. </label>
  25. </div>
  26. </div>
  27. <?php } ?>
  28. <div class="form-group">
  29. <label class="group-name" for="email"><?= _t('conf.profile.email') ?></label>
  30. <div class="group-controls">
  31. <input id="email" name="email" type="email" autocomplete="new-password" value="<?= FreshRSS_Context::userConf()->mail_login ?>" />
  32. </div>
  33. </div>
  34. <?php if (FreshRSS_Auth::accessNeedsAction()) { ?>
  35. <div class="form-group">
  36. <label class="group-name" for="token"><?= _t('admin.auth.token') ?></label>
  37. <?php $token = FreshRSS_Context::userConf()->token; ?>
  38. <div class="group-controls">
  39. <input type="text" id="token" name="token" value="<?= $token ?>" placeholder="<?= _t('gen.short.blank_to_disable') ?>" />
  40. <p class="help"><?= _i('help') ?> <?= _t('admin.auth.token_help') ?></p>
  41. <kbd><?= Minz_Url::display(['a' => 'rss', 'params' => ['user' => Minz_User::name() ?? '',
  42. 'token' => $token, 'hours' => FreshRSS_Context::userConf()->since_hours_posts_per_rss]], 'html', true) ?></kbd>
  43. <p class="help"><?= _i('help') ?> <?= _t('conf.query.help') ?></a></p>
  44. </div>
  45. </div>
  46. <?php } ?>
  47. <?php
  48. $open = Minz_Session::paramBoolean('open');
  49. Minz_Session::_param('open', false);
  50. ?>
  51. <details class="form-advanced" data-challenge-if-not-empty="1"<?= $open ? ' open="open"' : ''?>>
  52. <summary class="form-advanced-title"><?= _t('conf.profile.change_password') ?></summary>
  53. <div class="form-group">
  54. <label class="group-name" for="passwordPlain"><?= _t('conf.profile.current_password') ?></label>
  55. <div class="group-controls">
  56. <input type="hidden" id="username" value="<?= Minz_User::name() ?? '' ?>" />
  57. <div class="stick">
  58. <input type="password" id="passwordPlain" />
  59. <button type="button" class="btn toggle-password" data-toggle="passwordPlain"><img class="icon" src="../themes/icons/key.svg" loading="lazy" alt="🔑"></button>
  60. </div>
  61. <noscript>
  62. <br />
  63. <strong><?= _t('gen.js.should_be_activated') ?></strong>
  64. </noscript>
  65. </div>
  66. </div>
  67. <div class="form-group">
  68. <label class="group-name" for="newPasswordPlain"><?= _t('conf.profile.new_password') ?></label>
  69. <div class="group-controls">
  70. <div class="stick">
  71. <input type="password" id="newPasswordPlain" name="newPasswordPlain" autocomplete="new-password" pattern=".{7,}" />
  72. <button type="button" class="btn toggle-password" data-toggle="newPasswordPlain"><img class="icon" src="../themes/icons/key.svg" loading="lazy" alt="🔑"></button>
  73. </div>
  74. <p class="help">
  75. <img class="icon" src="../themes/icons/help.svg" loading="lazy" alt="ℹ️"> <?= _t('conf.profile.password_format') ?>
  76. </p>
  77. </div>
  78. </div>
  79. <div class="form-group">
  80. <label class="group-name" for="confirmPasswordPlain"><?= _t('conf.profile.confirm_new_password') ?></label>
  81. <div class="group-controls">
  82. <div class="stick">
  83. <input type="password" id="confirmPasswordPlain" name="confirmPasswordPlain" autocomplete="new-password" pattern=".{7,}" />
  84. <button type="button" class="btn toggle-password" data-toggle="confirmPasswordPlain"><img class="icon" src="../themes/icons/key.svg" loading="lazy" alt="🔑"></button>
  85. </div>
  86. </div>
  87. </div>
  88. </details>
  89. <div class="form-group form-actions">
  90. <div class="group-controls">
  91. <button type="submit" class="btn btn-important"><?= _t('gen.action.submit') ?></button>
  92. <button type="reset" class="btn"><?= _t('gen.action.cancel') ?></button>
  93. </div>
  94. </div>
  95. </form>
  96. <h2><?= _t('conf.profile.api') ?></h2>
  97. <?php if (FreshRSS_Context::systemConf()->api_enabled) { ?>
  98. <form method="post" action="<?= _url('api', 'updatePassword') ?>">
  99. <input type="hidden" name="_csrf" value="<?= FreshRSS_Auth::csrfToken() ?>" />
  100. <div class="form-group">
  101. <label class="group-name" for="apiPasswordPlain"><?= _t('conf.profile.password_api') ?></label>
  102. <div class="group-controls">
  103. <div class="stick">
  104. <input type="password" id="apiPasswordPlain" name="apiPasswordPlain" autocomplete="new-password"
  105. <?php if (FreshRSS_Context::userConf()->apiPasswordHash != '') {?>
  106. placeholder="<?= _t('conf.profile.api.api_set') ?>"
  107. <?php } else {?>
  108. placeholder="<?= _t('conf.profile.api.api_not_set') ?>"
  109. <?php } ?>
  110. pattern=".{7,}" <?= cryptAvailable() ? '' : 'disabled="disabled" ' ?>/>
  111. <button type="button" class="btn toggle-password" data-toggle="apiPasswordPlain"><?= _i('key') ?></button>
  112. </div>
  113. <p class="help"><?= _i('help') ?> <?= _t('conf.profile.api.check_link', Minz_Url::display('/api/', 'html', true)) ?></p>
  114. <p class="help"><?= _i('help') ?> <?= _t('conf.profile.api.documentation_link') ?></p>
  115. </div>
  116. </div>
  117. <div class="form-group form-actions">
  118. <div class="group-controls">
  119. <button type="submit" class="btn btn-important"><?= _t('gen.action.submit') ?></button>
  120. </div>
  121. </div>
  122. </form>
  123. <?php } else { ?>
  124. <div class="form-group">
  125. <label class="group-name"></label>
  126. <div class="group-controls">
  127. <?= _t('conf.profile.api.disabled') ?>
  128. <p class="help"><?= _i('help') ?> <?= _t('conf.profile.api.help') ?></p>
  129. </div>
  130. </div>
  131. <?php } ?>
  132. <?php if (!FreshRSS_Auth::hasAccess('admin')) { ?>
  133. <h2><?= _t('conf.profile.delete') ?></h2>
  134. <form id="crypto-form" method="post" action="<?= _url('user', 'delete') ?>">
  135. <input type="hidden" name="_csrf" value="<?= FreshRSS_Auth::csrfToken() ?>" />
  136. <p class="alert alert-warn"><span class="alert-head"><?= _t('gen.short.attention') ?></span> <?= _t('conf.profile.delete.warn') ?></p>
  137. <div class="form-group">
  138. <label class="group-name" for="passwordPlain"><?= _t('gen.auth.password') ?></label>
  139. <div class="group-controls">
  140. <div class="stick">
  141. <input type="password" id="passwordPlain" required="required" />
  142. <button type="button" class="btn toggle-password" data-toggle="passwordPlain"><?= _i('key') ?></button>
  143. </div>
  144. <input type="hidden" id="challenge" name="challenge" /><br />
  145. <noscript><strong><?= _t('gen.js.should_be_activated') ?></strong></noscript>
  146. </div>
  147. </div>
  148. <div class="form-group form-actions">
  149. <div class="group-controls">
  150. <?php
  151. $redirect_url = urlencode(Minz_Url::display(
  152. ['c' => 'user', 'a' => 'profile'],
  153. 'php', true
  154. ));
  155. ?>
  156. <input type="hidden" name="r" value="<?= $redirect_url ?>" />
  157. <input type="hidden" name="username" id="username" value="<?= Minz_User::name() ?>" />
  158. <button type="submit" class="btn btn-attention confirm"><?= _t('gen.action.remove') ?></button>
  159. </div>
  160. </div>
  161. </form>
  162. <?php } ?>
  163. </main>