profile.phtml 7.2 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176
  1. <?php
  2. declare(strict_types=1);
  3. /** @var FreshRSS_View $this */
  4. if (!$this->disable_aside) {
  5. $this->partial('aside_configure');
  6. }
  7. ?>
  8. <main class="post">
  9. <form class="crypto-form" method="post" action="<?= _url('user', 'profile') ?>" data-auto-leave-validation="1">
  10. <input type="hidden" name="_csrf" value="<?= FreshRSS_Auth::csrfToken() ?>" />
  11. <h1><?= _t('conf.profile') ?></h1>
  12. <div class="form-group">
  13. <label class="group-name" for="current_user"><?= _t('conf.user.current') ?></label>
  14. <div class="group-controls">
  15. <input id="current_user" type="text" disabled="disabled" value="<?= Minz_User::name() ?>" />
  16. </div>
  17. </div>
  18. <?php if (FreshRSS_Auth::hasAccess('admin')) { ?>
  19. <div class="form-group">
  20. <div class="group-controls">
  21. <label class="checkbox" for="is_admin">
  22. <input type="checkbox" id="is_admin" disabled="disabled" checked="checked" />
  23. <?= _t('conf.user.is_admin') ?>
  24. </label>
  25. </div>
  26. </div>
  27. <?php } ?>
  28. <div class="form-group">
  29. <label class="group-name" for="email"><?= _t('conf.profile.email') ?></label>
  30. <div class="group-controls">
  31. <!-- Workaround for Chrome, related to change password section -->
  32. <input id="ignore" class="ignore-auto-complete" type="text" tabindex="-1" aria-hidden="true" data-no-leave-validation="1" />
  33. <input id="email" name="email" type="email" value="<?= FreshRSS_Context::userConf()->mail_login ?>" autocomplete="new-password" />
  34. </div>
  35. </div>
  36. <?php if (FreshRSS_Auth::accessNeedsAction()) { ?>
  37. <div class="form-group">
  38. <label class="group-name" for="token"><?= _t('admin.auth.token') ?></label>
  39. <?php $token = FreshRSS_Context::userConf()->token; ?>
  40. <div class="group-controls">
  41. <input id="token" name="token" type="text" value="<?= $token ?>" placeholder="<?= _t('gen.short.blank_to_disable') ?>" autocomplete="new-password" />
  42. <p class="help"><?= _i('help') ?> <?= _t('admin.auth.token_help') ?></p>
  43. <kbd><?= Minz_Url::display(['a' => 'rss', 'params' => ['user' => Minz_User::name() ?? '',
  44. 'token' => $token, 'hours' => FreshRSS_Context::userConf()->since_hours_posts_per_rss]], 'html', true) ?></kbd>
  45. <p class="help"><?= _i('help') ?> <?= _t('conf.query.help') ?></a></p>
  46. </div>
  47. </div>
  48. <?php } ?>
  49. <?php
  50. $open = Minz_Session::paramBoolean('open');
  51. Minz_Session::_param('open', false);
  52. ?>
  53. <details class="form-advanced" data-challenge-if-open="1"<?= $open ? ' open="open"' : ''?>>
  54. <summary class="form-advanced-title"><?= _t('conf.profile.change_password') ?></summary>
  55. <div class="form-group">
  56. <label class="group-name" for="currentPasswordPlain"><?= _t('conf.profile.current_password') ?></label>
  57. <div class="group-controls">
  58. <input type="hidden" id="username" value="<?= Minz_User::name() ?? '' ?>" />
  59. <div class="stick">
  60. <input type="password" id="currentPasswordPlain" class="passwordPlain" data-required-if-open="1" data-no-leave-validation="1" />
  61. <button type="button" class="btn toggle-password"><?= _i('key') ?></button>
  62. </div>
  63. <noscript>
  64. <br />
  65. <strong><?= _t('gen.js.should_be_activated') ?></strong>
  66. </noscript>
  67. </div>
  68. </div>
  69. <div class="form-group">
  70. <label class="group-name" for="newPasswordPlain"><?= _t('conf.profile.new_password') ?></label>
  71. <div class="group-controls">
  72. <div class="stick">
  73. <input type="password" id="newPasswordPlain" name="newPasswordPlain" autocomplete="new-password" pattern=".{7,}" data-required-if-open="1" />
  74. <button type="button" class="btn toggle-password"><?= _i('key') ?></button>
  75. </div>
  76. <p class="help">
  77. <?= _i('help') ?> <?= _t('conf.profile.password_format') ?>
  78. </p>
  79. </div>
  80. </div>
  81. <div class="form-group">
  82. <label class="group-name" for="confirmPasswordPlain"><?= _t('conf.profile.confirm_new_password') ?></label>
  83. <div class="group-controls">
  84. <div class="stick">
  85. <input type="password" id="confirmPasswordPlain" name="confirmPasswordPlain" autocomplete="new-password" pattern=".{7,}" data-required-if-open="1" />
  86. <button type="button" class="btn toggle-password"><?= _i('key') ?></button>
  87. </div>
  88. </div>
  89. </div>
  90. </details>
  91. <div class="form-group form-actions">
  92. <div class="group-controls">
  93. <button type="submit" class="btn btn-important"><?= _t('gen.action.submit') ?></button>
  94. <button type="reset" class="btn"><?= _t('gen.action.cancel') ?></button>
  95. </div>
  96. </div>
  97. </form>
  98. <h2><?= _t('conf.profile.api') ?></h2>
  99. <?php if (FreshRSS_Context::systemConf()->api_enabled) { ?>
  100. <form method="post" action="<?= _url('api', 'updatePassword') ?>">
  101. <input type="hidden" name="_csrf" value="<?= FreshRSS_Auth::csrfToken() ?>" />
  102. <div class="form-group">
  103. <label class="group-name" for="apiPasswordPlain"><?= _t('conf.profile.password_api') ?></label>
  104. <div class="group-controls">
  105. <div class="stick">
  106. <input type="password" id="apiPasswordPlain" name="apiPasswordPlain" autocomplete="new-password"
  107. <?php if (FreshRSS_Context::userConf()->apiPasswordHash != '') {?>
  108. placeholder="<?= _t('conf.profile.api.api_set') ?>"
  109. <?php } else {?>
  110. placeholder="<?= _t('conf.profile.api.api_not_set') ?>"
  111. <?php } ?>
  112. pattern=".{7,}" <?= FreshRSS_password_Util::cryptAvailable() ? '' : 'disabled="disabled" ' ?>/>
  113. <button type="button" class="btn toggle-password"><?= _i('key') ?></button>
  114. </div>
  115. <p class="help"><?= _i('help') ?> <?= _t('conf.profile.api.check_link', Minz_Url::display('/api/', 'html', true)) ?></p>
  116. <p class="help"><?= _i('help') ?> <?= _t('conf.profile.api.documentation_link') ?></p>
  117. </div>
  118. </div>
  119. <div class="form-group form-actions">
  120. <div class="group-controls">
  121. <button type="submit" class="btn btn-important"><?= _t('gen.action.submit') ?></button>
  122. </div>
  123. </div>
  124. </form>
  125. <?php } else { ?>
  126. <div class="form-group">
  127. <label class="group-name"></label>
  128. <div class="group-controls">
  129. <?= _t('conf.profile.api.disabled') ?>
  130. <p class="help"><?= _i('help') ?> <?= _t('conf.profile.api.help') ?></p>
  131. </div>
  132. </div>
  133. <?php } ?>
  134. <?php if (!FreshRSS_Auth::hasAccess('admin')) { ?>
  135. <h2><?= _t('conf.profile.delete') ?></h2>
  136. <form class="crypto-form" method="post" action="<?= _url('user', 'delete') ?>">
  137. <input type="hidden" name="_csrf" value="<?= FreshRSS_Auth::csrfToken() ?>" />
  138. <p class="alert alert-warn"><span class="alert-head"><?= _t('gen.short.attention') ?></span> <?= _t('conf.profile.delete.warn') ?></p>
  139. <div class="form-group">
  140. <label class="group-name" for="passwordPlain"><?= _t('gen.auth.password') ?></label>
  141. <div class="group-controls">
  142. <div class="stick">
  143. <input type="password" id="passwordPlain" class="passwordPlain" required="required" />
  144. <button type="button" class="btn toggle-password"><?= _i('key') ?></button>
  145. </div>
  146. <input type="hidden" id="challenge" name="challenge" /><br />
  147. <noscript><strong><?= _t('gen.js.should_be_activated') ?></strong></noscript>
  148. </div>
  149. </div>
  150. <div class="form-group form-actions">
  151. <div class="group-controls">
  152. <input type="hidden" name="username" id="username" value="<?= Minz_User::name() ?>" />
  153. <button type="submit" class="btn btn-attention confirm"><?= _t('gen.action.remove') ?></button>
  154. </div>
  155. </div>
  156. </form>
  157. <?php } ?>
  158. </main>