797 lines
24 KiB
PHP
797 lines
24 KiB
PHP
<?php
|
|
require_once("include/Contact.php");
|
|
|
|
function profiles_init(&$a) {
|
|
|
|
nav_set_selected('profiles');
|
|
|
|
if(! local_user()) {
|
|
return;
|
|
}
|
|
|
|
if(($a->argc > 2) && ($a->argv[1] === "drop") && intval($a->argv[2])) {
|
|
$r = q("SELECT * FROM `profile` WHERE `id` = %d AND `uid` = %d AND `is-default` = 0 LIMIT 1",
|
|
intval($a->argv[2]),
|
|
intval(local_user())
|
|
);
|
|
if(! count($r)) {
|
|
notice( t('Profile not found.') . EOL);
|
|
goaway('profiles');
|
|
return; // NOTREACHED
|
|
}
|
|
|
|
check_form_security_token_redirectOnErr('/profiles', 'profile_drop', 't');
|
|
|
|
// move every contact using this profile as their default to the user default
|
|
|
|
$r = q("UPDATE `contact` SET `profile-id` = (SELECT `profile`.`id` AS `profile-id` FROM `profile` WHERE `profile`.`is-default` = 1 AND `profile`.`uid` = %d LIMIT 1) WHERE `profile-id` = %d AND `uid` = %d ",
|
|
intval(local_user()),
|
|
intval($a->argv[2]),
|
|
intval(local_user())
|
|
);
|
|
$r = q("DELETE FROM `profile` WHERE `id` = %d AND `uid` = %d",
|
|
intval($a->argv[2]),
|
|
intval(local_user())
|
|
);
|
|
if($r)
|
|
info(t('Profile deleted.').EOL);
|
|
|
|
goaway('profiles');
|
|
return; // NOTREACHED
|
|
}
|
|
|
|
|
|
|
|
|
|
|
|
if(($a->argc > 1) && ($a->argv[1] === 'new')) {
|
|
|
|
check_form_security_token_redirectOnErr('/profiles', 'profile_new', 't');
|
|
|
|
$r0 = q("SELECT `id` FROM `profile` WHERE `uid` = %d",
|
|
intval(local_user()));
|
|
$num_profiles = count($r0);
|
|
|
|
$name = t('Profile-') . ($num_profiles + 1);
|
|
|
|
$r1 = q("SELECT `name`, `photo`, `thumb` FROM `profile` WHERE `uid` = %d AND `is-default` = 1 LIMIT 1",
|
|
intval(local_user()));
|
|
|
|
$r2 = q("INSERT INTO `profile` (`uid` , `profile-name` , `name`, `photo`, `thumb`)
|
|
VALUES ( %d, '%s', '%s', '%s', '%s' )",
|
|
intval(local_user()),
|
|
dbesc($name),
|
|
dbesc($r1[0]['name']),
|
|
dbesc($r1[0]['photo']),
|
|
dbesc($r1[0]['thumb'])
|
|
);
|
|
|
|
$r3 = q("SELECT `id` FROM `profile` WHERE `uid` = %d AND `profile-name` = '%s' LIMIT 1",
|
|
intval(local_user()),
|
|
dbesc($name)
|
|
);
|
|
|
|
info( t('New profile created.') . EOL);
|
|
if(count($r3) == 1)
|
|
goaway('profiles/'.$r3[0]['id']);
|
|
|
|
goaway('profiles');
|
|
}
|
|
|
|
if(($a->argc > 2) && ($a->argv[1] === 'clone')) {
|
|
|
|
check_form_security_token_redirectOnErr('/profiles', 'profile_clone', 't');
|
|
|
|
$r0 = q("SELECT `id` FROM `profile` WHERE `uid` = %d",
|
|
intval(local_user()));
|
|
$num_profiles = count($r0);
|
|
|
|
$name = t('Profile-') . ($num_profiles + 1);
|
|
$r1 = q("SELECT * FROM `profile` WHERE `uid` = %d AND `id` = %d LIMIT 1",
|
|
intval(local_user()),
|
|
intval($a->argv[2])
|
|
);
|
|
if(! count($r1)) {
|
|
notice( t('Profile unavailable to clone.') . EOL);
|
|
killme();
|
|
return;
|
|
}
|
|
unset($r1[0]['id']);
|
|
$r1[0]['is-default'] = 0;
|
|
$r1[0]['publish'] = 0;
|
|
$r1[0]['net-publish'] = 0;
|
|
$r1[0]['profile-name'] = dbesc($name);
|
|
|
|
dbesc_array($r1[0]);
|
|
|
|
$r2 = dbq("INSERT INTO `profile` (`"
|
|
. implode("`, `", array_keys($r1[0]))
|
|
. "`) VALUES ('"
|
|
. implode("', '", array_values($r1[0]))
|
|
. "')" );
|
|
|
|
$r3 = q("SELECT `id` FROM `profile` WHERE `uid` = %d AND `profile-name` = '%s' LIMIT 1",
|
|
intval(local_user()),
|
|
dbesc($name)
|
|
);
|
|
info( t('New profile created.') . EOL);
|
|
if(count($r3) == 1)
|
|
goaway('profiles/'.$r3[0]['id']);
|
|
|
|
goaway('profiles');
|
|
|
|
return; // NOTREACHED
|
|
}
|
|
|
|
|
|
if(($a->argc > 1) && (intval($a->argv[1]))) {
|
|
$r = q("SELECT id FROM `profile` WHERE `id` = %d AND `uid` = %d LIMIT 1",
|
|
intval($a->argv[1]),
|
|
intval(local_user())
|
|
);
|
|
if(! count($r)) {
|
|
notice( t('Profile not found.') . EOL);
|
|
killme();
|
|
return;
|
|
}
|
|
|
|
profile_load($a,$a->user['nickname'],$r[0]['id']);
|
|
}
|
|
|
|
|
|
|
|
}
|
|
|
|
function profile_clean_keywords($keywords) {
|
|
$keywords = str_replace(","," ",$keywords);
|
|
$keywords = explode(" ", $keywords);
|
|
|
|
$cleaned = array();
|
|
foreach ($keywords as $keyword) {
|
|
$keyword = trim(strtolower($keyword));
|
|
$keyword = trim($keyword, "#");
|
|
if ($keyword != "")
|
|
$cleaned[] = $keyword;
|
|
}
|
|
|
|
$keywords = implode(", ", $cleaned);
|
|
|
|
return $keywords;
|
|
}
|
|
|
|
function profiles_post(&$a) {
|
|
|
|
if(! local_user()) {
|
|
notice( t('Permission denied.') . EOL);
|
|
return;
|
|
}
|
|
|
|
$namechanged = false;
|
|
|
|
call_hooks('profile_post', $_POST);
|
|
|
|
if(($a->argc > 1) && ($a->argv[1] !== "new") && intval($a->argv[1])) {
|
|
$orig = q("SELECT * FROM `profile` WHERE `id` = %d AND `uid` = %d LIMIT 1",
|
|
intval($a->argv[1]),
|
|
intval(local_user())
|
|
);
|
|
if(! count($orig)) {
|
|
notice( t('Profile not found.') . EOL);
|
|
return;
|
|
}
|
|
|
|
check_form_security_token_redirectOnErr('/profiles', 'profile_edit');
|
|
|
|
$is_default = (($orig[0]['is-default']) ? 1 : 0);
|
|
|
|
$profile_name = notags(trim($_POST['profile_name']));
|
|
if(! strlen($profile_name)) {
|
|
notice( t('Profile Name is required.') . EOL);
|
|
return;
|
|
}
|
|
|
|
$dob = $_POST['dob'] ? escape_tags(trim($_POST['dob'])) : '0000-00-00'; // FIXME: Needs to be validated?
|
|
|
|
$y = substr($dob,0,4);
|
|
if((! ctype_digit($y)) || ($y < 1900))
|
|
$ignore_year = true;
|
|
else
|
|
$ignore_year = false;
|
|
if($dob != '0000-00-00') {
|
|
if(strpos($dob,'0000-') === 0) {
|
|
$ignore_year = true;
|
|
$dob = substr($dob,5);
|
|
}
|
|
$dob = datetime_convert('UTC','UTC',(($ignore_year) ? '1900-' . $dob : $dob),(($ignore_year) ? 'm-d' : 'Y-m-d'));
|
|
if($ignore_year)
|
|
$dob = '0000-' . $dob;
|
|
}
|
|
|
|
$name = notags(trim($_POST['name']));
|
|
|
|
if(! strlen($name)) {
|
|
$name = '[No Name]';
|
|
}
|
|
|
|
if($orig[0]['name'] != $name)
|
|
$namechanged = true;
|
|
|
|
|
|
|
|
$pdesc = notags(< |