mirror of
https://github.com/openvk/openvk
synced 2025-02-02 21:15:42 +03:00
Alexander Minkin
6ec54a379d
* feat(lint): add php-cs-fixer for linting Removing previous CODE_STYLE as it was not enforced anyway and using PER-CS 2.0. This is not the reformatting commit. * style: format code according to PER-CS 2.0 with php-cs-fixer * ci(actions): add lint action Resolves #1132.
160 lines
5.3 KiB
PHP
160 lines
5.3 KiB
PHP
<?php
|
|
|
|
declare(strict_types=1);
|
|
|
|
namespace openvk\Web\Presenters;
|
|
|
|
use openvk\Web\Models\Repositories\{Users, Notes};
|
|
use openvk\Web\Models\Entities\Note;
|
|
|
|
final class NotesPresenter extends OpenVKPresenter
|
|
{
|
|
private $notes;
|
|
protected $presenterName = "notes";
|
|
|
|
public function __construct(Notes $notes)
|
|
{
|
|
$this->notes = $notes;
|
|
|
|
parent::__construct();
|
|
}
|
|
|
|
public function renderList(int $owner): void
|
|
{
|
|
$user = (new Users())->get($owner);
|
|
if (!$user) {
|
|
$this->notFound();
|
|
}
|
|
if (!$user->getPrivacyPermission('notes.read', $this->user->identity ?? null)) {
|
|
$this->flashFail("err", tr("forbidden"), tr("forbidden_comment"));
|
|
}
|
|
|
|
$this->template->page = (int) ($this->queryParam("p") ?? 1);
|
|
$this->template->notes = $this->notes->getUserNotes($user, $this->template->page);
|
|
$this->template->count = $this->notes->getUserNotesCount($user);
|
|
$this->template->owner = $user;
|
|
}
|
|
|
|
public function renderView(int $owner, int $note_id): void
|
|
{
|
|
$note = $this->notes->getNoteById($owner, $note_id);
|
|
if (!$note || $note->getOwner()->getId() !== $owner || $note->isDeleted()) {
|
|
$this->notFound();
|
|
}
|
|
if (!$note->getOwner()->getPrivacyPermission('notes.read', $this->user->identity ?? null)) {
|
|
$this->flashFail("err", tr("forbidden"), tr("forbidden_comment"));
|
|
}
|
|
if (!$note->canBeViewedBy($this->user->identity)) {
|
|
$this->flashFail("err", tr("forbidden"), tr("forbidden_comment"));
|
|
}
|
|
|
|
$this->template->cCount = $note->getCommentsCount();
|
|
$this->template->cPage = (int) ($this->queryParam("p") ?? 1);
|
|
$this->template->comments = iterator_to_array($note->getComments($this->template->cPage));
|
|
$this->template->note = $note;
|
|
}
|
|
|
|
public function renderPreView(): void
|
|
{
|
|
$this->assertUserLoggedIn();
|
|
$this->willExecuteWriteAction();
|
|
|
|
if ($_SERVER["REQUEST_METHOD"] !== "POST") {
|
|
header("HTTP/1.1 400 Bad Request");
|
|
exit;
|
|
}
|
|
|
|
if (empty($this->postParam("html")) || empty($this->postParam("title"))) {
|
|
header("HTTP/1.1 400 Bad Request");
|
|
exit(tr("note_preview_empty_err"));
|
|
}
|
|
|
|
$note = new Note();
|
|
$note->setSource($this->postParam("html"));
|
|
|
|
$this->flash("info", tr("note_preview_warn"), tr("note_preview_warn_details"));
|
|
$this->template->title = $this->postParam("title");
|
|
$this->template->html = $note->getText();
|
|
}
|
|
|
|
public function renderCreate(): void
|
|
{
|
|
$this->assertUserLoggedIn();
|
|
$this->willExecuteWriteAction();
|
|
|
|
$id = $this->user->id; #TODO: when ACL'll be done, allow admins to edit users via ?GUID=(chandler guid)
|
|
|
|
if (!$id) {
|
|
$this->notFound();
|
|
}
|
|
|
|
if ($_SERVER["REQUEST_METHOD"] === "POST") {
|
|
if (empty($this->postParam("name"))) {
|
|
$this->flashFail("err", tr("error"), tr("error_segmentation"));
|
|
}
|
|
|
|
$note = new Note();
|
|
$note->setOwner($this->user->id);
|
|
$note->setCreated(time());
|
|
$note->setName($this->postParam("name"));
|
|
$note->setSource($this->postParam("html"));
|
|
$note->setEdited(time());
|
|
$note->save();
|
|
|
|
$this->redirect("/note" . $this->user->id . "_" . $note->getVirtualId());
|
|
}
|
|
}
|
|
|
|
public function renderEdit(int $owner, int $note_id): void
|
|
{
|
|
$this->assertUserLoggedIn();
|
|
$this->willExecuteWriteAction();
|
|
|
|
$note = $this->notes->getNoteById($owner, $note_id);
|
|
|
|
if (!$note || $note->getOwner()->getId() !== $owner || $note->isDeleted()) {
|
|
$this->notFound();
|
|
}
|
|
if (is_null($this->user) || !$note->canBeModifiedBy($this->user->identity)) {
|
|
$this->flashFail("err", tr("error_access_denied_short"), tr("error_access_denied"));
|
|
}
|
|
$this->template->note = $note;
|
|
|
|
if ($_SERVER["REQUEST_METHOD"] === "POST") {
|
|
if (empty($this->postParam("name"))) {
|
|
$this->flashFail("err", tr("error"), tr("error_segmentation"));
|
|
}
|
|
|
|
$note->setName($this->postParam("name"));
|
|
$note->setSource($this->postParam("html"));
|
|
$note->setCached_Content(null);
|
|
$note->setEdited(time());
|
|
$note->save();
|
|
|
|
$this->redirect("/note" . $this->user->id . "_" . $note->getVirtualId());
|
|
}
|
|
}
|
|
|
|
public function renderDelete(int $owner, int $id): void
|
|
{
|
|
$this->assertUserLoggedIn();
|
|
$this->willExecuteWriteAction();
|
|
$this->assertNoCSRF();
|
|
|
|
$note = $this->notes->get($id);
|
|
if (!$note) {
|
|
$this->notFound();
|
|
}
|
|
if ($note->getOwner()->getId() . "_" . $note->getId() !== $owner . "_" . $id || $note->isDeleted()) {
|
|
$this->notFound();
|
|
}
|
|
if (is_null($this->user) || !$note->canBeModifiedBy($this->user->identity)) {
|
|
$this->flashFail("err", tr("error_access_denied_short"), tr("error_access_denied"));
|
|
}
|
|
|
|
$name = $note->getName();
|
|
$note->delete();
|
|
$this->flash("succ", tr("note_is_deleted"), tr("note_x_is_now_deleted", $name));
|
|
$this->redirect("/notes" . $this->user->id);
|
|
}
|
|
}
|