Improve handling of the visibility parameter of the new ACL
[friendica.git/.git] / mod / settings.php
1 <?php
2 /**
3  * @copyright Copyright (C) 2020, Friendica
4  *
5  * @license GNU AGPL version 3 or any later version
6  *
7  * This program is free software: you can redistribute it and/or modify
8  * it under the terms of the GNU Affero General Public License as
9  * published by the Free Software Foundation, either version 3 of the
10  * License, or (at your option) any later version.
11  *
12  * This program is distributed in the hope that it will be useful,
13  * but WITHOUT ANY WARRANTY; without even the implied warranty of
14  * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
15  * GNU Affero General Public License for more details.
16  *
17  * You should have received a copy of the GNU Affero General Public License
18  * along with this program.  If not, see <https://www.gnu.org/licenses/>.
19  *
20  */
21
22 use Friendica\App;
23 use Friendica\BaseModule;
24 use Friendica\Content\Feature;
25 use Friendica\Content\Nav;
26 use Friendica\Core\ACL;
27 use Friendica\Core\Hook;
28 use Friendica\Core\Logger;
29 use Friendica\Core\Renderer;
30 use Friendica\Core\Worker;
31 use Friendica\Database\DBA;
32 use Friendica\DI;
33 use Friendica\Model\Contact;
34 use Friendica\Model\Group;
35 use Friendica\Model\Notify\Type;
36 use Friendica\Model\User;
37 use Friendica\Module\BaseSettings;
38 use Friendica\Module\Security\Login;
39 use Friendica\Protocol\Email;
40 use Friendica\Util\Strings;
41 use Friendica\Util\Temporal;
42 use Friendica\Worker\Delivery;
43
44 function settings_init(App $a)
45 {
46         if (!local_user()) {
47                 notice(DI::l10n()->t('Permission denied.'));
48                 return;
49         }
50
51         BaseSettings::content();
52 }
53
54 function settings_post(App $a)
55 {
56         if (!local_user()) {
57                 return;
58         }
59
60         if (!empty($_SESSION['submanage'])) {
61                 return;
62         }
63
64         if (count($a->user) && !empty($a->user['uid']) && $a->user['uid'] != local_user()) {
65                 notice(DI::l10n()->t('Permission denied.'));
66                 return;
67         }
68
69         $old_page_flags = $a->user['page-flags'];
70
71         if (($a->argc > 1) && ($a->argv[1] === 'oauth') && !empty($_POST['remove'])) {
72                 BaseModule::checkFormSecurityTokenRedirectOnError('/settings/oauth', 'settings_oauth');
73
74                 $key = $_POST['remove'];
75                 DBA::delete('tokens', ['id' => $key, 'uid' => local_user()]);
76                 DI::baseUrl()->redirect('settings/oauth/', true);
77                 return;
78         }
79
80         if (($a->argc > 2) && ($a->argv[1] === 'oauth')  && ($a->argv[2] === 'edit'||($a->argv[2] === 'add')) && !empty($_POST['submit'])) {
81                 BaseModule::checkFormSecurityTokenRedirectOnError('/settings/oauth', 'settings_oauth');
82
83                 $name     = $_POST['name']     ?? '';
84                 $key      = $_POST['key']      ?? '';
85                 $secret   = $_POST['secret']   ?? '';
86                 $redirect = $_POST['redirect'] ?? '';
87                 $icon     = $_POST['icon']     ?? '';
88
89                 if ($name == "" || $key == "" || $secret == "") {
90                         notice(DI::l10n()->t("Missing some important data!"));
91                 } else {
92                         if ($_POST['submit'] == DI::l10n()->t("Update")) {
93                                 q("UPDATE clients SET
94                                                         client_id='%s',
95                                                         pw='%s',
96                                                         name='%s',
97                                                         redirect_uri='%s',
98                                                         icon='%s',
99                                                         uid=%d
100                                                 WHERE client_id='%s'",
101                                         DBA::escape($key),
102                                         DBA::escape($secret),
103                                         DBA::escape($name),
104                                         DBA::escape($redirect),
105                                         DBA::escape($icon),
106                                         local_user(),
107                                         DBA::escape($key)
108                                 );
109                         } else {
110                                 q("INSERT INTO clients
111                                                         (client_id, pw, name, redirect_uri, icon, uid)
112                                                 VALUES ('%s', '%s', '%s', '%s', '%s',%d)",
113                                         DBA::escape($key),
114                                         DBA::escape($secret),
115                                         DBA::escape($name),
116                                         DBA::escape($redirect),
117                                         DBA::escape($icon),
118                                         local_user()
119                                 );
120                         }
121                 }
122                 DI::baseUrl()->redirect('settings/oauth/', true);
123                 return;
124         }
125
126         if (($a->argc > 1) && ($a->argv[1] == 'addon')) {
127                 BaseModule::checkFormSecurityTokenRedirectOnError('/settings/addon', 'settings_addon');
128
129                 Hook::callAll('addon_settings_post', $_POST);
130                 return;
131         }
132
133         if (($a->argc > 1) && ($a->argv[1] == 'connectors')) {
134                 BaseModule::checkFormSecurityTokenRedirectOnError('/settings/connectors', 'settings_connectors');
135
136                 if (!empty($_POST['general-submit'])) {
137                         DI::pConfig()->set(local_user(), 'system', 'accept_only_sharer', intval($_POST['accept_only_sharer']));
138                         DI::pConfig()->set(local_user(), 'system', 'disable_cw', intval($_POST['disable_cw']));
139                         DI::pConfig()->set(local_user(), 'system', 'no_intelligent_shortening', intval($_POST['no_intelligent_shortening']));
140                         DI::pConfig()->set(local_user(), 'system', 'attach_link_title', intval($_POST['attach_link_title']));
141                         DI::pConfig()->set(local_user(), 'system', 'ostatus_autofriend', intval($_POST['snautofollow']));
142                         DI::pConfig()->set(local_user(), 'ostatus', 'default_group', $_POST['group-selection']);
143                         DI::pConfig()->set(local_user(), 'ostatus', 'legacy_contact', $_POST['legacy_contact']);
144                 } elseif (!empty($_POST['imap-submit'])) {
145                         $mail_server       =                 $_POST['mail_server']       ?? '';
146                         $mail_port         =                 $_POST['mail_port']         ?? '';
147                         $mail_ssl          = strtolower(trim($_POST['mail_ssl']          ?? ''));
148                         $mail_user         =                 $_POST['mail_user']         ?? '';
149                         $mail_pass         =            trim($_POST['mail_pass']         ?? '');
150                         $mail_action       =            trim($_POST['mail_action']       ?? '');
151                         $mail_movetofolder =            trim($_POST['mail_movetofolder'] ?? '');
152                         $mail_replyto      =                 $_POST['mail_replyto']      ?? '';
153                         $mail_pubmail      =                 $_POST['mail_pubmail']      ?? '';
154
155                         if (
156                                 !DI::config()->get('system', 'dfrn_only')
157                                 && function_exists('imap_open')
158                                 && !DI::config()->get('system', 'imap_disabled')
159                         ) {
160                                 $failed = false;
161                                 $r = q("SELECT * FROM `mailacct` WHERE `uid` = %d LIMIT 1",
162                                         intval(local_user())
163                                 );
164                                 if (!DBA::isResult($r)) {
165                                         DBA::insert('mailacct', ['uid' => local_user()]);
166                                 }
167                                 if (strlen($mail_pass)) {
168                                         $pass = '';
169                                         openssl_public_encrypt($mail_pass, $pass, $a->user['pubkey']);
170                                         DBA::update('mailacct', ['pass' => bin2hex($pass)], ['uid' => local_user()]);
171                                 }
172                                 $r = q("UPDATE `mailacct` SET `server` = '%s', `port` = %d, `ssltype` = '%s', `user` = '%s',
173                                         `action` = %d, `movetofolder` = '%s',
174                                         `mailbox` = 'INBOX', `reply_to` = '%s', `pubmail` = %d WHERE `uid` = %d",
175                                         DBA::escape($mail_server),
176                                         intval($mail_port),
177                                         DBA::escape($mail_ssl),
178                                         DBA::escape($mail_user),
179                                         intval($mail_action),
180                                         DBA::escape($mail_movetofolder),
181                                         DBA::escape($mail_replyto),
182                                         intval($mail_pubmail),
183                                         intval(local_user())
184                                 );
185                                 Logger::notice('updating mailaccount', ['response' => $r]);
186                                 $r = q("SELECT * FROM `mailacct` WHERE `uid` = %d LIMIT 1",
187                                         intval(local_user())
188                                 );
189                                 if (DBA::isResult($r)) {
190                                         $eacct = $r[0];
191                                         $mb = Email::constructMailboxName($eacct);
192
193                                         if (strlen($eacct['server'])) {
194                                                 $dcrpass = '';
195                                                 openssl_private_decrypt(hex2bin($eacct['pass']), $dcrpass, $a->user['prvkey']);
196                                                 $mbox = Email::connect($mb, $mail_user, $dcrpass);
197                                                 unset($dcrpass);
198                                                 if (!$mbox) {
199                                                         $failed = true;
200                                                         notice(DI::l10n()->t('Failed to connect with email account using the settings provided.'));
201                                                 }
202                                         }
203                                 }
204                         }
205                 }
206
207                 Hook::callAll('connector_settings_post', $_POST);
208                 return;
209         }
210
211         if (($a->argc > 1) && ($a->argv[1] === 'features')) {
212                 BaseModule::checkFormSecurityTokenRedirectOnError('/settings/features', 'settings_features');
213                 foreach ($_POST as $k => $v) {
214                         if (strpos($k, 'feature_') === 0) {
215                                 DI::pConfig()->set(local_user(), 'feature', substr($k, 8), ((intval($v)) ? 1 : 0));
216                         }
217                 }
218                 return;
219         }
220
221         BaseModule::checkFormSecurityTokenRedirectOnError('/settings', 'settings');
222
223         // Import Contacts from CSV file
224         if (!empty($_POST['importcontact-submit'])) {
225                 if (isset($_FILES['importcontact-filename'])) {
226                         // was there an error
227                         if ($_FILES['importcontact-filename']['error'] > 0) {
228                                 Logger::notice('Contact CSV file upload error', ['error' => $_FILES['importcontact-filename']['error']]);
229                                 notice(DI::l10n()->t('Contact CSV file upload error'));
230                         } else {
231                                 $csvArray = array_map('str_getcsv', file($_FILES['importcontact-filename']['tmp_name']));
232                                 Logger::info('Import started', ['lines' => count($csvArray)]);
233                                 // import contacts
234                                 foreach ($csvArray as $csvRow) {
235                                         // The 1st row may, or may not contain the headers of the table
236                                         // We expect the 1st field of the row to contain either the URL
237                                         // or the handle of the account, therefore we check for either
238                                         // "http" or "@" to be present in the string.
239                                         // All other fields from the row will be ignored
240                                         if ((strpos($csvRow[0],'@') !== false) || (strpos($csvRow[0],'http') !== false)) {
241                                                 Worker::add(PRIORITY_LOW, 'AddContact', $_SESSION['uid'], $csvRow[0]);
242                                         }
243                                 }
244                                 Logger::info('Import done');
245
246                                 info(DI::l10n()->t('Importing Contacts done'));
247                                 // delete temp file
248                                 unlink($_FILES['importcontact-filename']['tmp_name']);
249                         }
250                 } else {
251                         Logger::info('Import triggered, but no import file was found.');
252                 }
253
254                 return;
255         }
256
257         if (!empty($_POST['resend_relocate'])) {
258                 Worker::add(PRIORITY_HIGH, 'Notifier', Delivery::RELOCATION, local_user());
259                 info(DI::l10n()->t("Relocate message has been send to your contacts"));
260                 DI::baseUrl()->redirect('settings');
261         }
262
263         Hook::callAll('settings_post', $_POST);
264
265         if (!empty($_POST['password']) || !empty($_POST['confirm'])) {
266                 $newpass = $_POST['password'];
267                 $confirm = $_POST['confirm'];
268
269                 try {
270                         if ($newpass != $confirm) {
271                                 throw new Exception(DI::l10n()->t('Passwords do not match.'));
272                         }
273
274                         //  check if the old password was supplied correctly before changing it to the new value
275                         User::getIdFromPasswordAuthentication(local_user(), $_POST['opassword']);
276
277                         $result = User::updatePassword(local_user(), $newpass);
278                         if (!DBA::isResult($result)) {
279                                 throw new Exception(DI::l10n()->t('Password update failed. Please try again.'));
280                         }
281
282                         info(DI::l10n()->t('Password changed.'));
283                 } catch (Exception $e) {
284                         notice($e->getMessage());
285                         notice(DI::l10n()->t('Password unchanged.'));
286                 }
287         }
288
289         $username         = (!empty($_POST['username'])   ? Strings::escapeTags(trim($_POST['username']))     : '');
290         $email            = (!empty($_POST['email'])      ? Strings::escapeTags(trim($_POST['email']))        : '');
291         $timezone         = (!empty($_POST['timezone'])   ? Strings::escapeTags(trim($_POST['timezone']))     : '');
292         $language         = (!empty($_POST['language'])   ? Strings::escapeTags(trim($_POST['language']))     : '');
293
294         $defloc           = (!empty($_POST['defloc'])     ? Strings::escapeTags(trim($_POST['defloc']))       : '');
295         $maxreq           = (!empty($_POST['maxreq'])     ? intval($_POST['maxreq'])             : 0);
296         $expire           = (!empty($_POST['expire'])     ? intval($_POST['expire'])             : 0);
297         $def_gid          = (!empty($_POST['group-selection']) ? intval($_POST['group-selection']) : 0);
298
299
300         $expire_items     = (!empty($_POST['expire_items']) ? intval($_POST['expire_items'])     : 0);
301         $expire_notes     = (!empty($_POST['expire_notes']) ? intval($_POST['expire_notes'])     : 0);
302         $expire_starred   = (!empty($_POST['expire_starred']) ? intval($_POST['expire_starred']) : 0);
303         $expire_photos    = (!empty($_POST['expire_photos'])? intval($_POST['expire_photos'])    : 0);
304         $expire_network_only    = (!empty($_POST['expire_network_only'])? intval($_POST['expire_network_only'])  : 0);
305
306         $delete_openid    = ((!empty($_POST['delete_openid']) && (intval($_POST['delete_openid']) == 1)) ? 1: 0);
307
308         $allow_location   = ((!empty($_POST['allow_location']) && (intval($_POST['allow_location']) == 1)) ? 1: 0);
309         $publish          = ((!empty($_POST['profile_in_directory']) && (intval($_POST['profile_in_directory']) == 1)) ? 1: 0);
310         $net_publish      = ((!empty($_POST['profile_in_netdirectory']) && (intval($_POST['profile_in_netdirectory']) == 1)) ? 1: 0);
311         $old_visibility   = ((!empty($_POST['visibility']) && (intval($_POST['visibility']) == 1)) ? 1 : 0);
312         $account_type     = ((!empty($_POST['account-type']) && (intval($_POST['account-type']))) ? intval($_POST['account-type']) : 0);
313         $page_flags       = ((!empty($_POST['page-flags']) && (intval($_POST['page-flags']))) ? intval($_POST['page-flags']) : 0);
314         $blockwall        = ((!empty($_POST['blockwall']) && (intval($_POST['blockwall']) == 1)) ? 0: 1); // this setting is inverted!
315         $blocktags        = ((!empty($_POST['blocktags']) && (intval($_POST['blocktags']) == 1)) ? 0: 1); // this setting is inverted!
316         $unkmail          = ((!empty($_POST['unkmail']) && (intval($_POST['unkmail']) == 1)) ? 1: 0);
317         $cntunkmail       = (!empty($_POST['cntunkmail']) ? intval($_POST['cntunkmail']) : 0);
318         $hide_friends     = (($_POST['hide-friends'] == 1) ? 1: 0);
319         $hidewall         = (($_POST['hidewall'] == 1) ? 1: 0);
320         $unlisted         = (($_POST['unlisted'] == 1) ? 1: 0);
321         $accessiblephotos = (($_POST['accessible-photos'] == 1) ? 1: 0);
322
323         $email_textonly   = (($_POST['email_textonly'] == 1) ? 1 : 0);
324         $detailed_notif   = (($_POST['detailed_notif'] == 1) ? 1 : 0);
325
326         $notify = 0;
327
328         if (!empty($_POST['notify1'])) {
329                 $notify += intval($_POST['notify1']);
330         }
331         if (!empty($_POST['notify2'])) {
332                 $notify += intval($_POST['notify2']);
333         }
334         if (!empty($_POST['notify3'])) {
335                 $notify += intval($_POST['notify3']);
336         }
337         if (!empty($_POST['notify4'])) {
338                 $notify += intval($_POST['notify4']);
339         }
340         if (!empty($_POST['notify5'])) {
341                 $notify += intval($_POST['notify5']);
342         }
343         if (!empty($_POST['notify6'])) {
344                 $notify += intval($_POST['notify6']);
345         }
346         if (!empty($_POST['notify7'])) {
347                 $notify += intval($_POST['notify7']);
348         }
349         if (!empty($_POST['notify8'])) {
350                 $notify += intval($_POST['notify8']);
351         }
352
353         // Adjust the page flag if the account type doesn't fit to the page flag.
354         if (($account_type == User::ACCOUNT_TYPE_PERSON) && !in_array($page_flags, [User::PAGE_FLAGS_NORMAL, User::PAGE_FLAGS_SOAPBOX, User::PAGE_FLAGS_FREELOVE])) {
355                 $page_flags = User::PAGE_FLAGS_NORMAL;
356         } elseif (($account_type == User::ACCOUNT_TYPE_ORGANISATION) && !in_array($page_flags, [User::PAGE_FLAGS_SOAPBOX])) {
357                 $page_flags = User::PAGE_FLAGS_SOAPBOX;
358         } elseif (($account_type == User::ACCOUNT_TYPE_NEWS) && !in_array($page_flags, [User::PAGE_FLAGS_SOAPBOX])) {
359                 $page_flags = User::PAGE_FLAGS_SOAPBOX;
360         } elseif (($account_type == User::ACCOUNT_TYPE_COMMUNITY) && !in_array($page_flags, [User::PAGE_FLAGS_COMMUNITY, User::PAGE_FLAGS_PRVGROUP])) {
361                 $page_flags = User::PAGE_FLAGS_COMMUNITY;
362         }
363
364         $err = '';
365
366         if ($username != $a->user['username']) {
367                 if (strlen($username) > 40) {
368                         $err .= DI::l10n()->t('Please use a shorter name.');
369                 }
370                 if (strlen($username) < 3) {
371                         $err .= DI::l10n()->t('Name too short.');
372                 }
373         }
374
375         if ($email != $a->user['email']) {
376                 //  check for the correct password
377                 if (!User::authenticate(intval(local_user()), $_POST['mpassword'])) {
378                         $err .= DI::l10n()->t('Wrong Password.');
379                         $email = $a->user['email'];
380                 }
381                 //  check the email is valid
382                 if (!filter_var($email, FILTER_VALIDATE_EMAIL)) {
383                         $err .= DI::l10n()->t('Invalid email.');
384                 }
385                 //  ensure new email is not the admin mail
386                 if (DI::config()->get('config', 'admin_email')) {
387                         $adminlist = explode(",", str_replace(" ", "", strtolower(DI::config()->get('config', 'admin_email'))));
388                         if (in_array(strtolower($email), $adminlist)) {
389                                 $err .= DI::l10n()->t('Cannot change to that email.');
390                                 $email = $a->user['email'];
391                         }
392                 }
393         }
394
395         if (strlen($err)) {
396                 notice($err);
397                 return;
398         }
399
400         if (($timezone != $a->user['timezone']) && strlen($timezone)) {
401                 date_default_timezone_set($timezone);
402         }
403
404         $aclFormatter = DI::aclFormatter();
405
406         $str_group_allow   = !empty($_POST['group_allow'])   ? $aclFormatter->toString($_POST['group_allow'])   : '';
407         $str_contact_allow = !empty($_POST['contact_allow']) ? $aclFormatter->toString($_POST['contact_allow']) : '';
408         $str_group_deny    = !empty($_POST['group_deny'])    ? $aclFormatter->toString($_POST['group_deny'])    : '';
409         $str_contact_deny  = !empty($_POST['contact_deny'])  ? $aclFormatter->toString($_POST['contact_deny'])  : '';
410
411         DI::pConfig()->set(local_user(), 'expire', 'items', $expire_items);
412         DI::pConfig()->set(local_user(), 'expire', 'notes', $expire_notes);
413         DI::pConfig()->set(local_user(), 'expire', 'starred', $expire_starred);
414         DI::pConfig()->set(local_user(), 'expire', 'photos', $expire_photos);
415         DI::pConfig()->set(local_user(), 'expire', 'network_only', $expire_network_only);
416
417         DI::pConfig()->set(local_user(), 'system', 'email_textonly', $email_textonly);
418         DI::pConfig()->set(local_user(), 'system', 'detailed_notif', $detailed_notif);
419         DI::pConfig()->set(local_user(), 'system', 'unlisted', $unlisted);
420         DI::pConfig()->set(local_user(), 'system', 'accessible-photos', $accessiblephotos);
421
422         if ($page_flags == User::PAGE_FLAGS_PRVGROUP) {
423                 $hidewall = 1;
424                 if (!$str_contact_allow && !$str_group_allow && !$str_contact_deny && !$str_group_deny) {
425                         if ($def_gid) {
426                                 info(DI::l10n()->t('Private forum has no privacy permissions. Using default privacy group.'));
427                                 $str_group_allow = '<' . $def_gid . '>';
428                         } else {
429                                 notice(DI::l10n()->t('Private forum has no privacy permissions and no default privacy group.'));
430                         }
431                 }
432         }
433
434         $fields = ['username' => $username, 'email' => $email, 'timezone' => $timezone,
435                 'allow_cid' => $str_contact_allow, 'allow_gid' => $str_group_allow, 'deny_cid' => $str_contact_deny, 'deny_gid' => $str_group_deny,
436                 'notify-flags' => $notify, 'page-flags' => $page_flags, 'account-type' => $account_type, 'default-location' => $defloc,
437                 'allow_location' => $allow_location, 'maxreq' => $maxreq, 'expire' => $expire, 'def_gid' => $def_gid, 'blockwall' => $blockwall,
438                 'hidewall' => $hidewall, 'blocktags' => $blocktags, 'unkmail' => $unkmail, 'cntunkmail' => $cntunkmail, 'language' => $language];
439
440         if ($delete_openid) {
441                 $fields['openid'] = '';
442                 $fields['openidserver'] = '';
443         }
444
445         if (!DBA::update('user', $fields, ['uid' => local_user()])) {
446                 notice(DI::l10n()->t('Settings were not updated.'));
447         }
448
449         // clear session language
450         unset($_SESSION['language']);
451
452         q("UPDATE `profile`
453                 SET `publish` = %d,
454                 `name` = '%s',
455                 `net-publish` = %d,
456                 `hide-friends` = %d
457                 WHERE `uid` = %d",
458                 intval($publish),
459                 DBA::escape($username),
460                 intval($net_publish),
461                 intval($hide_friends),
462                 intval(local_user())
463         );
464
465         Contact::updateSelfFromUserID(local_user());
466
467         if (($old_visibility != $net_publish) || ($page_flags != $old_page_flags)) {
468                 // Update global directory in background
469                 $url = $_SESSION['my_url'];
470                 if ($url && strlen(DI::config()->get('system', 'directory'))) {
471                         Worker::add(PRIORITY_LOW, "Directory", $url);
472                 }
473         }
474
475         Worker::add(PRIORITY_LOW, 'ProfileUpdate', local_user());
476
477         DI::baseUrl()->redirect('settings');
478         return; // NOTREACHED
479 }
480
481
482 function settings_content(App $a)
483 {
484         $o = '';
485         Nav::setSelected('settings');
486
487         if (!local_user()) {
488                 //notice(DI::l10n()->t('Permission denied.'));
489                 return Login::form();
490         }
491
492         if (!empty($_SESSION['submanage'])) {
493                 notice(DI::l10n()->t('Permission denied.'));
494                 return;
495         }
496
497         if (($a->argc > 1) && ($a->argv[1] === 'oauth')) {
498                 if (($a->argc > 2) && ($a->argv[2] === 'add')) {
499                         $tpl = Renderer::getMarkupTemplate('settings/oauth_edit.tpl');
500                         $o .= Renderer::replaceMacros($tpl, [
501                                 '$form_security_token' => BaseModule::getFormSecurityToken("settings_oauth"),
502                                 '$title'        => DI::l10n()->t('Add application'),
503                                 '$submit'       => DI::l10n()->t('Save Settings'),
504                                 '$cancel'       => DI::l10n()->t('Cancel'),
505                                 '$name'         => ['name', DI::l10n()->t('Name'), '', ''],
506                                 '$key'          => ['key', DI::l10n()->t('Consumer Key'), '', ''],
507                                 '$secret'       => ['secret', DI::l10n()->t('Consumer Secret'), '', ''],
508                                 '$redirect'     => ['redirect', DI::l10n()->t('Redirect'), '', ''],
509                                 '$icon'         => ['icon', DI::l10n()->t('Icon url'), '', ''],
510                         ]);
511                         return $o;
512                 }
513
514                 if (($a->argc > 3) && ($a->argv[2] === 'edit')) {
515                         $r = q("SELECT * FROM clients WHERE client_id='%s' AND uid=%d",
516                                         DBA::escape($a->argv[3]),
517                                         local_user());
518
519                         if (!DBA::isResult($r)) {
520                                 notice(DI::l10n()->t("You can't edit this application."));
521                                 return;
522                         }
523                         $app = $r[0];
524
525                         $tpl = Renderer::getMarkupTemplate('settings/oauth_edit.tpl');
526                         $o .= Renderer::replaceMacros($tpl, [
527                                 '$form_security_token' => BaseModule::getFormSecurityToken("settings_oauth"),
528                                 '$title'        => DI::l10n()->t('Add application'),
529                                 '$submit'       => DI::l10n()->t('Update'),
530                                 '$cancel'       => DI::l10n()->t('Cancel'),
531                                 '$name'         => ['name', DI::l10n()->t('Name'), $app['name'] , ''],
532                                 '$key'          => ['key', DI::l10n()->t('Consumer Key'), $app['client_id'], ''],
533                                 '$secret'       => ['secret', DI::l10n()->t('Consumer Secret'), $app['pw'], ''],
534                                 '$redirect'     => ['redirect', DI::l10n()->t('Redirect'), $app['redirect_uri'], ''],
535                                 '$icon'         => ['icon', DI::l10n()->t('Icon url'), $app['icon'], ''],
536                         ]);
537                         return $o;
538                 }
539
540                 if (($a->argc > 3) && ($a->argv[2] === 'delete')) {
541                         BaseModule::checkFormSecurityTokenRedirectOnError('/settings/oauth', 'settings_oauth', 't');
542
543                         DBA::delete('clients', ['client_id' => $a->argv[3], 'uid' => local_user()]);
544                         DI::baseUrl()->redirect('settings/oauth/', true);
545                         return;
546                 }
547
548                 /// @TODO validate result with DBA::isResult()
549                 $r = q("SELECT clients.*, tokens.id as oauth_token, (clients.uid=%d) AS my
550                                 FROM clients
551                                 LEFT JOIN tokens ON clients.client_id=tokens.client_id
552                                 WHERE clients.uid IN (%d, 0)",
553                                 local_user(),
554                                 local_user());
555
556
557                 $tpl = Renderer::getMarkupTemplate('settings/oauth.tpl');
558                 $o .= Renderer::replaceMacros($tpl, [
559                         '$form_security_token' => BaseModule::getFormSecurityToken("settings_oauth"),
560                         '$baseurl'      => DI::baseUrl()->get(true),
561                         '$title'        => DI::l10n()->t('Connected Apps'),
562                         '$add'          => DI::l10n()->t('Add application'),
563                         '$edit'         => DI::l10n()->t('Edit'),
564                         '$delete'               => DI::l10n()->t('Delete'),
565                         '$consumerkey' => DI::l10n()->t('Client key starts with'),
566                         '$noname'       => DI::l10n()->t('No name'),
567                         '$remove'       => DI::l10n()->t('Remove authorization'),
568                         '$apps'         => $r,
569                 ]);
570                 return $o;
571         }
572
573         if (($a->argc > 1) && ($a->argv[1] === 'addon')) {
574                 $settings_addons = "";
575
576                 $r = q("SELECT * FROM `hook` WHERE `hook` = 'addon_settings' ");
577                 if (!DBA::isResult($r)) {
578                         $settings_addons = DI::l10n()->t('No Addon settings configured');
579                 }
580
581                 Hook::callAll('addon_settings', $settings_addons);
582
583
584                 $tpl = Renderer::getMarkupTemplate('settings/addons.tpl');
585                 $o .= Renderer::replaceMacros($tpl, [
586                         '$form_security_token' => BaseModule::getFormSecurityToken("settings_addon"),
587                         '$title'        => DI::l10n()->t('Addon Settings'),
588                         '$settings_addons' => $settings_addons
589                 ]);
590                 return $o;
591         }
592
593         if (($a->argc > 1) && ($a->argv[1] === 'features')) {
594
595                 $arr = [];
596                 $features = Feature::get();
597                 foreach ($features as $fname => $fdata) {
598                         $arr[$fname] = [];
599                         $arr[$fname][0] = $fdata[0];
600                         foreach (array_slice($fdata,1) as $f) {
601                                 $arr[$fname][1][] = ['feature_' . $f[0], $f[1], Feature::isEnabled(local_user(), $f[0]), $f[2]];
602                         }
603                 }
604
605                 $tpl = Renderer::getMarkupTemplate('settings/features.tpl');
606                 $o .= Renderer::replaceMacros($tpl, [
607                         '$form_security_token' => BaseModule::getFormSecurityToken("settings_features"),
608                         '$title'               => DI::l10n()->t('Additional Features'),
609                         '$features'            => $arr,
610                         '$submit'              => DI::l10n()->t('Save Settings'),
611                 ]);
612                 return $o;
613         }
614
615         if (($a->argc > 1) && ($a->argv[1] === 'connectors')) {
616                 $accept_only_sharer        = intval(DI::pConfig()->get(local_user(), 'system', 'accept_only_sharer'));
617                 $disable_cw                = intval(DI::pConfig()->get(local_user(), 'system', 'disable_cw'));
618                 $no_intelligent_shortening = intval(DI::pConfig()->get(local_user(), 'system', 'no_intelligent_shortening'));
619                 $attach_link_title         = intval(DI::pConfig()->get(local_user(), 'system', 'attach_link_title'));
620                 $ostatus_autofriend        = intval(DI::pConfig()->get(local_user(), 'system', 'ostatus_autofriend'));
621                 $default_group             = DI::pConfig()->get(local_user(), 'ostatus', 'default_group');
622                 $legacy_contact            = DI::pConfig()->get(local_user(), 'ostatus', 'legacy_contact');
623
624                 if (!empty($legacy_contact)) {
625                         /// @todo Isn't it supposed to be a $a->internalRedirect() call?
626                         DI::page()['htmlhead'] = '<meta http-equiv="refresh" content="0; URL=' . DI::baseUrl().'/ostatus_subscribe?url=' . urlencode($legacy_contact) . '">';
627                 }
628
629                 $settings_connectors = '';
630                 Hook::callAll('connector_settings', $settings_connectors);
631
632                 if (is_site_admin()) {
633                         $diasp_enabled = DI::l10n()->t('Built-in support for %s connectivity is %s', DI::l10n()->t('Diaspora (Socialhome, Hubzilla)'), ((DI::config()->get('system', 'diaspora_enabled')) ? DI::l10n()->t('enabled') : DI::l10n()->t('disabled')));
634                         $ostat_enabled = DI::l10n()->t('Built-in support for %s connectivity is %s', DI::l10n()->t('OStatus (GNU Social)'), ((DI::config()->get('system', 'ostatus_disabled')) ? DI::l10n()->t('disabled') : DI::l10n()->t('enabled')));
635                 } else {
636                         $diasp_enabled = "";
637                         $ostat_enabled = "";
638                 }
639
640                 $mail_disabled = ((function_exists('imap_open') && (!DI::config()->get('system', 'imap_disabled'))) ? 0 : 1);
641                 if (DI::config()->get('system', 'dfrn_only')) {
642                         $mail_disabled = 1;
643                 }
644                 if (!$mail_disabled) {
645                         $r = q("SELECT * FROM `mailacct` WHERE `uid` = %d LIMIT 1",
646                                 local_user()
647                         );
648                 } else {
649                         $r = null;
650                 }
651
652                 $mail_server       = ((DBA::isResult($r)) ? $r[0]['server'] : '');
653                 $mail_port         = ((DBA::isResult($r) && intval($r[0]['port'])) ? intval($r[0]['port']) : '');
654                 $mail_ssl          = ((DBA::isResult($r)) ? $r[0]['ssltype'] : '');
655                 $mail_user         = ((DBA::isResult($r)) ? $r[0]['user'] : '');
656                 $mail_replyto      = ((DBA::isResult($r)) ? $r[0]['reply_to'] : '');
657                 $mail_pubmail      = ((DBA::isResult($r)) ? $r[0]['pubmail'] : 0);
658                 $mail_action       = ((DBA::isResult($r)) ? $r[0]['action'] : 0);
659                 $mail_movetofolder = ((DBA::isResult($r)) ? $r[0]['movetofolder'] : '');
660                 $mail_chk          = ((DBA::isResult($r)) ? $r[0]['last_check'] : DBA::NULL_DATETIME);
661
662
663                 $tpl = Renderer::getMarkupTemplate('settings/connectors.tpl');
664
665                 $mail_disabled_message = ($mail_disabled ? DI::l10n()->t('Email access is disabled on this site.') : '');
666
667                 $ssl_options = ['TLS' => 'TLS', 'SSL' => 'SSL'];
668
669                 if (DI::config()->get('system', 'insecure_imap')) {
670                         $ssl_options['notls'] = DI::l10n()->t('None');
671                 }
672
673                 $o .= Renderer::replaceMacros($tpl, [
674                         '$form_security_token' => BaseModule::getFormSecurityToken("settings_connectors"),
675
676                         '$title'        => DI::l10n()->t('Social Networks'),
677
678                         '$diasp_enabled' => $diasp_enabled,
679                         '$ostat_enabled' => $ostat_enabled,
680
681                         '$general_settings' => DI::l10n()->t('General Social Media Settings'),
682                         '$accept_only_sharer' => ['accept_only_sharer', DI::l10n()->t('Accept only top level posts by contacts you follow'), $accept_only_sharer, DI::l10n()->t('The system does an auto completion of threads when a comment arrives. This has got the side effect that you can receive posts that had been started by a non-follower but had been commented by someone you follow. This setting deactivates this behaviour. When activated, you strictly only will receive posts from people you really do follow.')],
683                         '$disable_cw' => ['disable_cw', DI::l10n()->t('Disable Content Warning'), $disable_cw, DI::l10n()->t('Users on networks like Mastodon or Pleroma are able to set a content warning field which collapse their post by default. This disables the automatic collapsing and sets the content warning as the post title. Doesn\'t affect any other content filtering you eventually set up.')],
684                         '$no_intelligent_shortening' => ['no_intelligent_shortening', DI::l10n()->t('Disable intelligent shortening'), $no_intelligent_shortening, DI::l10n()->t('Normally the system tries to find the best link to add to shortened posts. If this option is enabled then every shortened post will always point to the original friendica post.')],
685                         '$attach_link_title' => ['attach_link_title', DI::l10n()->t('Attach the link title'), $attach_link_title, DI::l10n()->t('When activated, the title of the attached link will be added as a title on posts to Diaspora. This is mostly helpful with "remote-self" contacts that share feed content.')],
686                         '$ostatus_autofriend' => ['snautofollow', DI::l10n()->t("Automatically follow any GNU Social \x28OStatus\x29 followers/mentioners"), $ostatus_autofriend, DI::l10n()->t('If you receive a message from an unknown OStatus user, this option decides what to do. If it is checked, a new contact will be created for every unknown user.')],
687                         '$default_group' => Group::displayGroupSelection(local_user(), $default_group, DI::l10n()->t("Default group for OStatus contacts")),
688                         '$legacy_contact' => ['legacy_contact', DI::l10n()->t('Your legacy GNU Social account'), $legacy_contact, DI::l10n()->t("If you enter your old GNU Social/Statusnet account name here \x28in the format user@domain.tld\x29, your contacts will be added automatically. The field will be emptied when done.")],
689
690                         '$repair_ostatus_url' => DI::baseUrl() . '/repair_ostatus',
691                         '$repair_ostatus_text' => DI::l10n()->t('Repair OStatus subscriptions'),
692
693                         '$settings_connectors' => $settings_connectors,
694
695                         '$h_imap' => DI::l10n()->t('Email/Mailbox Setup'),
696                         '$imap_desc' => DI::l10n()->t("If you wish to communicate with email contacts using this service \x28optional\x29, please specify how to connect to your mailbox."),
697                         '$imap_lastcheck' => ['imap_lastcheck', DI::l10n()->t('Last successful email check:'), $mail_chk, ''],
698                         '$mail_disabled' => $mail_disabled_message,
699                         '$mail_server'  => ['mail_server',      DI::l10n()->t('IMAP server name:'), $mail_server, ''],
700                         '$mail_port'    => ['mail_port',        DI::l10n()->t('IMAP port:'), $mail_port, ''],
701                         '$mail_ssl'     => ['mail_ssl',         DI::l10n()->t('Security:'), strtoupper($mail_ssl), '', $ssl_options],
702                         '$mail_user'    => ['mail_user',        DI::l10n()->t('Email login name:'), $mail_user, ''],
703                         '$mail_pass'    => ['mail_pass',        DI::l10n()->t('Email password:'), '', ''],
704                         '$mail_replyto' => ['mail_replyto',     DI::l10n()->t('Reply-to address:'), $mail_replyto, 'Optional'],
705                         '$mail_pubmail' => ['mail_pubmail',     DI::l10n()->t('Send public posts to all email contacts:'), $mail_pubmail, ''],
706                         '$mail_action'  => ['mail_action',      DI::l10n()->t('Action after import:'), $mail_action, '', [0 => DI::l10n()->t('None'), 1 => DI::l10n()->t('Delete'), 2 => DI::l10n()->t('Mark as seen'), 3 => DI::l10n()->t('Move to folder')]],
707                         '$mail_movetofolder' => ['mail_movetofolder', DI::l10n()->t('Move to folder:'), $mail_movetofolder, ''],
708                         '$submit' => DI::l10n()->t('Save Settings'),
709                 ]);
710
711                 Hook::callAll('display_settings', $o);
712                 return $o;
713         }
714
715         /*
716          * ACCOUNT SETTINGS
717          */
718
719         $profile = DBA::selectFirst('profile', [], ['uid' => local_user()]);
720         if (!DBA::isResult($profile)) {
721                 notice(DI::l10n()->t('Unable to find your profile. Please contact your admin.'));
722                 return;
723         }
724
725         $username   = $a->user['username'];
726         $email      = $a->user['email'];
727         $nickname   = $a->user['nickname'];
728         $timezone   = $a->user['timezone'];
729         $language   = $a->user['language'];
730         $notify     = $a->user['notify-flags'];
731         $defloc     = $a->user['default-location'];
732         $openid     = $a->user['openid'];
733         $maxreq     = $a->user['maxreq'];
734         $expire     = ((intval($a->user['expire'])) ? $a->user['expire'] : '');
735         $unkmail    = $a->user['unkmail'];
736         $cntunkmail = $a->user['cntunkmail'];
737
738         $expire_items = DI::pConfig()->get(local_user(), 'expire', 'items', true);
739         $expire_notes = DI::pConfig()->get(local_user(), 'expire', 'notes', true);
740         $expire_starred = DI::pConfig()->get(local_user(), 'expire', 'starred', true);
741         $expire_photos = DI::pConfig()->get(local_user(), 'expire', 'photos', false);
742         $expire_network_only = DI::pConfig()->get(local_user(), 'expire', 'network_only', false);
743
744         if (!strlen($a->user['timezone'])) {
745                 $timezone = date_default_timezone_get();
746         }
747
748         // Set the account type to "Community" when the page is a community page but the account type doesn't fit
749         // This is only happening on the first visit after the update
750         if (in_array($a->user['page-flags'], [User::PAGE_FLAGS_COMMUNITY, User::PAGE_FLAGS_PRVGROUP]) &&
751                 ($a->user['account-type'] != User::ACCOUNT_TYPE_COMMUNITY))
752                 $a->user['account-type'] = User::ACCOUNT_TYPE_COMMUNITY;
753
754         $pageset_tpl = Renderer::getMarkupTemplate('settings/pagetypes.tpl');
755
756         $pagetype = Renderer::replaceMacros($pageset_tpl, [
757                 '$account_types'        => DI::l10n()->t("Account Types"),
758                 '$user'                 => DI::l10n()->t("Personal Page Subtypes"),
759                 '$community'            => DI::l10n()->t("Community Forum Subtypes"),
760                 '$account_type'         => $a->user['account-type'],
761                 '$type_person'          => User::ACCOUNT_TYPE_PERSON,
762                 '$type_organisation'    => User::ACCOUNT_TYPE_ORGANISATION,
763                 '$type_news'            => User::ACCOUNT_TYPE_NEWS,
764                 '$type_community'       => User::ACCOUNT_TYPE_COMMUNITY,
765
766                 '$account_person'       => ['account-type', DI::l10n()->t('Personal Page'), User::ACCOUNT_TYPE_PERSON,
767                                                                         DI::l10n()->t('Account for a personal profile.'),
768                                                                         ($a->user['account-type'] == User::ACCOUNT_TYPE_PERSON)],
769
770                 '$account_organisation' => ['account-type', DI::l10n()->t('Organisation Page'), User::ACCOUNT_TYPE_ORGANISATION,
771                                                                         DI::l10n()->t('Account for an organisation that automatically approves contact requests as "Followers".'),
772                                                                         ($a->user['account-type'] == User::ACCOUNT_TYPE_ORGANISATION)],
773
774                 '$account_news'         => ['account-type', DI::l10n()->t('News Page'), User::ACCOUNT_TYPE_NEWS,
775                                                                         DI::l10n()->t('Account for a news reflector that automatically approves contact requests as "Followers".'),
776                                                                         ($a->user['account-type'] == User::ACCOUNT_TYPE_NEWS)],
777
778                 '$account_community'    => ['account-type', DI::l10n()->t('Community Forum'), User::ACCOUNT_TYPE_COMMUNITY,
779                                                                         DI::l10n()->t('Account for community discussions.'),
780                                                                         ($a->user['account-type'] == User::ACCOUNT_TYPE_COMMUNITY)],
781
782                 '$page_normal'          => ['page-flags', DI::l10n()->t('Normal Account Page'), User::PAGE_FLAGS_NORMAL,
783                                                                         DI::l10n()->t('Account for a regular personal profile that requires manual approval of "Friends" and "Followers".'),
784                                                                         ($a->user['page-flags'] == User::PAGE_FLAGS_NORMAL)],
785
786                 '$page_soapbox'         => ['page-flags', DI::l10n()->t('Soapbox Page'), User::PAGE_FLAGS_SOAPBOX,
787                                                                         DI::l10n()->t('Account for a public profile that automatically approves contact requests as "Followers".'),
788                                                                         ($a->user['page-flags'] == User::PAGE_FLAGS_SOAPBOX)],
789
790                 '$page_community'       => ['page-flags', DI::l10n()->t('Public Forum'), User::PAGE_FLAGS_COMMUNITY,
791                                                                         DI::l10n()->t('Automatically approves all contact requests.'),
792                                                                         ($a->user['page-flags'] == User::PAGE_FLAGS_COMMUNITY)],
793
794                 '$page_freelove'        => ['page-flags', DI::l10n()->t('Automatic Friend Page'), User::PAGE_FLAGS_FREELOVE,
795                                                                         DI::l10n()->t('Account for a popular profile that automatically approves contact requests as "Friends".'),
796                                                                         ($a->user['page-flags'] == User::PAGE_FLAGS_FREELOVE)],
797
798                 '$page_prvgroup'        => ['page-flags', DI::l10n()->t('Private Forum [Experimental]'), User::PAGE_FLAGS_PRVGROUP,
799                                                                         DI::l10n()->t('Requires manual approval of contact requests.'),
800                                                                         ($a->user['page-flags'] == User::PAGE_FLAGS_PRVGROUP)],
801
802
803         ]);
804
805         $noid = DI::config()->get('system', 'no_openid');
806
807         if ($noid) {
808                 $openid_field = false;
809         } else {
810                 $openid_field = ['openid_url', DI::l10n()->t('OpenID:'), $openid, DI::l10n()->t("\x28Optional\x29 Allow this OpenID to login to this account."), "", "readonly", "url"];
811         }
812
813         $opt_tpl = Renderer::getMarkupTemplate("field_checkbox.tpl");
814         if (DI::config()->get('system', 'publish_all')) {
815                 $profile_in_dir = '<input type="hidden" name="profile_in_directory" value="1" />';
816         } else {
817                 $profile_in_dir = Renderer::replaceMacros($opt_tpl, [
818                         '$field' => ['profile_in_directory', DI::l10n()->t('Publish your profile in your local site directory?'), $profile['publish'], DI::l10n()->t('Your profile will be published in this node\'s <a href="%s">local directory</a>. Your profile details may be publicly visible depending on the system settings.', DI::baseUrl().'/directory')]
819                 ]);
820         }
821
822         $net_pub_desc = '';
823         if (strlen(DI::config()->get('system', 'directory'))) {
824                 $net_pub_desc = ' ' . DI::l10n()->t('Your profile will also be published in the global friendica directories (e.g. <a href="%s">%s</a>).', DI::config()->get('system', 'directory'), DI::config()->get('system', 'directory'));
825         }
826
827         $tpl_addr = Renderer::getMarkupTemplate('settings/nick_set.tpl');
828
829         $prof_addr = Renderer::replaceMacros($tpl_addr,[
830                 '$desc' => DI::l10n()->t("Your Identity Address is <strong>'%s'</strong> or '%s'.", $nickname . '@' . DI::baseUrl()->getHostname() . DI::baseUrl()->getUrlPath(), DI::baseUrl() . '/profile/' . $nickname),
831                 '$basepath' => DI::baseUrl()->getHostname()
832         ]);
833
834         $stpl = Renderer::getMarkupTemplate('settings/settings.tpl');
835
836         /* Installed langs */
837         $lang_choices = DI::l10n()->getAvailableLanguages();
838
839         /// @TODO Fix indending (or so)
840         $o .= Renderer::replaceMacros($stpl, [
841                 '$ptitle'       => DI::l10n()->t('Account Settings'),
842
843                 '$submit'       => DI::l10n()->t('Save Settings'),
844                 '$baseurl' => DI::baseUrl()->get(true),
845                 '$uid' => local_user(),
846                 '$form_security_token' => BaseModule::getFormSecurityToken("settings"),
847                 '$nickname_block' => $prof_addr,
848
849                 '$h_pass'       => DI::l10n()->t('Password Settings'),
850                 '$password1'=> ['password', DI::l10n()->t('New Password:'), '', DI::l10n()->t('Allowed characters are a-z, A-Z, 0-9 and special characters except white spaces, accentuated letters and colon (:).')],
851                 '$password2'=> ['confirm', DI::l10n()->t('Confirm:'), '', DI::l10n()->t('Leave password fields blank unless changing')],
852                 '$password3'=> ['opassword', DI::l10n()->t('Current Password:'), '', DI::l10n()->t('Your current password to confirm the changes')],
853                 '$password4'=> ['mpassword', DI::l10n()->t('Password:'), '', DI::l10n()->t('Your current password to confirm the changes of the email address')],
854                 '$oid_enable' => (!DI::config()->get('system', 'no_openid')),
855                 '$openid'       => $openid_field,
856                 '$delete_openid' => ['delete_openid', DI::l10n()->t('Delete OpenID URL'), false, ''],
857
858                 '$h_basic'      => DI::l10n()->t('Basic Settings'),
859                 '$username' => ['username',  DI::l10n()->t('Full Name:'), $username, ''],
860                 '$email'        => ['email', DI::l10n()->t('Email Address:'), $email, '', '', '', 'email'],
861                 '$timezone' => ['timezone_select' , DI::l10n()->t('Your Timezone:'), Temporal::getTimezoneSelect($timezone), ''],
862                 '$language' => ['language', DI::l10n()->t('Your Language:'), $language, DI::l10n()->t('Set the language we use to show you friendica interface and to send you emails'), $lang_choices],
863                 '$defloc'       => ['defloc', DI::l10n()->t('Default Post Location:'), $defloc, ''],
864                 '$allowloc' => ['allow_location', DI::l10n()->t('Use Browser Location:'), ($a->user['allow_location'] == 1), ''],
865
866                 '$h_prv'                  => DI::l10n()->t('Security and Privacy Settings'),
867                 '$visibility'         => $profile['net-publish'],
868                 '$maxreq'                 => ['maxreq', DI::l10n()->t('Maximum Friend Requests/Day:'), $maxreq , DI::l10n()->t("\x28to prevent spam abuse\x29")],
869                 '$profile_in_dir'     => $profile_in_dir,
870                 '$profile_in_net_dir' => ['profile_in_netdirectory', DI::l10n()->t('Allow your profile to be searchable globally?'), $profile['net-publish'], DI::l10n()->t("Activate this setting if you want others to easily find and follow you. Your profile will be searchable on remote systems. This setting also determines whether Friendica will inform search engines that your profile should be indexed or not.") . $net_pub_desc],
871                 '$hide_friends'       => ['hide-friends', DI::l10n()->t('Hide your contact/friend list from viewers of your profile?'), $profile['hide-friends'], DI::l10n()->t('A list of your contacts is displayed on your profile page. Activate this option to disable the display of your contact list.')],
872                 '$hide_wall'          => ['hidewall', DI::l10n()->t('Hide your profile details from anonymous viewers?'), $a->user['hidewall'], DI::l10n()->t('Anonymous visitors will only see your profile picture, your display name and the nickname you are using on your profile page. Your public posts and replies will still be accessible by other means.')],
873                 '$unlisted'           => ['unlisted', DI::l10n()->t('Make public posts unlisted'), DI::pConfig()->get(local_user(), 'system', 'unlisted'), DI::l10n()->t('Your public posts will not appear on the community pages or in search results, nor be sent to relay servers. However they can still appear on public feeds on remote servers.')],
874                 '$accessiblephotos'   => ['accessible-photos', DI::l10n()->t('Make all posted pictures accessible'), DI::pConfig()->get(local_user(), 'system', 'accessible-photos'), DI::l10n()->t("This option makes every posted picture accessible via the direct link. This is a workaround for the problem that most other networks can't handle permissions on pictures. Non public pictures still won't be visible for the public on your photo albums though.")],
875                 '$blockwall'          => ['blockwall', DI::l10n()->t('Allow friends to post to your profile page?'), (intval($a->user['blockwall']) ? '0' : '1'), DI::l10n()->t('Your contacts may write posts on your profile wall. These posts will be distributed to your contacts')], // array('blockwall', DI::l10n()->t('Allow friends to post to your profile page:'), !$blockwall, ''),
876                 '$blocktags'          => ['blocktags', DI::l10n()->t('Allow friends to tag your posts?'), (intval($a->user['blocktags']) ? '0' : '1'), DI::l10n()->t('Your contacts can add additional tags to your posts.')], // array('blocktags', DI::l10n()->t('Allow friends to tag your posts:'), !$blocktags, ''),
877                 '$unkmail'            => ['unkmail', DI::l10n()->t('Permit unknown people to send you private mail?'), $unkmail, DI::l10n()->t('Friendica network users may send you private messages even if they are not in your contact list.')],
878                 '$cntunkmail'         => ['cntunkmail', DI::l10n()->t('Maximum private messages per day from unknown people:'), $cntunkmail , DI::l10n()->t("\x28to prevent spam abuse\x29")],
879                 '$group_select'       => Group::displayGroupSelection(local_user(), $a->user['def_gid']),
880                 '$permissions'        => DI::l10n()->t('Default Post Permissions'),
881                 '$aclselect'          => ACL::getFullSelectorHTML(DI::page(), $a->user),
882
883                 '$expire' => [
884                         'label'        => DI::l10n()->t('Expiration settings'),
885                         'days'         => ['expire',  DI::l10n()->t("Automatically expire posts after this many days:"), $expire, DI::l10n()->t('If empty, posts will not expire. Expired posts will be deleted')],
886                         'items'        => ['expire_items', DI::l10n()->t('Expire posts'), $expire_items, DI::l10n()->t('When activated, posts and comments will be expired.')],
887                         'notes'        => ['expire_notes', DI::l10n()->t('Expire personal notes'), $expire_notes, DI::l10n()->t('When activated, the personal notes on your profile page will be expired.')],
888                         'starred'      => ['expire_starred', DI::l10n()->t('Expire starred posts'), $expire_starred, DI::l10n()->t('Starring posts keeps them from being expired. That behaviour is overwritten by this setting.')],
889                         'photos'       => ['expire_photos', DI::l10n()->t('Expire photos'), $expire_photos, DI::l10n()->t('When activated, photos will be expired.')],
890                         'network_only' => ['expire_network_only', DI::l10n()->t('Only expire posts by others'), $expire_network_only, DI::l10n()->t('When activated, your own posts never expire. Then the settings above are only valid for posts you received.')],
891                 ],
892
893                 '$h_not'        => DI::l10n()->t('Notification Settings'),
894                 '$lbl_not'      => DI::l10n()->t('Send a notification email when:'),
895                 '$notify1'      => ['notify1', DI::l10n()->t('You receive an introduction'), ($notify & Type::INTRO), Type::INTRO, ''],
896                 '$notify2'      => ['notify2', DI::l10n()->t('Your introductions are confirmed'), ($notify & Type::CONFIRM), Type::CONFIRM, ''],
897                 '$notify3'      => ['notify3', DI::l10n()->t('Someone writes on your profile wall'), ($notify & Type::WALL), Type::WALL, ''],
898                 '$notify4'      => ['notify4', DI::l10n()->t('Someone writes a followup comment'), ($notify & Type::COMMENT), Type::COMMENT, ''],
899                 '$notify5'      => ['notify5', DI::l10n()->t('You receive a private message'), ($notify & Type::MAIL), Type::MAIL, ''],
900                 '$notify6'  => ['notify6', DI::l10n()->t('You receive a friend suggestion'), ($notify & Type::SUGGEST), Type::SUGGEST, ''],
901                 '$notify7'  => ['notify7', DI::l10n()->t('You are tagged in a post'), ($notify & Type::TAG_SELF), Type::TAG_SELF, ''],
902                 '$notify8'  => ['notify8', DI::l10n()->t('You are poked/prodded/etc. in a post'), ($notify & Type::POKE), Type::POKE, ''],
903
904                 '$desktop_notifications' => ['desktop_notifications', DI::l10n()->t('Activate desktop notifications') , false, DI::l10n()->t('Show desktop popup on new notifications')],
905
906                 '$email_textonly' => ['email_textonly', DI::l10n()->t('Text-only notification emails'),
907                                                                         DI::pConfig()->get(local_user(), 'system', 'email_textonly'),
908                                                                         DI::l10n()->t('Send text only notification emails, without the html part')],
909
910                 '$detailed_notif' => ['detailed_notif', DI::l10n()->t('Show detailled notifications'),
911                                                                         DI::pConfig()->get(local_user(), 'system', 'detailed_notif'),
912                                                                         DI::l10n()->t('Per default, notifications are condensed to a single notification per item. When enabled every notification is displayed.')],
913
914                 '$h_advn' => DI::l10n()->t('Advanced Account/Page Type Settings'),
915                 '$h_descadvn' => DI::l10n()->t('Change the behaviour of this account for special situations'),
916                 '$pagetype' => $pagetype,
917
918                 '$importcontact' => DI::l10n()->t('Import Contacts'),
919                 '$importcontact_text' => DI::l10n()->t('Upload a CSV file that contains the handle of your followed accounts in the first column you exported from the old account.'),
920                 '$importcontact_button' => DI::l10n()->t('Upload File'),
921                 '$importcontact_maxsize' => DI::config()->get('system', 'max_csv_file_size', 30720), 
922                 '$relocate' => DI::l10n()->t('Relocate'),
923                 '$relocate_text' => DI::l10n()->t("If you have moved this profile from another server, and some of your contacts don't receive your updates, try pushing this button."),
924                 '$relocate_button' => DI::l10n()->t("Resend relocate message to contacts"),
925
926         ]);
927
928         Hook::callAll('settings_form', $o);
929
930         $o .= '</form>' . "\r\n";
931
932         return $o;
933
934 }