Refactor datetime_convert into Temporal::convert
[friendica.git/.git] / mod / settings.php
1 <?php
2 /**
3  * @file mod/settings.php
4  */
5
6 use Friendica\App;
7 use Friendica\Content\Feature;
8 use Friendica\Content\Nav;
9 use Friendica\Core\Addon;
10 use Friendica\Core\Config;
11 use Friendica\Core\L10n;
12 use Friendica\Core\PConfig;
13 use Friendica\Core\System;
14 use Friendica\Core\Worker;
15 use Friendica\Database\DBM;
16 use Friendica\Model\GContact;
17 use Friendica\Model\Group;
18 use Friendica\Model\User;
19 use Friendica\Protocol\Email;
20 use Friendica\Util\Network;
21 use Friendica\Util\Temporal;
22
23 function get_theme_config_file($theme)
24 {
25         $a = get_app();
26         $base_theme = $a->theme_info['extends'];
27
28         if (file_exists("view/theme/$theme/config.php")) {
29                 return "view/theme/$theme/config.php";
30         }
31         if (file_exists("view/theme/$base_theme/config.php")) {
32                 return "view/theme/$base_theme/config.php";
33         }
34         return null;
35 }
36
37 function settings_init(App $a)
38 {
39         if (!local_user()) {
40                 notice(L10n::t('Permission denied.') . EOL);
41                 return;
42         }
43
44         // These lines provide the javascript needed by the acl selector
45
46         $tpl = get_markup_template('settings/head.tpl');
47         $a->page['htmlhead'] .= replace_macros($tpl, [
48                 '$ispublic' => L10n::t('everybody')
49         ]);
50
51         $tabs = [
52                 [
53                         'label' => L10n::t('Account'),
54                         'url'   => 'settings',
55                         'selected'      =>  (($a->argc == 1) && ($a->argv[0] === 'settings')?'active':''),
56                         'accesskey' => 'o',
57                 ],
58         ];
59
60         if (Feature::get()) {
61                 $tabs[] =       [
62                                         'label' => L10n::t('Additional features'),
63                                         'url'   => 'settings/features',
64                                         'selected'      => (($a->argc > 1) && ($a->argv[1] === 'features') ? 'active' : ''),
65                                         'accesskey' => 't',
66                                 ];
67         }
68
69         $tabs[] =       [
70                 'label' => L10n::t('Display'),
71                 'url'   => 'settings/display',
72                 'selected'      => (($a->argc > 1) && ($a->argv[1] === 'display')?'active':''),
73                 'accesskey' => 'i',
74         ];
75
76         $tabs[] =       [
77                 'label' => L10n::t('Social Networks'),
78                 'url'   => 'settings/connectors',
79                 'selected'      => (($a->argc > 1) && ($a->argv[1] === 'connectors')?'active':''),
80                 'accesskey' => 'w',
81         ];
82
83         $tabs[] =       [
84                 'label' => L10n::t('Addons'),
85                 'url'   => 'settings/addon',
86                 'selected'      => (($a->argc > 1) && ($a->argv[1] === 'addon')?'active':''),
87                 'accesskey' => 'l',
88         ];
89
90         $tabs[] =       [
91                 'label' => L10n::t('Delegations'),
92                 'url'   => 'delegate',
93                 'selected'      => (($a->argc == 1) && ($a->argv[0] === 'delegate')?'active':''),
94                 'accesskey' => 'd',
95         ];
96
97         $tabs[] =       [
98                 'label' => L10n::t('Connected apps'),
99                 'url' => 'settings/oauth',
100                 'selected' => (($a->argc > 1) && ($a->argv[1] === 'oauth')?'active':''),
101                 'accesskey' => 'b',
102         ];
103
104         $tabs[] =       [
105                 'label' => L10n::t('Export personal data'),
106                 'url' => 'uexport',
107                 'selected' => (($a->argc == 1) && ($a->argv[0] === 'uexport')?'active':''),
108                 'accesskey' => 'e',
109         ];
110
111         $tabs[] =       [
112                 'label' => L10n::t('Remove account'),
113                 'url' => 'removeme',
114                 'selected' => (($a->argc == 1) && ($a->argv[0] === 'removeme')?'active':''),
115                 'accesskey' => 'r',
116         ];
117
118
119         $tabtpl = get_markup_template("generic_links_widget.tpl");
120         $a->page['aside'] = replace_macros($tabtpl, [
121                 '$title' => L10n::t('Settings'),
122                 '$class' => 'settings-widget',
123                 '$items' => $tabs,
124         ]);
125
126 }
127
128 function settings_post(App $a)
129 {
130         if (!local_user()) {
131                 return;
132         }
133
134         if (x($_SESSION, 'submanage') && intval($_SESSION['submanage'])) {
135                 return;
136         }
137
138         if (count($a->user) && x($a->user, 'uid') && $a->user['uid'] != local_user()) {
139                 notice(L10n::t('Permission denied.') . EOL);
140                 return;
141         }
142
143         $old_page_flags = $a->user['page-flags'];
144
145         if (($a->argc > 1) && ($a->argv[1] === 'oauth') && x($_POST, 'remove')) {
146                 check_form_security_token_redirectOnErr('/settings/oauth', 'settings_oauth');
147
148                 $key = $_POST['remove'];
149                 q("DELETE FROM tokens WHERE id='%s' AND uid=%d",
150                         dbesc($key),
151                         local_user());
152                 goaway(System::baseUrl(true)."/settings/oauth/");
153                 return;
154         }
155
156         if (($a->argc > 2) && ($a->argv[1] === 'oauth')  && ($a->argv[2] === 'edit'||($a->argv[2] === 'add')) && x($_POST, 'submit')) {
157                 check_form_security_token_redirectOnErr('/settings/oauth', 'settings_oauth');
158
159                 $name     = defaults($_POST, 'name'    , '');
160                 $key      = defaults($_POST, 'key'     , '');
161                 $secret   = defaults($_POST, 'secret'  , '');
162                 $redirect = defaults($_POST, 'redirect', '');
163                 $icon     = defaults($_POST, 'icon'    , '');
164
165                 if ($name == "" || $key == "" || $secret == "") {
166                         notice(L10n::t("Missing some important data!"));
167                 } else {
168                         if ($_POST['submit'] == L10n::t("Update")) {
169                                 q("UPDATE clients SET
170                                                         client_id='%s',
171                                                         pw='%s',
172                                                         name='%s',
173                                                         redirect_uri='%s',
174                                                         icon='%s',
175                                                         uid=%d
176                                                 WHERE client_id='%s'",
177                                         dbesc($key),
178                                         dbesc($secret),
179                                         dbesc($name),
180                                         dbesc($redirect),
181                                         dbesc($icon),
182                                         local_user(),
183                                         dbesc($key)
184                                 );
185                         } else {
186                                 q("INSERT INTO clients
187                                                         (client_id, pw, name, redirect_uri, icon, uid)
188                                                 VALUES ('%s', '%s', '%s', '%s', '%s',%d)",
189                                         dbesc($key),
190                                         dbesc($secret),
191                                         dbesc($name),
192                                         dbesc($redirect),
193                                         dbesc($icon),
194                                         local_user()
195                                 );
196                         }
197                 }
198                 goaway(System::baseUrl(true)."/settings/oauth/");
199                 return;
200         }
201
202         if (($a->argc > 1) && ($a->argv[1] == 'addon')) {
203                 check_form_security_token_redirectOnErr('/settings/addon', 'settings_addon');
204
205                 Addon::callHooks('addon_settings_post', $_POST);
206                 return;
207         }
208
209         if (($a->argc > 1) && ($a->argv[1] == 'connectors'))
210         {
211                 check_form_security_token_redirectOnErr('/settings/connectors', 'settings_connectors');
212
213                 if (x($_POST, 'general-submit')) {
214                         PConfig::set(local_user(), 'system', 'no_intelligent_shortening', intval($_POST['no_intelligent_shortening']));
215                         PConfig::set(local_user(), 'system', 'ostatus_autofriend', intval($_POST['snautofollow']));
216                         PConfig::set(local_user(), 'ostatus', 'default_group', $_POST['group-selection']);
217                         PConfig::set(local_user(), 'ostatus', 'legacy_contact', $_POST['legacy_contact']);
218                 } elseif (x($_POST, 'imap-submit')) {
219
220                         $mail_server       = ((x($_POST, 'mail_server')) ? $_POST['mail_server'] : '');
221                         $mail_port         = ((x($_POST, 'mail_port')) ? $_POST['mail_port'] : '');
222                         $mail_ssl          = ((x($_POST, 'mail_ssl')) ? strtolower(trim($_POST['mail_ssl'])) : '');
223                         $mail_user         = ((x($_POST, 'mail_user')) ? $_POST['mail_user'] : '');
224                         $mail_pass         = ((x($_POST, 'mail_pass')) ? trim($_POST['mail_pass']) : '');
225                         $mail_action       = ((x($_POST, 'mail_action')) ? trim($_POST['mail_action']) : '');
226                         $mail_movetofolder = ((x($_POST, 'mail_movetofolder')) ? trim($_POST['mail_movetofolder']) : '');
227                         $mail_replyto      = ((x($_POST, 'mail_replyto')) ? $_POST['mail_replyto'] : '');
228                         $mail_pubmail      = ((x($_POST, 'mail_pubmail')) ? $_POST['mail_pubmail'] : '');
229
230
231                         $mail_disabled = ((function_exists('imap_open') && (!Config::get('system', 'imap_disabled'))) ? 0 : 1);
232                         if (Config::get('system', 'dfrn_only')) {
233                                 $mail_disabled = 1;
234                         }
235
236                         if (!$mail_disabled) {
237                                 $failed = false;
238                                 $r = q("SELECT * FROM `mailacct` WHERE `uid` = %d LIMIT 1",
239                                         intval(local_user())
240                                 );
241                                 if (!DBM::is_result($r)) {
242                                         dba::insert('mailacct', ['uid' => local_user()]);
243                                 }
244                                 if (strlen($mail_pass)) {
245                                         $pass = '';
246                                         openssl_public_encrypt($mail_pass, $pass, $a->user['pubkey']);
247                                         dba::update('mailacct', ['pass' => bin2hex($pass)], ['uid' => local_user()]);
248                                 }
249                                 $r = q("UPDATE `mailacct` SET `server` = '%s', `port` = %d, `ssltype` = '%s', `user` = '%s',
250                                         `action` = %d, `movetofolder` = '%s',
251                                         `mailbox` = 'INBOX', `reply_to` = '%s', `pubmail` = %d WHERE `uid` = %d",
252                                         dbesc($mail_server),
253                                         intval($mail_port),
254                                         dbesc($mail_ssl),
255                                         dbesc($mail_user),
256                                         intval($mail_action),
257                                         dbesc($mail_movetofolder),
258                                         dbesc($mail_replyto),
259                                         intval($mail_pubmail),
260                                         intval(local_user())
261                                 );
262                                 logger("mail: updating mailaccount. Response: ".print_r($r, true));
263                                 $r = q("SELECT * FROM `mailacct` WHERE `uid` = %d LIMIT 1",
264                                         intval(local_user())
265                                 );
266                                 if (DBM::is_result($r)) {
267                                         $eacct = $r[0];
268                                         $mb = Email::constructMailboxName($eacct);
269
270                                         if (strlen($eacct['server'])) {
271                                                 $dcrpass = '';
272                                                 openssl_private_decrypt(hex2bin($eacct['pass']), $dcrpass, $a->user['prvkey']);
273                                                 $mbox = Email::connect($mb, $mail_user, $dcrpass);
274                                                 unset($dcrpass);
275                                                 if (!$mbox) {
276                                                         $failed = true;
277                                                         notice(L10n::t('Failed to connect with email account using the settings provided.') . EOL);
278                                                 }
279                                         }
280                                 }
281                                 if (!$failed) {
282                                         info(L10n::t('Email settings updated.') . EOL);
283                                 }
284                         }
285                 }
286
287                 Addon::callHooks('connector_settings_post', $_POST);
288                 return;
289         }
290
291         if (($a->argc > 1) && ($a->argv[1] === 'features')) {
292                 check_form_security_token_redirectOnErr('/settings/features', 'settings_features');
293                 foreach ($_POST as $k => $v) {
294                         if (strpos($k, 'feature_') === 0) {
295                                 PConfig::set(local_user(), 'feature', substr($k, 8), ((intval($v)) ? 1 : 0));
296                         }
297                 }
298                 info(L10n::t('Features updated') . EOL);
299                 return;
300         }
301
302         if (($a->argc > 1) && ($a->argv[1] === 'display')) {
303                 check_form_security_token_redirectOnErr('/settings/display', 'settings_display');
304
305                 $theme             = x($_POST, 'theme')             ? notags(trim($_POST['theme']))        : $a->user['theme'];
306                 $mobile_theme      = x($_POST, 'mobile_theme')      ? notags(trim($_POST['mobile_theme'])) : '';
307                 $nosmile           = x($_POST, 'nosmile')           ? intval($_POST['nosmile'])            : 0;
308                 $first_day_of_week = x($_POST, 'first_day_of_week') ? intval($_POST['first_day_of_week'])  : 0;
309                 $noinfo            = x($_POST, 'noinfo')            ? intval($_POST['noinfo'])             : 0;
310                 $infinite_scroll   = x($_POST, 'infinite_scroll')   ? intval($_POST['infinite_scroll'])    : 0;
311                 $no_auto_update    = x($_POST, 'no_auto_update')    ? intval($_POST['no_auto_update'])     : 0;
312                 $bandwidth_saver   = x($_POST, 'bandwidth_saver')   ? intval($_POST['bandwidth_saver'])    : 0;
313                 $smart_threading   = x($_POST, 'smart_threading')   ? intval($_POST['smart_threading'])    : 0;
314                 $nowarn_insecure   = x($_POST, 'nowarn_insecure')   ? intval($_POST['nowarn_insecure'])    : 0;
315                 $browser_update    = x($_POST, 'browser_update')    ? intval($_POST['browser_update'])     : 0;
316                 if ($browser_update != -1) {
317                         $browser_update = $browser_update * 1000;
318                         if ($browser_update < 10000) {
319                                 $browser_update = 10000;
320                         }
321                 }
322
323                 $itemspage_network = x($_POST, 'itemspage_network')  ? intval($_POST['itemspage_network'])  : 40;
324                 if ($itemspage_network > 100) {
325                         $itemspage_network = 100;
326                 }
327                 $itemspage_mobile_network = x($_POST, 'itemspage_mobile_network') ? intval($_POST['itemspage_mobile_network']) : 20;
328                 if ($itemspage_mobile_network > 100) {
329                         $itemspage_mobile_network = 100;
330                 }
331
332                 if ($mobile_theme !== '') {
333                         PConfig::set(local_user(), 'system', 'mobile_theme', $mobile_theme);
334                 }
335
336                 PConfig::set(local_user(), 'system', 'nowarn_insecure'         , $nowarn_insecure);
337                 PConfig::set(local_user(), 'system', 'update_interval'         , $browser_update);
338                 PConfig::set(local_user(), 'system', 'itemspage_network'       , $itemspage_network);
339                 PConfig::set(local_user(), 'system', 'itemspage_mobile_network', $itemspage_mobile_network);
340                 PConfig::set(local_user(), 'system', 'no_smilies'              , $nosmile);
341                 PConfig::set(local_user(), 'system', 'first_day_of_week'       , $first_day_of_week);
342                 PConfig::set(local_user(), 'system', 'ignore_info'             , $noinfo);
343                 PConfig::set(local_user(), 'system', 'infinite_scroll'         , $infinite_scroll);
344                 PConfig::set(local_user(), 'system', 'no_auto_update'          , $no_auto_update);
345                 PConfig::set(local_user(), 'system', 'bandwidth_saver'         , $bandwidth_saver);
346                 PConfig::set(local_user(), 'system', 'smart_threading'         , $smart_threading);
347
348                 if ($theme == $a->user['theme']) {
349                         // call theme_post only if theme has not been changed
350                         if (($themeconfigfile = get_theme_config_file($theme)) !== null) {
351                                 require_once $themeconfigfile;
352                                 theme_post($a);
353                         }
354                 }
355
356                 $r = q("UPDATE `user` SET `theme` = '%s' WHERE `uid` = %d",
357                                 dbesc($theme),
358                                 intval(local_user())
359                 );
360
361                 Addon::callHooks('display_settings_post', $_POST);
362                 goaway('settings/display');
363                 return; // NOTREACHED
364         }
365
366         check_form_security_token_redirectOnErr('/settings', 'settings');
367
368         if (x($_POST,'resend_relocate')) {
369                 Worker::add(PRIORITY_HIGH, 'Notifier', 'relocate', local_user());
370                 info(L10n::t("Relocate message has been send to your contacts"));
371                 goaway('settings');
372         }
373
374         Addon::callHooks('settings_post', $_POST);
375
376         if (x($_POST, 'password') || x($_POST, 'confirm')) {
377                 $newpass = $_POST['password'];
378                 $confirm = $_POST['confirm'];
379
380                 $err = false;
381                 if ($newpass != $confirm) {
382                         notice(L10n::t('Passwords do not match. Password unchanged.') . EOL);
383                         $err = true;
384                 }
385
386                 if (!x($newpass) || !x($confirm)) {
387                         notice(L10n::t('Empty passwords are not allowed. Password unchanged.') . EOL);
388                         $err = true;
389         }
390
391         //  check if the old password was supplied correctly before changing it to the new value
392         if (!User::authenticate(intval(local_user()), $_POST['opassword'])) {
393             notice(L10n::t('Wrong password.') . EOL);
394             $err = true;
395         }
396
397                 if (!$err) {
398                         $result = User::updatePassword(local_user(), $newpass);
399                         if (DBM::is_result($result)) {
400                                 info(L10n::t('Password changed.') . EOL);
401                         } else {
402                                 notice(L10n::t('Password update failed. Please try again.') . EOL);
403                         }
404                 }
405         }
406
407         $username         = ((x($_POST, 'username'))   ? notags(trim($_POST['username']))     : '');
408         $email            = ((x($_POST, 'email'))      ? notags(trim($_POST['email']))        : '');
409         $timezone         = ((x($_POST, 'timezone'))   ? notags(trim($_POST['timezone']))     : '');
410         $language         = ((x($_POST, 'language'))   ? notags(trim($_POST['language']))     : '');
411
412         $defloc           = ((x($_POST, 'defloc'))     ? notags(trim($_POST['defloc']))       : '');
413         $openid           = ((x($_POST, 'openid_url')) ? notags(trim($_POST['openid_url']))   : '');
414         $maxreq           = ((x($_POST, 'maxreq'))     ? intval($_POST['maxreq'])             : 0);
415         $expire           = ((x($_POST, 'expire'))     ? intval($_POST['expire'])             : 0);
416         $def_gid          = ((x($_POST, 'group-selection')) ? intval($_POST['group-selection']) : 0);
417
418
419         $expire_items     = ((x($_POST, 'expire_items')) ? intval($_POST['expire_items'])        : 0);
420         $expire_notes     = ((x($_POST, 'expire_notes')) ? intval($_POST['expire_notes'])        : 0);
421         $expire_starred   = ((x($_POST, 'expire_starred')) ? intval($_POST['expire_starred']) : 0);
422         $expire_photos    = ((x($_POST, 'expire_photos'))? intval($_POST['expire_photos'])       : 0);
423         $expire_network_only    = ((x($_POST, 'expire_network_only'))? intval($_POST['expire_network_only'])     : 0);
424
425         $allow_location   = (((x($_POST, 'allow_location')) && (intval($_POST['allow_location']) == 1)) ? 1: 0);
426         $publish          = (((x($_POST, 'profile_in_directory')) && (intval($_POST['profile_in_directory']) == 1)) ? 1: 0);
427         $net_publish      = (((x($_POST, 'profile_in_netdirectory')) && (intval($_POST['profile_in_netdirectory']) == 1)) ? 1: 0);
428         $old_visibility   = (((x($_POST, 'visibility')) && (intval($_POST['visibility']) == 1)) ? 1 : 0);
429         $account_type     = (((x($_POST, 'account-type')) && (intval($_POST['account-type']))) ? intval($_POST['account-type']) : 0);
430         $page_flags       = (((x($_POST, 'page-flags')) && (intval($_POST['page-flags']))) ? intval($_POST['page-flags']) : 0);
431         $blockwall        = (((x($_POST, 'blockwall')) && (intval($_POST['blockwall']) == 1)) ? 0: 1); // this setting is inverted!
432         $blocktags        = (((x($_POST, 'blocktags')) && (intval($_POST['blocktags']) == 1)) ? 0: 1); // this setting is inverted!
433         $unkmail          = (((x($_POST, 'unkmail')) && (intval($_POST['unkmail']) == 1)) ? 1: 0);
434         $cntunkmail       = ((x($_POST, 'cntunkmail')) ? intval($_POST['cntunkmail']) : 0);
435         $suggestme        = ((x($_POST, 'suggestme')) ? intval($_POST['suggestme'])  : 0);
436         $hide_friends     = (($_POST['hide-friends'] == 1) ? 1: 0);
437         $hidewall         = (($_POST['hidewall'] == 1) ? 1: 0);
438         $post_newfriend   = (($_POST['post_newfriend'] == 1) ? 1: 0);
439         $post_joingroup   = (($_POST['post_joingroup'] == 1) ? 1: 0);
440         $post_profilechange   = (($_POST['post_profilechange'] == 1) ? 1: 0);
441
442         $email_textonly   = (($_POST['email_textonly'] == 1) ? 1 : 0);
443         $detailed_notif   = (($_POST['detailed_notif'] == 1) ? 1 : 0);
444
445         $notify = 0;
446
447         if (x($_POST, 'notify1')) {
448                 $notify += intval($_POST['notify1']);
449         }
450         if (x($_POST, 'notify2')) {
451                 $notify += intval($_POST['notify2']);
452         }
453         if (x($_POST, 'notify3')) {
454                 $notify += intval($_POST['notify3']);
455         }
456         if (x($_POST, 'notify4')) {
457                 $notify += intval($_POST['notify4']);
458         }
459         if (x($_POST, 'notify5')) {
460                 $notify += intval($_POST['notify5']);
461         }
462         if (x($_POST, 'notify6')) {
463                 $notify += intval($_POST['notify6']);
464         }
465         if (x($_POST, 'notify7')) {
466                 $notify += intval($_POST['notify7']);
467         }
468         if (x($_POST, 'notify8')) {
469                 $notify += intval($_POST['notify8']);
470         }
471
472         // Adjust the page flag if the account type doesn't fit to the page flag.
473         if (($account_type == ACCOUNT_TYPE_PERSON) && !in_array($page_flags, [PAGE_NORMAL, PAGE_SOAPBOX, PAGE_FREELOVE])) {
474                 $page_flags = PAGE_NORMAL;
475         } elseif (($account_type == ACCOUNT_TYPE_ORGANISATION) && !in_array($page_flags, [PAGE_SOAPBOX])) {
476                 $page_flags = PAGE_SOAPBOX;
477         } elseif (($account_type == ACCOUNT_TYPE_NEWS) && !in_array($page_flags, [PAGE_SOAPBOX])) {
478                 $page_flags = PAGE_SOAPBOX;
479         } elseif (($account_type == ACCOUNT_TYPE_COMMUNITY) && !in_array($page_flags, [PAGE_COMMUNITY, PAGE_PRVGROUP])) {
480                 $page_flags = PAGE_COMMUNITY;
481         }
482
483         $email_changed = false;
484
485         $err = '';
486
487         $name_change = false;
488
489         if ($username != $a->user['username']) {
490                 $name_change = true;
491                 if (strlen($username) > 40) {
492                         $err .= L10n::t(' Please use a shorter name.');
493                 }
494                 if (strlen($username) < 3) {
495                         $err .= L10n::t(' Name too short.');
496                 }
497         }
498
499         if ($email != $a->user['email']) {
500                 $email_changed = true;
501                 //  check for the correct password
502                 if (!User::authenticate(intval(local_user()), $_POST['mpassword'])) {
503                         $err .= L10n::t('Wrong Password') . EOL;
504                         $email = $a->user['email'];
505                 }
506                 //  check the email is valid
507                 if (!valid_email($email)) {
508                         $err .= L10n::t('Invalid email.');
509                 }
510                 //  ensure new email is not the admin mail
511                 //if ((x($a->config, 'admin_email')) && (strcasecmp($email, $a->config['admin_email']) == 0)) {
512                 if (x($a->config, 'admin_email')) {
513                         $adminlist = explode(",", str_replace(" ", "", strtolower($a->config['admin_email'])));
514                         if (in_array(strtolower($email), $adminlist)) {
515                                 $err .= L10n::t('Cannot change to that email.');
516                                 $email = $a->user['email'];
517                         }
518                 }
519         }
520
521         if (strlen($err)) {
522                 notice($err . EOL);
523                 return;
524         }
525
526         if (($timezone != $a->user['timezone']) && strlen($timezone)) {
527                 date_default_timezone_set($timezone);
528         }
529
530         $str_group_allow   = perms2str($_POST['group_allow']);
531         $str_contact_allow = perms2str($_POST['contact_allow']);
532         $str_group_deny    = perms2str($_POST['group_deny']);
533         $str_contact_deny  = perms2str($_POST['contact_deny']);
534
535         $openidserver = $a->user['openidserver'];
536         //$openid = normalise_openid($openid);
537
538         // If openid has changed or if there's an openid but no openidserver, try and discover it.
539         if ($openid != $a->user['openid'] || (strlen($openid) && (!strlen($openidserver)))) {
540                 if (Network::isUrlValid($openid)) {
541                         logger('updating openidserver');
542                         $open_id_obj = new LightOpenID;
543                         $open_id_obj->identity = $openid;
544                         $openidserver = $open_id_obj->discover($open_id_obj->identity);
545                 } else {
546                         $openidserver = '';
547                 }
548         }
549
550         PConfig::set(local_user(), 'expire', 'items', $expire_items);
551         PConfig::set(local_user(), 'expire', 'notes', $expire_notes);
552         PConfig::set(local_user(), 'expire', 'starred', $expire_starred);
553         PConfig::set(local_user(), 'expire', 'photos', $expire_photos);
554         PConfig::set(local_user(), 'expire', 'network_only', $expire_network_only);
555
556         PConfig::set(local_user(), 'system', 'suggestme', $suggestme);
557         PConfig::set(local_user(), 'system', 'post_newfriend', $post_newfriend);
558         PConfig::set(local_user(), 'system', 'post_joingroup', $post_joingroup);
559         PConfig::set(local_user(), 'system', 'post_profilechange', $post_profilechange);
560
561         PConfig::set(local_user(), 'system', 'email_textonly', $email_textonly);
562         PConfig::set(local_user(), 'system', 'detailed_notif', $detailed_notif);
563
564         if ($page_flags == PAGE_PRVGROUP) {
565                 $hidewall = 1;
566                 if (!$str_contact_allow && !$str_group_allow && !$str_contact_deny && !$str_group_deny) {
567                         if ($def_gid) {
568                                 info(L10n::t('Private forum has no privacy permissions. Using default privacy group.'). EOL);
569                                 $str_group_allow = '<' . $def_gid . '>';
570                         } else {
571                                 notice(L10n::t('Private forum has no privacy permissions and no default privacy group.') . EOL);
572                         }
573                 }
574         }
575
576
577         $r = q("UPDATE `user` SET `username` = '%s', `email` = '%s',
578                                 `openid` = '%s', `timezone` = '%s',
579                                 `allow_cid` = '%s', `allow_gid` = '%s', `deny_cid` = '%s', `deny_gid` = '%s',
580                                 `notify-flags` = %d, `page-flags` = %d, `account-type` = %d, `default-location` = '%s',
581                                 `allow_location` = %d, `maxreq` = %d, `expire` = %d, `openidserver` = '%s',
582                                 `def_gid` = %d, `blockwall` = %d, `hidewall` = %d, `blocktags` = %d,
583                                 `unkmail` = %d, `cntunkmail` = %d, `language` = '%s'
584                         WHERE `uid` = %d",
585                         dbesc($username),
586                         dbesc($email),
587                         dbesc($openid),
588                         dbesc($timezone),
589                         dbesc($str_contact_allow),
590                         dbesc($str_group_allow),
591                         dbesc($str_contact_deny),
592                         dbesc($str_group_deny),
593                         intval($notify),
594                         intval($page_flags),
595                         intval($account_type),
596                         dbesc($defloc),
597                         intval($allow_location),
598                         intval($maxreq),
599                         intval($expire),
600                         dbesc($openidserver),
601                         intval($def_gid),
602                         intval($blockwall),
603                         intval($hidewall),
604                         intval($blocktags),
605                         intval($unkmail),
606                         intval($cntunkmail),
607                         dbesc($language),
608                         intval(local_user())
609         );
610         if (DBM::is_result($r)) {
611                 info(L10n::t('Settings updated.') . EOL);
612         }
613
614         // clear session language
615         unset($_SESSION['language']);
616
617         $r = q("UPDATE `profile`
618                 SET `publish` = %d,
619                 `name` = '%s',
620                 `net-publish` = %d,
621                 `hide-friends` = %d
622                 WHERE `is-default` = 1 AND `uid` = %d",
623                 intval($publish),
624                 dbesc($username),
625                 intval($net_publish),
626                 intval($hide_friends),
627                 intval(local_user())
628         );
629
630
631         if ($name_change) {
632                 q("UPDATE `contact` SET `name` = '%s', `name-date` = '%s' WHERE `uid` = %d AND `self`",
633                         dbesc($username),
634                         dbesc(Temporal::convert()),
635                         intval(local_user())
636                 );
637         }
638
639         if (($old_visibility != $net_publish) || ($page_flags != $old_page_flags)) {
640                 // Update global directory in background
641                 $url = $_SESSION['my_url'];
642                 if ($url && strlen(Config::get('system', 'directory'))) {
643                         Worker::add(PRIORITY_LOW, "Directory", $url);
644                 }
645         }
646
647         Worker::add(PRIORITY_LOW, 'ProfileUpdate', local_user());
648
649         // Update the global contact for the user
650         GContact::updateForUser(local_user());
651
652         goaway('settings');
653         return; // NOTREACHED
654 }
655
656
657 function settings_content(App $a)
658 {
659         $o = '';
660         Nav::setSelected('settings');
661
662         if (!local_user()) {
663                 //notice(L10n::t('Permission denied.') . EOL);
664                 return;
665         }
666
667         if (x($_SESSION, 'submanage') && intval($_SESSION['submanage'])) {
668                 notice(L10n::t('Permission denied.') . EOL);
669                 return;
670         }
671
672         if (($a->argc > 1) && ($a->argv[1] === 'oauth')) {
673                 if (($a->argc > 2) && ($a->argv[2] === 'add')) {
674                         $tpl = get_markup_template('settings/oauth_edit.tpl');
675                         $o .= replace_macros($tpl, [
676                                 '$form_security_token' => get_form_security_token("settings_oauth"),
677                                 '$title'        => L10n::t('Add application'),
678                                 '$submit'       => L10n::t('Save Settings'),
679                                 '$cancel'       => L10n::t('Cancel'),
680                                 '$name'         => ['name', L10n::t('Name'), '', ''],
681                                 '$key'          => ['key', L10n::t('Consumer Key'), '', ''],
682                                 '$secret'       => ['secret', L10n::t('Consumer Secret'), '', ''],
683                                 '$redirect'     => ['redirect', L10n::t('Redirect'), '', ''],
684                                 '$icon'         => ['icon', L10n::t('Icon url'), '', ''],
685                         ]);
686                         return $o;
687                 }
688
689                 if (($a->argc > 3) && ($a->argv[2] === 'edit')) {
690                         $r = q("SELECT * FROM clients WHERE client_id='%s' AND uid=%d",
691                                         dbesc($a->argv[3]),
692                                         local_user());
693
694                         if (!DBM::is_result($r)) {
695                                 notice(L10n::t("You can't edit this application."));
696                                 return;
697                         }
698                         $app = $r[0];
699
700                         $tpl = get_markup_template('settings/oauth_edit.tpl');
701                         $o .= replace_macros($tpl, [
702                                 '$form_security_token' => get_form_security_token("settings_oauth"),
703                                 '$title'        => L10n::t('Add application'),
704                                 '$submit'       => L10n::t('Update'),
705                                 '$cancel'       => L10n::t('Cancel'),
706                                 '$name'         => ['name', L10n::t('Name'), $app['name'] , ''],
707                                 '$key'          => ['key', L10n::t('Consumer Key'), $app['client_id'], ''],
708                                 '$secret'       => ['secret', L10n::t('Consumer Secret'), $app['pw'], ''],
709                                 '$redirect'     => ['redirect', L10n::t('Redirect'), $app['redirect_uri'], ''],
710                                 '$icon'         => ['icon', L10n::t('Icon url'), $app['icon'], ''],
711                         ]);
712                         return $o;
713                 }
714
715                 if (($a->argc > 3) && ($a->argv[2] === 'delete')) {
716                         check_form_security_token_redirectOnErr('/settings/oauth', 'settings_oauth', 't');
717
718                         q("DELETE FROM clients WHERE client_id='%s' AND uid=%d",
719                                         dbesc($a->argv[3]),
720                                         local_user());
721                         goaway(System::baseUrl(true)."/settings/oauth/");
722                         return;
723                 }
724
725                 /// @TODO validate result with DBM::is_result()
726                 $r = q("SELECT clients.*, tokens.id as oauth_token, (clients.uid=%d) AS my
727                                 FROM clients
728                                 LEFT JOIN tokens ON clients.client_id=tokens.client_id
729                                 WHERE clients.uid IN (%d, 0)",
730                                 local_user(),
731                                 local_user());
732
733
734                 $tpl = get_markup_template('settings/oauth.tpl');
735                 $o .= replace_macros($tpl, [
736                         '$form_security_token' => get_form_security_token("settings_oauth"),
737                         '$baseurl'      => System::baseUrl(true),
738                         '$title'        => L10n::t('Connected Apps'),
739                         '$add'          => L10n::t('Add application'),
740                         '$edit'         => L10n::t('Edit'),
741                         '$delete'               => L10n::t('Delete'),
742                         '$consumerkey' => L10n::t('Client key starts with'),
743                         '$noname'       => L10n::t('No name'),
744                         '$remove'       => L10n::t('Remove authorization'),
745                         '$apps'         => $r,
746                 ]);
747                 return $o;
748         }
749
750         if (($a->argc > 1) && ($a->argv[1] === 'addon')) {
751                 $settings_addons = "";
752
753                 $r = q("SELECT * FROM `hook` WHERE `hook` = 'addon_settings' ");
754                 if (!DBM::is_result($r)) {
755                         $settings_addons = L10n::t('No Addon settings configured');
756                 }
757
758                 Addon::callHooks('addon_settings', $settings_addons);
759
760
761                 $tpl = get_markup_template('settings/addons.tpl');
762                 $o .= replace_macros($tpl, [
763                         '$form_security_token' => get_form_security_token("settings_addon"),
764                         '$title'        => L10n::t('Addon Settings'),
765                         '$settings_addons' => $settings_addons
766                 ]);
767                 return $o;
768         }
769
770         if (($a->argc > 1) && ($a->argv[1] === 'features')) {
771
772                 $arr = [];
773                 $features = Feature::get();
774                 foreach ($features as $fname => $fdata) {
775                         $arr[$fname] = [];
776                         $arr[$fname][0] = $fdata[0];
777                         foreach (array_slice($fdata,1) as $f) {
778                                 $arr[$fname][1][] = ['feature_' .$f[0], $f[1],((intval(Feature::isEnabled(local_user(), $f[0]))) ? "1" : ''), $f[2],[L10n::t('Off'), L10n::t('On')]];
779                         }
780                 }
781
782                 $tpl = get_markup_template('settings/features.tpl');
783                 $o .= replace_macros($tpl, [
784                         '$form_security_token' => get_form_security_token("settings_features"),
785                         '$title'               => L10n::t('Additional Features'),
786                         '$features'            => $arr,
787                         '$submit'              => L10n::t('Save Settings'),
788                 ]);
789                 return $o;
790         }
791
792         if (($a->argc > 1) && ($a->argv[1] === 'connectors')) {
793                 $no_intelligent_shortening = intval(PConfig::get(local_user(), 'system', 'no_intelligent_shortening'));
794                 $ostatus_autofriend        = intval(PConfig::get(local_user(), 'system', 'ostatus_autofriend'));
795                 $default_group             = PConfig::get(local_user(), 'ostatus', 'default_group');
796                 $legacy_contact            = PConfig::get(local_user(), 'ostatus', 'legacy_contact');
797
798                 if (x($legacy_contact)) {
799                         /// @todo Isn't it supposed to be a goaway() call?
800                         $a->page['htmlhead'] = '<meta http-equiv="refresh" content="0; URL=' . System::baseUrl().'/ostatus_subscribe?url=' . urlencode($legacy_contact) . '">';
801                 }
802
803                 $settings_connectors = '';
804                 Addon::callHooks('connector_settings', $settings_connectors);
805
806                 if (is_site_admin()) {
807                         $diasp_enabled = L10n::t('Built-in support for %s connectivity is %s', L10n::t('Diaspora'), ((Config::get('system', 'diaspora_enabled')) ? L10n::t('enabled') : L10n::t('disabled')));
808                         $ostat_enabled = L10n::t('Built-in support for %s connectivity is %s', L10n::t("GNU Social \x28OStatus\x29"), ((Config::get('system', 'ostatus_disabled')) ? L10n::t('disabled') : L10n::t('enabled')));
809                 } else {
810                         $diasp_enabled = "";
811                         $ostat_enabled = "";
812                 }
813
814                 $mail_disabled = ((function_exists('imap_open') && (!Config::get('system', 'imap_disabled'))) ? 0 : 1);
815                 if (Config::get('system', 'dfrn_only')) {
816                         $mail_disabled = 1;
817                 }
818                 if (!$mail_disabled) {
819                         $r = q("SELECT * FROM `mailacct` WHERE `uid` = %d LIMIT 1",
820                                 local_user()
821                         );
822                 } else {
823                         $r = null;
824                 }
825
826                 $mail_server       = ((DBM::is_result($r)) ? $r[0]['server'] : '');
827                 $mail_port         = ((DBM::is_result($r) && intval($r[0]['port'])) ? intval($r[0]['port']) : '');
828                 $mail_ssl          = ((DBM::is_result($r)) ? $r[0]['ssltype'] : '');
829                 $mail_user         = ((DBM::is_result($r)) ? $r[0]['user'] : '');
830                 $mail_replyto      = ((DBM::is_result($r)) ? $r[0]['reply_to'] : '');
831                 $mail_pubmail      = ((DBM::is_result($r)) ? $r[0]['pubmail'] : 0);
832                 $mail_action       = ((DBM::is_result($r)) ? $r[0]['action'] : 0);
833                 $mail_movetofolder = ((DBM::is_result($r)) ? $r[0]['movetofolder'] : '');
834                 $mail_chk          = ((DBM::is_result($r)) ? $r[0]['last_check'] : NULL_DATE);
835
836
837                 $tpl = get_markup_template('settings/connectors.tpl');
838
839                 $mail_disabled_message = (($mail_disabled) ? L10n::t('Email access is disabled on this site.') : '');
840
841                 $o .= replace_macros($tpl, [
842                         '$form_security_token' => get_form_security_token("settings_connectors"),
843
844                         '$title'        => L10n::t('Social Networks'),
845
846                         '$diasp_enabled' => $diasp_enabled,
847                         '$ostat_enabled' => $ostat_enabled,
848
849                         '$general_settings' => L10n::t('General Social Media Settings'),
850                         '$no_intelligent_shortening' => ['no_intelligent_shortening', L10n::t('Disable intelligent shortening'), $no_intelligent_shortening, L10n::t('Normally the system tries to find the best link to add to shortened posts. If this option is enabled then every shortened post will always point to the original friendica post.')],
851                         '$ostatus_autofriend' => ['snautofollow', L10n::t("Automatically follow any GNU Social \x28OStatus\x29 followers/mentioners"), $ostatus_autofriend, L10n::t('If you receive a message from an unknown OStatus user, this option decides what to do. If it is checked, a new contact will be created for every unknown user.')],
852                         '$default_group' => Group::displayGroupSelection(local_user(), $default_group, L10n::t("Default group for OStatus contacts")),
853                         '$legacy_contact' => ['legacy_contact', L10n::t('Your legacy GNU Social account'), $legacy_contact, L10n::t("If you enter your old GNU Social/Statusnet account name here \x28in the format user@domain.tld\x29, your contacts will be added automatically. The field will be emptied when done.")],
854
855                         '$repair_ostatus_url' => System::baseUrl() . '/repair_ostatus',
856                         '$repair_ostatus_text' => L10n::t('Repair OStatus subscriptions'),
857
858                         '$settings_connectors' => $settings_connectors,
859
860                         '$h_imap' => L10n::t('Email/Mailbox Setup'),
861                         '$imap_desc' => L10n::t("If you wish to communicate with email contacts using this service \x28optional\x29, please specify how to connect to your mailbox."),
862                         '$imap_lastcheck' => ['imap_lastcheck', L10n::t('Last successful email check:'), $mail_chk, ''],
863                         '$mail_disabled' => $mail_disabled_message,
864                         '$mail_server'  => ['mail_server',  L10n::t('IMAP server name:'), $mail_server, ''],
865                         '$mail_port'    => ['mail_port',         L10n::t('IMAP port:'), $mail_port, ''],
866                         '$mail_ssl'             => ['mail_ssl',          L10n::t('Security:'), strtoupper($mail_ssl), '', ['notls'=>L10n::t('None'), 'TLS'=>'TLS', 'SSL'=>'SSL']],
867                         '$mail_user'    => ['mail_user',    L10n::t('Email login name:'), $mail_user, ''],
868                         '$mail_pass'    => ['mail_pass',         L10n::t('Email password:'), '', ''],
869                         '$mail_replyto' => ['mail_replyto', L10n::t('Reply-to address:'), $mail_replyto, 'Optional'],
870                         '$mail_pubmail' => ['mail_pubmail', L10n::t('Send public posts to all email contacts:'), $mail_pubmail, ''],
871                         '$mail_action'  => ['mail_action',       L10n::t('Action after import:'), $mail_action, '', [0=>L10n::t('None'), /*1=>L10n::t('Delete'),*/ 2=>L10n::t('Mark as seen'), 3=>L10n::t('Move to folder')]],
872                         '$mail_movetofolder'    => ['mail_movetofolder',         L10n::t('Move to folder:'), $mail_movetofolder, ''],
873                         '$submit' => L10n::t('Save Settings'),
874                 ]);
875
876                 Addon::callHooks('display_settings', $o);
877                 return $o;
878         }
879
880         /*
881          * DISPLAY SETTINGS
882          */
883         if (($a->argc > 1) && ($a->argv[1] === 'display')) {
884                 $default_theme = Config::get('system', 'theme');
885                 if (!$default_theme) {
886                         $default_theme = 'default';
887                 }
888                 $default_mobile_theme = Config::get('system', 'mobile-theme');
889                 if (!$default_mobile_theme) {
890                         $default_mobile_theme = 'none';
891                 }
892
893                 $allowed_themes_str = Config::get('system', 'allowed_themes');
894                 $allowed_themes_raw = explode(',', $allowed_themes_str);
895                 $allowed_themes = [];
896                 if (count($allowed_themes_raw)) {
897                         foreach ($allowed_themes_raw as $x) {
898                                 if (strlen(trim($x)) && is_dir("view/theme/$x")) {
899                                         $allowed_themes[] = trim($x);
900                                 }
901                         }
902                 }
903
904
905                 $themes = [];
906                 $mobile_themes = ["---" => L10n::t('No special theme for mobile devices')];
907                 if ($allowed_themes) {
908                         foreach ($allowed_themes as $theme) {
909                                 $is_experimental = file_exists('view/theme/' . $theme . '/experimental');
910                                 $is_unsupported  = file_exists('view/theme/' . $theme . '/unsupported');
911                                 $is_mobile       = file_exists('view/theme/' . $theme . '/mobile');
912                                 if (!$is_experimental || ($is_experimental && (Config::get('experimentals', 'exp_themes')==1 || is_null(Config::get('experimentals', 'exp_themes'))))) {
913                                         $theme_name = ucfirst($theme);
914                                         if ($is_unsupported) {
915                                                 $theme_name = L10n::t("%s - \x28Unsupported\x29", $theme_name);
916                                         } elseif ($is_experimental) {
917                                                 $theme_name = L10n::t("%s - \x28Experimental\x29", $theme_name);
918                                         }
919                                         if ($is_mobile) {
920                                                 $mobile_themes[$theme] = $theme_name;
921                                         } else {
922                                                 $themes[$theme] = $theme_name;
923                                         }
924                                 }
925                         }
926                 }
927                 $theme_selected        = defaults($_SESSION, 'theme'       , $default_theme);
928                 $mobile_theme_selected = defaults($_SESSION, 'mobile-theme', $default_mobile_theme);
929
930                 $nowarn_insecure = intval(PConfig::get(local_user(), 'system', 'nowarn_insecure'));
931
932                 $browser_update = intval(PConfig::get(local_user(), 'system', 'update_interval'));
933                 if (intval($browser_update) != -1) {
934                         $browser_update = (($browser_update == 0) ? 40 : $browser_update / 1000); // default if not set: 40 seconds
935                 }
936
937                 $itemspage_network = intval(PConfig::get(local_user(), 'system', 'itemspage_network'));
938                 $itemspage_network = (($itemspage_network > 0 && $itemspage_network < 101) ? $itemspage_network : 40); // default if not set: 40 items
939                 $itemspage_mobile_network = intval(PConfig::get(local_user(), 'system', 'itemspage_mobile_network'));
940                 $itemspage_mobile_network = (($itemspage_mobile_network > 0 && $itemspage_mobile_network < 101) ? $itemspage_mobile_network : 20); // default if not set: 20 items
941
942                 $nosmile = PConfig::get(local_user(), 'system', 'no_smilies', 0);
943                 $first_day_of_week = PConfig::get(local_user(), 'system', 'first_day_of_week', 0);
944                 $weekdays = [0 => L10n::t("Sunday"), 1 => L10n::t("Monday")];
945
946                 $noinfo = PConfig::get(local_user(), 'system', 'ignore_info', 0);
947                 $infinite_scroll = PConfig::get(local_user(), 'system', 'infinite_scroll', 0);
948                 $no_auto_update = PConfig::get(local_user(), 'system', 'no_auto_update', 0);
949                 $bandwidth_saver = PConfig::get(local_user(), 'system', 'bandwidth_saver', 0);
950                 $smart_threading = PConfig::get(local_user(), 'system', 'smart_threading', 0);
951
952                 $theme_config = "";
953                 if (($themeconfigfile = get_theme_config_file($theme_selected)) !== null) {
954                         require_once $themeconfigfile;
955                         $theme_config = theme_content($a);
956                 }
957
958                 $tpl = get_markup_template('settings/display.tpl');
959                 $o = replace_macros($tpl, [
960                         '$ptitle'       => L10n::t('Display Settings'),
961                         '$form_security_token' => get_form_security_token("settings_display"),
962                         '$submit'       => L10n::t('Save Settings'),
963                         '$baseurl' => System::baseUrl(true),
964                         '$uid' => local_user(),
965
966                         '$theme'        => ['theme', L10n::t('Display Theme:'), $theme_selected, '', $themes, true],
967                         '$mobile_theme' => ['mobile_theme', L10n::t('Mobile Theme:'), $mobile_theme_selected, '', $mobile_themes, false],
968                         '$nowarn_insecure' => ['nowarn_insecure',  L10n::t('Suppress warning of insecure networks'), $nowarn_insecure, L10n::t("Should the system suppress the warning that the current group contains members of networks that can't receive non public postings.")],
969                         '$ajaxint'   => ['browser_update',  L10n::t("Update browser every xx seconds"), $browser_update, L10n::t('Minimum of 10 seconds. Enter -1 to disable it.')],
970                         '$itemspage_network'   => ['itemspage_network',  L10n::t("Number of items to display per page:"), $itemspage_network, L10n::t('Maximum of 100 items')],
971                         '$itemspage_mobile_network'   => ['itemspage_mobile_network',  L10n::t("Number of items to display per page when viewed from mobile device:"), $itemspage_mobile_network, L10n::t('Maximum of 100 items')],
972                         '$nosmile'      => ['nosmile', L10n::t("Don't show emoticons"), $nosmile, ''],
973                         '$calendar_title' => L10n::t('Calendar'),
974                         '$first_day_of_week'    => ['first_day_of_week', L10n::t('Beginning of week:'), $first_day_of_week, '', $weekdays, false],
975                         '$noinfo'       => ['noinfo', L10n::t("Don't show notices"), $noinfo, ''],
976                         '$infinite_scroll'      => ['infinite_scroll', L10n::t("Infinite scroll"), $infinite_scroll, ''],
977                         '$no_auto_update'       => ['no_auto_update', L10n::t("Automatic updates only at the top of the network page"), $no_auto_update, L10n::t('When disabled, the network page is updated all the time, which could be confusing while reading.')],
978                         '$bandwidth_saver' => ['bandwidth_saver', L10n::t('Bandwith Saver Mode'), $bandwidth_saver, L10n::t('When enabled, embedded content is not displayed on automatic updates, they only show on page reload.')],
979                         '$smart_threading' => ['smart_threading', L10n::t('Smart Threading'), $smart_threading, L10n::t('When enabled, suppress extraneous thread indentation while keeping it where it matters. Only works if threading is available and enabled.')],
980
981                         '$d_tset' => L10n::t('General Theme Settings'),
982                         '$d_ctset' => L10n::t('Custom Theme Settings'),
983                         '$d_cset' => L10n::t('Content Settings'),
984                         'stitle' => L10n::t('Theme settings'),
985                         '$theme_config' => $theme_config,
986                 ]);
987
988                 $tpl = get_markup_template('settings/display_end.tpl');
989                 $a->page['end'] .= replace_macros($tpl, [
990                         '$theme'        => ['theme', L10n::t('Display Theme:'), $theme_selected, '', $themes]
991                 ]);
992
993                 return $o;
994         }
995
996
997         /*
998          * ACCOUNT SETTINGS
999          */
1000
1001         require_once('include/acl_selectors.php');
1002
1003         $profile = dba::selectFirst('profile', [], ['is-default' => true, 'uid' => local_user()]);
1004         if (!DBM::is_result($profile)) {
1005                 notice(L10n::t('Unable to find your profile. Please contact your admin.') . EOL);
1006                 return;
1007         }
1008
1009         $username   = $a->user['username'];
1010         $email      = $a->user['email'];
1011         $nickname   = $a->user['nickname'];
1012         $timezone   = $a->user['timezone'];
1013         $language   = $a->user['language'];
1014         $notify     = $a->user['notify-flags'];
1015         $defloc     = $a->user['default-location'];
1016         $openid     = $a->user['openid'];
1017         $maxreq     = $a->user['maxreq'];
1018         $expire     = ((intval($a->user['expire'])) ? $a->user['expire'] : '');
1019         $unkmail    = $a->user['unkmail'];
1020         $cntunkmail = $a->user['cntunkmail'];
1021
1022         $expire_items = PConfig::get(local_user(), 'expire', 'items', true);
1023         $expire_notes = PConfig::get(local_user(), 'expire', 'notes', true);
1024         $expire_starred = PConfig::get(local_user(), 'expire', 'starred', true);
1025         $expire_photos = PConfig::get(local_user(), 'expire', 'photos', false);
1026         $expire_network_only = PConfig::get(local_user(), 'expire', 'network_only', false);
1027         $suggestme = PConfig::get(local_user(), 'system', 'suggestme', false);
1028         $post_newfriend = PConfig::get(local_user(), 'system', 'post_newfriend', false);
1029         $post_joingroup = PConfig::get(local_user(), 'system', 'post_joingroup', false);
1030         $post_profilechange = PConfig::get(local_user(), 'system', 'post_profilechange', false);
1031
1032         // nowarn_insecure
1033
1034         if (!strlen($a->user['timezone'])) {
1035                 $timezone = date_default_timezone_get();
1036         }
1037
1038         // Set the account type to "Community" when the page is a community page but the account type doesn't fit
1039         // This is only happening on the first visit after the update
1040         if (in_array($a->user['page-flags'], [PAGE_COMMUNITY, PAGE_PRVGROUP]) &&
1041                 ($a->user['account-type'] != ACCOUNT_TYPE_COMMUNITY))
1042                 $a->user['account-type'] = ACCOUNT_TYPE_COMMUNITY;
1043
1044         $pageset_tpl = get_markup_template('settings/pagetypes.tpl');
1045
1046         $pagetype = replace_macros($pageset_tpl, [
1047                 '$account_types'        => L10n::t("Account Types"),
1048                 '$user'                 => L10n::t("Personal Page Subtypes"),
1049                 '$community'            => L10n::t("Community Forum Subtypes"),
1050                 '$account_type'         => $a->user['account-type'],
1051                 '$type_person'          => ACCOUNT_TYPE_PERSON,
1052                 '$type_organisation'    => ACCOUNT_TYPE_ORGANISATION,
1053                 '$type_news'            => ACCOUNT_TYPE_NEWS,
1054                 '$type_community'       => ACCOUNT_TYPE_COMMUNITY,
1055
1056                 '$account_person'       => ['account-type', L10n::t('Personal Page'), ACCOUNT_TYPE_PERSON,
1057                                                                         L10n::t('Account for a personal profile.'),
1058                                                                         ($a->user['account-type'] == ACCOUNT_TYPE_PERSON)],
1059
1060                 '$account_organisation' => ['account-type', L10n::t('Organisation Page'), ACCOUNT_TYPE_ORGANISATION,
1061                                                                         L10n::t('Account for an organisation that automatically approves contact requests as "Followers".'),
1062                                                                         ($a->user['account-type'] == ACCOUNT_TYPE_ORGANISATION)],
1063
1064                 '$account_news'         => ['account-type', L10n::t('News Page'), ACCOUNT_TYPE_NEWS,
1065                                                                         L10n::t('Account for a news reflector that automatically approves contact requests as "Followers".'),
1066                                                                         ($a->user['account-type'] == ACCOUNT_TYPE_NEWS)],
1067
1068                 '$account_community'    => ['account-type', L10n::t('Community Forum'), ACCOUNT_TYPE_COMMUNITY,
1069                                                                         L10n::t('Account for community discussions.'),
1070                                                                         ($a->user['account-type'] == ACCOUNT_TYPE_COMMUNITY)],
1071
1072                 '$page_normal'          => ['page-flags', L10n::t('Normal Account Page'), PAGE_NORMAL,
1073                                                                         L10n::t('Account for a regular personal profile that requires manual approval of "Friends" and "Followers".'),
1074                                                                         ($a->user['page-flags'] == PAGE_NORMAL)],
1075
1076                 '$page_soapbox'         => ['page-flags', L10n::t('Soapbox Page'), PAGE_SOAPBOX,
1077                                                                         L10n::t('Account for a public profile that automatically approves contact requests as "Followers".'),
1078                                                                         ($a->user['page-flags'] == PAGE_SOAPBOX)],
1079
1080                 '$page_community'       => ['page-flags', L10n::t('Public Forum'), PAGE_COMMUNITY,
1081                                                                         L10n::t('Automatically approves all contact requests.'),
1082                                                                         ($a->user['page-flags'] == PAGE_COMMUNITY)],
1083
1084                 '$page_freelove'        => ['page-flags', L10n::t('Automatic Friend Page'), PAGE_FREELOVE,
1085                                                                         L10n::t('Account for a popular profile that automatically approves contact requests as "Friends".'),
1086                                                                         ($a->user['page-flags'] == PAGE_FREELOVE)],
1087
1088                 '$page_prvgroup'        => ['page-flags', L10n::t('Private Forum [Experimental]'), PAGE_PRVGROUP,
1089                                                                         L10n::t('Requires manual approval of contact requests.'),
1090                                                                         ($a->user['page-flags'] == PAGE_PRVGROUP)],
1091
1092
1093         ]);
1094
1095         $noid = Config::get('system', 'no_openid');
1096
1097         if ($noid) {
1098                 $openid_field = false;
1099         } else {
1100                 $openid_field = ['openid_url', L10n::t('OpenID:'), $openid, L10n::t("\x28Optional\x29 Allow this OpenID to login to this account."), "", "", "url"];
1101         }
1102
1103         $opt_tpl = get_markup_template("field_yesno.tpl");
1104         if (Config::get('system', 'publish_all')) {
1105                 $profile_in_dir = '<input type="hidden" name="profile_in_directory" value="1" />';
1106         } else {
1107                 $profile_in_dir = replace_macros($opt_tpl, [
1108                         '$field' => ['profile_in_directory', L10n::t('Publish your default profile in your local site directory?'), $profile['publish'], L10n::t("Your profile may be visible in public."), [L10n::t('No'), L10n::t('Yes')]]
1109                 ]);
1110         }
1111
1112         if (strlen(Config::get('system', 'directory'))) {
1113                 $profile_in_net_dir = replace_macros($opt_tpl, [
1114                         '$field' => ['profile_in_netdirectory', L10n::t('Publish your default profile in the global social directory?'), $profile['net-publish'], '', [L10n::t('No'), L10n::t('Yes')]]
1115                 ]);
1116         } else {
1117                 $profile_in_net_dir = '';
1118         }
1119
1120         $hide_friends = replace_macros($opt_tpl, [
1121                 '$field' => ['hide-friends', L10n::t('Hide your contact/friend list from viewers of your default profile?'), $profile['hide-friends'], '', [L10n::t('No'), L10n::t('Yes')]],
1122         ]);
1123
1124         $hide_wall = replace_macros($opt_tpl, [
1125                 '$field' => ['hidewall', L10n::t('Hide your profile details from unknown viewers?'), $a->user['hidewall'], L10n::t("If enabled, posting public messages to Diaspora and other networks isn't possible."), [L10n::t('No'), L10n::t('Yes')]],
1126         ]);
1127
1128         $blockwall = replace_macros($opt_tpl, [
1129                 '$field' => ['blockwall', L10n::t('Allow friends to post to your profile page?'), (intval($a->user['blockwall']) ? '0' : '1'), '', [L10n::t('No'), L10n::t('Yes')]],
1130         ]);
1131
1132         $blocktags = replace_macros($opt_tpl, [
1133                 '$field' => ['blocktags', L10n::t('Allow friends to tag your posts?'), (intval($a->user['blocktags']) ? '0' : '1'), '', [L10n::t('No'), L10n::t('Yes')]],
1134         ]);
1135
1136         $suggestme = replace_macros($opt_tpl, [
1137                 '$field' => ['suggestme', L10n::t('Allow us to suggest you as a potential friend to new members?'), $suggestme, '', [L10n::t('No'), L10n::t('Yes')]],
1138         ]);
1139
1140         $unkmail = replace_macros($opt_tpl, [
1141                 '$field' => ['unkmail', L10n::t('Permit unknown people to send you private mail?'), $unkmail, '', [L10n::t('No'), L10n::t('Yes')]],
1142         ]);
1143
1144         if (!$profile['publish'] && !$profile['net-publish']) {
1145                 info(L10n::t('Profile is <strong>not published</strong>.') . EOL);
1146         }
1147
1148         $tpl_addr = get_markup_template('settings/nick_set.tpl');
1149
1150         $prof_addr = replace_macros($tpl_addr,[
1151                 '$desc' => L10n::t("Your Identity Address is <strong>'%s'</strong> or '%s'.", $nickname . '@' . $a->get_hostname() . $a->get_path(), System::baseUrl() . '/profile/' . $nickname),
1152                 '$basepath' => $a->get_hostname()
1153         ]);
1154
1155         $stpl = get_markup_template('settings/settings.tpl');
1156
1157         $expire_arr = [
1158                 'days' => ['expire',  L10n::t("Automatically expire posts after this many days:"), $expire, L10n::t('If empty, posts will not expire. Expired posts will be deleted')],
1159                 'advanced' => L10n::t('Advanced expiration settings'),
1160                 'label' => L10n::t('Advanced Expiration'),
1161                 'items' => ['expire_items',  L10n::t("Expire posts:"), $expire_items, '', [L10n::t('No'), L10n::t('Yes')]],
1162                 'notes' => ['expire_notes',  L10n::t("Expire personal notes:"), $expire_notes, '', [L10n::t('No'), L10n::t('Yes')]],
1163                 'starred' => ['expire_starred',  L10n::t("Expire starred posts:"), $expire_starred, '', [L10n::t('No'), L10n::t('Yes')]],
1164                 'photos' => ['expire_photos',  L10n::t("Expire photos:"), $expire_photos, '', [L10n::t('No'), L10n::t('Yes')]],
1165                 'network_only' => ['expire_network_only',  L10n::t("Only expire posts by others:"), $expire_network_only, '', [L10n::t('No'), L10n::t('Yes')]],
1166         ];
1167
1168         $group_select = Group::displayGroupSelection(local_user(), $a->user['def_gid']);
1169
1170         // Private/public post links for the non-JS ACL form
1171         $private_post = 1;
1172         if ($_REQUEST['public']) {
1173                 $private_post = 0;
1174         }
1175
1176         $query_str = $a->query_string;
1177         if (strpos($query_str, 'public=1') !== false) {
1178                 $query_str = str_replace(['?public=1', '&public=1'], ['', ''], $query_str);
1179         }
1180
1181         // I think $a->query_string may never have ? in it, but I could be wrong
1182         // It looks like it's from the index.php?q=[etc] rewrite that the web
1183         // server does, which converts any ? to &, e.g. suggest&ignore=61 for suggest?ignore=61
1184         if (strpos($query_str, '?') === false) {
1185                 $public_post_link = '?public=1';
1186         } else {
1187                 $public_post_link = '&public=1';
1188         }
1189
1190         /* Installed langs */
1191         $lang_choices = L10n::getAvailableLanguages();
1192
1193         /// @TODO Fix indending (or so)
1194         $o .= replace_macros($stpl, [
1195                 '$ptitle'       => L10n::t('Account Settings'),
1196
1197                 '$submit'       => L10n::t('Save Settings'),
1198                 '$baseurl' => System::baseUrl(true),
1199                 '$uid' => local_user(),
1200                 '$form_security_token' => get_form_security_token("settings"),
1201                 '$nickname_block' => $prof_addr,
1202
1203                 '$h_pass'       => L10n::t('Password Settings'),
1204                 '$password1'=> ['password', L10n::t('New Password:'), '', ''],
1205                 '$password2'=> ['confirm', L10n::t('Confirm:'), '', L10n::t('Leave password fields blank unless changing')],
1206                 '$password3'=> ['opassword', L10n::t('Current Password:'), '', L10n::t('Your current password to confirm the changes')],
1207                 '$password4'=> ['mpassword', L10n::t('Password:'), '', L10n::t('Your current password to confirm the changes')],
1208                 '$oid_enable' => (!Config::get('system', 'no_openid')),
1209                 '$openid'       => $openid_field,
1210
1211                 '$h_basic'      => L10n::t('Basic Settings'),
1212                 '$username' => ['username',  L10n::t('Full Name:'), $username, ''],
1213                 '$email'        => ['email', L10n::t('Email Address:'), $email, '', '', '', 'email'],
1214                 '$timezone' => ['timezone_select' , L10n::t('Your Timezone:'), Temporal::getTimezoneSelect($timezone), ''],
1215                 '$language' => ['language', L10n::t('Your Language:'), $language, L10n::t('Set the language we use to show you friendica interface and to send you emails'), $lang_choices],
1216                 '$defloc'       => ['defloc', L10n::t('Default Post Location:'), $defloc, ''],
1217                 '$allowloc' => ['allow_location', L10n::t('Use Browser Location:'), ($a->user['allow_location'] == 1), ''],
1218
1219
1220                 '$h_prv'        => L10n::t('Security and Privacy Settings'),
1221
1222                 '$maxreq'       => ['maxreq', L10n::t('Maximum Friend Requests/Day:'), $maxreq , L10n::t("\x28to prevent spam abuse\x29")],
1223                 '$permissions' => L10n::t('Default Post Permissions'),
1224                 '$permdesc' => L10n::t("\x28click to open/close\x29"),
1225                 '$visibility' => $profile['net-publish'],
1226                 '$aclselect' => populate_acl($a->user),
1227                 '$suggestme' => $suggestme,
1228                 '$blockwall'=> $blockwall, // array('blockwall', L10n::t('Allow friends to post to your profile page:'), !$blockwall, ''),
1229                 '$blocktags'=> $blocktags, // array('blocktags', L10n::t('Allow friends to tag your posts:'), !$blocktags, ''),
1230
1231                 // ACL permissions box
1232                 '$group_perms' => L10n::t('Show to Groups'),
1233                 '$contact_perms' => L10n::t('Show to Contacts'),
1234                 '$private' => L10n::t('Default Private Post'),
1235                 '$public' => L10n::t('Default Public Post'),
1236                 '$is_private' => $private_post,
1237                 '$return_path' => $query_str,
1238                 '$public_link' => $public_post_link,
1239                 '$settings_perms' => L10n::t('Default Permissions for New Posts'),
1240
1241                 '$group_select' => $group_select,
1242
1243
1244                 '$expire'       => $expire_arr,
1245
1246                 '$profile_in_dir' => $profile_in_dir,
1247                 '$profile_in_net_dir' => $profile_in_net_dir,
1248                 '$hide_friends' => $hide_friends,
1249                 '$hide_wall' => $hide_wall,
1250                 '$unkmail' => $unkmail,
1251                 '$cntunkmail'   => ['cntunkmail', L10n::t('Maximum private messages per day from unknown people:'), $cntunkmail , L10n::t("\x28to prevent spam abuse\x29")],
1252
1253
1254                 '$h_not'        => L10n::t('Notification Settings'),
1255                 '$activity_options' => L10n::t('By default post a status message when:'),
1256                 '$post_newfriend' => ['post_newfriend',  L10n::t('accepting a friend request'), $post_newfriend, ''],
1257                 '$post_joingroup' => ['post_joingroup',  L10n::t('joining a forum/community'), $post_joingroup, ''],
1258                 '$post_profilechange' => ['post_profilechange',  L10n::t('making an <em>interesting</em> profile change'), $post_profilechange, ''],
1259                 '$lbl_not'      => L10n::t('Send a notification email when:'),
1260                 '$notify1'      => ['notify1', L10n::t('You receive an introduction'), ($notify & NOTIFY_INTRO), NOTIFY_INTRO, ''],
1261                 '$notify2'      => ['notify2', L10n::t('Your introductions are confirmed'), ($notify & NOTIFY_CONFIRM), NOTIFY_CONFIRM, ''],
1262                 '$notify3'      => ['notify3', L10n::t('Someone writes on your profile wall'), ($notify & NOTIFY_WALL), NOTIFY_WALL, ''],
1263                 '$notify4'      => ['notify4', L10n::t('Someone writes a followup comment'), ($notify & NOTIFY_COMMENT), NOTIFY_COMMENT, ''],
1264                 '$notify5'      => ['notify5', L10n::t('You receive a private message'), ($notify & NOTIFY_MAIL), NOTIFY_MAIL, ''],
1265                 '$notify6'  => ['notify6', L10n::t('You receive a friend suggestion'), ($notify & NOTIFY_SUGGEST), NOTIFY_SUGGEST, ''],
1266                 '$notify7'  => ['notify7', L10n::t('You are tagged in a post'), ($notify & NOTIFY_TAGSELF), NOTIFY_TAGSELF, ''],
1267                 '$notify8'  => ['notify8', L10n::t('You are poked/prodded/etc. in a post'), ($notify & NOTIFY_POKE), NOTIFY_POKE, ''],
1268
1269                 '$desktop_notifications' => ['desktop_notifications', L10n::t('Activate desktop notifications') , false, L10n::t('Show desktop popup on new notifications')],
1270
1271                 '$email_textonly' => ['email_textonly', L10n::t('Text-only notification emails'),
1272                                                                         PConfig::get(local_user(), 'system', 'email_textonly'),
1273                                                                         L10n::t('Send text only notification emails, without the html part')],
1274
1275                 '$detailed_notif' => ['detailed_notif', L10n::t('Show detailled notifications'),
1276                                                                         PConfig::get(local_user(), 'system', 'detailed_notif'),
1277                                                                         L10n::t('Per default the notificiation are condensed to a single notification per item. When enabled, every notification is displayed.')],
1278
1279                 '$h_advn' => L10n::t('Advanced Account/Page Type Settings'),
1280                 '$h_descadvn' => L10n::t('Change the behaviour of this account for special situations'),
1281                 '$pagetype' => $pagetype,
1282
1283                 '$relocate' => L10n::t('Relocate'),
1284                 '$relocate_text' => L10n::t("If you have moved this profile from another server, and some of your contacts don't receive your updates, try pushing this button."),
1285                 '$relocate_button' => L10n::t("Resend relocate message to contacts"),
1286
1287         ]);
1288
1289         Addon::callHooks('settings_form', $o);
1290
1291         $o .= '</form>' . "\r\n";
1292
1293         return $o;
1294
1295 }