1 # Pleroma: A lightweight social networking server
2 # Copyright © 2017-2019 Pleroma Authors <https://pleroma.social/>
3 # SPDX-License-Identifier: AGPL-3.0-only
5 defmodule Pleroma.Web.AdminAPI.AdminAPIController do
8 use Pleroma.Web, :controller
10 alias Pleroma.Web.ActivityPub.Relay
11 alias Pleroma.Web.MastodonAPI.Admin.AccountView
13 import Pleroma.Web.ControllerHelper, only: [json_response: 3]
17 action_fallback(:errors)
19 def user_delete(conn, %{"nickname" => nickname}) do
20 User.get_by_nickname(nickname)
29 %{"nickname" => nickname, "email" => email, "password" => password}
36 password_confirmation: password,
40 changeset = User.register_changeset(%User{}, user_data, confirmed: true)
41 {:ok, user} = User.register(changeset)
44 |> json(user.nickname)
47 def user_toggle_activation(conn, %{"nickname" => nickname}) do
48 user = User.get_by_nickname(nickname)
50 {:ok, updated_user} = User.deactivate(user, !user.info.deactivated)
53 |> json(AccountView.render("show.json", %{user: updated_user}))
56 def tag_users(conn, %{"nicknames" => nicknames, "tags" => tags}) do
57 with {:ok, _} <- User.tag(nicknames, tags),
58 do: json_response(conn, :no_content, "")
61 def untag_users(conn, %{"nicknames" => nicknames, "tags" => tags}) do
62 with {:ok, _} <- User.untag(nicknames, tags),
63 do: json_response(conn, :no_content, "")
66 def list_users(%{assigns: %{user: admin}} = conn, %{"page" => page_string}) do
67 with {page, _} <- Integer.parse(page_string),
68 users <- User.all_except_one(admin, page, @users_page_size),
69 count <- User.count_all_except_one(admin),
73 AccountView.render("index.json", %{
76 page_size: @users_page_size
81 def search_users(%{assigns: %{user: admin}} = conn, %{"query" => term} = params) do
84 query: User.maybe_local_user_query(params["local"] == "true"),
87 limit: @users_page_size
92 AccountView.render("index.json", %{
95 page_size: @users_page_size
100 def right_add(conn, %{"permission_group" => permission_group, "nickname" => nickname})
101 when permission_group in ["moderator", "admin"] do
102 user = User.get_by_nickname(nickname)
106 |> Map.put("is_" <> permission_group, true)
108 info_cng = User.Info.admin_api_update(user.info, info)
112 |> Ecto.Changeset.change()
113 |> Ecto.Changeset.put_embed(:info, info_cng)
115 {:ok, _user} = User.update_and_set_cache(cng)
120 def right_add(conn, _) do
123 |> json(%{error: "No such permission_group"})
126 def right_get(conn, %{"nickname" => nickname}) do
127 user = User.get_by_nickname(nickname)
131 is_moderator: user.info.is_moderator,
132 is_admin: user.info.is_admin
137 %{assigns: %{user: %User{:nickname => admin_nickname}}} = conn,
139 "permission_group" => permission_group,
140 "nickname" => nickname
143 when permission_group in ["moderator", "admin"] do
144 if admin_nickname == nickname do
147 |> json(%{error: "You can't revoke your own admin status."})
149 user = User.get_by_nickname(nickname)
153 |> Map.put("is_" <> permission_group, false)
155 info_cng = User.Info.admin_api_update(user.info, info)
158 Ecto.Changeset.change(user)
159 |> Ecto.Changeset.put_embed(:info, info_cng)
161 {:ok, _user} = User.update_and_set_cache(cng)
167 def right_delete(conn, _) do
170 |> json(%{error: "No such permission_group"})
173 def set_activation_status(conn, %{"nickname" => nickname, "status" => status}) do
174 with {:ok, status} <- Ecto.Type.cast(:boolean, status),
175 %User{} = user <- User.get_by_nickname(nickname),
176 {:ok, _} <- User.deactivate(user, !status),
177 do: json_response(conn, :no_content, "")
180 def relay_follow(conn, %{"relay_url" => target}) do
181 with {:ok, _message} <- Relay.follow(target) do
191 def relay_unfollow(conn, %{"relay_url" => target}) do
192 with {:ok, _message} <- Relay.unfollow(target) do
202 @doc "Sends registration invite via email"
203 def email_invite(%{assigns: %{user: user}} = conn, %{"email" => email} = params) do
205 Pleroma.Config.get([:instance, :invites_enabled]) &&
206 !Pleroma.Config.get([:instance, :registrations_open]),
207 {:ok, invite_token} <- Pleroma.UserInviteToken.create_token(),
209 Pleroma.UserEmail.user_invitation_email(user, invite_token, email, params["name"]),
210 {:ok, _} <- Pleroma.Mailer.deliver(email) do
211 json_response(conn, :no_content, "")
215 @doc "Get a account registeration invite token (base64 string)"
216 def get_invite_token(conn, _params) do
217 {:ok, token} = Pleroma.UserInviteToken.create_token()
223 @doc "Get a password reset token (base64 string) for given nickname"
224 def get_password_reset(conn, %{"nickname" => nickname}) do
225 (%User{local: true} = user) = User.get_by_nickname(nickname)
226 {:ok, token} = Pleroma.PasswordResetToken.create_token(user)
232 def errors(conn, {:param_cast, _}) do
235 |> json("Invalid parameters")
238 def errors(conn, _) do
241 |> json("Something went wrong")