48eed3f135e25654b36d7b2edfeafc631322f0cf
[akkoma] / test / web / activity_pub / activity_pub_test.exs
1 # Pleroma: A lightweight social networking server
2 # Copyright © 2017-2018 Pleroma Authors <https://pleroma.social/>
3 # SPDX-License-Identifier: AGPL-3.0-only
4
5 defmodule Pleroma.Web.ActivityPub.ActivityPubTest do
6 use Pleroma.DataCase
7 alias Pleroma.Web.ActivityPub.ActivityPub
8 alias Pleroma.Web.ActivityPub.Utils
9 alias Pleroma.Web.CommonAPI
10 alias Pleroma.{Activity, Object, User}
11 alias Pleroma.Builders.ActivityBuilder
12
13 import Pleroma.Factory
14 import Tesla.Mock
15
16 setup do
17 mock(fn env -> apply(HttpRequestMock, :request, [env]) end)
18 :ok
19 end
20
21 describe "fetching restricted by visibility" do
22 test "it restricts by the appropriate visibility" do
23 user = insert(:user)
24
25 {:ok, public_activity} = CommonAPI.post(user, %{"status" => ".", "visibility" => "public"})
26
27 {:ok, direct_activity} = CommonAPI.post(user, %{"status" => ".", "visibility" => "direct"})
28
29 {:ok, unlisted_activity} =
30 CommonAPI.post(user, %{"status" => ".", "visibility" => "unlisted"})
31
32 {:ok, private_activity} =
33 CommonAPI.post(user, %{"status" => ".", "visibility" => "private"})
34
35 activities =
36 ActivityPub.fetch_activities([], %{:visibility => "direct", "actor_id" => user.ap_id})
37
38 assert activities == [direct_activity]
39
40 activities =
41 ActivityPub.fetch_activities([], %{:visibility => "unlisted", "actor_id" => user.ap_id})
42
43 assert activities == [unlisted_activity]
44
45 activities =
46 ActivityPub.fetch_activities([], %{:visibility => "private", "actor_id" => user.ap_id})
47
48 assert activities == [private_activity]
49
50 activities =
51 ActivityPub.fetch_activities([], %{:visibility => "public", "actor_id" => user.ap_id})
52
53 assert activities == [public_activity]
54 end
55 end
56
57 describe "building a user from his ap id" do
58 test "it returns a user" do
59 user_id = "http://mastodon.example.org/users/admin"
60 {:ok, user} = ActivityPub.make_user_from_ap_id(user_id)
61 assert user.ap_id == user_id
62 assert user.nickname == "admin@mastodon.example.org"
63 assert user.info.source_data
64 assert user.info.ap_enabled
65 assert user.follower_address == "http://mastodon.example.org/users/admin/followers"
66 end
67
68 test "it fetches the appropriate tag-restricted posts" do
69 user = insert(:user)
70
71 {:ok, status_one} = CommonAPI.post(user, %{"status" => ". #test"})
72 {:ok, status_two} = CommonAPI.post(user, %{"status" => ". #essais"})
73 {:ok, status_three} = CommonAPI.post(user, %{"status" => ". #test #reject"})
74
75 fetch_one = ActivityPub.fetch_activities([], %{"tag" => "test"})
76 fetch_two = ActivityPub.fetch_activities([], %{"tag" => ["test", "essais"]})
77
78 fetch_three =
79 ActivityPub.fetch_activities([], %{
80 "tag" => ["test", "essais"],
81 "tag_reject" => ["reject"]
82 })
83
84 fetch_four =
85 ActivityPub.fetch_activities([], %{
86 "tag" => ["test"],
87 "tag_all" => ["test", "reject"]
88 })
89
90 assert fetch_one == [status_one, status_three]
91 assert fetch_two == [status_one, status_two, status_three]
92 assert fetch_three == [status_one, status_two]
93 assert fetch_four == [status_three]
94 end
95 end
96
97 describe "insertion" do
98 test "drops activities beyond a certain limit" do
99 limit = Pleroma.Config.get([:instance, :remote_limit])
100
101 random_text =
102 :crypto.strong_rand_bytes(limit + 1)
103 |> Base.encode64()
104 |> binary_part(0, limit + 1)
105
106 data = %{
107 "ok" => true,
108 "object" => %{
109 "content" => random_text
110 }
111 }
112
113 assert {:error, {:remote_limit_error, _}} = ActivityPub.insert(data)
114 end
115
116 test "returns the activity if one with the same id is already in" do
117 activity = insert(:note_activity)
118 {:ok, new_activity} = ActivityPub.insert(activity.data)
119
120 assert activity == new_activity
121 end
122
123 test "inserts a given map into the activity database, giving it an id if it has none." do
124 data = %{
125 "ok" => true
126 }
127
128 {:ok, %Activity{} = activity} = ActivityPub.insert(data)
129 assert activity.data["ok"] == data["ok"]
130 assert is_binary(activity.data["id"])
131
132 given_id = "bla"
133
134 data = %{
135 "ok" => true,
136 "id" => given_id,
137 "context" => "blabla"
138 }
139
140 {:ok, %Activity{} = activity} = ActivityPub.insert(data)
141 assert activity.data["ok"] == data["ok"]
142 assert activity.data["id"] == given_id
143 assert activity.data["context"] == "blabla"
144 assert activity.data["context_id"]
145 end
146
147 test "adds a context when none is there" do
148 data = %{
149 "id" => "some_id",
150 "object" => %{
151 "id" => "object_id"
152 }
153 }
154
155 {:ok, %Activity{} = activity} = ActivityPub.insert(data)
156
157 assert is_binary(activity.data["context"])
158 assert is_binary(activity.data["object"]["context"])
159 assert activity.data["context_id"]
160 assert activity.data["object"]["context_id"]
161 end
162
163 test "adds an id to a given object if it lacks one and is a note and inserts it to the object database" do
164 data = %{
165 "object" => %{
166 "type" => "Note",
167 "ok" => true
168 }
169 }
170
171 {:ok, %Activity{} = activity} = ActivityPub.insert(data)
172 assert is_binary(activity.data["object"]["id"])
173 assert %Object{} = Object.get_by_ap_id(activity.data["object"]["id"])
174 end
175 end
176
177 describe "create activities" do
178 test "removes doubled 'to' recipients" do
179 user = insert(:user)
180
181 {:ok, activity} =
182 ActivityPub.create(%{
183 to: ["user1", "user1", "user2"],
184 actor: user,
185 context: "",
186 object: %{}
187 })
188
189 assert activity.data["to"] == ["user1", "user2"]
190 assert activity.actor == user.ap_id
191 assert activity.recipients == ["user1", "user2", user.ap_id]
192 end
193 end
194
195 describe "fetch activities for recipients" do
196 test "retrieve the activities for certain recipients" do
197 {:ok, activity_one} = ActivityBuilder.insert(%{"to" => ["someone"]})
198 {:ok, activity_two} = ActivityBuilder.insert(%{"to" => ["someone_else"]})
199 {:ok, _activity_three} = ActivityBuilder.insert(%{"to" => ["noone"]})
200
201 activities = ActivityPub.fetch_activities(["someone", "someone_else"])
202 assert length(activities) == 2
203 assert activities == [activity_one, activity_two]
204 end
205 end
206
207 describe "fetch activities in context" do
208 test "retrieves activities that have a given context" do
209 {:ok, activity} = ActivityBuilder.insert(%{"type" => "Create", "context" => "2hu"})
210 {:ok, activity_two} = ActivityBuilder.insert(%{"type" => "Create", "context" => "2hu"})
211 {:ok, _activity_three} = ActivityBuilder.insert(%{"type" => "Create", "context" => "3hu"})
212 {:ok, _activity_four} = ActivityBuilder.insert(%{"type" => "Announce", "context" => "2hu"})
213 activity_five = insert(:note_activity)
214 user = insert(:user)
215
216 {:ok, user} = User.block(user, %{ap_id: activity_five.data["actor"]})
217
218 activities = ActivityPub.fetch_activities_for_context("2hu", %{"blocking_user" => user})
219 assert activities == [activity_two, activity]
220 end
221 end
222
223 test "doesn't return blocked activities" do
224 activity_one = insert(:note_activity)
225 activity_two = insert(:note_activity)
226 activity_three = insert(:note_activity)
227 user = insert(:user)
228 booster = insert(:user)
229 {:ok, user} = User.block(user, %{ap_id: activity_one.data["actor"]})
230
231 activities = ActivityPub.fetch_activities([], %{"blocking_user" => user})
232
233 assert Enum.member?(activities, activity_two)
234 assert Enum.member?(activities, activity_three)
235 refute Enum.member?(activities, activity_one)
236
237 {:ok, user} = User.unblock(user, %{ap_id: activity_one.data["actor"]})
238
239 activities = ActivityPub.fetch_activities([], %{"blocking_user" => user})
240
241 assert Enum.member?(activities, activity_two)
242 assert Enum.member?(activities, activity_three)
243 assert Enum.member?(activities, activity_one)
244
245 {:ok, user} = User.block(user, %{ap_id: activity_three.data["actor"]})
246 {:ok, _announce, %{data: %{"id" => id}}} = CommonAPI.repeat(activity_three.id, booster)
247 %Activity{} = boost_activity = Activity.get_create_by_object_ap_id(id)
248 activity_three = Repo.get(Activity, activity_three.id)
249
250 activities = ActivityPub.fetch_activities([], %{"blocking_user" => user})
251
252 assert Enum.member?(activities, activity_two)
253 refute Enum.member?(activities, activity_three)
254 refute Enum.member?(activities, boost_activity)
255 assert Enum.member?(activities, activity_one)
256
257 activities = ActivityPub.fetch_activities([], %{"blocking_user" => nil})
258
259 assert Enum.member?(activities, activity_two)
260 assert Enum.member?(activities, activity_three)
261 assert Enum.member?(activities, boost_activity)
262 assert Enum.member?(activities, activity_one)
263 end
264
265 test "excludes reblogs on request" do
266 user = insert(:user)
267 {:ok, expected_activity} = ActivityBuilder.insert(%{"type" => "Create"}, %{:user => user})
268 {:ok, _} = ActivityBuilder.insert(%{"type" => "Announce"}, %{:user => user})
269
270 [activity] = ActivityPub.fetch_user_activities(user, nil, %{"exclude_reblogs" => "true"})
271
272 assert activity == expected_activity
273 end
274
275 describe "public fetch activities" do
276 test "doesn't retrieve unlisted activities" do
277 user = insert(:user)
278
279 {:ok, _unlisted_activity} =
280 CommonAPI.post(user, %{"status" => "yeah", "visibility" => "unlisted"})
281
282 {:ok, listed_activity} = CommonAPI.post(user, %{"status" => "yeah"})
283
284 [activity] = ActivityPub.fetch_public_activities()
285
286 assert activity == listed_activity
287 end
288
289 test "retrieves public activities" do
290 _activities = ActivityPub.fetch_public_activities()
291
292 %{public: public} = ActivityBuilder.public_and_non_public()
293
294 activities = ActivityPub.fetch_public_activities()
295 assert length(activities) == 1
296 assert Enum.at(activities, 0) == public
297 end
298
299 test "retrieves a maximum of 20 activities" do
300 activities = ActivityBuilder.insert_list(30)
301 last_expected = List.last(activities)
302
303 activities = ActivityPub.fetch_public_activities()
304 last = List.last(activities)
305
306 assert length(activities) == 20
307 assert last == last_expected
308 end
309
310 test "retrieves ids starting from a since_id" do
311 activities = ActivityBuilder.insert_list(30)
312 later_activities = ActivityBuilder.insert_list(10)
313 since_id = List.last(activities).id
314 last_expected = List.last(later_activities)
315
316 activities = ActivityPub.fetch_public_activities(%{"since_id" => since_id})
317 last = List.last(activities)
318
319 assert length(activities) == 10
320 assert last == last_expected
321 end
322
323 test "retrieves ids up to max_id" do
324 _first_activities = ActivityBuilder.insert_list(10)
325 activities = ActivityBuilder.insert_list(20)
326 later_activities = ActivityBuilder.insert_list(10)
327 max_id = List.first(later_activities).id
328 last_expected = List.last(activities)
329
330 activities = ActivityPub.fetch_public_activities(%{"max_id" => max_id})
331 last = List.last(activities)
332
333 assert length(activities) == 20
334 assert last == last_expected
335 end
336 end
337
338 describe "like an object" do
339 test "adds a like activity to the db" do
340 note_activity = insert(:note_activity)
341 object = Object.get_by_ap_id(note_activity.data["object"]["id"])
342 user = insert(:user)
343 user_two = insert(:user)
344
345 {:ok, like_activity, object} = ActivityPub.like(user, object)
346
347 assert like_activity.data["actor"] == user.ap_id
348 assert like_activity.data["type"] == "Like"
349 assert like_activity.data["object"] == object.data["id"]
350 assert like_activity.data["to"] == [User.ap_followers(user), note_activity.data["actor"]]
351 assert like_activity.data["context"] == object.data["context"]
352 assert object.data["like_count"] == 1
353 assert object.data["likes"] == [user.ap_id]
354
355 # Just return the original activity if the user already liked it.
356 {:ok, same_like_activity, object} = ActivityPub.like(user, object)
357
358 assert like_activity == same_like_activity
359 assert object.data["likes"] == [user.ap_id]
360
361 [note_activity] = Activity.get_all_create_by_object_ap_id(object.data["id"])
362 assert note_activity.data["object"]["like_count"] == 1
363
364 {:ok, _like_activity, object} = ActivityPub.like(user_two, object)
365 assert object.data["like_count"] == 2
366 end
367 end
368
369 describe "unliking" do
370 test "unliking a previously liked object" do
371 note_activity = insert(:note_activity)
372 object = Object.get_by_ap_id(note_activity.data["object"]["id"])
373 user = insert(:user)
374
375 # Unliking something that hasn't been liked does nothing
376 {:ok, object} = ActivityPub.unlike(user, object)
377 assert object.data["like_count"] == 0
378
379 {:ok, like_activity, object} = ActivityPub.like(user, object)
380 assert object.data["like_count"] == 1
381
382 {:ok, _, _, object} = ActivityPub.unlike(user, object)
383 assert object.data["like_count"] == 0
384
385 assert Repo.get(Activity, like_activity.id) == nil
386 end
387 end
388
389 describe "announcing an object" do
390 test "adds an announce activity to the db" do
391 note_activity = insert(:note_activity)
392 object = Object.get_by_ap_id(note_activity.data["object"]["id"])
393 user = insert(:user)
394
395 {:ok, announce_activity, object} = ActivityPub.announce(user, object)
396 assert object.data["announcement_count"] == 1
397 assert object.data["announcements"] == [user.ap_id]
398
399 assert announce_activity.data["to"] == [
400 User.ap_followers(user),
401 note_activity.data["actor"]
402 ]
403
404 assert announce_activity.data["object"] == object.data["id"]
405 assert announce_activity.data["actor"] == user.ap_id
406 assert announce_activity.data["context"] == object.data["context"]
407 end
408 end
409
410 describe "unannouncing an object" do
411 test "unannouncing a previously announced object" do
412 note_activity = insert(:note_activity)
413 object = Object.get_by_ap_id(note_activity.data["object"]["id"])
414 user = insert(:user)
415
416 # Unannouncing an object that is not announced does nothing
417 # {:ok, object} = ActivityPub.unannounce(user, object)
418 # assert object.data["announcement_count"] == 0
419
420 {:ok, announce_activity, object} = ActivityPub.announce(user, object)
421 assert object.data["announcement_count"] == 1
422
423 {:ok, unannounce_activity, object} = ActivityPub.unannounce(user, object)
424 assert object.data["announcement_count"] == 0
425
426 assert unannounce_activity.data["to"] == [
427 User.ap_followers(user),
428 announce_activity.data["actor"]
429 ]
430
431 assert unannounce_activity.data["type"] == "Undo"
432 assert unannounce_activity.data["object"] == announce_activity.data
433 assert unannounce_activity.data["actor"] == user.ap_id
434 assert unannounce_activity.data["context"] == announce_activity.data["context"]
435
436 assert Repo.get(Activity, announce_activity.id) == nil
437 end
438 end
439
440 describe "uploading files" do
441 test "copies the file to the configured folder" do
442 file = %Plug.Upload{
443 content_type: "image/jpg",
444 path: Path.absname("test/fixtures/image.jpg"),
445 filename: "an_image.jpg"
446 }
447
448 {:ok, %Object{} = object} = ActivityPub.upload(file)
449 assert object.data["name"] == "an_image.jpg"
450 end
451
452 test "works with base64 encoded images" do
453 file = %{
454 "img" => data_uri()
455 }
456
457 {:ok, %Object{}} = ActivityPub.upload(file)
458 end
459 end
460
461 describe "fetch the latest Follow" do
462 test "fetches the latest Follow activity" do
463 %Activity{data: %{"type" => "Follow"}} = activity = insert(:follow_activity)
464 follower = Repo.get_by(User, ap_id: activity.data["actor"])
465 followed = Repo.get_by(User, ap_id: activity.data["object"])
466
467 assert activity == Utils.fetch_latest_follow(follower, followed)
468 end
469 end
470
471 describe "fetching an object" do
472 test "it fetches an object" do
473 {:ok, object} =
474 ActivityPub.fetch_object_from_id("http://mastodon.example.org/@admin/99541947525187367")
475
476 assert activity = Activity.get_create_by_object_ap_id(object.data["id"])
477 assert activity.data["id"]
478
479 {:ok, object_again} =
480 ActivityPub.fetch_object_from_id("http://mastodon.example.org/@admin/99541947525187367")
481
482 assert [attachment] = object.data["attachment"]
483 assert is_list(attachment["url"])
484
485 assert object == object_again
486 end
487
488 test "it works with objects only available via Ostatus" do
489 {:ok, object} = ActivityPub.fetch_object_from_id("https://shitposter.club/notice/2827873")
490 assert activity = Activity.get_create_by_object_ap_id(object.data["id"])
491 assert activity.data["id"]
492
493 {:ok, object_again} =
494 ActivityPub.fetch_object_from_id("https://shitposter.club/notice/2827873")
495
496 assert object == object_again
497 end
498
499 test "it correctly stitches up conversations between ostatus and ap" do
500 last = "https://mstdn.io/users/mayuutann/statuses/99568293732299394"
501 {:ok, object} = ActivityPub.fetch_object_from_id(last)
502
503 object = Object.get_by_ap_id(object.data["inReplyTo"])
504 assert object
505 end
506 end
507
508 describe "following / unfollowing" do
509 test "creates a follow activity" do
510 follower = insert(:user)
511 followed = insert(:user)
512
513 {:ok, activity} = ActivityPub.follow(follower, followed)
514 assert activity.data["type"] == "Follow"
515 assert activity.data["actor"] == follower.ap_id
516 assert activity.data["object"] == followed.ap_id
517 end
518
519 test "creates an undo activity for the last follow" do
520 follower = insert(:user)
521 followed = insert(:user)
522
523 {:ok, follow_activity} = ActivityPub.follow(follower, followed)
524 {:ok, activity} = ActivityPub.unfollow(follower, followed)
525
526 assert activity.data["type"] == "Undo"
527 assert activity.data["actor"] == follower.ap_id
528
529 assert is_map(activity.data["object"])
530 assert activity.data["object"]["type"] == "Follow"
531 assert activity.data["object"]["object"] == followed.ap_id
532 assert activity.data["object"]["id"] == follow_activity.data["id"]
533 end
534 end
535
536 describe "blocking / unblocking" do
537 test "creates a block activity" do
538 blocker = insert(:user)
539 blocked = insert(:user)
540
541 {:ok, activity} = ActivityPub.block(blocker, blocked)
542
543 assert activity.data["type"] == "Block"
544 assert activity.data["actor"] == blocker.ap_id
545 assert activity.data["object"] == blocked.ap_id
546 end
547
548 test "creates an undo activity for the last block" do
549 blocker = insert(:user)
550 blocked = insert(:user)
551
552 {:ok, block_activity} = ActivityPub.block(blocker, blocked)
553 {:ok, activity} = ActivityPub.unblock(blocker, blocked)
554
555 assert activity.data["type"] == "Undo"
556 assert activity.data["actor"] == blocker.ap_id
557
558 assert is_map(activity.data["object"])
559 assert activity.data["object"]["type"] == "Block"
560 assert activity.data["object"]["object"] == blocked.ap_id
561 assert activity.data["object"]["id"] == block_activity.data["id"]
562 end
563 end
564
565 describe "deletion" do
566 test "it creates a delete activity and deletes the original object" do
567 note = insert(:note_activity)
568 object = Object.get_by_ap_id(note.data["object"]["id"])
569 {:ok, delete} = ActivityPub.delete(object)
570
571 assert delete.data["type"] == "Delete"
572 assert delete.data["actor"] == note.data["actor"]
573 assert delete.data["object"] == note.data["object"]["id"]
574
575 assert Repo.get(Activity, delete.id) != nil
576
577 assert Repo.get(Object, object.id).data["type"] == "Tombstone"
578 end
579 end
580
581 describe "timeline post-processing" do
582 test "it filters broken threads" do
583 user1 = insert(:user)
584 user2 = insert(:user)
585 user3 = insert(:user)
586
587 {:ok, user1} = User.follow(user1, user3)
588 assert User.following?(user1, user3)
589
590 {:ok, user2} = User.follow(user2, user3)
591 assert User.following?(user2, user3)
592
593 {:ok, user3} = User.follow(user3, user2)
594 assert User.following?(user3, user2)
595
596 {:ok, public_activity} = CommonAPI.post(user3, %{"status" => "hi 1"})
597
598 {:ok, private_activity_1} =
599 CommonAPI.post(user3, %{"status" => "hi 2", "visibility" => "private"})
600
601 {:ok, private_activity_2} =
602 CommonAPI.post(user2, %{
603 "status" => "hi 3",
604 "visibility" => "private",
605 "in_reply_to_status_id" => private_activity_1.id
606 })
607
608 {:ok, private_activity_3} =
609 CommonAPI.post(user3, %{
610 "status" => "hi 4",
611 "visibility" => "private",
612 "in_reply_to_status_id" => private_activity_2.id
613 })
614
615 assert user1.following == [user3.ap_id <> "/followers", user1.ap_id]
616
617 activities = ActivityPub.fetch_activities([user1.ap_id | user1.following])
618
619 assert [public_activity, private_activity_1, private_activity_3] == activities
620 assert length(activities) == 3
621
622 activities = ActivityPub.contain_timeline(activities, user1)
623
624 assert [public_activity, private_activity_1] == activities
625 assert length(activities) == 2
626 end
627 end
628
629 test "it can fetch plume articles" do
630 {:ok, object} =
631 ActivityPub.fetch_object_from_id(
632 "https://baptiste.gelez.xyz/~/PlumeDevelopment/this-month-in-plume-june-2018/"
633 )
634
635 assert object
636 end
637
638 describe "update" do
639 test "it creates an update activity with the new user data" do
640 user = insert(:user)
641 {:ok, user} = Pleroma.Web.WebFinger.ensure_keys_present(user)
642 user_data = Pleroma.Web.ActivityPub.UserView.render("user.json", %{user: user})
643
644 {:ok, update} =
645 ActivityPub.update(%{
646 actor: user_data["id"],
647 to: [user.follower_address],
648 cc: [],
649 object: user_data
650 })
651
652 assert update.data["actor"] == user.ap_id
653 assert update.data["to"] == [user.follower_address]
654 assert update.data["object"]["id"] == user_data["id"]
655 assert update.data["object"]["type"] == user_data["type"]
656 end
657 end
658
659 test "it can fetch peertube videos" do
660 {:ok, object} =
661 ActivityPub.fetch_object_from_id(
662 "https://peertube.moe/videos/watch/df5f464b-be8d-46fb-ad81-2d4c2d1630e3"
663 )
664
665 assert object
666 end
667
668 test "returned pinned statuses" do
669 Pleroma.Config.put([:instance, :max_pinned_statuses], 3)
670 user = insert(:user)
671
672 {:ok, activity_one} = CommonAPI.post(user, %{"status" => "HI!!!"})
673 {:ok, activity_two} = CommonAPI.post(user, %{"status" => "HI!!!"})
674 {:ok, activity_three} = CommonAPI.post(user, %{"status" => "HI!!!"})
675
676 CommonAPI.pin(activity_one.id, user)
677 user = refresh_record(user)
678
679 CommonAPI.pin(activity_two.id, user)
680 user = refresh_record(user)
681
682 CommonAPI.pin(activity_three.id, user)
683 user = refresh_record(user)
684
685 activities = ActivityPub.fetch_user_activities(user, nil, %{"pinned" => "true"})
686
687 assert 3 = length(activities)
688 end
689
690 def data_uri do
691 File.read!("test/fixtures/avatar_data_uri")
692 end
693 end