object_validators: Mark validate_data as private
[akkoma] / lib / pleroma / web / activity_pub / object_validators / create_generic_validator.ex
1 # Pleroma: A lightweight social networking server
2 # Copyright © 2017-2021 Pleroma Authors <https://pleroma.social/>
3 # SPDX-License-Identifier: AGPL-3.0-only
4
5 # Code based on CreateChatMessageValidator
6 # NOTES
7 # - doesn't embed, will only get the object id
8 defmodule Pleroma.Web.ActivityPub.ObjectValidators.CreateGenericValidator do
9 use Ecto.Schema
10
11 alias Pleroma.EctoType.ActivityPub.ObjectValidators
12 alias Pleroma.Object
13 alias Pleroma.Web.ActivityPub.ObjectValidators.CommonFixes
14 alias Pleroma.Web.ActivityPub.ObjectValidators.CommonValidations
15
16 import Ecto.Changeset
17
18 @primary_key false
19
20 embedded_schema do
21 field(:id, ObjectValidators.ObjectID, primary_key: true)
22 field(:actor, ObjectValidators.ObjectID)
23 field(:type, :string)
24 field(:to, ObjectValidators.Recipients, default: [])
25 field(:cc, ObjectValidators.Recipients, default: [])
26 field(:object, ObjectValidators.ObjectID)
27 field(:expires_at, ObjectValidators.DateTime)
28
29 # Should be moved to object, done for CommonAPI.Utils.make_context
30 field(:context, :string)
31 end
32
33 def cast_data(data, meta \\ []) do
34 data = fix(data, meta)
35
36 %__MODULE__{}
37 |> changeset(data)
38 end
39
40 def cast_and_apply(data) do
41 data
42 |> cast_data
43 |> apply_action(:insert)
44 end
45
46 def cast_and_validate(data, meta \\ []) do
47 data
48 |> cast_data(meta)
49 |> validate_data(meta)
50 end
51
52 def changeset(struct, data) do
53 struct
54 |> cast(data, __schema__(:fields))
55 end
56
57 defp fix_context(data, meta) do
58 if object = meta[:object_data] do
59 Map.put_new(data, "context", object["context"])
60 else
61 data
62 end
63 end
64
65 defp fix_addressing(data, meta) do
66 if object = meta[:object_data] do
67 data
68 |> Map.put_new("to", object["to"] || [])
69 |> Map.put_new("cc", object["cc"] || [])
70 else
71 data
72 end
73 end
74
75 defp fix(data, meta) do
76 data
77 |> fix_context(meta)
78 |> fix_addressing(meta)
79 |> CommonFixes.fix_actor()
80 end
81
82 defp validate_data(cng, meta) do
83 cng
84 |> validate_required([:actor, :type, :object])
85 |> validate_inclusion(:type, ["Create"])
86 |> CommonValidations.validate_actor_presence()
87 |> CommonValidations.validate_any_presence([:to, :cc])
88 |> validate_actors_match(meta)
89 |> validate_context_match(meta)
90 |> validate_object_nonexistence()
91 |> validate_object_containment()
92 end
93
94 def validate_object_containment(cng) do
95 actor = get_field(cng, :actor)
96
97 cng
98 |> validate_change(:object, fn :object, object_id ->
99 %URI{host: object_id_host} = URI.parse(object_id)
100 %URI{host: actor_host} = URI.parse(actor)
101
102 if object_id_host == actor_host do
103 []
104 else
105 [{:object, "The host of the object id doesn't match with the host of the actor"}]
106 end
107 end)
108 end
109
110 def validate_object_nonexistence(cng) do
111 cng
112 |> validate_change(:object, fn :object, object_id ->
113 if Object.get_cached_by_ap_id(object_id) do
114 [{:object, "The object to create already exists"}]
115 else
116 []
117 end
118 end)
119 end
120
121 def validate_actors_match(cng, meta) do
122 attributed_to = meta[:object_data]["attributedTo"] || meta[:object_data]["actor"]
123
124 cng
125 |> validate_change(:actor, fn :actor, actor ->
126 if actor == attributed_to do
127 []
128 else
129 [{:actor, "Actor doesn't match with object attributedTo"}]
130 end
131 end)
132 end
133
134 def validate_context_match(cng, %{object_data: %{"context" => object_context}}) do
135 cng
136 |> validate_change(:context, fn :context, context ->
137 if context == object_context do
138 []
139 else
140 [{:context, "context field not matching between Create and object (#{object_context})"}]
141 end
142 end)
143 end
144
145 def validate_context_match(cng, _), do: cng
146 end