1 # Pleroma: A lightweight social networking server
2 # Copyright © 2017-2020 Pleroma Authors <https://pleroma.social/>
3 # SPDX-License-Identifier: AGPL-3.0-only
5 defmodule Pleroma.Web.TwitterAPI.UtilController do
6 use Pleroma.Web, :controller
12 alias Pleroma.Healthcheck
13 alias Pleroma.Notification
14 alias Pleroma.Plugs.OAuthScopesPlug
16 alias Pleroma.Web.CommonAPI
17 alias Pleroma.Web.WebFinger
19 plug(Pleroma.Web.FederatingPlug when action == :remote_subscribe)
23 %{scopes: ["follow", "write:follows"]}
24 when action == :follow_import
27 plug(OAuthScopesPlug, %{scopes: ["follow", "write:blocks"]} when action == :blocks_import)
31 %{scopes: ["write:accounts"]}
36 :update_notificaton_settings,
41 plug(OAuthScopesPlug, %{scopes: ["write:notifications"]} when action == :notifications_read)
43 def remote_subscribe(conn, %{"nickname" => nick, "profile" => _}) do
44 with %User{} = user <- User.get_cached_by_nickname(nick),
45 avatar = User.avatar_url(user) do
47 |> render("subscribe.html", %{nickname: nick, avatar: avatar, error: false})
50 render(conn, "subscribe.html", %{
53 error: "Could not find user"
58 def remote_subscribe(conn, %{"user" => %{"nickname" => nick, "profile" => profile}}) do
59 with {:ok, %{"subscribe_address" => template}} <- WebFinger.finger(profile),
60 %User{ap_id: ap_id} <- User.get_cached_by_nickname(nick) do
62 |> Phoenix.Controller.redirect(external: String.replace(template, "{uri}", ap_id))
65 render(conn, "subscribe.html", %{
68 error: "Something went wrong."
73 def notifications_read(%{assigns: %{user: user}} = conn, %{"id" => notification_id}) do
74 with {:ok, _} <- Notification.read_one(user, notification_id) do
75 json(conn, %{status: "success"})
79 |> put_resp_content_type("application/json")
80 |> send_resp(403, Jason.encode!(%{"error" => message}))
84 # Deprecated in favor of `/nodeinfo`
85 # https://git.pleroma.social/pleroma/pleroma/-/merge_requests/2327
86 # https://git.pleroma.social/pleroma/pleroma-fe/-/merge_requests/1084
87 def config(conn, _params) do
90 textlimit: to_string(Config.get([:instance, :limit])),
91 vapidPublicKey: Keyword.get(Pleroma.Web.Push.vapid_config(), :public_key)
96 def frontend_configurations(conn, _params) do
98 Pleroma.Config.get(:frontend_configurations, %{})
104 def emoji(conn, _params) do
106 Enum.reduce(Emoji.get_all(), %{}, fn {code, %Emoji{file: file, tags: tags}}, acc ->
107 Map.put(acc, code, %{image_url: file, tags: tags})
113 def update_notificaton_settings(%{assigns: %{user: user}} = conn, params) do
114 with {:ok, _} <- User.update_notification_settings(user, params) do
115 json(conn, %{status: "success"})
119 def follow_import(conn, %{"list" => %Plug.Upload{} = listfile}) do
120 follow_import(conn, %{"list" => File.read!(listfile.path)})
123 def follow_import(%{assigns: %{user: follower}} = conn, %{"list" => list}) do
124 followed_identifiers =
126 |> String.split("\n")
127 |> Enum.map(&(&1 |> String.split(",") |> List.first()))
128 |> List.delete("Account address")
129 |> Enum.map(&(&1 |> String.trim() |> String.trim_leading("@")))
130 |> Enum.reject(&(&1 == ""))
132 User.follow_import(follower, followed_identifiers)
133 json(conn, "job started")
136 def blocks_import(conn, %{"list" => %Plug.Upload{} = listfile}) do
137 blocks_import(conn, %{"list" => File.read!(listfile.path)})
140 def blocks_import(%{assigns: %{user: blocker}} = conn, %{"list" => list}) do
141 blocked_identifiers = list |> String.split() |> Enum.map(&String.trim_leading(&1, "@"))
142 User.blocks_import(blocker, blocked_identifiers)
143 json(conn, "job started")
146 def change_password(%{assigns: %{user: user}} = conn, params) do
147 case CommonAPI.Utils.confirm_current_password(user, params["password"]) do
150 User.reset_password(user, %{
151 password: params["new_password"],
152 password_confirmation: params["new_password_confirmation"]
154 json(conn, %{status: "success"})
156 {:error, changeset} ->
157 {_, {error, _}} = Enum.at(changeset.errors, 0)
158 json(conn, %{error: "New password #{error}."})
161 json(conn, %{error: "Unable to change password."})
165 json(conn, %{error: msg})
169 def change_email(%{assigns: %{user: user}} = conn, params) do
170 case CommonAPI.Utils.confirm_current_password(user, params["password"]) do
172 with {:ok, _user} <- User.change_email(user, params["email"]) do
173 json(conn, %{status: "success"})
175 {:error, changeset} ->
176 {_, {error, _}} = Enum.at(changeset.errors, 0)
177 json(conn, %{error: "Email #{error}."})
180 json(conn, %{error: "Unable to change email."})
184 json(conn, %{error: msg})
188 def delete_account(%{assigns: %{user: user}} = conn, params) do
189 password = params["password"] || ""
191 case CommonAPI.Utils.confirm_current_password(user, password) do
194 json(conn, %{status: "success"})
197 json(conn, %{error: msg})
201 def disable_account(%{assigns: %{user: user}} = conn, params) do
202 case CommonAPI.Utils.confirm_current_password(user, params["password"]) do
204 User.deactivate_async(user)
205 json(conn, %{status: "success"})
208 json(conn, %{error: msg})
212 def captcha(conn, _params) do
213 json(conn, Pleroma.Captcha.new())
216 def healthcheck(conn, _params) do
217 with true <- Config.get([:instance, :healthcheck]),
218 %{healthy: true} = info <- Healthcheck.system_info() do
221 %{healthy: false} = info ->
222 service_unavailable(conn, info)
225 service_unavailable(conn, %{})
229 defp service_unavailable(conn, info) do
231 |> put_status(:service_unavailable)