]> git.wh0rd.org - tt-rss.git/blob - backend.php
add tiny-OOP style backend RPC
[tt-rss.git] / backend.php
1 <?php
2 set_include_path(get_include_path() . PATH_SEPARATOR . "include");
3
4 /* remove ill effects of magic quotes */
5
6 if (get_magic_quotes_gpc()) {
7 function stripslashes_deep($value) {
8 $value = is_array($value) ?
9 array_map('stripslashes_deep', $value) : stripslashes($value);
10 return $value;
11 }
12
13 $_POST = array_map('stripslashes_deep', $_POST);
14 $_GET = array_map('stripslashes_deep', $_GET);
15 $_COOKIE = array_map('stripslashes_deep', $_COOKIE);
16 $_REQUEST = array_map('stripslashes_deep', $_REQUEST);
17 }
18
19 function __autoload($class) {
20 $file = "classes/".strtolower(basename($class)).".php";
21 if (file_exists($file)) {
22 require $file;
23 }
24 }
25
26 $op = $_REQUEST["op"];
27
28 require_once "functions.php";
29 if ($op != "share") require_once "sessions.php";
30 require_once "sanity_check.php";
31 require_once "config.php";
32 require_once "db.php";
33 require_once "db-prefs.php";
34
35 no_cache_incantation();
36
37 startup_gettext();
38
39 $script_started = getmicrotime();
40
41 $link = db_connect(DB_HOST, DB_USER, DB_PASS, DB_NAME);
42
43 if (!$link) {
44 if (DB_TYPE == "mysql") {
45 print mysql_error();
46 }
47 // PG seems to display its own errors just fine by default.
48 return;
49 }
50
51 init_connection($link);
52
53 $method = strtolower($_REQUEST["method"]);
54 $mode = $_REQUEST["mode"];
55
56 if ((!$op || $op == "rss" || $op == "dlg") && !$_REQUEST["noxml"]) {
57 header("Content-Type: application/xml; charset=utf-8");
58 } else {
59 header("Content-Type: text/plain; charset=utf-8");
60 }
61
62 if (ENABLE_GZIP_OUTPUT) {
63 ob_start("ob_gzhandler");
64 }
65
66 if (SINGLE_USER_MODE) {
67 authenticate_user($link, "admin", null);
68 }
69
70 $public_calls = array("globalUpdateFeeds", "rss", "getUnread", "getProfiles", "share",
71 "fbexport", "logout", "pubsub");
72
73 if (array_search($op, $public_calls) !== false) {
74
75 handle_public_request($link, $op);
76 return;
77
78 } else if (!($_SESSION["uid"] && validate_session($link))) {
79 if ($op == 'pref-feeds' && $_REQUEST['method'] == 'add') {
80 header("Content-Type: text/html");
81 login_sequence($link);
82 render_login_form($link);
83 } else {
84 header("Content-Type: text/plain");
85 print json_encode(array("error" => array("code" => 6)));
86 }
87 return;
88 }
89
90 $purge_intervals = array(
91 0 => __("Use default"),
92 -1 => __("Never purge"),
93 5 => __("1 week old"),
94 14 => __("2 weeks old"),
95 31 => __("1 month old"),
96 60 => __("2 months old"),
97 90 => __("3 months old"));
98
99 $update_intervals = array(
100 0 => __("Default interval"),
101 -1 => __("Disable updates"),
102 15 => __("Each 15 minutes"),
103 30 => __("Each 30 minutes"),
104 60 => __("Hourly"),
105 240 => __("Each 4 hours"),
106 720 => __("Each 12 hours"),
107 1440 => __("Daily"),
108 10080 => __("Weekly"));
109
110 $update_intervals_nodefault = array(
111 -1 => __("Disable updates"),
112 15 => __("Each 15 minutes"),
113 30 => __("Each 30 minutes"),
114 60 => __("Hourly"),
115 240 => __("Each 4 hours"),
116 720 => __("Each 12 hours"),
117 1440 => __("Daily"),
118 10080 => __("Weekly"));
119
120 $update_methods = array(
121 0 => __("Default"),
122 1 => __("Magpie"),
123 2 => __("SimplePie"),
124 3 => __("Twitter OAuth"));
125
126 if (DEFAULT_UPDATE_METHOD == "1") {
127 $update_methods[0] .= ' (SimplePie)';
128 } else {
129 $update_methods[0] .= ' (Magpie)';
130 }
131
132 $access_level_names = array(
133 0 => __("User"),
134 5 => __("Power User"),
135 10 => __("Administrator"));
136
137
138
139 $error = sanity_check($link);
140
141 if ($error['code'] != 0 && $op != "logout") {
142 print json_encode(array("error" => $error));
143 return;
144 }
145
146 if (class_exists($op)) {
147 $handler = new $op($link, $_REQUEST);
148
149 if ($handler) {
150 if ($handler->before()) {
151 if (method_exists($handler, $method)) {
152 return $handler->$method();
153 }
154 }
155 }
156 }
157
158 switch($op) { // Select action according to $op value.
159 case "feeds":
160 $method = $_REQUEST["method"];
161 $root = (bool)$_REQUEST["root"];
162
163 switch($method) {
164 case "catchupAll":
165 db_query($link, "UPDATE ttrss_user_entries SET
166 last_read = NOW(),unread = false WHERE owner_uid = " . $_SESSION["uid"]);
167 ccache_zero_all($link, $_SESSION["uid"]);
168
169 break;
170
171 case "collapse":
172 $cat_id = db_escape_string($_REQUEST["cid"]);
173 $mode = (int) db_escape_string($_REQUEST['mode']);
174 toggle_collapse_cat($link, $cat_id, $mode);
175 return;
176 break;
177 }
178
179 if (!$root) {
180 print json_encode(outputFeedList($link));
181 } else {
182
183 $feeds = outputFeedList($link, false);
184
185 $root = array();
186 $root['id'] = 'root';
187 $root['name'] = __('Feeds');
188 $root['items'] = $feeds['items'];
189
190 $fl = array();
191 $fl['identifier'] = 'id';
192 $fl['label'] = 'name';
193 $fl['items'] = array($root);
194
195 print json_encode($fl);
196 }
197
198 break; // feeds
199
200 case "la":
201 $id = db_escape_string($_REQUEST['id']);
202
203 $result = db_query($link, "SELECT link FROM ttrss_entries, ttrss_user_entries
204 WHERE id = '$id' AND id = ref_id AND owner_uid = '".$_SESSION['uid']."'
205 LIMIT 1");
206
207 if (db_num_rows($result) == 1) {
208 $article_url = db_fetch_result($result, 0, 'link');
209 $article_url = str_replace("\n", "", $article_url);
210
211 header("Location: $article_url");
212 return;
213
214 } else {
215 print_error(__("Article not found."));
216 }
217 break;
218
219 case "view":
220
221 $id = db_escape_string($_REQUEST["id"]);
222 $cids = explode(",", db_escape_string($_REQUEST["cids"]));
223 $mode = db_escape_string($_REQUEST["mode"]);
224 $omode = db_escape_string($_REQUEST["omode"]);
225
226 // in prefetch mode we only output requested cids, main article
227 // just gets marked as read (it already exists in client cache)
228
229 $articles = array();
230
231 if ($mode == "") {
232 array_push($articles, format_article($link, $id, false));
233 } else if ($mode == "zoom") {
234 array_push($articles, format_article($link, $id, true, true));
235 } else if ($mode == "raw") {
236 if ($_REQUEST['html']) {
237 header("Content-Type: text/html");
238 print '<link rel="stylesheet" type="text/css" href="tt-rss.css"/>';
239 }
240
241 $article = format_article($link, $id, false);
242 print $article['content'];
243 return;
244 }
245
246 catchupArticleById($link, $id, 0);
247
248 if (!$_SESSION["bw_limit"]) {
249 foreach ($cids as $cid) {
250 if ($cid) {
251 array_push($articles, format_article($link, $cid, false, false));
252 }
253 }
254 }
255
256 print json_encode($articles);
257
258 break; // view
259
260 case "viewfeed":
261
262 $timing_info = getmicrotime();
263
264 $reply = array();
265
266 if ($_REQUEST["debug"]) $timing_info = print_checkpoint("0", $timing_info);
267
268 $omode = db_escape_string($_REQUEST["omode"]);
269
270 $feed = db_escape_string($_REQUEST["feed"]);
271 $method = db_escape_string($_REQUEST["method"]);
272 $view_mode = db_escape_string($_REQUEST["view_mode"]);
273 $limit = (int) get_pref($link, "DEFAULT_ARTICLE_LIMIT");
274 @$cat_view = db_escape_string($_REQUEST["cat"]) == "true";
275 @$next_unread_feed = db_escape_string($_REQUEST["nuf"]);
276 @$offset = db_escape_string($_REQUEST["skip"]);
277 @$vgroup_last_feed = db_escape_string($_REQUEST["vgrlf"]);
278 $order_by = db_escape_string($_REQUEST["order_by"]);
279
280 if (is_numeric($feed)) $feed = (int) $feed;
281
282 /* Feed -5 is a special case: it is used to display auxiliary information
283 * when there's nothing to load - e.g. no stuff in fresh feed */
284
285 if ($feed == -5) {
286 print json_encode(generate_dashboard_feed($link));
287 return;
288 }
289
290 $result = false;
291
292 if ($feed < -10) {
293 $label_feed = -11-$feed;
294 $result = db_query($link, "SELECT id FROM ttrss_labels2 WHERE
295 id = '$label_feed' AND owner_uid = " . $_SESSION['uid']);
296 } else if (!$cat_view && is_numeric($feed) && $feed > 0) {
297 $result = db_query($link, "SELECT id FROM ttrss_feeds WHERE
298 id = '$feed' AND owner_uid = " . $_SESSION['uid']);
299 } else if ($cat_view && is_numeric($feed) && $feed > 0) {
300 $result = db_query($link, "SELECT id FROM ttrss_feed_categories WHERE
301 id = '$feed' AND owner_uid = " . $_SESSION['uid']);
302 }
303
304 if ($result && db_num_rows($result) == 0) {
305 print json_encode(generate_error_feed($link, __("Feed not found.")));
306 return;
307 }
308
309 /* Updating a label ccache means recalculating all of the caches
310 * so for performance reasons we don't do that here */
311
312 if ($feed >= 0) {
313 ccache_update($link, $feed, $_SESSION["uid"], $cat_view);
314 }
315
316 set_pref($link, "_DEFAULT_VIEW_MODE", $view_mode);
317 set_pref($link, "_DEFAULT_VIEW_LIMIT", $limit);
318 set_pref($link, "_DEFAULT_VIEW_ORDER_BY", $order_by);
319
320 if (!$cat_view && preg_match("/^[0-9][0-9]*$/", $feed)) {
321 db_query($link, "UPDATE ttrss_feeds SET last_viewed = NOW()
322 WHERE id = '$feed' AND owner_uid = ".$_SESSION["uid"]);
323 }
324
325 $reply['headlines'] = array();
326
327 if (!$next_unread_feed)
328 $reply['headlines']['id'] = $feed;
329 else
330 $reply['headlines']['id'] = $next_unread_feed;
331
332 $reply['headlines']['is_cat'] = (bool) $cat_view;
333
334 $override_order = false;
335
336 if (get_pref($link, "SORT_HEADLINES_BY_FEED_DATE", $owner_uid)) {
337 $date_sort_field = "updated";
338 } else {
339 $date_sort_field = "date_entered";
340 }
341
342 switch ($order_by) {
343 case "date":
344 if (get_pref($link, 'REVERSE_HEADLINES', $owner_uid)) {
345 $override_order = "$date_sort_field";
346 } else {
347 $override_order = "$date_sort_field DESC";
348 }
349 break;
350
351 case "title":
352 if (get_pref($link, 'REVERSE_HEADLINES', $owner_uid)) {
353 $override_order = "title DESC, $date_sort_field";
354 } else {
355 $override_order = "title, $date_sort_field DESC";
356 }
357 break;
358
359 case "score":
360 if (get_pref($link, 'REVERSE_HEADLINES', $owner_uid)) {
361 $override_order = "score, $date_sort_field";
362 } else {
363 $override_order = "score DESC, $date_sort_field DESC";
364 }
365 break;
366 }
367
368 if ($_REQUEST["debug"]) $timing_info = print_checkpoint("04", $timing_info);
369
370 $ret = format_headlines_list($link, $feed, $method,
371 $view_mode, $limit, $cat_view, $next_unread_feed, $offset,
372 $vgroup_last_feed, $override_order);
373
374 $topmost_article_ids = $ret[0];
375 $headlines_count = $ret[1];
376 $returned_feed = $ret[2];
377 $disable_cache = $ret[3];
378 $vgroup_last_feed = $ret[4];
379
380 // if ($_REQUEST["debug"]) print_r($ret);
381
382 $reply['headlines']['content'] =& $ret[5]['content'];
383 $reply['headlines']['toolbar'] =& $ret[5]['toolbar'];
384
385 if ($_REQUEST["debug"]) $timing_info = print_checkpoint("05", $timing_info);
386
387 $reply['headlines-info'] = array("count" => (int) $headlines_count,
388 "vgroup_last_feed" => $vgroup_last_feed,
389 "disable_cache" => (bool) $disable_cache);
390
391 if ($_REQUEST["debug"]) $timing_info = print_checkpoint("20", $timing_info);
392
393 if (is_array($topmost_article_ids) && !get_pref($link, 'COMBINED_DISPLAY_MODE') && !$_SESSION["bw_limit"]) {
394 $articles = array();
395
396 foreach ($topmost_article_ids as $id) {
397 array_push($articles, format_article($link, $id, false));
398 }
399
400 $reply['articles'] = $articles;
401 }
402
403 // if ($method) {
404 // $reply['counters'] = getAllCounters($link, $omode, $feed);
405 // }
406
407 if ($_REQUEST["debug"]) $timing_info = print_checkpoint("30", $timing_info);
408
409 $reply['runtime-info'] = make_runtime_info($link);
410
411 print json_encode($reply);
412 break; // viewfeed
413
414 case "pref-feeds":
415 require_once "modules/pref-feeds.php";
416 module_pref_feeds($link);
417 break; // pref-feeds
418
419 case "pref-filters":
420 require_once "modules/pref-filters.php";
421 module_pref_filters($link);
422 break; // pref-filters
423
424 case "pref-labels":
425 require_once "modules/pref-labels.php";
426 module_pref_labels($link);
427 break; // pref-labels
428
429 case "pref-prefs":
430 require_once "modules/pref-prefs.php";
431 module_pref_prefs($link);
432 break; // pref-prefs
433
434 case "pref-users":
435 require_once "modules/pref-users.php";
436 module_pref_users($link);
437 break; // prefs-users
438
439 case "help":
440 require_once "modules/help.php";
441 module_help($link);
442 break; // help
443
444 case "dlg":
445 require_once "modules/popup-dialog.php";
446 module_popup_dialog($link);
447 break; // dlg
448
449 case "pref-instances":
450 require_once "modules/pref-instances.php";
451 module_pref_instances($link);
452 break; // pref-instances
453
454 case "digestTest":
455 print_r(prepare_headlines_digest($link, $_SESSION["uid"]));
456 break; // digestTest
457
458 case "digestSend":
459 send_headlines_digests($link);
460 break; // digestSend
461
462 case "loading":
463 header("Content-type: text/html");
464 print __("Loading, please wait...") . " " .
465 "<img src='images/indicator_tiny.gif'>";
466 break; // loading
467
468 default:
469 header("Content-Type: text/plain");
470 print json_encode(array("error" => array("code" => 7)));
471 break; // fallback
472 } // Select action according to $op value.
473
474 // We close the connection to database.
475 db_close($link);
476 ?>