]> git.wh0rd.org Git - tt-rss.git/blob - classes/api.php
Add optional (default: true), boolean "sanitize" parameter to API::getArticle() method.
[tt-rss.git] / classes / api.php
1 <?php
2
3 class API extends Handler {
4
5         const API_LEVEL  = 13;
6
7         const STATUS_OK  = 0;
8         const STATUS_ERR = 1;
9
10         private $seq;
11
12         function before($method) {
13                 if (parent::before($method)) {
14                         header("Content-Type: text/json");
15
16                         if (!$_SESSION["uid"] && $method != "login" && $method != "isloggedin") {
17                                 $this->wrap(self::STATUS_ERR, array("error" => 'NOT_LOGGED_IN'));
18                                 return false;
19                         }
20
21                         if ($_SESSION["uid"] && $method != "logout" && !get_pref('ENABLE_API_ACCESS')) {
22                                 $this->wrap(self::STATUS_ERR, array("error" => 'API_DISABLED'));
23                                 return false;
24                         }
25
26                         $this->seq = (int) $_REQUEST['seq'];
27
28                         return true;
29                 }
30                 return false;
31         }
32
33         function wrap($status, $reply) {
34                 print json_encode(array("seq" => $this->seq,
35                         "status" => $status,
36                         "content" => $reply));
37         }
38
39         function getVersion() {
40                 $rv = array("version" => VERSION);
41                 $this->wrap(self::STATUS_OK, $rv);
42         }
43
44         function getApiLevel() {
45                 $rv = array("level" => self::API_LEVEL);
46                 $this->wrap(self::STATUS_OK, $rv);
47         }
48
49         function login() {
50                 @session_destroy();
51                 @session_start();
52
53                 $login = $this->dbh->escape_string($_REQUEST["user"]);
54                 $password = $_REQUEST["password"];
55                 $password_base64 = base64_decode($_REQUEST["password"]);
56
57                 if (SINGLE_USER_MODE) $login = "admin";
58
59                 $result = $this->dbh->query("SELECT id FROM ttrss_users WHERE login = '$login'");
60
61                 if ($this->dbh->num_rows($result) != 0) {
62                         $uid = $this->dbh->fetch_result($result, 0, "id");
63                 } else {
64                         $uid = 0;
65                 }
66
67                 if (!$uid) {
68                         $this->wrap(self::STATUS_ERR, array("error" => "LOGIN_ERROR"));
69                         return;
70                 }
71
72                 if (get_pref("ENABLE_API_ACCESS", $uid)) {
73                         if (authenticate_user($login, $password)) {               // try login with normal password
74                                 $this->wrap(self::STATUS_OK, array("session_id" => session_id(),
75                                         "api_level" => self::API_LEVEL));
76                         } else if (authenticate_user($login, $password_base64)) { // else try with base64_decoded password
77                                 $this->wrap(self::STATUS_OK,    array("session_id" => session_id(),
78                                         "api_level" => self::API_LEVEL));
79                         } else {                                                         // else we are not logged in
80                                 user_error("Failed login attempt for $login from {$_SERVER['REMOTE_ADDR']}", E_USER_WARNING);
81                                 $this->wrap(self::STATUS_ERR, array("error" => "LOGIN_ERROR"));
82                         }
83                 } else {
84                         $this->wrap(self::STATUS_ERR, array("error" => "API_DISABLED"));
85                 }
86
87         }
88
89         function logout() {
90                 logout_user();
91                 $this->wrap(self::STATUS_OK, array("status" => "OK"));
92         }
93
94         function isLoggedIn() {
95                 $this->wrap(self::STATUS_OK, array("status" => $_SESSION["uid"] != ''));
96         }
97
98         function getUnread() {
99                 $feed_id = $this->dbh->escape_string($_REQUEST["feed_id"]);
100                 $is_cat = $this->dbh->escape_string($_REQUEST["is_cat"]);
101
102                 if ($feed_id) {
103                         $this->wrap(self::STATUS_OK, array("unread" => getFeedUnread($feed_id, $is_cat)));
104                 } else {
105                         $this->wrap(self::STATUS_OK, array("unread" => getGlobalUnread()));
106                 }
107         }
108
109         /* Method added for ttrss-reader for Android */
110         function getCounters() {
111                 $this->wrap(self::STATUS_OK, getAllCounters());
112         }
113
114         function getFeeds() {
115                 $cat_id = $this->dbh->escape_string($_REQUEST["cat_id"]);
116                 $unread_only = sql_bool_to_bool($_REQUEST["unread_only"]);
117                 $limit = (int) $this->dbh->escape_string($_REQUEST["limit"]);
118                 $offset = (int) $this->dbh->escape_string($_REQUEST["offset"]);
119                 $include_nested = sql_bool_to_bool($_REQUEST["include_nested"]);
120
121                 $feeds = $this->api_get_feeds($cat_id, $unread_only, $limit, $offset, $include_nested);
122
123                 $this->wrap(self::STATUS_OK, $feeds);
124         }
125
126         function getCategories() {
127                 $unread_only = sql_bool_to_bool($_REQUEST["unread_only"]);
128                 $enable_nested = sql_bool_to_bool($_REQUEST["enable_nested"]);
129                 $include_empty = sql_bool_to_bool($_REQUEST['include_empty']);
130
131                 // TODO do not return empty categories, return Uncategorized and standard virtual cats
132
133                 if ($enable_nested)
134                         $nested_qpart = "parent_cat IS NULL";
135                 else
136                         $nested_qpart = "true";
137
138                 $result = $this->dbh->query("SELECT
139                                 id, title, order_id, (SELECT COUNT(id) FROM
140                                 ttrss_feeds WHERE
141                                 ttrss_feed_categories.id IS NOT NULL AND cat_id = ttrss_feed_categories.id) AS num_feeds,
142                         (SELECT COUNT(id) FROM
143                                 ttrss_feed_categories AS c2 WHERE
144                                 c2.parent_cat = ttrss_feed_categories.id) AS num_cats
145                         FROM ttrss_feed_categories
146                         WHERE $nested_qpart AND owner_uid = " .
147                         $_SESSION["uid"]);
148
149                 $cats = array();
150
151                 while ($line = $this->dbh->fetch_assoc($result)) {
152                         if ($include_empty || $line["num_feeds"] > 0 || $line["num_cats"] > 0) {
153                                 $unread = getFeedUnread($line["id"], true);
154
155                                 if ($enable_nested)
156                                         $unread += getCategoryChildrenUnread($line["id"]);
157
158                                 if ($unread || !$unread_only) {
159                                         array_push($cats, array("id" => $line["id"],
160                                                 "title" => $line["title"],
161                                                 "unread" => $unread,
162                                                 "order_id" => (int) $line["order_id"],
163                                         ));
164                                 }
165                         }
166                 }
167
168                 foreach (array(-2,-1,0) as $cat_id) {
169                         if ($include_empty || !$this->isCategoryEmpty($cat_id)) {
170                                 $unread = getFeedUnread($cat_id, true);
171
172                                 if ($unread || !$unread_only) {
173                                         array_push($cats, array("id" => $cat_id,
174                                                 "title" => getCategoryTitle($cat_id),
175                                                 "unread" => $unread));
176                                 }
177                         }
178                 }
179
180                 $this->wrap(self::STATUS_OK, $cats);
181         }
182
183         function getHeadlines() {
184                 $feed_id = $this->dbh->escape_string($_REQUEST["feed_id"]);
185                 if ($feed_id != "") {
186
187                         if (is_numeric($feed_id)) $feed_id = (int) $feed_id;
188
189                         $limit = (int)$this->dbh->escape_string($_REQUEST["limit"]);
190
191                         if (!$limit || $limit >= 200) $limit = 200;
192
193                         $offset = (int)$this->dbh->escape_string($_REQUEST["skip"]);
194                         $filter = $this->dbh->escape_string($_REQUEST["filter"]);
195                         $is_cat = sql_bool_to_bool($_REQUEST["is_cat"]);
196                         $show_excerpt = sql_bool_to_bool($_REQUEST["show_excerpt"]);
197                         $show_content = sql_bool_to_bool($_REQUEST["show_content"]);
198                         /* all_articles, unread, adaptive, marked, updated */
199                         $view_mode = $this->dbh->escape_string($_REQUEST["view_mode"]);
200                         $include_attachments = sql_bool_to_bool($_REQUEST["include_attachments"]);
201                         $since_id = (int)$this->dbh->escape_string($_REQUEST["since_id"]);
202                         $include_nested = sql_bool_to_bool($_REQUEST["include_nested"]);
203                         $sanitize_content = !isset($_REQUEST["sanitize"]) ||
204                                 sql_bool_to_bool($_REQUEST["sanitize"]);
205                         $force_update = sql_bool_to_bool($_REQUEST["force_update"]);
206                         $has_sandbox = sql_bool_to_bool($_REQUEST["has_sandbox"]);
207                         $excerpt_length = (int)$this->dbh->escape_string($_REQUEST["excerpt_length"]);
208                         $check_first_id = (int)$this->dbh->escape_string($_REQUEST["check_first_id"]);
209                         $include_header = sql_bool_to_bool($_REQUEST["include_header"]);
210
211                         $_SESSION['hasSandbox'] = $has_sandbox;
212
213                         $skip_first_id_check = false;
214
215                         $override_order = false;
216                         switch ($_REQUEST["order_by"]) {
217                                 case "title":
218                                         $override_order = "ttrss_entries.title";
219                                         break;
220                                 case "date_reverse":
221                                         $override_order = "score DESC, date_entered, updated";
222                                         $skip_first_id_check = true;
223                                         break;
224                                 case "feed_dates":
225                                         $override_order = "updated DESC";
226                                         break;
227                         }
228
229                         /* do not rely on params below */
230
231                         $search = $this->dbh->escape_string($_REQUEST["search"]);
232
233                         list($headlines, $headlines_header) = $this->api_get_headlines($feed_id, $limit, $offset,
234                                 $filter, $is_cat, $show_excerpt, $show_content, $view_mode, $override_order,
235                                 $include_attachments, $since_id, $search,
236                                 $include_nested, $sanitize_content, $force_update, $excerpt_length, $check_first_id, $skip_first_id_check);
237
238                         if ($include_header) {
239                                 $this->wrap(self::STATUS_OK, array($headlines_header, $headlines));
240                         } else {
241                                 $this->wrap(self::STATUS_OK, $headlines);
242                         }
243                 } else {
244                         $this->wrap(self::STATUS_ERR, array("error" => 'INCORRECT_USAGE'));
245                 }
246         }
247
248         function updateArticle() {
249                 $article_ids = array_filter(explode(",", $this->dbh->escape_string($_REQUEST["article_ids"])), is_numeric);
250                 $mode = (int) $this->dbh->escape_string($_REQUEST["mode"]);
251                 $data = $this->dbh->escape_string($_REQUEST["data"]);
252                 $field_raw = (int)$this->dbh->escape_string($_REQUEST["field"]);
253
254                 $field = "";
255                 $set_to = "";
256
257                 switch ($field_raw) {
258                         case 0:
259                                 $field = "marked";
260                                 $additional_fields = ",last_marked = NOW()";
261                                 break;
262                         case 1:
263                                 $field = "published";
264                                 $additional_fields = ",last_published = NOW()";
265                                 break;
266                         case 2:
267                                 $field = "unread";
268                                 $additional_fields = ",last_read = NOW()";
269                                 break;
270                         case 3:
271                                 $field = "note";
272                 };
273
274                 switch ($mode) {
275                         case 1:
276                                 $set_to = "true";
277                                 break;
278                         case 0:
279                                 $set_to = "false";
280                                 break;
281                         case 2:
282                                 $set_to = "NOT $field";
283                                 break;
284                 }
285
286                 if ($field == "note") $set_to = "'$data'";
287
288                 if ($field && $set_to && count($article_ids) > 0) {
289
290                         $article_ids = join(", ", $article_ids);
291
292                         $result = $this->dbh->query("UPDATE ttrss_user_entries SET $field = $set_to $additional_fields WHERE ref_id IN ($article_ids) AND owner_uid = " . $_SESSION["uid"]);
293
294                         $num_updated = $this->dbh->affected_rows($result);
295
296                         if ($num_updated > 0 && $field == "unread") {
297                                 $result = $this->dbh->query("SELECT DISTINCT feed_id FROM ttrss_user_entries
298                                         WHERE ref_id IN ($article_ids)");
299
300                                 while ($line = $this->dbh->fetch_assoc($result)) {
301                                         ccache_update($line["feed_id"], $_SESSION["uid"]);
302                                 }
303                         }
304
305                         if ($num_updated > 0 && $field == "published") {
306                                 if (PUBSUBHUBBUB_HUB) {
307                                         $rss_link = get_self_url_prefix() .
308                                                 "/public.php?op=rss&id=-2&key=" .
309                                                 get_feed_access_key(-2, false);
310
311                                         $p = new Publisher(PUBSUBHUBBUB_HUB);
312                                         $pubsub_result = $p->publish_update($rss_link);
313                                 }
314                         }
315
316                         $this->wrap(self::STATUS_OK, array("status" => "OK",
317                                 "updated" => $num_updated));
318
319                 } else {
320                         $this->wrap(self::STATUS_ERR, array("error" => 'INCORRECT_USAGE'));
321                 }
322
323         }
324
325         function getArticle() {
326
327                 $article_id = join(",", array_filter(explode(",", $this->dbh->escape_string($_REQUEST["article_id"])), is_numeric));
328                 $sanitize_content = !isset($_REQUEST["sanitize"]) ||
329                         sql_bool_to_bool($_REQUEST["sanitize"]);
330
331                 if ($article_id) {
332
333                         $query = "SELECT id,title,link,content,feed_id,comments,int_id,
334                                 marked,unread,published,score,note,lang,
335                                 ".SUBSTRING_FOR_DATE."(updated,1,16) as updated,
336                                 author,(SELECT title FROM ttrss_feeds WHERE id = feed_id) AS feed_title,
337                                 (SELECT site_url FROM ttrss_feeds WHERE id = feed_id) AS site_url,
338                                 (SELECT hide_images FROM ttrss_feeds WHERE id = feed_id) AS hide_images
339                                 FROM ttrss_entries,ttrss_user_entries
340                                 WHERE   id IN ($article_id) AND ref_id = id AND owner_uid = " .
341                                         $_SESSION["uid"] ;
342
343                         $result = $this->dbh->query($query);
344
345                         $articles = array();
346
347                         if ($this->dbh->num_rows($result) != 0) {
348
349                                 while ($line = $this->dbh->fetch_assoc($result)) {
350
351                                         $attachments = get_article_enclosures($line['id']);
352
353                                         $article = array(
354                                                 "id" => $line["id"],
355                                                 "title" => $line["title"],
356                                                 "link" => $line["link"],
357                                                 "labels" => get_article_labels($line['id']),
358                                                 "unread" => sql_bool_to_bool($line["unread"]),
359                                                 "marked" => sql_bool_to_bool($line["marked"]),
360                                                 "published" => sql_bool_to_bool($line["published"]),
361                                                 "comments" => $line["comments"],
362                                                 "author" => $line["author"],
363                                                 "updated" => (int) strtotime($line["updated"]),
364                                                 "feed_id" => $line["feed_id"],
365                                                 "attachments" => $attachments,
366                                                 "score" => (int)$line["score"],
367                                                 "feed_title" => $line["feed_title"],
368                                                 "note" => $line["note"],
369                                                 "lang" => $line["lang"]
370                                         );
371
372                                         if ($sanitize_content) {
373                                                 $article["content"] = sanitize(
374                                                         $line["content"],
375                                                         sql_bool_to_bool($line['hide_images']),
376                                                         false, $line["site_url"], false, $line["id"]);
377                                         } else {
378                                                 $article["content"] = $line["content"];
379                                         }
380
381                                         foreach (PluginHost::getInstance()->get_hooks(PluginHost::HOOK_RENDER_ARTICLE_API) as $p) {
382                                                 $article = $p->hook_render_article_api(array("article" => $article));
383                                         }
384
385
386                                         array_push($articles, $article);
387
388                                 }
389                         }
390
391                         $this->wrap(self::STATUS_OK, $articles);
392                 } else {
393                         $this->wrap(self::STATUS_ERR, array("error" => 'INCORRECT_USAGE'));
394                 }
395         }
396
397         function getConfig() {
398                 $config = array(
399                         "icons_dir" => ICONS_DIR,
400                         "icons_url" => ICONS_URL);
401
402                 $config["daemon_is_running"] = file_is_locked("update_daemon.lock");
403
404                 $result = $this->dbh->query("SELECT COUNT(*) AS cf FROM
405                         ttrss_feeds WHERE owner_uid = " . $_SESSION["uid"]);
406
407                 $num_feeds = $this->dbh->fetch_result($result, 0, "cf");
408
409                 $config["num_feeds"] = (int)$num_feeds;
410
411                 $this->wrap(self::STATUS_OK, $config);
412         }
413
414         function updateFeed() {
415                 require_once "include/rssfuncs.php";
416
417                 $feed_id = (int) $this->dbh->escape_string($_REQUEST["feed_id"]);
418
419                 update_rss_feed($feed_id, true);
420
421                 $this->wrap(self::STATUS_OK, array("status" => "OK"));
422         }
423
424         function catchupFeed() {
425                 $feed_id = $this->dbh->escape_string($_REQUEST["feed_id"]);
426                 $is_cat = $this->dbh->escape_string($_REQUEST["is_cat"]);
427
428                 catchup_feed($feed_id, $is_cat);
429
430                 $this->wrap(self::STATUS_OK, array("status" => "OK"));
431         }
432
433         function getPref() {
434                 $pref_name = $this->dbh->escape_string($_REQUEST["pref_name"]);
435
436                 $this->wrap(self::STATUS_OK, array("value" => get_pref($pref_name)));
437         }
438
439         function getLabels() {
440                 //$article_ids = array_filter(explode(",", $this->dbh->escape_string($_REQUEST["article_ids"])), is_numeric);
441
442                 $article_id = (int)$_REQUEST['article_id'];
443
444                 $rv = array();
445
446                 $result = $this->dbh->query("SELECT id, caption, fg_color, bg_color
447                         FROM ttrss_labels2
448                         WHERE owner_uid = '".$_SESSION['uid']."' ORDER BY caption");
449
450                 if ($article_id)
451                         $article_labels = get_article_labels($article_id);
452                 else
453                         $article_labels = array();
454
455                 while ($line = $this->dbh->fetch_assoc($result)) {
456
457                         $checked = false;
458                         foreach ($article_labels as $al) {
459                                 if (feed_to_label_id($al[0]) == $line['id']) {
460                                         $checked = true;
461                                         break;
462                                 }
463                         }
464
465                         array_push($rv, array(
466                                 "id" => (int)label_to_feed_id($line['id']),
467                                 "caption" => $line['caption'],
468                                 "fg_color" => $line['fg_color'],
469                                 "bg_color" => $line['bg_color'],
470                                 "checked" => $checked));
471                 }
472
473                 $this->wrap(self::STATUS_OK, $rv);
474         }
475
476         function setArticleLabel() {
477
478                 $article_ids = array_filter(explode(",", $this->dbh->escape_string($_REQUEST["article_ids"])), is_numeric);
479                 $label_id = (int) $this->dbh->escape_string($_REQUEST['label_id']);
480                 $assign = (bool) $this->dbh->escape_string($_REQUEST['assign']) == "true";
481
482                 $label = $this->dbh->escape_string(label_find_caption(
483                         feed_to_label_id($label_id), $_SESSION["uid"]));
484
485                 $num_updated = 0;
486
487                 if ($label) {
488
489                         foreach ($article_ids as $id) {
490
491                                 if ($assign)
492                                         label_add_article($id, $label, $_SESSION["uid"]);
493                                 else
494                                         label_remove_article($id, $label, $_SESSION["uid"]);
495
496                                 ++$num_updated;
497
498                         }
499                 }
500
501                 $this->wrap(self::STATUS_OK, array("status" => "OK",
502                         "updated" => $num_updated));
503
504         }
505
506         function index($method) {
507                 $plugin = PluginHost::getInstance()->get_api_method(strtolower($method));
508
509                 if ($plugin && method_exists($plugin, $method)) {
510                         $reply = $plugin->$method();
511
512                         $this->wrap($reply[0], $reply[1]);
513
514                 } else {
515                         $this->wrap(self::STATUS_ERR, array("error" => 'UNKNOWN_METHOD', "method" => $method));
516                 }
517         }
518
519         function shareToPublished() {
520                 $title = $this->dbh->escape_string(strip_tags($_REQUEST["title"]));
521                 $url = $this->dbh->escape_string(strip_tags($_REQUEST["url"]));
522                 $content = $this->dbh->escape_string(strip_tags($_REQUEST["content"]));
523
524                 if (Article::create_published_article($title, $url, $content, "", $_SESSION["uid"])) {
525                         $this->wrap(self::STATUS_OK, array("status" => 'OK'));
526                 } else {
527                         $this->wrap(self::STATUS_ERR, array("error" => 'Publishing failed'));
528                 }
529         }
530
531         static function api_get_feeds($cat_id, $unread_only, $limit, $offset, $include_nested = false) {
532
533                         $feeds = array();
534
535                         /* Labels */
536
537                         if ($cat_id == -4 || $cat_id == -2) {
538                                 $counters = getLabelCounters(true);
539
540                                 foreach (array_values($counters) as $cv) {
541
542                                         $unread = $cv["counter"];
543
544                                         if ($unread || !$unread_only) {
545
546                                                 $row = array(
547                                                                 "id" => (int) $cv["id"],
548                                                                 "title" => $cv["description"],
549                                                                 "unread" => $cv["counter"],
550                                                                 "cat_id" => -2,
551                                                         );
552
553                                                 array_push($feeds, $row);
554                                         }
555                                 }
556                         }
557
558                         /* Virtual feeds */
559
560                         if ($cat_id == -4 || $cat_id == -1) {
561                                 foreach (array(-1, -2, -3, -4, -6, 0) as $i) {
562                                         $unread = getFeedUnread($i);
563
564                                         if ($unread || !$unread_only) {
565                                                 $title = getFeedTitle($i);
566
567                                                 $row = array(
568                                                                 "id" => $i,
569                                                                 "title" => $title,
570                                                                 "unread" => $unread,
571                                                                 "cat_id" => -1,
572                                                         );
573                                                 array_push($feeds, $row);
574                                         }
575
576                                 }
577                         }
578
579                         /* Child cats */
580
581                         if ($include_nested && $cat_id) {
582                                 $result = db_query("SELECT
583                                         id, title FROM ttrss_feed_categories
584                                         WHERE parent_cat = '$cat_id' AND owner_uid = " . $_SESSION["uid"] .
585                                 " ORDER BY id, title");
586
587                                 while ($line = db_fetch_assoc($result)) {
588                                         $unread = getFeedUnread($line["id"], true) +
589                                                 getCategoryChildrenUnread($line["id"]);
590
591                                         if ($unread || !$unread_only) {
592                                                 $row = array(
593                                                                 "id" => (int) $line["id"],
594                                                                 "title" => $line["title"],
595                                                                 "unread" => $unread,
596                                                                 "is_cat" => true,
597                                                         );
598                                                 array_push($feeds, $row);
599                                         }
600                                 }
601                         }
602
603                         /* Real feeds */
604
605                         if ($limit) {
606                                 $limit_qpart = "LIMIT $limit OFFSET $offset";
607                         } else {
608                                 $limit_qpart = "";
609                         }
610
611                         if ($cat_id == -4 || $cat_id == -3) {
612                                 $result = db_query("SELECT
613                                         id, feed_url, cat_id, title, order_id, ".
614                                                 SUBSTRING_FOR_DATE."(last_updated,1,19) AS last_updated
615                                                 FROM ttrss_feeds WHERE owner_uid = " . $_SESSION["uid"] .
616                                                 " ORDER BY cat_id, title " . $limit_qpart);
617                         } else {
618
619                                 if ($cat_id)
620                                         $cat_qpart = "cat_id = '$cat_id'";
621                                 else
622                                         $cat_qpart = "cat_id IS NULL";
623
624                                 $result = db_query("SELECT
625                                         id, feed_url, cat_id, title, order_id, ".
626                                                 SUBSTRING_FOR_DATE."(last_updated,1,19) AS last_updated
627                                                 FROM ttrss_feeds WHERE
628                                                 $cat_qpart AND owner_uid = " . $_SESSION["uid"] .
629                                                 " ORDER BY cat_id, title " . $limit_qpart);
630                         }
631
632                         while ($line = db_fetch_assoc($result)) {
633
634                                 $unread = getFeedUnread($line["id"]);
635
636                                 $has_icon = feed_has_icon($line['id']);
637
638                                 if ($unread || !$unread_only) {
639
640                                         $row = array(
641                                                         "feed_url" => $line["feed_url"],
642                                                         "title" => $line["title"],
643                                                         "id" => (int)$line["id"],
644                                                         "unread" => (int)$unread,
645                                                         "has_icon" => $has_icon,
646                                                         "cat_id" => (int)$line["cat_id"],
647                                                         "last_updated" => (int) strtotime($line["last_updated"]),
648                                                         "order_id" => (int) $line["order_id"],
649                                                 );
650
651                                         array_push($feeds, $row);
652                                 }
653                         }
654
655                 return $feeds;
656         }
657
658         static function api_get_headlines($feed_id, $limit, $offset,
659                                 $filter, $is_cat, $show_excerpt, $show_content, $view_mode, $order,
660                                 $include_attachments, $since_id,
661                                 $search = "", $include_nested = false, $sanitize_content = true,
662                                 $force_update = false, $excerpt_length = 100, $check_first_id = false, $skip_first_id_check = false) {
663
664                         if ($force_update && $feed_id > 0 && is_numeric($feed_id)) {
665                                 // Update the feed if required with some basic flood control
666
667                                 $result = db_query(
668                                         "SELECT cache_images,".SUBSTRING_FOR_DATE."(last_updated,1,19) AS last_updated
669                                                 FROM ttrss_feeds WHERE id = '$feed_id'");
670
671                                 if (db_num_rows($result) != 0) {
672                                         $last_updated = strtotime(db_fetch_result($result, 0, "last_updated"));
673                                         $cache_images = sql_bool_to_bool(db_fetch_result($result, 0, "cache_images"));
674
675                                         if (!$cache_images && time() - $last_updated > 120) {
676                                                 include "rssfuncs.php";
677                                                 update_rss_feed($feed_id, true, true);
678                                         } else {
679                                                 db_query("UPDATE ttrss_feeds SET last_updated = '1970-01-01', last_update_started = '1970-01-01'
680                                                         WHERE id = '$feed_id'");
681                                         }
682                                 }
683                         }
684
685                         /*$qfh_ret = queryFeedHeadlines($feed_id, $limit,
686                                 $view_mode, $is_cat, $search, false,
687                                 $order, $offset, 0, false, $since_id, $include_nested);*/
688
689                         //function queryFeedHeadlines($feed, $limit,
690                         // $view_mode, $cat_view, $search, $search_mode,
691                         // $override_order = false, $offset = 0, $owner_uid = 0, $filter = false, $since_id = 0, $include_children = false,
692                         // $ignore_vfeed_group = false, $override_strategy = false, $override_vfeed = false, $start_ts = false, $check_top_id = false) {
693
694                         $params = array(
695                                 "feed" => $feed_id,
696                                 "limit" => $limit,
697                                 "view_mode" => $view_mode,
698                                 "cat_view" => $is_cat,
699                                 "search" => $search,
700                                 "override_order" => $order,
701                                 "offset" => $offset,
702                                 "since_id" => $since_id,
703                                 "include_children" => $include_nested,
704                                 "check_first_id" => $check_first_id,
705                                 "skip_first_id_check" => $skip_first_id_check
706                         );
707
708                         $qfh_ret = queryFeedHeadlines($params);
709
710                         $result = $qfh_ret[0];
711                         $feed_title = $qfh_ret[1];
712                         $first_id = $qfh_ret[6];
713
714                         $headlines = array();
715
716                         $headlines_header = array(
717                                 'id' => $feed_id,
718                                 'first_id' => $first_id,
719                                 'is_cat' => $is_cat);
720
721                         if (!is_numeric($result)) {
722                                 while ($line = db_fetch_assoc($result)) {
723                                         $line["content_preview"] = truncate_string(strip_tags($line["content"]), $excerpt_length);
724                                         foreach (PluginHost::getInstance()->get_hooks(PluginHost::HOOK_QUERY_HEADLINES) as $p) {
725                                                 $line = $p->hook_query_headlines($line, $excerpt_length, true);
726                                         }
727
728                                         $is_updated = ($line["last_read"] == "" &&
729                                                 ($line["unread"] != "t" && $line["unread"] != "1"));
730
731                                         $tags = explode(",", $line["tag_cache"]);
732
733                                         $label_cache = $line["label_cache"];
734                                         $labels = false;
735
736                                         if ($label_cache) {
737                                                 $label_cache = json_decode($label_cache, true);
738
739                                                 if ($label_cache) {
740                                                         if ($label_cache["no-labels"] == 1)
741                                                                 $labels = array();
742                                                         else
743                                                                 $labels = $label_cache;
744                                                 }
745                                         }
746
747                                         if (!is_array($labels)) $labels = get_article_labels($line["id"]);
748
749                                         //if (!$tags) $tags = get_article_tags($line["id"]);
750                                         //if (!$labels) $labels = get_article_labels($line["id"]);
751
752                                         $headline_row = array(
753                                                 "id" => (int)$line["id"],
754                                                 "unread" => sql_bool_to_bool($line["unread"]),
755                                                 "marked" => sql_bool_to_bool($line["marked"]),
756                                                 "published" => sql_bool_to_bool($line["published"]),
757                                                 "updated" => (int)strtotime($line["updated"]),
758                                                 "is_updated" => $is_updated,
759                                                 "title" => $line["title"],
760                                                 "link" => $line["link"],
761                                                 "feed_id" => $line["feed_id"],
762                                                 "tags" => $tags,
763                                         );
764
765                                         if ($include_attachments)
766                                                 $headline_row['attachments'] = get_article_enclosures(
767                                                         $line['id']);
768
769                                         if ($show_excerpt)
770                                                 $headline_row["excerpt"] = $line["content_preview"];
771
772                                         if ($show_content) {
773
774                                                 if ($sanitize_content) {
775                                                         $headline_row["content"] = sanitize(
776                                                                 $line["content"],
777                                                                 sql_bool_to_bool($line['hide_images']),
778                                                                 false, $line["site_url"], false, $line["id"]);
779                                                 } else {
780                                                         $headline_row["content"] = $line["content"];
781                                                 }
782                                         }
783
784                                         // unify label output to ease parsing
785                                         if ($labels["no-labels"] == 1) $labels = array();
786
787                                         $headline_row["labels"] = $labels;
788
789                                         $headline_row["feed_title"] = $line["feed_title"] ? $line["feed_title"] :
790                                                 $feed_title;
791
792                                         $headline_row["comments_count"] = (int)$line["num_comments"];
793                                         $headline_row["comments_link"] = $line["comments"];
794
795                                         $headline_row["always_display_attachments"] = sql_bool_to_bool($line["always_display_enclosures"]);
796
797                                         $headline_row["author"] = $line["author"];
798
799                                         $headline_row["score"] = (int)$line["score"];
800                                         $headline_row["note"] = $line["note"];
801                                         $headline_row["lang"] = $line["lang"];
802
803                                         foreach (PluginHost::getInstance()->get_hooks(PluginHost::HOOK_RENDER_ARTICLE_API) as $p) {
804                                                 $headline_row = $p->hook_render_article_api(array("headline" => $headline_row));
805                                         }
806
807                                         array_push($headlines, $headline_row);
808                                 }
809                         } else if (is_numeric($result) && $result == -1) {
810                                 $headlines_header['first_id_changed'] = true;
811                         }
812
813                         return array($headlines, $headlines_header);
814         }
815
816         function unsubscribeFeed() {
817                 $feed_id = (int) $this->dbh->escape_string($_REQUEST["feed_id"]);
818
819                 $result = $this->dbh->query("SELECT id FROM ttrss_feeds WHERE
820                         id = '$feed_id' AND owner_uid = ".$_SESSION["uid"]);
821
822                 if ($this->dbh->num_rows($result) != 0) {
823                         Pref_Feeds::remove_feed($feed_id, $_SESSION["uid"]);
824                         $this->wrap(self::STATUS_OK, array("status" => "OK"));
825                 } else {
826                         $this->wrap(self::STATUS_ERR, array("error" => "FEED_NOT_FOUND"));
827                 }
828         }
829
830         function subscribeToFeed() {
831                 $feed_url = $this->dbh->escape_string($_REQUEST["feed_url"]);
832                 $category_id = (int) $this->dbh->escape_string($_REQUEST["category_id"]);
833                 $login = $this->dbh->escape_string($_REQUEST["login"]);
834                 $password = $this->dbh->escape_string($_REQUEST["password"]);
835
836                 if ($feed_url) {
837                         $rc = subscribe_to_feed($feed_url, $category_id, $login, $password);
838
839                         $this->wrap(self::STATUS_OK, array("status" => $rc));
840                 } else {
841                         $this->wrap(self::STATUS_ERR, array("error" => 'INCORRECT_USAGE'));
842                 }
843         }
844
845         function getFeedTree() {
846                 $include_empty = sql_bool_to_bool($_REQUEST['include_empty']);
847
848                 $pf = new Pref_Feeds($_REQUEST);
849
850                 $_REQUEST['mode'] = 2;
851                 $_REQUEST['force_show_empty'] = $include_empty;
852
853                 if ($pf){
854                         $data = $pf->makefeedtree();
855                         $this->wrap(self::STATUS_OK, array("categories" => $data));
856                 } else {
857                         $this->wrap(self::STATUS_ERR, array("error" =>
858                                 'UNABLE_TO_INSTANTIATE_OBJECT'));
859                 }
860
861         }
862
863         // only works for labels or uncategorized for the time being
864         private function isCategoryEmpty($id) {
865
866                 if ($id == -2) {
867                         $result = $this->dbh->query("SELECT COUNT(*) AS count FROM ttrss_labels2
868                                 WHERE owner_uid = " . $_SESSION["uid"]);
869
870                         return $this->dbh->fetch_result($result, 0, "count") == 0;
871
872                 } else if ($id == 0) {
873                         $result = $this->dbh->query("SELECT COUNT(*) AS count FROM ttrss_feeds
874                                 WHERE cat_id IS NULL AND owner_uid = " . $_SESSION["uid"]);
875
876                         return $this->dbh->fetch_result($result, 0, "count") == 0;
877
878                 }
879
880                 return false;
881         }
882
883
884 }
885
886 ?>