You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

delete.go 6.3KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191
  1. // Copyright 2023 The Gitea Authors. All rights reserved.
  2. // SPDX-License-Identifier: MIT
  3. package user
  4. import (
  5. "context"
  6. "fmt"
  7. "time"
  8. _ "image/jpeg" // Needed for jpeg support
  9. activities_model "code.gitea.io/gitea/models/activities"
  10. asymkey_model "code.gitea.io/gitea/models/asymkey"
  11. auth_model "code.gitea.io/gitea/models/auth"
  12. "code.gitea.io/gitea/models/db"
  13. git_model "code.gitea.io/gitea/models/git"
  14. issues_model "code.gitea.io/gitea/models/issues"
  15. "code.gitea.io/gitea/models/organization"
  16. access_model "code.gitea.io/gitea/models/perm/access"
  17. pull_model "code.gitea.io/gitea/models/pull"
  18. repo_model "code.gitea.io/gitea/models/repo"
  19. user_model "code.gitea.io/gitea/models/user"
  20. "code.gitea.io/gitea/modules/setting"
  21. "xorm.io/builder"
  22. )
  23. // deleteUser deletes models associated to an user.
  24. func deleteUser(ctx context.Context, u *user_model.User, purge bool) (err error) {
  25. e := db.GetEngine(ctx)
  26. // ***** START: Watch *****
  27. watchedRepoIDs, err := db.FindIDs(ctx, "watch", "watch.repo_id",
  28. builder.Eq{"watch.user_id": u.ID}.
  29. And(builder.Neq{"watch.mode": repo_model.WatchModeDont}))
  30. if err != nil {
  31. return fmt.Errorf("get all watches: %w", err)
  32. }
  33. if err = db.DecrByIDs(ctx, watchedRepoIDs, "num_watches", new(repo_model.Repository)); err != nil {
  34. return fmt.Errorf("decrease repository num_watches: %w", err)
  35. }
  36. // ***** END: Watch *****
  37. // ***** START: Star *****
  38. starredRepoIDs, err := db.FindIDs(ctx, "star", "star.repo_id",
  39. builder.Eq{"star.uid": u.ID})
  40. if err != nil {
  41. return fmt.Errorf("get all stars: %w", err)
  42. } else if err = db.DecrByIDs(ctx, starredRepoIDs, "num_stars", new(repo_model.Repository)); err != nil {
  43. return fmt.Errorf("decrease repository num_stars: %w", err)
  44. }
  45. // ***** END: Star *****
  46. // ***** START: Follow *****
  47. followeeIDs, err := db.FindIDs(ctx, "follow", "follow.follow_id",
  48. builder.Eq{"follow.user_id": u.ID})
  49. if err != nil {
  50. return fmt.Errorf("get all followees: %w", err)
  51. } else if err = db.DecrByIDs(ctx, followeeIDs, "num_followers", new(user_model.User)); err != nil {
  52. return fmt.Errorf("decrease user num_followers: %w", err)
  53. }
  54. followerIDs, err := db.FindIDs(ctx, "follow", "follow.user_id",
  55. builder.Eq{"follow.follow_id": u.ID})
  56. if err != nil {
  57. return fmt.Errorf("get all followers: %w", err)
  58. } else if err = db.DecrByIDs(ctx, followerIDs, "num_following", new(user_model.User)); err != nil {
  59. return fmt.Errorf("decrease user num_following: %w", err)
  60. }
  61. // ***** END: Follow *****
  62. if err = db.DeleteBeans(ctx,
  63. &auth_model.AccessToken{UID: u.ID},
  64. &repo_model.Collaboration{UserID: u.ID},
  65. &access_model.Access{UserID: u.ID},
  66. &repo_model.Watch{UserID: u.ID},
  67. &repo_model.Star{UID: u.ID},
  68. &user_model.Follow{UserID: u.ID},
  69. &user_model.Follow{FollowID: u.ID},
  70. &activities_model.Action{UserID: u.ID},
  71. &issues_model.IssueUser{UID: u.ID},
  72. &user_model.EmailAddress{UID: u.ID},
  73. &user_model.UserOpenID{UID: u.ID},
  74. &issues_model.Reaction{UserID: u.ID},
  75. &organization.TeamUser{UID: u.ID},
  76. &issues_model.Stopwatch{UserID: u.ID},
  77. &user_model.Setting{UserID: u.ID},
  78. &user_model.UserBadge{UserID: u.ID},
  79. &pull_model.AutoMerge{DoerID: u.ID},
  80. &pull_model.ReviewState{UserID: u.ID},
  81. &user_model.Redirect{RedirectUserID: u.ID},
  82. ); err != nil {
  83. return fmt.Errorf("deleteBeans: %w", err)
  84. }
  85. if err := auth_model.DeleteOAuth2RelictsByUserID(ctx, u.ID); err != nil {
  86. return err
  87. }
  88. if purge || (setting.Service.UserDeleteWithCommentsMaxTime != 0 &&
  89. u.CreatedUnix.AsTime().Add(setting.Service.UserDeleteWithCommentsMaxTime).After(time.Now())) {
  90. // Delete Comments
  91. const batchSize = 50
  92. for {
  93. comments := make([]*issues_model.Comment, 0, batchSize)
  94. if err = e.Where("type=? AND poster_id=?", issues_model.CommentTypeComment, u.ID).Limit(batchSize, 0).Find(&comments); err != nil {
  95. return err
  96. }
  97. if len(comments) == 0 {
  98. break
  99. }
  100. for _, comment := range comments {
  101. if err = issues_model.DeleteComment(ctx, comment); err != nil {
  102. return err
  103. }
  104. }
  105. }
  106. // Delete Reactions
  107. if err = issues_model.DeleteReaction(ctx, &issues_model.ReactionOptions{DoerID: u.ID}); err != nil {
  108. return err
  109. }
  110. }
  111. // ***** START: Branch Protections *****
  112. {
  113. const batchSize = 50
  114. for start := 0; ; start += batchSize {
  115. protections := make([]*git_model.ProtectedBranch, 0, batchSize)
  116. // @perf: We can't filter on DB side by u.ID, as those IDs are serialized as JSON strings.
  117. // We could filter down with `WHERE repo_id IN (reposWithPushPermission(u))`,
  118. // though that query will be quite complex and tricky to maintain (compare `getRepoAssignees()`).
  119. // Also, as we didn't update branch protections when removing entries from `access` table,
  120. // it's safer to iterate all protected branches.
  121. if err = e.Limit(batchSize, start).Find(&protections); err != nil {
  122. return fmt.Errorf("findProtectedBranches: %w", err)
  123. }
  124. if len(protections) == 0 {
  125. break
  126. }
  127. for _, p := range protections {
  128. if err := git_model.RemoveUserIDFromProtectedBranch(ctx, p, u.ID); err != nil {
  129. return err
  130. }
  131. }
  132. }
  133. }
  134. // ***** END: Branch Protections *****
  135. // ***** START: PublicKey *****
  136. if _, err = db.DeleteByBean(ctx, &asymkey_model.PublicKey{OwnerID: u.ID}); err != nil {
  137. return fmt.Errorf("deletePublicKeys: %w", err)
  138. }
  139. // ***** END: PublicKey *****
  140. // ***** START: GPGPublicKey *****
  141. keys, err := asymkey_model.ListGPGKeys(ctx, u.ID, db.ListOptions{})
  142. if err != nil {
  143. return fmt.Errorf("ListGPGKeys: %w", err)
  144. }
  145. // Delete GPGKeyImport(s).
  146. for _, key := range keys {
  147. if _, err = db.DeleteByBean(ctx, &asymkey_model.GPGKeyImport{KeyID: key.KeyID}); err != nil {
  148. return fmt.Errorf("deleteGPGKeyImports: %w", err)
  149. }
  150. }
  151. if _, err = db.DeleteByBean(ctx, &asymkey_model.GPGKey{OwnerID: u.ID}); err != nil {
  152. return fmt.Errorf("deleteGPGKeys: %w", err)
  153. }
  154. // ***** END: GPGPublicKey *****
  155. // Clear assignee.
  156. if _, err = db.DeleteByBean(ctx, &issues_model.IssueAssignees{AssigneeID: u.ID}); err != nil {
  157. return fmt.Errorf("clear assignee: %w", err)
  158. }
  159. // ***** START: ExternalLoginUser *****
  160. if err = user_model.RemoveAllAccountLinks(ctx, u); err != nil {
  161. return fmt.Errorf("ExternalLoginUser: %w", err)
  162. }
  163. // ***** END: ExternalLoginUser *****
  164. if _, err = db.DeleteByID(ctx, u.ID, new(user_model.User)); err != nil {
  165. return fmt.Errorf("delete: %w", err)
  166. }
  167. return nil
  168. }