You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

profile.go 13KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427
  1. // Copyright 2014 The Gogs Authors. All rights reserved.
  2. // Copyright 2018 The Gitea Authors. All rights reserved.
  3. // SPDX-License-Identifier: MIT
  4. package setting
  5. import (
  6. "errors"
  7. "fmt"
  8. "io"
  9. "math/big"
  10. "net/http"
  11. "os"
  12. "path/filepath"
  13. "strings"
  14. "code.gitea.io/gitea/models/db"
  15. "code.gitea.io/gitea/models/organization"
  16. repo_model "code.gitea.io/gitea/models/repo"
  17. user_model "code.gitea.io/gitea/models/user"
  18. "code.gitea.io/gitea/modules/base"
  19. "code.gitea.io/gitea/modules/context"
  20. "code.gitea.io/gitea/modules/log"
  21. "code.gitea.io/gitea/modules/setting"
  22. "code.gitea.io/gitea/modules/translation"
  23. "code.gitea.io/gitea/modules/typesniffer"
  24. "code.gitea.io/gitea/modules/util"
  25. "code.gitea.io/gitea/modules/web"
  26. "code.gitea.io/gitea/modules/web/middleware"
  27. "code.gitea.io/gitea/services/forms"
  28. user_service "code.gitea.io/gitea/services/user"
  29. )
  30. const (
  31. tplSettingsProfile base.TplName = "user/settings/profile"
  32. tplSettingsAppearance base.TplName = "user/settings/appearance"
  33. tplSettingsOrganization base.TplName = "user/settings/organization"
  34. tplSettingsRepositories base.TplName = "user/settings/repos"
  35. )
  36. // Profile render user's profile page
  37. func Profile(ctx *context.Context) {
  38. ctx.Data["Title"] = ctx.Tr("settings.profile")
  39. ctx.Data["PageIsSettingsProfile"] = true
  40. ctx.Data["AllowedUserVisibilityModes"] = setting.Service.AllowedUserVisibilityModesSlice.ToVisibleTypeSlice()
  41. ctx.Data["DisableGravatar"] = setting.Config().Picture.DisableGravatar.Value(ctx)
  42. ctx.HTML(http.StatusOK, tplSettingsProfile)
  43. }
  44. // HandleUsernameChange handle username changes from user settings and admin interface
  45. func HandleUsernameChange(ctx *context.Context, user *user_model.User, newName string) error {
  46. oldName := user.Name
  47. // rename user
  48. if err := user_service.RenameUser(ctx, user, newName); err != nil {
  49. switch {
  50. // Noop as username is not changed
  51. case user_model.IsErrUsernameNotChanged(err):
  52. ctx.Flash.Error(ctx.Tr("form.username_has_not_been_changed"))
  53. // Non-local users are not allowed to change their username.
  54. case user_model.IsErrUserIsNotLocal(err):
  55. ctx.Flash.Error(ctx.Tr("form.username_change_not_local_user"))
  56. case user_model.IsErrUserAlreadyExist(err):
  57. ctx.Flash.Error(ctx.Tr("form.username_been_taken"))
  58. case user_model.IsErrEmailAlreadyUsed(err):
  59. ctx.Flash.Error(ctx.Tr("form.email_been_used"))
  60. case db.IsErrNameReserved(err):
  61. ctx.Flash.Error(ctx.Tr("user.form.name_reserved", newName))
  62. case db.IsErrNamePatternNotAllowed(err):
  63. ctx.Flash.Error(ctx.Tr("user.form.name_pattern_not_allowed", newName))
  64. case db.IsErrNameCharsNotAllowed(err):
  65. ctx.Flash.Error(ctx.Tr("user.form.name_chars_not_allowed", newName))
  66. default:
  67. ctx.ServerError("ChangeUserName", err)
  68. }
  69. return err
  70. }
  71. log.Trace("User name changed: %s -> %s", oldName, newName)
  72. return nil
  73. }
  74. // ProfilePost response for change user's profile
  75. func ProfilePost(ctx *context.Context) {
  76. form := web.GetForm(ctx).(*forms.UpdateProfileForm)
  77. ctx.Data["Title"] = ctx.Tr("settings")
  78. ctx.Data["PageIsSettingsProfile"] = true
  79. ctx.Data["AllowedUserVisibilityModes"] = setting.Service.AllowedUserVisibilityModesSlice.ToVisibleTypeSlice()
  80. ctx.Data["DisableGravatar"] = setting.Config().Picture.DisableGravatar.Value(ctx)
  81. if ctx.HasError() {
  82. ctx.HTML(http.StatusOK, tplSettingsProfile)
  83. return
  84. }
  85. if len(form.Name) != 0 && ctx.Doer.Name != form.Name {
  86. log.Debug("Changing name for %s to %s", ctx.Doer.Name, form.Name)
  87. if err := HandleUsernameChange(ctx, ctx.Doer, form.Name); err != nil {
  88. ctx.Redirect(setting.AppSubURL + "/user/settings")
  89. return
  90. }
  91. ctx.Doer.Name = form.Name
  92. ctx.Doer.LowerName = strings.ToLower(form.Name)
  93. }
  94. ctx.Doer.FullName = form.FullName
  95. ctx.Doer.KeepEmailPrivate = form.KeepEmailPrivate
  96. ctx.Doer.Website = form.Website
  97. ctx.Doer.Location = form.Location
  98. ctx.Doer.Description = form.Description
  99. ctx.Doer.KeepActivityPrivate = form.KeepActivityPrivate
  100. ctx.Doer.Visibility = form.Visibility
  101. if err := user_model.UpdateUserSetting(ctx, ctx.Doer); err != nil {
  102. if _, ok := err.(user_model.ErrEmailAlreadyUsed); ok {
  103. ctx.Flash.Error(ctx.Tr("form.email_been_used"))
  104. ctx.Redirect(setting.AppSubURL + "/user/settings")
  105. return
  106. }
  107. ctx.ServerError("UpdateUser", err)
  108. return
  109. }
  110. log.Trace("User settings updated: %s", ctx.Doer.Name)
  111. ctx.Flash.Success(ctx.Tr("settings.update_profile_success"))
  112. ctx.Redirect(setting.AppSubURL + "/user/settings")
  113. }
  114. // UpdateAvatarSetting update user's avatar
  115. // FIXME: limit size.
  116. func UpdateAvatarSetting(ctx *context.Context, form *forms.AvatarForm, ctxUser *user_model.User) error {
  117. ctxUser.UseCustomAvatar = form.Source == forms.AvatarLocal
  118. if len(form.Gravatar) > 0 {
  119. if form.Avatar != nil {
  120. ctxUser.Avatar = base.EncodeMD5(form.Gravatar)
  121. } else {
  122. ctxUser.Avatar = ""
  123. }
  124. ctxUser.AvatarEmail = form.Gravatar
  125. }
  126. if form.Avatar != nil && form.Avatar.Filename != "" {
  127. fr, err := form.Avatar.Open()
  128. if err != nil {
  129. return fmt.Errorf("Avatar.Open: %w", err)
  130. }
  131. defer fr.Close()
  132. if form.Avatar.Size > setting.Avatar.MaxFileSize {
  133. return errors.New(ctx.Tr("settings.uploaded_avatar_is_too_big", form.Avatar.Size/1024, setting.Avatar.MaxFileSize/1024))
  134. }
  135. data, err := io.ReadAll(fr)
  136. if err != nil {
  137. return fmt.Errorf("io.ReadAll: %w", err)
  138. }
  139. st := typesniffer.DetectContentType(data)
  140. if !(st.IsImage() && !st.IsSvgImage()) {
  141. return errors.New(ctx.Tr("settings.uploaded_avatar_not_a_image"))
  142. }
  143. if err = user_service.UploadAvatar(ctx, ctxUser, data); err != nil {
  144. return fmt.Errorf("UploadAvatar: %w", err)
  145. }
  146. } else if ctxUser.UseCustomAvatar && ctxUser.Avatar == "" {
  147. // No avatar is uploaded but setting has been changed to enable,
  148. // generate a random one when needed.
  149. if err := user_model.GenerateRandomAvatar(ctx, ctxUser); err != nil {
  150. log.Error("GenerateRandomAvatar[%d]: %v", ctxUser.ID, err)
  151. }
  152. }
  153. if err := user_model.UpdateUserCols(ctx, ctxUser, "avatar", "avatar_email", "use_custom_avatar"); err != nil {
  154. return fmt.Errorf("UpdateUser: %w", err)
  155. }
  156. return nil
  157. }
  158. // AvatarPost response for change user's avatar request
  159. func AvatarPost(ctx *context.Context) {
  160. form := web.GetForm(ctx).(*forms.AvatarForm)
  161. if err := UpdateAvatarSetting(ctx, form, ctx.Doer); err != nil {
  162. ctx.Flash.Error(err.Error())
  163. } else {
  164. ctx.Flash.Success(ctx.Tr("settings.update_avatar_success"))
  165. }
  166. ctx.Redirect(setting.AppSubURL + "/user/settings")
  167. }
  168. // DeleteAvatar render delete avatar page
  169. func DeleteAvatar(ctx *context.Context) {
  170. if err := user_service.DeleteAvatar(ctx, ctx.Doer); err != nil {
  171. ctx.Flash.Error(err.Error())
  172. }
  173. ctx.JSONRedirect(setting.AppSubURL + "/user/settings")
  174. }
  175. // Organization render all the organization of the user
  176. func Organization(ctx *context.Context) {
  177. ctx.Data["Title"] = ctx.Tr("settings.organization")
  178. ctx.Data["PageIsSettingsOrganization"] = true
  179. opts := organization.FindOrgOptions{
  180. ListOptions: db.ListOptions{
  181. PageSize: setting.UI.Admin.UserPagingNum,
  182. Page: ctx.FormInt("page"),
  183. },
  184. UserID: ctx.Doer.ID,
  185. IncludePrivate: ctx.IsSigned,
  186. }
  187. if opts.Page <= 0 {
  188. opts.Page = 1
  189. }
  190. orgs, err := organization.FindOrgs(ctx, opts)
  191. if err != nil {
  192. ctx.ServerError("FindOrgs", err)
  193. return
  194. }
  195. total, err := organization.CountOrgs(ctx, opts)
  196. if err != nil {
  197. ctx.ServerError("CountOrgs", err)
  198. return
  199. }
  200. ctx.Data["Orgs"] = orgs
  201. pager := context.NewPagination(int(total), opts.PageSize, opts.Page, 5)
  202. pager.SetDefaultParams(ctx)
  203. ctx.Data["Page"] = pager
  204. ctx.HTML(http.StatusOK, tplSettingsOrganization)
  205. }
  206. // Repos display a list of all repositories of the user
  207. func Repos(ctx *context.Context) {
  208. ctx.Data["Title"] = ctx.Tr("settings.repos")
  209. ctx.Data["PageIsSettingsRepos"] = true
  210. ctx.Data["allowAdopt"] = ctx.IsUserSiteAdmin() || setting.Repository.AllowAdoptionOfUnadoptedRepositories
  211. ctx.Data["allowDelete"] = ctx.IsUserSiteAdmin() || setting.Repository.AllowDeleteOfUnadoptedRepositories
  212. opts := db.ListOptions{
  213. PageSize: setting.UI.Admin.UserPagingNum,
  214. Page: ctx.FormInt("page"),
  215. }
  216. if opts.Page <= 0 {
  217. opts.Page = 1
  218. }
  219. start := (opts.Page - 1) * opts.PageSize
  220. end := start + opts.PageSize
  221. adoptOrDelete := ctx.IsUserSiteAdmin() || (setting.Repository.AllowAdoptionOfUnadoptedRepositories && setting.Repository.AllowDeleteOfUnadoptedRepositories)
  222. ctxUser := ctx.Doer
  223. count := 0
  224. if adoptOrDelete {
  225. repoNames := make([]string, 0, setting.UI.Admin.UserPagingNum)
  226. repos := map[string]*repo_model.Repository{}
  227. // We're going to iterate by pagesize.
  228. root := user_model.UserPath(ctxUser.Name)
  229. if err := filepath.WalkDir(root, func(path string, d os.DirEntry, err error) error {
  230. if err != nil {
  231. if os.IsNotExist(err) {
  232. return nil
  233. }
  234. return err
  235. }
  236. if !d.IsDir() || path == root {
  237. return nil
  238. }
  239. name := d.Name()
  240. if !strings.HasSuffix(name, ".git") {
  241. return filepath.SkipDir
  242. }
  243. name = name[:len(name)-4]
  244. if repo_model.IsUsableRepoName(name) != nil || strings.ToLower(name) != name {
  245. return filepath.SkipDir
  246. }
  247. if count >= start && count < end {
  248. repoNames = append(repoNames, name)
  249. }
  250. count++
  251. return filepath.SkipDir
  252. }); err != nil {
  253. ctx.ServerError("filepath.WalkDir", err)
  254. return
  255. }
  256. userRepos, _, err := repo_model.GetUserRepositories(ctx, &repo_model.SearchRepoOptions{
  257. Actor: ctxUser,
  258. Private: true,
  259. ListOptions: db.ListOptions{
  260. Page: 1,
  261. PageSize: setting.UI.Admin.UserPagingNum,
  262. },
  263. LowerNames: repoNames,
  264. })
  265. if err != nil {
  266. ctx.ServerError("GetUserRepositories", err)
  267. return
  268. }
  269. for _, repo := range userRepos {
  270. if repo.IsFork {
  271. if err := repo.GetBaseRepo(ctx); err != nil {
  272. ctx.ServerError("GetBaseRepo", err)
  273. return
  274. }
  275. }
  276. repos[repo.LowerName] = repo
  277. }
  278. ctx.Data["Dirs"] = repoNames
  279. ctx.Data["ReposMap"] = repos
  280. } else {
  281. repos, count64, err := repo_model.GetUserRepositories(ctx, &repo_model.SearchRepoOptions{Actor: ctxUser, Private: true, ListOptions: opts})
  282. if err != nil {
  283. ctx.ServerError("GetUserRepositories", err)
  284. return
  285. }
  286. count = int(count64)
  287. for i := range repos {
  288. if repos[i].IsFork {
  289. if err := repos[i].GetBaseRepo(ctx); err != nil {
  290. ctx.ServerError("GetBaseRepo", err)
  291. return
  292. }
  293. }
  294. }
  295. ctx.Data["Repos"] = repos
  296. }
  297. ctx.Data["ContextUser"] = ctxUser
  298. pager := context.NewPagination(count, opts.PageSize, opts.Page, 5)
  299. pager.SetDefaultParams(ctx)
  300. ctx.Data["Page"] = pager
  301. ctx.HTML(http.StatusOK, tplSettingsRepositories)
  302. }
  303. // Appearance render user's appearance settings
  304. func Appearance(ctx *context.Context) {
  305. ctx.Data["Title"] = ctx.Tr("settings.appearance")
  306. ctx.Data["PageIsSettingsAppearance"] = true
  307. var hiddenCommentTypes *big.Int
  308. val, err := user_model.GetUserSetting(ctx, ctx.Doer.ID, user_model.SettingsKeyHiddenCommentTypes)
  309. if err != nil {
  310. ctx.ServerError("GetUserSetting", err)
  311. return
  312. }
  313. hiddenCommentTypes, _ = new(big.Int).SetString(val, 10) // we can safely ignore the failed conversion here
  314. ctx.Data["IsCommentTypeGroupChecked"] = func(commentTypeGroup string) bool {
  315. return forms.IsUserHiddenCommentTypeGroupChecked(commentTypeGroup, hiddenCommentTypes)
  316. }
  317. ctx.HTML(http.StatusOK, tplSettingsAppearance)
  318. }
  319. // UpdateUIThemePost is used to update users' specific theme
  320. func UpdateUIThemePost(ctx *context.Context) {
  321. form := web.GetForm(ctx).(*forms.UpdateThemeForm)
  322. ctx.Data["Title"] = ctx.Tr("settings")
  323. ctx.Data["PageIsSettingsAppearance"] = true
  324. if ctx.HasError() {
  325. ctx.Redirect(setting.AppSubURL + "/user/settings/appearance")
  326. return
  327. }
  328. if !form.IsThemeExists() {
  329. ctx.Flash.Error(ctx.Tr("settings.theme_update_error"))
  330. ctx.Redirect(setting.AppSubURL + "/user/settings/appearance")
  331. return
  332. }
  333. if err := user_model.UpdateUserTheme(ctx, ctx.Doer, form.Theme); err != nil {
  334. ctx.Flash.Error(ctx.Tr("settings.theme_update_error"))
  335. ctx.Redirect(setting.AppSubURL + "/user/settings/appearance")
  336. return
  337. }
  338. log.Trace("Update user theme: %s", ctx.Doer.Name)
  339. ctx.Flash.Success(ctx.Tr("settings.theme_update_success"))
  340. ctx.Redirect(setting.AppSubURL + "/user/settings/appearance")
  341. }
  342. // UpdateUserLang update a user's language
  343. func UpdateUserLang(ctx *context.Context) {
  344. form := web.GetForm(ctx).(*forms.UpdateLanguageForm)
  345. ctx.Data["Title"] = ctx.Tr("settings")
  346. ctx.Data["PageIsSettingsAppearance"] = true
  347. if len(form.Language) != 0 {
  348. if !util.SliceContainsString(setting.Langs, form.Language) {
  349. ctx.Flash.Error(ctx.Tr("settings.update_language_not_found", form.Language))
  350. ctx.Redirect(setting.AppSubURL + "/user/settings/appearance")
  351. return
  352. }
  353. ctx.Doer.Language = form.Language
  354. }
  355. if err := user_model.UpdateUserSetting(ctx, ctx.Doer); err != nil {
  356. ctx.ServerError("UpdateUserSetting", err)
  357. return
  358. }
  359. // Update the language to the one we just set
  360. middleware.SetLocaleCookie(ctx.Resp, ctx.Doer.Language, 0)
  361. log.Trace("User settings updated: %s", ctx.Doer.Name)
  362. ctx.Flash.Success(translation.NewLocale(ctx.Doer.Language).Tr("settings.update_language_success"))
  363. ctx.Redirect(setting.AppSubURL + "/user/settings/appearance")
  364. }
  365. // UpdateUserHiddenComments update a user's shown comment types
  366. func UpdateUserHiddenComments(ctx *context.Context) {
  367. err := user_model.SetUserSetting(ctx, ctx.Doer.ID, user_model.SettingsKeyHiddenCommentTypes, forms.UserHiddenCommentTypesFromRequest(ctx).String())
  368. if err != nil {
  369. ctx.ServerError("SetUserSetting", err)
  370. return
  371. }
  372. log.Trace("User settings updated: %s", ctx.Doer.Name)
  373. ctx.Flash.Success(ctx.Tr("settings.saved_successfully"))
  374. ctx.Redirect(setting.AppSubURL + "/user/settings/appearance")
  375. }