* * @author John Molakvoæ * * @license AGPL-3.0-or-later * * This program is free software: you can redistribute it and/or modify * it under the terms of the GNU Affero General Public License as * published by the Free Software Foundation, either version 3 of the * License, or (at your option) any later version. * * This program is distributed in the hope that it will be useful, * but WITHOUT ANY WARRANTY; without even the implied warranty of * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the * GNU Affero General Public License for more details. * * You should have received a copy of the GNU Affero General Public License * along with this program. If not, see . * */ namespace OCA\Polaroid\Controller; use OCA\Polaroid\AppInfo\Application; use OCP\AppFramework\Controller; use OCP\AppFramework\Http; use OCP\AppFramework\Http\JSONResponse; use OCP\AppFramework\Http\StreamResponse; use OCP\AppFramework\Http\ContentSecurityPolicy; use OCP\IConfig; use OCP\IDBConnection; use OCP\IRequest; use OCP\IUserSession; class ApiController extends Controller { private IConfig $config; private IUserSession $userSession; private IDBConnection $connection; private \OCA\Polaroid\Db\Util $util; public function __construct( IRequest $request, IConfig $config, IUserSession $userSession, IDBConnection $connection ) { parent::__construct(Application::APPNAME, $request); $this->config = $config; $this->userSession = $userSession; $this->connection = $connection; $this->util = new \OCA\Polaroid\Db\Util($this->connection); } /** * @NoAdminRequired * @NoCSRFRequired * * @return JSONResponse */ public function days(): JSONResponse { $user = $this->userSession->getUser(); if (is_null($user)) { return new JSONResponse([], Http::STATUS_PRECONDITION_FAILED); } $list = $this->util->getDays($user->getUID()); return new JSONResponse($list, Http::STATUS_OK); } /** * @NoAdminRequired * @NoCSRFRequired * * @return JSONResponse */ public function day(string $id): JSONResponse { $user = $this->userSession->getUser(); if (is_null($user) || !is_numeric($id)) { return new JSONResponse([], Http::STATUS_PRECONDITION_FAILED); } $list = $this->util->getDay($user->getUID(), intval($id)); return new JSONResponse($list, Http::STATUS_OK); } /** * @NoAdminRequired * @NoCSRFRequired * * @return JSONResponse */ public function shared(string $folder): JSONResponse { $user = $this->userSession->getUser(); if (is_null($user) || !is_numeric($folder)) { return new JSONResponse([], Http::STATUS_PRECONDITION_FAILED); } $list = $this->util->getDaysFolder(intval($folder)); return new JSONResponse($list, Http::STATUS_OK); } /** * @NoAdminRequired * @NoCSRFRequired * * @return JSONResponse */ public function sharedDay(string $folder, string $dayId): JSONResponse { $user = $this->userSession->getUser(); if (is_null($user) || !is_numeric($folder) || !is_numeric($dayId)) { return new JSONResponse([], Http::STATUS_PRECONDITION_FAILED); } $list = $this->util->getDayFolder(intval($folder), intval($dayId)); return new JSONResponse($list, Http::STATUS_OK); } /** * @NoAdminRequired * * update preferences (user setting) * * @param string key the identifier to change * @param string value the value to set * * @return JSONResponse an empty JSONResponse with respective http status code */ public function setUserConfig(string $key, string $value): JSONResponse { $user = $this->userSession->getUser(); if (is_null($user)) { return new JSONResponse([], Http::STATUS_PRECONDITION_FAILED); } $userId = $user->getUid(); $this->config->setUserValue($userId, Application::APPNAME, $key, $value); return new JSONResponse([], Http::STATUS_OK); } /** * @NoAdminRequired * @NoCSRFRequired */ public function serviceWorker(): StreamResponse { $response = new StreamResponse(__DIR__.'/../../js/photos-service-worker.js'); $response->setHeaders([ 'Content-Type' => 'application/javascript', 'Service-Worker-Allowed' => '/' ]); $policy = new ContentSecurityPolicy(); $policy->addAllowedWorkerSrcDomain("'self'"); $policy->addAllowedScriptDomain("'self'"); $policy->addAllowedConnectDomain("'self'"); $response->setContentSecurityPolicy($policy); return $response; } }