2016-03-12 14:18:28 +01:00
< ? php
/**
* UserRepository.php
2017-10-21 08:40:00 +02:00
* Copyright (c) 2017 thegrumpydictator@gmail.com
2016-03-12 14:18:28 +01:00
*
2017-10-21 08:40:00 +02:00
* This file is part of Firefly III.
2016-10-05 06:52:15 +02:00
*
2017-10-21 08:40:00 +02:00
* Firefly III is free software: you can redistribute it and/or modify
* it under the terms of the GNU General Public License as published by
* the Free Software Foundation, either version 3 of the License, or
* (at your option) any later version.
*
* Firefly III is distributed in the hope that it will be useful,
* but WITHOUT ANY WARRANTY; without even the implied warranty of
* MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
* GNU General Public License for more details.
*
* You should have received a copy of the GNU General Public License
2017-12-17 14:44:05 +01:00
* along with Firefly III. If not, see <http://www.gnu.org/licenses/>.
2016-03-12 14:18:28 +01:00
*/
2017-03-24 15:01:53 +01:00
declare ( strict_types = 1 );
2016-05-20 12:41:23 +02:00
2016-03-12 14:18:28 +01:00
namespace FireflyIII\Repositories\User ;
2016-10-15 07:11:53 +02:00
use FireflyIII\Models\BudgetLimit ;
2016-03-12 14:18:28 +01:00
use FireflyIII\Models\Role ;
use FireflyIII\User ;
2018-07-22 18:50:27 +02:00
use Illuminate\Database\QueryException ;
2016-04-03 07:07:17 +02:00
use Illuminate\Support\Collection ;
2016-12-12 15:24:47 +01:00
use Log ;
2016-03-12 14:18:28 +01:00
/**
2017-11-15 12:25:49 +01:00
* Class UserRepository.
2018-07-25 19:43:02 +02:00
*
* @SuppressWarnings(PHPMD.TooManyPublicMethods)
2016-03-12 14:18:28 +01:00
*/
class UserRepository implements UserRepositoryInterface
{
2018-09-03 08:41:03 +02:00
/**
* Constructor.
*/
public function __construct ()
{
2018-12-15 07:59:02 +01:00
if ( 'testing' === config ( 'app.env' )) {
2018-09-03 08:41:03 +02:00
Log :: warning ( sprintf ( '%s should not be instantiated in the TEST environment!' , \get_class ( $this )));
}
}
2016-04-03 07:07:17 +02:00
/**
* @return Collection
*/
public function all () : Collection
{
return User :: orderBy ( 'id' , 'DESC' ) -> get ([ 'users.*' ]);
}
2016-03-12 14:18:28 +01:00
/**
* @param User $user
* @param string $role
*
* @return bool
*/
public function attachRole ( User $user , string $role ) : bool
{
2018-07-22 18:50:27 +02:00
$roleObject = Role :: where ( 'name' , $role ) -> first ();
if ( null === $roleObject ) {
2018-08-28 21:48:10 +02:00
Log :: error ( sprintf ( 'Could not find role "%s" in attachRole()' , $role ));
2018-09-03 08:41:03 +02:00
2018-07-22 18:50:27 +02:00
return false ;
}
try {
2018-08-04 00:27:28 +02:00
$user -> roles () -> attach ( $roleObject );
2018-07-22 18:50:27 +02:00
} catch ( QueryException $e ) {
// don't care
2018-08-28 21:48:10 +02:00
Log :: error ( sprintf ( 'Query exception when giving user a role: %s' , $e -> getMessage ()));
2018-07-22 18:50:27 +02:00
}
2016-03-12 14:18:28 +01:00
return true ;
}
2017-09-26 08:52:16 +02:00
/**
2017-09-26 09:15:21 +02:00
* This updates the users email address and records some things so it can be confirmed or undone later.
* The user is blocked until the change is confirmed.
*
2017-09-26 08:52:16 +02:00
* @param User $user
* @param string $newEmail
*
2017-09-26 09:15:21 +02:00
* @see updateEmail
*
2017-09-26 08:52:16 +02:00
* @return bool
2018-08-28 21:48:10 +02:00
* @throws \Exception
2017-09-26 08:52:16 +02:00
*/
public function changeEmail ( User $user , string $newEmail ) : bool
{
$oldEmail = $user -> email ;
// save old email as pref
2018-07-15 09:27:38 +02:00
app ( 'preferences' ) -> setForUser ( $user , 'previous_email_latest' , $oldEmail );
app ( 'preferences' ) -> setForUser ( $user , 'previous_email_' . date ( 'Y-m-d-H-i-s' ), $oldEmail );
2017-09-26 08:52:16 +02:00
// set undo and confirm token:
2018-07-22 18:50:27 +02:00
app ( 'preferences' ) -> setForUser ( $user , 'email_change_undo_token' , bin2hex ( random_bytes ( 16 )));
app ( 'preferences' ) -> setForUser ( $user , 'email_change_confirm_token' , bin2hex ( random_bytes ( 16 )));
2017-09-26 08:52:16 +02:00
// update user
$user -> email = $newEmail ;
$user -> blocked = 1 ;
$user -> blocked_code = 'email_changed' ;
$user -> save ();
return true ;
}
2016-12-30 13:47:23 +01:00
/**
* @param User $user
* @param string $password
*
* @return bool
*/
public function changePassword ( User $user , string $password ) : bool
{
$user -> password = bcrypt ( $password );
$user -> save ();
return true ;
}
2017-03-24 15:01:53 +01:00
/**
* @param User $user
* @param bool $isBlocked
* @param string $code
*
* @return bool
*/
public function changeStatus ( User $user , bool $isBlocked , string $code ) : bool
{
// change blocked status and code:
$user -> blocked = $isBlocked ;
$user -> blocked_code = $code ;
$user -> save ();
return true ;
}
2016-03-12 14:18:28 +01:00
/**
* @return int
*/
public function count () : int
{
2016-04-26 08:09:10 +02:00
return $this -> all () -> count ();
2016-03-12 14:18:28 +01:00
}
2016-10-15 07:11:53 +02:00
2018-01-21 18:06:57 +01:00
/**
* @param string $name
* @param string $displayName
* @param string $description
*
* @return Role
*/
public function createRole ( string $name , string $displayName , string $description ) : Role
{
return Role :: create ([ 'name' => $name , 'display_name' => $displayName , 'description' => $description ]);
}
2016-10-20 19:10:43 +02:00
/**
2016-12-12 15:24:47 +01:00
* @param User $user
*
* @return bool
2018-04-28 06:23:13 +02:00
* @throws \Exception
2016-12-12 15:24:47 +01:00
*/
public function destroy ( User $user ) : bool
{
Log :: debug ( sprintf ( 'Calling delete() on user %d' , $user -> id ));
$user -> delete ();
return true ;
}
2017-09-26 08:52:16 +02:00
/**
* @param string $email
*
* @return User|null
*/
public function findByEmail ( string $email ) : ? User
{
return User :: where ( 'email' , $email ) -> first ();
}
2018-03-30 16:44:33 +02:00
/**
* @param int $userId
*
* @return User|null
*/
public function findNull ( int $userId ) : ? User
{
return User :: find ( $userId );
}
2017-12-26 17:33:53 +01:00
/**
* Returns the first user in the DB. Generally only works when there is just one.
*
* @return null|User
*/
public function first () : ? User
{
2018-07-24 17:46:34 +02:00
return User :: orderBy ( 'id' , 'ASC' ) -> first ();
2017-12-26 17:33:53 +01:00
}
2018-01-21 18:06:57 +01:00
/**
* @param string $role
*
* @return Role|null
*/
public function getRole ( string $role ) : ? Role
{
return Role :: where ( 'name' , $role ) -> first ();
}
2018-12-20 22:03:34 +01:00
/**
* @param User $user
*
* @return string|null
*/
public function getRoleByUser ( User $user ) : ? string
{
/** @var Role $role */
$role = $user -> roles () -> first ();
if ( null !== $role ) {
return $role -> name ;
}
return null ;
}
2016-10-15 07:11:53 +02:00
/**
* Return basic user information.
*
* @param User $user
*
* @return array
*/
public function getUserData ( User $user ) : array
{
$return = [];
// two factor:
2018-07-15 09:27:38 +02:00
$is2faEnabled = app ( 'preferences' ) -> getForUser ( $user , 'twoFactorAuthEnabled' , false ) -> data ;
$has2faSecret = null !== app ( 'preferences' ) -> getForUser ( $user , 'twoFactorAuthSecret' );
2016-10-15 07:11:53 +02:00
$return [ 'has_2fa' ] = false ;
if ( $is2faEnabled && $has2faSecret ) {
$return [ 'has_2fa' ] = true ;
}
2018-07-22 18:50:27 +02:00
$return [ 'is_admin' ] = $this -> hasRole ( $user , 'owner' );
2018-04-02 14:50:17 +02:00
$return [ 'blocked' ] = 1 === ( int ) $user -> blocked ;
2016-10-15 07:11:53 +02:00
$return [ 'blocked_code' ] = $user -> blocked_code ;
$return [ 'accounts' ] = $user -> accounts () -> count ();
$return [ 'journals' ] = $user -> transactionJournals () -> count ();
$return [ 'transactions' ] = $user -> transactions () -> count ();
$return [ 'attachments' ] = $user -> attachments () -> count ();
$return [ 'attachments_size' ] = $user -> attachments () -> sum ( 'size' );
$return [ 'bills' ] = $user -> bills () -> count ();
$return [ 'categories' ] = $user -> categories () -> count ();
$return [ 'budgets' ] = $user -> budgets () -> count ();
2016-11-28 20:38:03 +01:00
$return [ 'budgets_with_limits' ] = BudgetLimit :: distinct ()
2016-12-04 18:02:19 +01:00
-> leftJoin ( 'budgets' , 'budgets.id' , '=' , 'budget_limits.budget_id' )
-> where ( 'amount' , '>' , 0 )
-> whereNull ( 'budgets.deleted_at' )
-> where ( 'budgets.user_id' , $user -> id ) -> get ([ 'budget_limits.budget_id' ]) -> count ();
2016-10-15 07:11:53 +02:00
$return [ 'export_jobs' ] = $user -> exportJobs () -> count ();
$return [ 'export_jobs_success' ] = $user -> exportJobs () -> where ( 'status' , 'export_downloaded' ) -> count ();
2018-01-24 11:08:50 +01:00
$return [ 'import_jobs' ] = $user -> importJobs () -> count ();
$return [ 'import_jobs_success' ] = $user -> importJobs () -> where ( 'status' , 'finished' ) -> count ();
2016-10-15 07:11:53 +02:00
$return [ 'rule_groups' ] = $user -> ruleGroups () -> count ();
$return [ 'rules' ] = $user -> rules () -> count ();
$return [ 'tags' ] = $user -> tags () -> count ();
return $return ;
}
2017-03-19 17:54:21 +01:00
/**
* @param User $user
* @param string $role
*
* @return bool
*/
public function hasRole ( User $user , string $role ) : bool
{
2018-07-22 18:50:27 +02:00
/** @var Role $userRole */
foreach ( $user -> roles as $userRole ) {
if ( $userRole -> name === $role ) {
return true ;
}
}
return false ;
2017-03-19 17:54:21 +01:00
}
2017-09-26 09:15:21 +02:00
2017-12-26 17:33:53 +01:00
/**
* @param array $data
*
* @return User
*/
public function store ( array $data ) : User
{
2018-12-03 07:18:05 +01:00
$user = User :: create (
2017-12-26 17:33:53 +01:00
[
2018-03-03 08:12:18 +01:00
'blocked' => $data [ 'blocked' ] ? ? false ,
'blocked_code' => $data [ 'blocked_code' ] ? ? null ,
'email' => $data [ 'email' ],
'password' => str_random ( 24 ),
2017-12-26 17:33:53 +01:00
]
);
2018-12-03 07:18:05 +01:00
$role = $data [ 'role' ] ? ? '' ;
if ( '' !== $role ) {
$this -> attachRole ( $user , $role );
}
return $user ;
2017-12-26 17:33:53 +01:00
}
2017-12-17 14:06:14 +01:00
/**
* @param User $user
*/
public function unblockUser ( User $user ) : void
{
$user -> blocked = 0 ;
$user -> blocked_code = '' ;
$user -> save ();
}
2018-03-03 08:12:18 +01:00
/**
* Update user info.
*
* @param User $user
* @param array $data
*
* @return User
*/
public function update ( User $user , array $data ) : User
{
$this -> updateEmail ( $user , $data [ 'email' ]);
$user -> blocked = $data [ 'blocked' ] ? ? false ;
$user -> blocked_code = $data [ 'blocked_code' ] ? ? null ;
$user -> save ();
return $user ;
}
2017-09-26 09:15:21 +02:00
/**
* This updates the users email address. Same as changeEmail just without most logging. This makes sure that the undo/confirm routine can't catch this one.
* The user is NOT blocked.
*
* @param User $user
* @param string $newEmail
*
* @see changeEmail
*
* @return bool
*/
public function updateEmail ( User $user , string $newEmail ) : bool
{
$oldEmail = $user -> email ;
// save old email as pref
2018-07-15 09:27:38 +02:00
app ( 'preferences' ) -> setForUser ( $user , 'admin_previous_email_latest' , $oldEmail );
app ( 'preferences' ) -> setForUser ( $user , 'admin_previous_email_' . date ( 'Y-m-d-H-i-s' ), $oldEmail );
2017-09-26 09:15:21 +02:00
$user -> email = $newEmail ;
$user -> save ();
return true ;
}
2016-03-14 20:38:23 +01:00
}