PluginProbe
ActivityPub / 3.2.5
ActivityPub v3.2.5
9.3.1 9.3.0 9.2.2 9.2.1 9.2.0 9.1.0 9.0.2 9.0.1 9.0.0 8.3.0 8.2.1 8.2.0 8.1.1 1.0.5 1.0.6 1.0.7 1.0.8 1.0.9 1.1.0 1.2.0 1.3.0 2.0.0 2.0.1 2.1.0 2.1.1 All 160 releases
← All changes | includes/functions.php +403 -15 2.1.13.2.5 View file →
@@ -1,7 +1,8 @@
1 1 <?php
2 2 namespace Activitypub;
3 3
4 +use WP_Query;
4 5 use WP_Error;
5 6 use Activitypub\Http;
6 7 use Activitypub\Comment;
7 8 use Activitypub\Webfinger;
@@ -7,8 +8,9 @@
7 8 use Activitypub\Webfinger;
8 9 use Activitypub\Activity\Activity;
9 10 use Activitypub\Collection\Followers;
10 11 use Activitypub\Collection\Users;
12 +use Activitypub\Collection\Extra_Fields;
11 13
12 14 /**
13 15 * Returns the ActivityPub default JSON-context
14 16 *
@@ -51,14 +53,33 @@
51 53 $pre = apply_filters( 'pre_get_remote_metadata_by_actor', false, $actor );
52 54 if ( $pre ) {
53 55 return $pre;
54 56 }
57 +
58 + if ( is_array( $actor ) ) {
59 + if ( array_key_exists( 'id', $actor ) ) {
60 + $actor = $actor['id'];
61 + } elseif ( array_key_exists( 'url', $actor ) ) {
62 + $actor = $actor['url'];
63 + } else {
64 + return new WP_Error(
65 + 'activitypub_no_valid_actor_identifier',
66 + \__( 'The "actor" identifier is not valid', 'activitypub' ),
67 + array( 'status' => 404, 'actor' => $actor )
68 + );
69 + }
70 + }
71 +
55 72 if ( preg_match( '/^@?' . ACTIVITYPUB_USERNAME_REGEXP . '$/i', $actor ) ) {
56 73 $actor = Webfinger::resolve( $actor );
57 74 }
58 75
59 76 if ( ! $actor ) {
60 - return new WP_Error( 'activitypub_no_valid_actor_identifier', \__( 'The "actor" identifier is not valid', 'activitypub' ), array( 'status' => 404, 'actor' => $actor ) );
77 + return new WP_Error(
78 + 'activitypub_no_valid_actor_identifier',
79 + \__( 'The "actor" identifier is not valid', 'activitypub' ),
80 + array( 'status' => 404, 'actor' => $actor )
81 + );
61 82 }
62 83
63 84 if ( is_wp_error( $actor ) ) {
64 85 return $actor;
@@ -75,9 +96,13 @@
75 96 }
76 97 }
77 98
78 99 if ( ! \wp_http_validate_url( $actor ) ) {
79 - $metadata = new WP_Error( 'activitypub_no_valid_actor_url', \__( 'The "actor" is no valid URL', 'activitypub' ), array( 'status' => 400, 'actor' => $actor ) );
100 + $metadata = new WP_Error(
101 + 'activitypub_no_valid_actor_url',
102 + \__( 'The "actor" is no valid URL', 'activitypub' ),
103 + array( 'status' => 400, 'actor' => $actor )
104 + );
80 105 return $metadata;
81 106 }
82 107
83 108 $response = Http::get( $actor );
@@ -89,9 +114,13 @@
89 114 $metadata = \wp_remote_retrieve_body( $response );
90 115 $metadata = \json_decode( $metadata, true );
91 116
92 117 if ( ! $metadata ) {
93 - $metadata = new WP_Error( 'activitypub_invalid_json', \__( 'No valid JSON data', 'activitypub' ), array( 'status' => 400, 'actor' => $actor ) );
118 + $metadata = new WP_Error(
119 + 'activitypub_invalid_json',
120 + \__( 'No valid JSON data', 'activitypub' ),
121 + array( 'status' => 400, 'actor' => $actor )
122 + );
94 123 return $metadata;
95 124 }
96 125
97 126 \set_transient( $transient_key, $metadata, WEEK_IN_SECONDS );
@@ -133,9 +162,9 @@
133 162 function url_to_authorid( $url ) {
134 163 global $wp_rewrite;
135 164
136 165 // check if url hase the same host
137 - if ( \wp_parse_url( \site_url(), \PHP_URL_HOST ) !== \wp_parse_url( $url, \PHP_URL_HOST ) ) {
166 + if ( \wp_parse_url( \home_url(), \PHP_URL_HOST ) !== \wp_parse_url( $url, \PHP_URL_HOST ) ) {
138 167 return 0;
139 168 }
140 169
141 170 // first, check to see if there is a 'author=N' to match against
@@ -180,10 +209,9 @@
180 209
181 210 if ( ! is_null( $comment_id ) ) {
182 211 $comment = \get_comment( $comment_id );
183 212
184 - // Only return local origin comments
185 - if ( $comment && $comment->user_id ) {
213 + if ( $comment ) {
186 214 return $comment_id;
187 215 }
188 216 }
189 217
@@ -383,9 +411,9 @@
383 411 $return = true;
384 412 break;
385 413 }
386 414
387 - if ( ! \user_can( $user_id, 'publish_posts' ) ) {
415 + if ( ! \user_can( $user_id, 'activitypub' ) ) {
388 416 $return = true;
389 417 break;
390 418 }
391 419
@@ -448,9 +476,13 @@
448 476
449 477 $return = false;
450 478 break;
451 479 default:
452 - $return = new WP_Error( 'activitypub_wrong_user_type', __( 'Wrong user type', 'activitypub' ), array( 'status' => 400 ) );
480 + $return = new WP_Error(
481 + 'activitypub_wrong_user_type',
482 + __( 'Wrong user type', 'activitypub' ),
483 + array( 'status' => 400 )
484 + );
453 485 break;
454 486 }
455 487
456 488 return apply_filters( 'activitypub_is_user_type_disabled', $return, $type );
@@ -623,13 +655,13 @@
623 655 }
624 656
625 657 // if blog user is disabled
626 658 if ( is_user_disabled( Users::BLOG_USER_ID ) ) {
627 - return $count;
659 + return (int) $count;
628 660 }
629 661
630 662 // also count blog user
631 - return $count + 1;
663 + return (int) $count + 1;
632 664 }
633 665
634 666 /**
635 667 * Get the total number of users
@@ -643,9 +675,9 @@
643 675 }
644 676
645 677 $users = \get_users(
646 678 array(
647 - 'capability__in' => array( 'publish_posts' ),
679 + 'capability__in' => array( 'activitypub' ),
648 680 )
649 681 );
650 682
651 683 if ( is_array( $users ) ) {
@@ -655,12 +687,12 @@
655 687 }
656 688
657 689 // if blog user is disabled
658 690 if ( is_user_disabled( Users::BLOG_USER_ID ) ) {
659 - return $users;
691 + return (int) $users;
660 692 }
661 693
662 - return $users + 1;
694 + return (int) $users + 1;
663 695 }
664 696
665 697 /**
666 698 * Examine a comment ID and look up an existing comment it represents.
@@ -692,9 +724,9 @@
692 724 * @param array $object The ActivityPub object
693 725 *
694 726 * @return string The URI of the ActivityPub object
695 727 */
696 -function object_to_uri( $object ) {
728 +function object_to_uri( $object ) { // phpcs:ignore Universal.NamingConventions.NoReservedKeywordParameterNames.objectFound
697 729 // check if it is already simple
698 730 if ( ! $object || is_string( $object ) ) {
699 731 return $object;
700 732 }
@@ -709,10 +741,15 @@
709 741 if ( is_string( $object ) ) {
710 742 return $object;
711 743 }
712 744
745 + $type = 'Object';
746 + if ( isset( $object['type'] ) ) {
747 + $type = $object['type'];
748 + }
749 +
713 750 // return part of Object that makes most sense
714 - switch ( $object['type'] ) {
751 + switch ( $type ) {
715 752 case 'Link':
716 753 $object = $object['href'];
717 754 break;
718 755 default:
@@ -782,8 +819,9 @@
782 819 /**
783 820 * Mark a WordPress object as federated.
784 821 *
785 822 * @param WP_Comment|WP_Post|mixed $wp_object
823 + *
786 824 * @return void
787 825 */
788 826 function set_wp_object_state( $wp_object, $state ) {
789 827 $meta_key = 'activitypub_status';
@@ -797,8 +835,27 @@
797 835 }
798 836 }
799 837
800 838 /**
839 + * Get the federation state of a WordPress object.
840 + *
841 + * @param WP_Comment|WP_Post|mixed $wp_object
842 + *
843 + * @return string|false The state of the object or false if not found.
844 + */
845 +function get_wp_object_state( $wp_object ) {
846 + $meta_key = 'activitypub_status';
847 +
848 + if ( $wp_object instanceof \WP_Post ) {
849 + return \get_post_meta( $wp_object->ID, $meta_key, true );
850 + } elseif ( $wp_object instanceof \WP_Comment ) {
851 + return \get_comment_meta( $wp_object->comment_ID, $meta_key, true );
852 + } else {
853 + return \apply_filters( 'activitypub_get_wp_object_state', false, $wp_object );
854 + }
855 +}
856 +
857 +/**
801 858 * Get the description of a post type.
802 859 *
803 860 * Set some default descriptions for the default post types.
804 861 *
@@ -825,5 +882,336 @@
825 882 }
826 883 }
827 884
828 885 return apply_filters( 'activitypub_post_type_description', $description, $post_type->name, $post_type );
886 +}
887 +
888 +/**
889 + * Get the masked WordPress version to only show the major and minor version.
890 + *
891 + * @return string The masked version.
892 + */
893 +function get_masked_wp_version() {
894 + // only show the major and minor version
895 + $version = get_bloginfo( 'version' );
896 + // strip the RC or beta part
897 + $version = preg_replace( '/-.*$/', '', $version );
898 + $version = explode( '.', $version );
899 + $version = array_slice( $version, 0, 2 );
900 +
901 + return implode( '.', $version );
902 +}
903 +
904 +/**
905 + * Get the enclosures of a post.
906 + *
907 + * @param int $post_id The post ID.
908 + *
909 + * @return array The enclosures.
910 + */
911 +function get_enclosures( $post_id ) {
912 + $enclosures = get_post_meta( $post_id, 'enclosure' );
913 +
914 + if ( ! $enclosures ) {
915 + return array();
916 + }
917 +
918 + $enclosures = array_map(
919 + function ( $enclosure ) {
920 + $attributes = explode( "\n", $enclosure );
921 +
922 + if ( ! isset( $attributes[0] ) || ! \wp_http_validate_url( $attributes[0] ) ) {
923 + return false;
924 + }
925 +
926 + return array(
927 + 'url' => $attributes[0],
928 + 'length' => isset( $attributes[1] ) ? trim( $attributes[1] ) : null,
929 + 'mediaType' => isset( $attributes[2] ) ? trim( $attributes[2] ) : null,
930 + );
931 + },
932 + $enclosures
933 + );
934 +
935 + return array_filter( $enclosures );
936 +}
937 +
938 +/**
939 + * Retrieves the IDs of the ancestors of a comment.
940 + *
941 + * Adaption of `get_post_ancestors` from WordPress core.
942 + *
943 + * @see https://developer.wordpress.org/reference/functions/get_post_ancestors/
944 + *
945 + * @param int|WP_Comment $comment Comment ID or comment object.
946 + *
947 + * @return WP_Comment[] Array of ancestor comments or empty array if there are none.
948 + */
949 +function get_comment_ancestors( $comment ) {
950 + $comment = \get_comment( $comment );
951 +
952 + // phpcs:ignore Universal.Operators.StrictComparisons.LooseEqual
953 + if ( ! $comment || empty( $comment->comment_parent ) || $comment->comment_parent == $comment->comment_ID ) {
954 + return array();
955 + }
956 +
957 + $ancestors = array();
958 +
959 + $id = (int) $comment->comment_parent;
960 + $ancestors[] = $id;
961 +
962 + // phpcs:ignore Generic.CodeAnalysis.AssignmentInCondition.FoundInWhileCondition
963 + while ( $id > 0 ) {
964 + $ancestor = \get_comment( $id );
965 + $parent_id = (int) $ancestor->comment_parent;
966 +
967 + // Loop detection: If the ancestor has been seen before, break.
968 + if ( empty( $parent_id ) || ( $parent_id === (int) $comment->comment_ID ) || in_array( $parent_id, $ancestors, true ) ) {
969 + break;
970 + }
971 +
972 + $id = $parent_id;
973 + $ancestors[] = $id;
974 + }
975 +
976 + return $ancestors;
977 +}
978 +
979 +/**
980 + * Change the display of large numbers on the site.
981 + *
982 + * @author Jeremy Herve
983 + *
984 + * @see https://wordpress.org/support/topic/abbreviate-numbers-with-k/
985 + *
986 + * @param string $formatted Converted number in string format.
987 + * @param float $number The number to convert based on locale.
988 + * @param int $decimals Precision of the number of decimal places.
989 + *
990 + * @return string Converted number in string format.
991 + */
992 +function custom_large_numbers( $formatted, $number, $decimals ) {
993 + global $wp_locale;
994 +
995 + $decimals = 0;
996 + $decimal_point = '.';
997 + $thousands_sep = ',';
998 +
999 + if ( isset( $wp_locale ) ) {
1000 + $decimals = (int) $wp_locale->number_format['decimal_point'];
1001 + $decimal_point = $wp_locale->number_format['decimal_point'];
1002 + $thousands_sep = $wp_locale->number_format['thousands_sep'];
1003 + }
1004 +
1005 + if ( $number < 1000 ) { // any number less than a Thousand.
1006 + return \number_format( $number, $decimals, $decimal_point, $thousands_sep );
1007 + } elseif ( $number < 1000000 ) { // any number less than a million
1008 + return \number_format( $number / 1000, $decimals, $decimal_point, $thousands_sep ) . 'K';
1009 + } elseif ( $number < 1000000000 ) { // any number less than a billion
1010 + return \number_format( $number / 1000000, $decimals, $decimal_point, $thousands_sep ) . 'M';
1011 + } else { // at least a billion
1012 + return \number_format( $number / 1000000000, $decimals, $decimal_point, $thousands_sep ) . 'B';
1013 + }
1014 +
1015 + // Default fallback. We should not get here.
1016 + return $formatted;
1017 +}
1018 +
1019 +/**
1020 + * Registers a ActivityPub comment type.
1021 + *
1022 + *
1023 + * @param string $comment_type Key for comment type.
1024 + * @param array $args Arguments.
1025 + *
1026 + * @return array The registered Activitypub comment type.
1027 + */
1028 +function register_comment_type( $comment_type, $args = array() ) {
1029 + global $activitypub_comment_types;
1030 +
1031 + if ( ! is_array( $activitypub_comment_types ) ) {
1032 + $activitypub_comment_types = array();
1033 + }
1034 +
1035 + // Sanitize comment type name.
1036 + $comment_type = sanitize_key( $comment_type );
1037 +
1038 + $activitypub_comment_types[ $comment_type ] = $args;
1039 +
1040 + /**
1041 + * Fires after a ActivityPub comment type is registered.
1042 + *
1043 + *
1044 + * @param string $comment_type Comment type.
1045 + * @param array $args Arguments used to register the comment type.
1046 + */
1047 + do_action( 'activitypub_registered_comment_type', $comment_type, $args );
1048 +
1049 + return $args;
1050 +}
1051 +
1052 +/**
1053 + * Normalize a URL.
1054 + *
1055 + * @param string $url The URL.
1056 + *
1057 + * @return string The normalized URL.
1058 + */
1059 +function normalize_url( $url ) {
1060 + $url = \untrailingslashit( $url );
1061 + $url = \str_replace( 'https://', '', $url );
1062 + $url = \str_replace( 'http://', '', $url );
1063 + $url = \str_replace( 'www.', '', $url );
1064 +
1065 + return $url;
1066 +}
1067 +
1068 +/**
1069 + * Normalize a host.
1070 + *
1071 + * @param string $host The host.
1072 + *
1073 + * @return string The normalized host.
1074 + */
1075 +function normalize_host( $host ) {
1076 + return \str_replace( 'www.', '', $host );
1077 +}
1078 +
1079 +/**
1080 + * Get the reply intent URI.
1081 + *
1082 + * @return string The reply intent URI.
1083 + */
1084 +function get_reply_intent_uri() {
1085 + return sprintf(
1086 + 'javascript:(()=>{window.open(\'%s\'+encodeURIComponent(window.location.href));})();',
1087 + esc_url( \admin_url( 'post-new.php?in_reply_to=' ) )
1088 + );
1089 +}
1090 +
1091 +/**
1092 + * Replace content with links, mentions or hashtags by Regex callback and not affect protected tags.
1093 + *
1094 + * @param $content string The content that should be changed
1095 + * @param $regex string The regex to use
1096 + * @param $regex_callback callable Callback for replacement logic
1097 + *
1098 + * @return string The content with links, mentions, hashtags, etc.
1099 + */
1100 +function enrich_content_data( $content, $regex, $regex_callback ) {
1101 + // small protection against execution timeouts: limit to 1 MB
1102 + if ( mb_strlen( $content ) > MB_IN_BYTES ) {
1103 + return $content;
1104 + }
1105 + $tag_stack = array();
1106 + $protected_tags = array(
1107 + 'pre',
1108 + 'code',
1109 + 'textarea',
1110 + 'style',
1111 + 'a',
1112 + );
1113 + $content_with_links = '';
1114 + $in_protected_tag = false;
1115 + foreach ( wp_html_split( $content ) as $chunk ) {
1116 + if ( preg_match( '#^<!--[\s\S]*-->$#i', $chunk, $m ) ) {
1117 + $content_with_links .= $chunk;
1118 + continue;
1119 + }
1120 +
1121 + if ( preg_match( '#^<(/)?([a-z-]+)\b[^>]*>$#i', $chunk, $m ) ) {
1122 + $tag = strtolower( $m[2] );
1123 + if ( '/' === $m[1] ) {
1124 + // Closing tag.
1125 + $i = array_search( $tag, $tag_stack, true );
1126 + // We can only remove the tag from the stack if it is in the stack.
1127 + if ( false !== $i ) {
1128 + $tag_stack = array_slice( $tag_stack, 0, $i );
1129 + }
1130 + } else {
1131 + // Opening tag, add it to the stack.
1132 + $tag_stack[] = $tag;
1133 + }
1134 +
1135 + // If we're in a protected tag, the tag_stack contains at least one protected tag string.
1136 + // The protected tag state can only change when we encounter a start or end tag.
1137 + $in_protected_tag = array_intersect( $tag_stack, $protected_tags );
1138 +
1139 + // Never inspect tags.
1140 + $content_with_links .= $chunk;
1141 + continue;
1142 + }
1143 +
1144 + if ( $in_protected_tag ) {
1145 + // Don't inspect a chunk inside an inspected tag.
1146 + $content_with_links .= $chunk;
1147 + continue;
1148 + }
1149 +
1150 + // Only reachable when there is no protected tag in the stack.
1151 + $content_with_links .= \preg_replace_callback( $regex, $regex_callback, $chunk );
1152 + }
1153 +
1154 + return $content_with_links;
1155 +}
1156 +
1157 +/**
1158 + * Generate a summary of a post.
1159 + *
1160 + * This function generates a summary of a post by extracting:
1161 + *
1162 + * 1. The post excerpt if it exists.
1163 + * 2. The first part of the post content if it contains the <!--more--> tag.
1164 + * 3. An excerpt of the post content if it is longer than the specified length.
1165 + *
1166 + * @param int|WP_Post $post The post ID or post object.
1167 + * @param integer $length The maximum length of the summary.
1168 + * Default is 500. It will ne ignored if the post excerpt
1169 + * and the content above the <!--more--> tag.
1170 + *
1171 + * @return string The generated post summary.
1172 + */
1173 +function generate_post_summary( $post, $length = 500 ) {
1174 + $post = get_post( $post );
1175 +
1176 + if ( ! $post ) {
1177 + return '';
1178 + }
1179 +
1180 + $content = \sanitize_post_field( 'post_excerpt', $post->post_excerpt, $post->ID );
1181 +
1182 + if ( $content ) {
1183 + return \apply_filters( 'the_excerpt', $content );
1184 + }
1185 +
1186 + $content = \sanitize_post_field( 'post_content', $post->post_content, $post->ID );
1187 + $content_parts = \get_extended( $content );
1188 +
1189 + $excerpt_more = \apply_filters( 'activitypub_excerpt_more', '[…]' );
1190 + $length = $length - strlen( $excerpt_more );
1191 +
1192 + // Check for the <!--more--> tag.
1193 + if (
1194 + ! empty( $content_parts['extended'] ) &&
1195 + ! empty( $content_parts['main'] )
1196 + ) {
1197 + $content = $content_parts['main'] . ' ' . $excerpt_more;
1198 + $length = null;
1199 + }
1200 +
1201 + $content = \html_entity_decode( $content );
1202 + $content = \wp_strip_all_tags( $content );
1203 + $content = \trim( $content );
1204 + $content = \preg_replace( '/\R+/m', "\n\n", $content );
1205 + $content = \preg_replace( '/[\r\t]/', '', $content );
1206 +
1207 + if ( $length && \strlen( $content ) > $length ) {
1208 + $content = \wordwrap( $content, $length, '</activitypub-summary>' );
1209 + $content = \explode( '</activitypub-summary>', $content, 2 );
1210 + $content = $content[0] . ' ' . $excerpt_more;
1211 + }
1212 +
1213 + /* Removed until this is merged: https://github.com/mastodon/mastodon/pull/28629
1214 + return \apply_filters( 'the_excerpt', $content );
1215 + */
1216 + return $content;
829 1217 }