'',
'data_type' => 'serialize',
'priority' => 'default',
'show_reset' => false,
'show_restore' => false,
'nav' => 'normal',
'theme' => 'dark',
'class' => '',
'defaults' => array(),
);
// run comment metabox construct
public function __construct( $key, $params = array() ) {
$this->unique = $key;
$this->args = apply_filters( "adminify_{$this->unique}_args", wp_parse_args( $params['args'], $this->args ), $this );
$this->sections = apply_filters( "adminify_{$this->unique}_sections", $params['sections'], $this );
$this->pre_fields = $this->pre_fields( $this->sections );
add_action( 'add_meta_boxes_comment', array( $this, 'add_comment_meta_box' ) );
add_action( 'edit_comment', array( $this, 'save_comment_meta_box' ) );
if ( ! empty( $this->args['class'] ) ) {
add_filter( 'postbox_classes_comment_'. $this->unique, array( $this, 'add_comment_metabox_classes' ) );
}
}
// instance
public static function instance( $key, $params = array() ) {
return new self( $key, $params );
}
public function add_comment_metabox_classes( $classes ) {
if ( ! empty( $this->args['class'] ) ) {
$classes[] = $this->args['class'];
}
return $classes;
}
// add comment metabox
public function add_comment_meta_box( $post_type ) {
add_meta_box( $this->unique, $this->args['title'], array( $this, 'add_comment_meta_box_content' ), 'comment', 'normal', $this->args['priority'], $this->args );
}
// get default value
public function get_default( $field ) {
$default = ( isset( $field['default'] ) ) ? $field['default'] : '';
$default = ( isset( $this->args['defaults'][$field['id']] ) ) ? $this->args['defaults'][$field['id']] : $default;
return $default;
}
// get meta value
public function get_meta_value( $comment_id, $field ) {
$value = null;
if ( ! empty( $comment_id ) && ! empty( $field['id'] ) ) {
if ( $this->args['data_type'] !== 'serialize' ) {
$meta = get_comment_meta( $comment_id, $field['id'] );
$value = ( isset( $meta[0] ) ) ? $meta[0] : null;
} else {
$meta = get_comment_meta( $comment_id, $this->unique, true );
$value = ( isset( $meta[$field['id']] ) ) ? $meta[$field['id']] : null;
}
}
$default = ( isset( $field['id'] ) ) ? $this->get_default( $field ) : '';
$value = ( isset( $value ) ) ? $value : $default;
return $value;
}
// add comment metabox content
public function add_comment_meta_box_content( $comment, $callback ) {
$has_nav = ( count( $this->sections ) > 1 ) ? true : false;
$show_all = ( ! $has_nav ) ? ' adminify-show-all' : '';
$errors = ( is_object ( $comment ) ) ? get_comment_meta( $comment->comment_ID, '_adminify_errors_'. $this->unique, true ) : array();
$errors = ( ! empty( $errors ) ) ? $errors : array();
$theme = ( $this->args['theme'] ) ? ' adminify-theme-'. $this->args['theme'] : '';
$nav_type = ( $this->args['nav'] === 'inline' ) ? 'inline' : 'normal';
if ( is_object( $comment ) && ! empty( $errors ) ) {
delete_comment_meta( $comment->comment_ID, '_adminify_errors_'. $this->unique );
}
wp_nonce_field( 'adminify_comment_metabox_nonce', 'adminify_comment_metabox_nonce'. $this->unique );
echo '
';
}
// save comment metabox
public function save_comment_meta_box( $comment_id ) {
$count = 1;
$data = array();
$errors = array();
$noncekey = 'adminify_comment_metabox_nonce'. $this->unique;
$nonce = ( ! empty( $_POST[ $noncekey ] ) ) ? sanitize_text_field( wp_unslash( $_POST[ $noncekey ] ) ) : '';
if ( ( defined( 'DOING_AUTOSAVE' ) && DOING_AUTOSAVE ) || ! wp_verify_nonce( $nonce, 'adminify_comment_metabox_nonce' ) ) {
return $comment_id;
}
// Authorization: a valid nonce proves intent, not permission.
if ( ! current_user_can( 'edit_comment', $comment_id ) ) {
return $comment_id;
}
// XSS ok.
// No worries, This "POST" requests is sanitizing in the below foreach.
$request = ( ! empty( $_POST[ $this->unique ] ) ) ? wp_unslash( $_POST[ $this->unique ] ) : array(); // phpcs:ignore WordPress.Security.ValidatedSanitizedInput.InputNotSanitized -- each field is sanitized individually by the framework's per-field sanitize handlers.
if ( ! empty( $request ) ) {
foreach ( $this->sections as $section ) {
if ( ! empty( $section['fields'] ) ) {
foreach ( $section['fields'] as $field ) {
if ( ! empty( $field['id'] ) ) {
$field_id = $field['id'];
$field_value = isset( $request[$field_id] ) ? $request[$field_id] : '';
// Sanitize "post" request of field.
if ( ! isset( $field['sanitize'] ) ) {
if( is_array( $field_value ) ) {
$data[$field_id] = wp_kses_post_deep( $field_value );
} else {
$data[$field_id] = wp_kses_post( $field_value );
}
} else if( isset( $field['sanitize'] ) && is_callable( $field['sanitize'] ) ) {
$data[$field_id] = call_user_func( $field['sanitize'], $field_value );
} else {
// A sanitize callback was declared but is not callable; never store raw input.
if ( is_array( $field_value ) ) {
$data[$field_id] = wp_kses_post_deep( $field_value );
} else {
$data[$field_id] = wp_kses_post( $field_value );
}
}
// Validate "post" request of field.
if ( isset( $field['validate'] ) && is_callable( $field['validate'] ) ) {
$has_validated = call_user_func( $field['validate'], $field_value );
if ( ! empty( $has_validated ) ) {
$errors['sections'][$count] = true;
$errors['fields'][$field_id] = $has_validated;
$data[$field_id] = $this->get_meta_value( $comment_id, $field );
}
}
}
}
}
$count++;
}
}
$data = apply_filters( "adminify_{$this->unique}_save", $data, $comment_id, $this );
do_action( "adminify_{$this->unique}_save_before", $data, $comment_id, $this );
if ( empty( $data ) || ! empty( $request['_reset'] ) ) {
if ( $this->args['data_type'] !== 'serialize' ) {
foreach ( $this->pre_fields as $field ) {
if ( ! empty( $field['id'] ) ) {
delete_comment_meta( $comment_id, $field['id'] );
}
}
} else {
delete_comment_meta( $comment_id, $this->unique );
}
} else {
if ( $this->args['data_type'] !== 'serialize' ) {
foreach ( $data as $key => $value ) {
update_comment_meta( $comment_id, $key, $value );
}
} else {
update_comment_meta( $comment_id, $this->unique, $data );
}
if ( ! empty( $errors ) ) {
update_comment_meta( $comment_id, '_adminify_errors_'. $this->unique, $errors );
}
}
do_action( "adminify_{$this->unique}_saved", $data, $comment_id, $this );
do_action( "adminify_{$this->unique}_save_after", $data, $comment_id, $this );
}
}
}
'; $tab_key = 1; foreach ( $this->sections as $section ) { $tab_icon = ( ! empty( $section['icon'] ) ) ? '' : ''; $tab_error = ( ! empty( $errors['sections'][$tab_key] ) ) ? '!' : ''; echo '- '. wp_kses_post( $tab_icon ) . esc_html( $section['title'] ) . wp_kses_post( $tab_error ) .'
';
$tab_key++;
}
echo '
'; echo ''. wp_kses_post( $section_icon ) . esc_html( $section_title ) .'