PluginProbe
Fluent Support – Helpdesk & Customer Support Ticket System / 2.4.0
Fluent Support – Helpdesk & Customer Support Ticket System v2.4.0
2.4.0 2.3.2 2.3.1 2.3.0 2.2.1 2.2.0 trunk 1.10.0 1.10.1 1.10.2 1.10.3 1.10.4 1.10.5 1.4.0 1.4.1 1.4.2 1.4.5 1.4.6 1.4.7 1.5.0 1.5.1 1.5.2 1.5.3 1.5.4 1.5.5 All 68 releases
← All changes | app/Http/Controllers/ChatMessageParserController.php +74 -73 1.5.02.4.0 View file →
@@ -1,107 +1,108 @@
1 1 <?php
2 2
3 3 namespace FluentSupport\App\Http\Controllers;
4 4
5 -use FluentSupport\App\Models\Agent;
6 -use FluentSupport\App\Models\Ticket;
7 -use FluentSupport\App\Services\Tickets\ResponseService;
8 -use FluentSupport\Framework\Request\Request;
9 -use FluentSupportPro\App\Services\Integrations\Slack\SlackNotification;
5 +use FluentSupport\Framework\Http\Request\Request;
6 +use FluentSupport\App\Services\Helper;
7 +use FluentSupport\App\Services\ThirdParty\HandleSlackEvent;
8 +use FluentSupport\App\Services\ThirdParty\HandleTelegramEvent;
10 9
10 +/**
11 + * ChatMessageParserController class is responsible for getting information from integrated 3rd party request and response
12 + * @package FluentSupport\App\Http\Controllers
13 + *
14 + * @version 1.0.0
15 + */
16 +
11 17 class ChatMessageParserController extends Controller
12 18 {
13 - public function handleTelegramWebhook(Request $request, $token)
19 + /**
20 + * handleTelegramWebhook will get the content from telegram, check the data validity and create response in a ticket
21 + * @param Request $request
22 + * @param HandleTelegramEvent $handler
23 + * @param string $token
24 + * @throws Exception
25 + * @return mixed
26 + */
27 + public function handleTelegramWebhook(Request $request, HandleTelegramEvent $handler, $token)
14 28 {
15 - if (!defined('FLUENTSUPPORTPRO')) {
16 - return $this->sendSuccess([
17 - 'message' => 'Telegram Integration requires pro version of Fluent Support',
29 + if (!$this->verifyWebhookSignature('telegram', $request)) {
30 + return $this->sendError([
31 + 'message' => __('Invalid request signature.', 'fluent-support'),
18 32 'status' => false
19 - ]);
33 + ], 403);
20 34 }
21 35
22 - // Validate Token
23 - if (\FluentSupportPro\App\Services\Integrations\Telegram\TelegramHelper::getWebhookToken() != $token) {
36 + try {
24 37 return $this->sendSuccess([
25 - 'message' => 'Bot Token could not be verified',
38 + 'message' => __('Response has been successfully recorded', 'fluent-support'),
39 + 'status' => true,
40 + 'data' => $handler->handleEvent($request->all(), $token)
41 + ]);
42 + } catch (\Exception $e) {
43 + return $this->sendError([
44 + 'message' => Helper::getSafeErrorMessage($e),
26 45 'status' => false
27 46 ]);
28 47 }
48 + }
29 49
30 - $payload = $request->all();
31 - $responseData = \FluentSupportPro\App\Services\Integrations\Telegram\TelegramHelper::parseTelegramBotPayload($payload);
32 -
33 - if (is_wp_error($responseData)) {
34 - do_action('fluent_support/telegram_payload_error', $responseData, $payload);
35 - return $this->sendSuccess([
36 - 'message' => $responseData->get_error_message(),
37 - 'type' => $responseData->get_error_code(),
50 + /**
51 + * handleSlackEvent responsible for getting information from integrated slack request and response
52 + * @param Request $request
53 + * @param HandleSlackEvent $handler
54 + * @param $token
55 + * @return array
56 + */
57 + public function handleSlackEvent(Request $request, HandleSlackEvent $handler, $token)
58 + {
59 + if (!$this->verifyWebhookSignature('slack', $request)) {
60 + return $this->sendError([
61 + 'message' => __('Invalid request signature.', 'fluent-support'),
38 62 'status' => false
39 - ]);
63 + ], 403);
40 64 }
41 65
42 - $data = [
43 - 'conversation_type' => 'response',
44 - 'content' => $responseData['response_text'],
45 - 'source' => 'telegram'
46 - ];
47 -
48 - $ticket = Ticket::find($responseData['ticket_id']);
49 -
50 - if (!$ticket) {
51 - return $this->sendSuccess([
52 - 'message' => __('No ticket found', 'fluent-support'),
53 - 'status' => false
66 + if ($request->getSafe('type', 'sanitize_text_field') === 'url_verification') {
67 + return new \WP_REST_Response($request->getSafe('challenge', 'sanitize_text_field'), 200, [
68 + 'Content-Type' => 'text/plain; charset=utf-8'
54 69 ]);
55 70 }
56 71
57 - $agent = Agent::find($responseData['agent_id']);
58 -
59 - if (!$agent) {
72 + try {
60 73 return $this->sendSuccess([
61 - 'message' => __('No Agent found', 'fluent-support'),
74 + 'message' => 'received',
75 + 'result' => $handler->handleEvent($token)
76 + ]);
77 + } catch (\Exception $e) {
78 + return $this->sendError([
79 + 'message' => Helper::getSafeErrorMessage($e),
62 80 'status' => false
63 81 ]);
64 82 }
65 -
66 - (new ResponseService)->createResponse($data, $agent, $ticket);
67 -
68 - return $this->sendSuccess([
69 - 'message' => __('Response has been successfully recorded', 'fluent-support'),
70 - 'status' => true,
71 - 'data' => $data
72 - ]);
73 -
74 83 }
75 84
76 - public function handleSlackEvent(Request $request, $token)
85 + /**
86 + * Verify webhook signature using platform-specific logic.
87 + *
88 + * Pro plugin or third-party code may hook into the filter
89 + * 'fluent_support/verify_webhook_signature_{platform}' to enable
90 + * cryptographic signature verification. When no verifier is
91 + * registered, fall back to the existing token-based validation
92 + * handled by the downstream webhook handlers.
93 + *
94 + * @param string $platform 'telegram' or 'slack'
95 + * @param Request $request
96 + * @return bool
97 + */
98 + private function verifyWebhookSignature($platform, Request $request)
77 99 {
78 - if (!defined('FLUENTSUPPORTPRO')) {
79 - return $this->sendSuccess([
80 - 'message' => 'Slack Integration requires pro version of Fluent Support',
81 - 'status' => false
82 - ]);
83 - }
100 + $hookName = 'fluent_support/verify_webhook_signature_' . $platform;
84 101
85 - // Validate Token
86 - if (\FluentSupportPro\App\Services\Integrations\Slack\SlackHelper::getWebhookToken() != $token) {
87 - return $this->sendSuccess([
88 - 'message' => 'Bot Token could not be verified',
89 - 'status' => false
90 - ]);
102 + if (!has_filter($hookName)) {
103 + return true;
91 104 }
92 105
93 - if ($request->get('type') == 'url_verification') {
94 - return $request->get('challenge');
95 - }
96 -
97 - $event = $request->get('event');
98 -
99 - $result = (new SlackNotification())->processSlackEvent($event);
100 -
101 - return $this->sendSuccess([
102 - 'message' => 'received',
103 - 'result' => $result
104 - ]);
106 + return (bool) apply_filters($hookName, false, $request);
105 107 }
106 -
107 108 }