PluginProbe ʕ •ᴥ•ʔ
Independent Analytics – WordPress Analytics Plugin / 2.1.4
Independent Analytics – WordPress Analytics Plugin v2.1.4
2.15.5 2.15.4 2.15.3 2.15.2 2.15.1 2.15.0 2.14.10 trunk 1.1 1.10 1.10.1 1.11 1.12 1.13 1.14 1.15 1.16 1.17 1.17.1 1.17.2 1.17.3 1.17.4 1.18 1.18.1 1.19.0 1.19.1 1.2 1.20.0 1.21.0 1.22.0 1.22.1 1.23.0 1.23.1 1.24.0 1.24.1 1.25.0 1.25.1 1.26.0 1.27.0 1.28.0 1.28.1 1.28.2 1.28.3 1.29.0 1.3 1.30.0 1.30.1 1.4 1.5 1.6 1.7 1.8 1.9 2.0.0 2.0.1 2.1.4 2.1.5 2.1.6 2.10.0 2.10.1 2.10.2 2.10.3 2.10.4 2.11.0 2.11.1 2.11.10 2.11.2 2.11.3 2.11.4 2.11.5 2.11.6 2.11.7 2.11.8 2.11.9 2.12.0 2.12.1 2.12.2 2.13.1 2.13.2 2.13.5 2.13.6 2.14.0 2.14.1 2.14.2 2.14.4 2.14.6 2.14.7 2.14.8 2.14.9 2.2.0 2.2.1 2.3.1 2.3.2 2.4.2 2.4.3 2.5.0 2.5.1 2.6.0 2.6.1 2.6.2 2.6.3 2.6.4 2.7.0 2.7.1 2.7.2 2.7.3 2.8.2 2.8.3 2.8.4 2.8.5 2.8.6 2.8.7 2.8.8 2.8.9 2.9.2 2.9.3 2.9.4 2.9.5 2.9.6 2.9.7
independent-analytics / IAWP / REST_API.php
independent-analytics / IAWP Last commit date
AJAX 2 years ago Date_Range 2 years ago Interval 3 years ago Menu_Bar_Stats 2 years ago Migrations 2 years ago Models 2 years ago Public_API 2 years ago Rows 2 years ago Statistics 2 years ago Tables 2 years ago Utils 2 years ago Campaign_Builder.php 2 years ago Capability_Manager.php 3 years ago Chart.php 2 years ago Chart_Geo.php 2 years ago Cron_Manager.php 2 years ago Current_Traffic_Finder.php 2 years ago Dashboard_Options.php 2 years ago Dashboard_Widget.php 2 years ago Database_Manager.php 2 years ago Email_Chart.php 2 years ago Email_Reports.php 2 years ago Empty_Report_Option.php 2 years ago Env.php 2 years ago Filters.php 3 years ago Geo_Database_Background_Job.php 2 years ago Geo_Database_Manager.php 2 years ago Geoposition.php 2 years ago Icon_Directory.php 2 years ago Icon_Directory_Factory.php 2 years ago Illuminate_Builder.php 2 years ago Independent_Analytics.php 2 years ago Interrupt.php 2 years ago Known_Referrers.php 2 years ago Plugin_Conflict_Detector.php 2 years ago Query.php 2 years ago Quick_Stats.php 2 years ago REST_API.php 2 years ago Real_Time.php 2 years ago Report.php 2 years ago Report_Finder.php 2 years ago Report_Options_Parser.php 2 years ago Resource_Identifier.php 3 years ago Settings.php 2 years ago Sort_Configuration.php 2 years ago Track_Resource_Changes.php 2 years ago View.php 2 years ago View_Counter.php 2 years ago Visitors_Over_Time_Finder.php 2 years ago WP_Option_Cache_Bust.php 2 years ago WooCommerce_Order.php 2 years ago WooCommerce_Referrer_Meta_Box.php 2 years ago
REST_API.php
213 lines
1 <?php
2
3 namespace IAWP_SCOPED\IAWP;
4
5 use IAWP_SCOPED\IAWP\Models\Visitor;
6 use IAWP_SCOPED\IAWP\Utils\Device;
7 use IAWP_SCOPED\IAWP\Utils\Request;
8 use IAWP_SCOPED\IAWP\Utils\Salt;
9 use IAWP_SCOPED\IAWP\Utils\Security;
10 use IAWP_SCOPED\IAWP\Utils\String_Util;
11 use IAWP_SCOPED\IAWP\Utils\URL;
12 class REST_API
13 {
14 public function __construct()
15 {
16 \add_action('wp_footer', [$this, 'echo_tracking_script']);
17 \add_action('rest_api_init', [$this, 'register_rest_api']);
18 // Support for PDF Viewer by Themencode
19 \add_action('tnc_pvfw_viewer_head', [$this, 'echo_tracking_script']);
20 // Support for Coming Soon and Maintenance by Colorlib
21 \add_action('ccsm_header', [$this, 'echo_tracking_script']);
22 }
23 public function echo_tracking_script()
24 {
25 if (!\get_option('iawp_track_authenticated_users') && \is_user_logged_in()) {
26 // Todo - Can we clear the cache plugins to make sure that the pages so tracking code as user logs in & out?
27 return;
28 }
29 if ($this->block_user_role()) {
30 return;
31 }
32 // Don't track post or page previews
33 if (\is_preview()) {
34 return;
35 }
36 $payload = [];
37 $current_resource = Resource_Identifier::for_viewed_resource();
38 if (\is_null($current_resource)) {
39 return;
40 }
41 $payload['resource'] = $current_resource->type();
42 if ($current_resource->has_meta()) {
43 $payload[$current_resource->meta_key()] = $current_resource->meta_value();
44 }
45 $payload['page'] = \max(1, \get_query_var('paged'));
46 $data = ['payload' => $payload];
47 $data['signature'] = \md5(Salt::request_payload_salt() . \json_encode($data['payload']));
48 $url = \get_rest_url() . 'iawp/search';
49 ?>
50 <script>
51 (function () {
52 document.addEventListener("DOMContentLoaded", function (e) {
53 if (document.hasOwnProperty("visibilityState") && document.visibilityState === "prerender") {
54 return;
55 }
56
57 <?php
58 if (!\defined('IAWP_TESTING')) {
59 ?>
60 if (navigator.webdriver || /bot|crawler|spider|crawling|semrushbot|chrome-lighthouse/i.test(navigator.userAgent)) {
61 return;
62 }
63 <?php
64 }
65 ?>
66
67 let referrer_url = null;
68
69 if (typeof document.referrer === 'string' && document.referrer.length > 0) {
70 referrer_url = document.referrer;
71 }
72
73 const params = location.search.slice(1).split('&').reduce((acc, s) => {
74 const [k, v] = s.split('=')
75 return Object.assign(acc, {[k]: v})
76 }, {})
77
78 const url = "<?php
79 echo $url;
80 ?>"
81 const body = {
82 referrer_url,
83 utm_source: params.utm_source,
84 utm_medium: params.utm_medium,
85 utm_campaign: params.utm_campaign,
86 utm_term: params.utm_term,
87 utm_content: params.utm_content,
88 gclid: params.gclid,
89 ...<?php
90 echo \json_encode($data);
91 ?>
92 }
93 const xhr = new XMLHttpRequest()
94 xhr.open("POST", url, true)
95 xhr.setRequestHeader("Content-Type", "application/json;charset=UTF-8")
96 xhr.send(JSON.stringify(body))
97 })
98 })();
99 </script>
100 <?php
101 }
102 public function register_rest_api()
103 {
104 \register_rest_route('iawp', '/search', ['methods' => 'POST', 'callback' => [$this, 'track_view'], 'permission_callback' => function () {
105 return \true;
106 }]);
107 }
108 public function track_view($request)
109 {
110 if (Device::getInstance()->is_bot() && !\defined('IAWP_TESTING')) {
111 return;
112 }
113 Migrations\Migrations::handle_migration_18_error();
114 Migrations\Migrations::handle_migration_22_error();
115 Migrations\Migrations::create_or_migrate();
116 if (Migrations\Migrations::is_migrating()) {
117 return;
118 }
119 if ($this->blocked_ip(Request::ip())) {
120 return;
121 }
122 $visitor = new Visitor(Request::ip(), Request::user_agent());
123 $signature = \md5(Salt::request_payload_salt() . \json_encode($request['payload']));
124 $campaign = [];
125 if (\IAWP_SCOPED\iawp_is_pro()) {
126 $campaign = ['utm_source' => $this->decode_or_nullify($request['utm_source']), 'utm_medium' => $this->decode_or_nullify($request['utm_medium']), 'utm_campaign' => $this->decode_or_nullify($request['utm_campaign']), 'utm_term' => $this->decode_or_nullify($request['utm_term']), 'utm_content' => $this->decode_or_nullify($request['utm_content'])];
127 }
128 if ($signature == $request['signature']) {
129 new View($request['payload'], $this->calculate_referrer_url($request), $visitor, $campaign);
130 return new \WP_REST_Response(['success' => \true], 200, ['X-IAWP' => 'iawp']);
131 } else {
132 return new \WP_REST_Response(['success' => \false], 200, ['X-IAWP' => 'iawp']);
133 }
134 }
135 private function calculate_referrer_url($request) : ?string
136 {
137 $referrer_url = $request['referrer_url'];
138 $url = new URL($referrer_url ?? '');
139 if (!\is_null($this->decode_or_nullify($request['gclid'])) && $url->get_domain() !== 'googleads.g.doubleclick.net') {
140 $referrer_url = 'https://googleads.iawp';
141 }
142 if (\is_null($referrer_url)) {
143 return null;
144 }
145 return $referrer_url;
146 }
147 private function decode_or_nullify($string)
148 {
149 if (!isset($string)) {
150 return null;
151 }
152 $safe_string = \trim(\urldecode($string));
153 $safe_string = \str_replace('+', ' ', $safe_string);
154 $safe_string = Security::string($safe_string);
155 if (\strlen($safe_string) === 0) {
156 return null;
157 }
158 return $safe_string;
159 }
160 private function blocked_ip($visitor_ip)
161 {
162 if (\defined('IAWP_SCOPED\\IAWP_TEST_IP')) {
163 $visitor_ip = IAWP_TEST_IP;
164 }
165 $blocked_ips = \IAWP_SCOPED\iawp()->get_option('iawp_blocked_ips', []);
166 if (\count($blocked_ips) == 0) {
167 return \false;
168 }
169 if (\in_array($visitor_ip, $blocked_ips)) {
170 return \true;
171 }
172 $wildcard_ips = [];
173 foreach ($blocked_ips as $blocked_ip) {
174 if (String_Util::str_contains($blocked_ip, '*')) {
175 $wildcard_ips[] = $blocked_ip;
176 }
177 }
178 if (\count($wildcard_ips) == 0) {
179 return \false;
180 }
181 $visitor_parts = \explode('.', $visitor_ip);
182 $goal = \count($visitor_parts);
183 foreach ($wildcard_ips as $blocked_ip) {
184 $blocked_parts = \explode('.', $blocked_ip);
185 $matches = 0;
186 for ($i = 0; $i < \count($visitor_parts); $i++) {
187 if (!\array_key_exists($i, $blocked_parts)) {
188 $matches++;
189 } elseif ($visitor_parts[$i] == $blocked_parts[$i] || $blocked_parts[$i] == '*') {
190 $matches++;
191 continue;
192 } else {
193 break;
194 }
195 }
196 if ($matches == $goal) {
197 return \true;
198 }
199 }
200 return \false;
201 }
202 private function block_user_role() : bool
203 {
204 $blocked_roles = \IAWP_SCOPED\iawp()->get_option('iawp_blocked_roles', []);
205 foreach (\wp_get_current_user()->roles as $visitor_role) {
206 if (\in_array($visitor_role, $blocked_roles)) {
207 return \true;
208 }
209 }
210 return \false;
211 }
212 }
213