PluginProbe ʕ •ᴥ•ʔ
Independent Analytics – WordPress Analytics Plugin / 2.2.1
Independent Analytics – WordPress Analytics Plugin v2.2.1
2.15.5 2.15.4 2.15.3 2.15.2 2.15.1 2.15.0 2.14.10 trunk 1.1 1.10 1.10.1 1.11 1.12 1.13 1.14 1.15 1.16 1.17 1.17.1 1.17.2 1.17.3 1.17.4 1.18 1.18.1 1.19.0 1.19.1 1.2 1.20.0 1.21.0 1.22.0 1.22.1 1.23.0 1.23.1 1.24.0 1.24.1 1.25.0 1.25.1 1.26.0 1.27.0 1.28.0 1.28.1 1.28.2 1.28.3 1.29.0 1.3 1.30.0 1.30.1 1.4 1.5 1.6 1.7 1.8 1.9 2.0.0 2.0.1 2.1.4 2.1.5 2.1.6 2.10.0 2.10.1 2.10.2 2.10.3 2.10.4 2.11.0 2.11.1 2.11.10 2.11.2 2.11.3 2.11.4 2.11.5 2.11.6 2.11.7 2.11.8 2.11.9 2.12.0 2.12.1 2.12.2 2.13.1 2.13.2 2.13.5 2.13.6 2.14.0 2.14.1 2.14.2 2.14.4 2.14.6 2.14.7 2.14.8 2.14.9 2.2.0 2.2.1 2.3.1 2.3.2 2.4.2 2.4.3 2.5.0 2.5.1 2.6.0 2.6.1 2.6.2 2.6.3 2.6.4 2.7.0 2.7.1 2.7.2 2.7.3 2.8.2 2.8.3 2.8.4 2.8.5 2.8.6 2.8.7 2.8.8 2.8.9 2.9.2 2.9.3 2.9.4 2.9.5 2.9.6 2.9.7
independent-analytics / IAWP / REST_API.php
independent-analytics / IAWP Last commit date
AJAX 2 years ago Admin_Page 2 years ago Date_Range 2 years ago Interval 2 years ago Menu_Bar_Stats 2 years ago Migrations 2 years ago Models 2 years ago Public_API 2 years ago Rows 2 years ago Statistics 2 years ago Tables 2 years ago Utils 2 years ago Campaign_Builder.php 2 years ago Capability_Manager.php 2 years ago Chart.php 2 years ago Chart_Geo.php 2 years ago Cron_Manager.php 2 years ago Current_Traffic_Finder.php 2 years ago Dashboard_Options.php 2 years ago Dashboard_Widget.php 2 years ago Database_Manager.php 2 years ago Email_Chart.php 2 years ago Email_Reports.php 2 years ago Empty_Report_Option.php 2 years ago Env.php 2 years ago Filters.php 2 years ago Geo_Database_Background_Job.php 2 years ago Geo_Database_Manager.php 2 years ago Geoposition.php 2 years ago Icon_Directory.php 2 years ago Icon_Directory_Factory.php 2 years ago Illuminate_Builder.php 2 years ago Independent_Analytics.php 2 years ago Interrupt.php 2 years ago Known_Referrers.php 2 years ago Plugin_Conflict_Detector.php 2 years ago Query.php 2 years ago Quick_Stats.php 2 years ago REST_API.php 2 years ago Real_Time.php 2 years ago Report.php 2 years ago Report_Finder.php 2 years ago Report_Options_Parser.php 2 years ago Resource_Identifier.php 2 years ago Settings.php 2 years ago Sort_Configuration.php 2 years ago Track_Resource_Changes.php 2 years ago View.php 2 years ago View_Counter.php 2 years ago Visitors_Over_Time_Finder.php 2 years ago WP_Option_Cache_Bust.php 2 years ago WooCommerce_Order.php 2 years ago WooCommerce_Referrer_Meta_Box.php 2 years ago
REST_API.php
214 lines
1 <?php
2
3 namespace IAWP_SCOPED\IAWP;
4
5 use IAWP_SCOPED\IAWP\Models\Visitor;
6 use IAWP_SCOPED\IAWP\Utils\Device;
7 use IAWP_SCOPED\IAWP\Utils\Request;
8 use IAWP_SCOPED\IAWP\Utils\Salt;
9 use IAWP_SCOPED\IAWP\Utils\Security;
10 use IAWP_SCOPED\IAWP\Utils\String_Util;
11 use IAWP_SCOPED\IAWP\Utils\URL;
12 /** @internal */
13 class REST_API
14 {
15 public function __construct()
16 {
17 \add_action('wp_footer', [$this, 'echo_tracking_script']);
18 \add_action('rest_api_init', [$this, 'register_rest_api']);
19 // Support for PDF Viewer by Themencode
20 \add_action('tnc_pvfw_viewer_head', [$this, 'echo_tracking_script']);
21 // Support for Coming Soon and Maintenance by Colorlib
22 \add_action('ccsm_header', [$this, 'echo_tracking_script']);
23 }
24 public function echo_tracking_script()
25 {
26 if (!\get_option('iawp_track_authenticated_users') && \is_user_logged_in()) {
27 // Todo - Can we clear the cache plugins to make sure that the pages so tracking code as user logs in & out?
28 return;
29 }
30 if ($this->block_user_role()) {
31 return;
32 }
33 // Don't track post or page previews
34 if (\is_preview()) {
35 return;
36 }
37 $payload = [];
38 $current_resource = Resource_Identifier::for_resource_being_viewed();
39 if (\is_null($current_resource)) {
40 return;
41 }
42 $payload['resource'] = $current_resource->type();
43 if ($current_resource->has_meta()) {
44 $payload[$current_resource->meta_key()] = $current_resource->meta_value();
45 }
46 $payload['page'] = \max(1, \get_query_var('paged'));
47 $data = ['payload' => $payload];
48 $data['signature'] = \md5(Salt::request_payload_salt() . \json_encode($data['payload']));
49 $url = \get_rest_url() . 'iawp/search';
50 ?>
51 <script>
52 (function () {
53 document.addEventListener("DOMContentLoaded", function (e) {
54 if (document.hasOwnProperty("visibilityState") && document.visibilityState === "prerender") {
55 return;
56 }
57
58 <?php
59 if (!\defined('IAWP_TESTING')) {
60 ?>
61 if (navigator.webdriver || /bot|crawler|spider|crawling|semrushbot|chrome-lighthouse/i.test(navigator.userAgent)) {
62 return;
63 }
64 <?php
65 }
66 ?>
67
68 let referrer_url = null;
69
70 if (typeof document.referrer === 'string' && document.referrer.length > 0) {
71 referrer_url = document.referrer;
72 }
73
74 const params = location.search.slice(1).split('&').reduce((acc, s) => {
75 const [k, v] = s.split('=')
76 return Object.assign(acc, {[k]: v})
77 }, {})
78
79 const url = "<?php
80 echo $url;
81 ?>"
82 const body = {
83 referrer_url,
84 utm_source: params.utm_source,
85 utm_medium: params.utm_medium,
86 utm_campaign: params.utm_campaign,
87 utm_term: params.utm_term,
88 utm_content: params.utm_content,
89 gclid: params.gclid,
90 ...<?php
91 echo \json_encode($data);
92 ?>
93 }
94 const xhr = new XMLHttpRequest()
95 xhr.open("POST", url, true)
96 xhr.setRequestHeader("Content-Type", "application/json;charset=UTF-8")
97 xhr.send(JSON.stringify(body))
98 })
99 })();
100 </script>
101 <?php
102 }
103 public function register_rest_api()
104 {
105 \register_rest_route('iawp', '/search', ['methods' => 'POST', 'callback' => [$this, 'track_view'], 'permission_callback' => function () {
106 return \true;
107 }]);
108 }
109 public function track_view($request)
110 {
111 if (Device::getInstance()->is_bot() && !\defined('IAWP_TESTING')) {
112 return;
113 }
114 Migrations\Migrations::handle_migration_18_error();
115 Migrations\Migrations::handle_migration_22_error();
116 Migrations\Migrations::create_or_migrate();
117 if (Migrations\Migrations::is_migrating()) {
118 return;
119 }
120 if ($this->blocked_ip(Request::ip())) {
121 return;
122 }
123 $visitor = new Visitor(Request::ip(), Request::user_agent());
124 $signature = \md5(Salt::request_payload_salt() . \json_encode($request['payload']));
125 $campaign = [];
126 if (\IAWP_SCOPED\iawp_is_pro()) {
127 $campaign = ['utm_source' => $this->decode_or_nullify($request['utm_source']), 'utm_medium' => $this->decode_or_nullify($request['utm_medium']), 'utm_campaign' => $this->decode_or_nullify($request['utm_campaign']), 'utm_term' => $this->decode_or_nullify($request['utm_term']), 'utm_content' => $this->decode_or_nullify($request['utm_content'])];
128 }
129 if ($signature == $request['signature']) {
130 new View($request['payload'], $this->calculate_referrer_url($request), $visitor, $campaign);
131 return new \WP_REST_Response(['success' => \true], 200, ['X-IAWP' => 'iawp']);
132 } else {
133 return new \WP_REST_Response(['success' => \false], 200, ['X-IAWP' => 'iawp']);
134 }
135 }
136 private function calculate_referrer_url($request) : ?string
137 {
138 $referrer_url = $request['referrer_url'];
139 $url = new URL($referrer_url ?? '');
140 if (!\is_null($this->decode_or_nullify($request['gclid'])) && $url->get_domain() !== 'googleads.g.doubleclick.net') {
141 $referrer_url = 'https://googleads.iawp';
142 }
143 if (\is_null($referrer_url)) {
144 return null;
145 }
146 return $referrer_url;
147 }
148 private function decode_or_nullify($string)
149 {
150 if (!isset($string)) {
151 return null;
152 }
153 $safe_string = \trim(\urldecode($string));
154 $safe_string = \str_replace('+', ' ', $safe_string);
155 $safe_string = Security::string($safe_string);
156 if (\strlen($safe_string) === 0) {
157 return null;
158 }
159 return $safe_string;
160 }
161 private function blocked_ip($visitor_ip)
162 {
163 if (\defined('IAWP_SCOPED\\IAWP_TEST_IP')) {
164 $visitor_ip = IAWP_TEST_IP;
165 }
166 $blocked_ips = \IAWP_SCOPED\iawp()->get_option('iawp_blocked_ips', []);
167 if (\count($blocked_ips) == 0) {
168 return \false;
169 }
170 if (\in_array($visitor_ip, $blocked_ips)) {
171 return \true;
172 }
173 $wildcard_ips = [];
174 foreach ($blocked_ips as $blocked_ip) {
175 if (String_Util::str_contains($blocked_ip, '*')) {
176 $wildcard_ips[] = $blocked_ip;
177 }
178 }
179 if (\count($wildcard_ips) == 0) {
180 return \false;
181 }
182 $visitor_parts = \explode('.', $visitor_ip);
183 $goal = \count($visitor_parts);
184 foreach ($wildcard_ips as $blocked_ip) {
185 $blocked_parts = \explode('.', $blocked_ip);
186 $matches = 0;
187 for ($i = 0; $i < \count($visitor_parts); $i++) {
188 if (!\array_key_exists($i, $blocked_parts)) {
189 $matches++;
190 } elseif ($visitor_parts[$i] == $blocked_parts[$i] || $blocked_parts[$i] == '*') {
191 $matches++;
192 continue;
193 } else {
194 break;
195 }
196 }
197 if ($matches == $goal) {
198 return \true;
199 }
200 }
201 return \false;
202 }
203 private function block_user_role() : bool
204 {
205 $blocked_roles = \IAWP_SCOPED\iawp()->get_option('iawp_blocked_roles', []);
206 foreach (\wp_get_current_user()->roles as $visitor_role) {
207 if (\in_array($visitor_role, $blocked_roles)) {
208 return \true;
209 }
210 }
211 return \false;
212 }
213 }
214