PluginProbe
Jetpack – WP Security, Backup, Speed, & Growth / 12.3
Jetpack – WP Security, Backup, Speed, & Growth v12.3
16.2-beta 12.0.3 12.1.3 12.2.3 12.3.2 12.4.2 12.5.2 12.6.4 12.7.3 12.8.3 12.9.5 13.0.2 13.1.5 13.2.4 13.3.3 13.4.5 13.5.2 13.6.2 13.7.2 13.8.3 13.9.2 14.0.1 14.1.1 14.2.2 14.3.1 All 501 releases
jetpack / modules / stats.php

stats.php in Jetpack – WP Security, Backup, Speed, & Growth 12.3, at modules/stats.php

1,751 lines 50.9 KB
No matching file
Up and down to move Enter to open Esc to close
Raw Download Zip
1 <?php
2 /**
3 * Module Name: Jetpack Stats
4 * Module Description: Collect valuable traffic stats and insights.
5 * Sort Order: 1
6 * Recommendation Order: 2
7 * First Introduced: 1.1
8 * Requires Connection: Yes
9 * Auto Activate: Yes
10 * Module Tags: Jetpack Stats, Site Stats, Recommended
11 * Feature: Engagement
12 * Additional Search Queries: statistics, tracking, analytics, views, traffic, stats
13 *
14 * @package automattic/jetpack
15 */
16
17 use Automattic\Jetpack\Connection\Client;
18 use Automattic\Jetpack\Connection\Manager as Connection_Manager;
19 use Automattic\Jetpack\Connection\XMLRPC_Async_Call;
20 use Automattic\Jetpack\Redirect;
21 use Automattic\Jetpack\Stats\Main as Stats;
22 use Automattic\Jetpack\Stats\Options as Stats_Options;
23 use Automattic\Jetpack\Stats\Tracking_Pixel as Stats_Tracking_Pixel;
24 use Automattic\Jetpack\Stats\XMLRPC_Provider as Stats_XMLRPC;
25 use Automattic\Jetpack\Stats_Admin\Dashboard as Stats_Dashboard;
26 use Automattic\Jetpack\Stats_Admin\Main as Stats_Main;
27 use Automattic\Jetpack\Stats_Admin\Notices as Stats_Notices;
28 use Automattic\Jetpack\Status\Host;
29 use Automattic\Jetpack\Tracking;
30
31 if ( defined( 'STATS_DASHBOARD_SERVER' ) ) {
32 return;
33 }
34
35 define( 'STATS_DASHBOARD_SERVER', 'dashboard.wordpress.com' );
36
37 /**
38 * Stats content markers.
39 * Used to test for content vs script when parsing server-generated HTML.
40 */
41 const STATS_BODY_MARKER = '<div id="statchart"';
42 const STATS_CONTENT_MARKER = '<div class="gotonewdash">';
43
44 add_action( 'jetpack_modules_loaded', 'stats_load' );
45
46 /**
47 * Load Stats.
48 *
49 * @access public
50 * @return void
51 */
52 function stats_load() {
53 Jetpack::enable_module_configurable( __FILE__ );
54
55 add_action( 'wp_head', 'stats_admin_bar_head', 100 );
56
57 add_action( 'jetpack_admin_menu', 'stats_admin_menu' );
58
59 add_filter( 'pre_option_db_version', 'stats_ignore_db_version' );
60
61 // Add an icon to see stats in WordPress.com for a particular post.
62 add_action( 'admin_print_styles-edit.php', 'jetpack_stats_load_admin_css' );
63 add_filter( 'manage_posts_columns', 'jetpack_stats_post_table' );
64 add_filter( 'manage_pages_columns', 'jetpack_stats_post_table' );
65 add_action( 'manage_posts_custom_column', 'jetpack_stats_post_table_cell', 10, 2 );
66 add_action( 'manage_pages_custom_column', 'jetpack_stats_post_table_cell', 10, 2 );
67 // Filter for adding the Jetpack plugin version to tracking stats.
68 add_filter( 'stats_array', 'filter_stats_array_add_jp_version' );
69
70 require_once __DIR__ . '/stats/class-jetpack-stats-upgrade-nudges.php';
71 add_action( 'updating_jetpack_version', array( 'Jetpack_Stats_Upgrade_Nudges', 'unset_nudges_setting' ) );
72 }
73
74 /**
75 * Checks if filter is set and dnt is enabled.
76 *
77 * @deprecated 11.5
78 * @return bool
79 */
80 function jetpack_is_dnt_enabled() {
81 _deprecated_function( __METHOD__, 'jetpack-11.5', 'Automattic\Jetpack\Stats\Main::jetpack_is_dnt_enabled' );
82 return Stats::jetpack_is_dnt_enabled();
83 }
84
85 /**
86 * Prevent sparkline img requests being redirected to upgrade.php.
87 * See wp-admin/admin.php where it checks $wp_db_version.
88 *
89 * @access public
90 * @param mixed $version Version.
91 * @return string $version.
92 */
93 function stats_ignore_db_version( $version ) {
94 if (
95 is_admin() &&
96 isset( $_GET['page'] ) && 'stats' === $_GET['page'] && // phpcs:ignore WordPress.Security.NonceVerification.Recommended
97 isset( $_GET['chart'] ) && strpos( $_GET['chart'], 'admin-bar-hours' ) === 0 // phpcs:ignore WordPress.Security.NonceVerification.Recommended, WordPress.Security.ValidatedSanitizedInput
98 ) {
99 global $wp_db_version;
100 return $wp_db_version;
101 }
102 return $version;
103 }
104
105 /**
106 * Maps view_stats cap to read cap as needed.
107 *
108 * @deprecated 11.5
109 *
110 * @access public
111 * @param mixed $caps Caps.
112 * @param mixed $cap Cap.
113 * @param mixed $user_id User ID.
114 * @return array Possibly mapped capabilities for meta capability.
115 */
116 function stats_map_meta_caps( $caps, $cap, $user_id ) {
117 _deprecated_function( __METHOD__, 'jetpack-11.5', 'Automattic\Jetpack\Stats\Main::map_meta_caps' );
118 return Stats::map_meta_caps( $caps, $cap, $user_id );
119 }
120
121 /**
122 * Stats Template Redirect.
123 *
124 * @deprecated 11.5
125 * @access public
126 * @return void
127 */
128 function stats_template_redirect() {
129 _deprecated_function( __METHOD__, 'jetpack-11.5', 'Automattic\Jetpack\Stats\Main::template_redirect' );
130 Stats::template_redirect();
131 }
132
133 /**
134 * Stats Build View Data.
135 *
136 * @deprecated 11.5
137 * @access public
138 * @return array.
139 */
140 function stats_build_view_data() {
141 _deprecated_function( __METHOD__, 'jetpack-11.5', 'Automattic\Jetpack\Stats\Tracking_Pixel::build_view_data' );
142 return Stats_Tracking_Pixel::build_view_data();
143 }
144
145 /**
146 * Stats Get Options.
147 *
148 * @deprecated 11.5
149 *
150 * @access public
151 * @return array.
152 */
153 function stats_get_options() {
154 _deprecated_function( __METHOD__, 'jetpack-11.5', 'Automattic\Jetpack\Stats\Options::get_options' );
155 return Stats_Options::get_options();
156 }
157
158 /**
159 * Get Stats Options.
160 *
161 * @deprecated 11.5
162 *
163 * @access public
164 * @param mixed $option Option.
165 * @return mixed|null.
166 */
167 function stats_get_option( $option ) {
168 _deprecated_function( __METHOD__, 'jetpack-11.5', 'Automattic\Jetpack\Stats\Options::get_option' );
169 return Stats_Options::get_option( $option );
170 }
171
172 /**
173 * Stats Set Options.
174 *
175 * @deprecated 11.5
176 *
177 * @access public
178 * @param mixed $option Option.
179 * @param mixed $value Value.
180 * @return bool.
181 */
182 function stats_set_option( $option, $value ) {
183 _deprecated_function( __METHOD__, 'jetpack-11.5', 'Automattic\Jetpack\Stats\Options::set_option' );
184 return Stats_Options::set_option( $option, $value );
185 }
186
187 /**
188 * Stats Set Options.
189 *
190 * @deprecated 11.5
191 *
192 * @access public
193 * @param mixed $options Options.
194 * @return bool
195 */
196 function stats_set_options( $options ) {
197 _deprecated_function( __METHOD__, 'jetpack-11.5', 'Automattic\Jetpack\Stats\Options::set_options' );
198 return Stats_Options::set_options( $options );
199 }
200
201 /**
202 * Stats Upgrade Options.
203 *
204 * @deprecated 11.5
205 *
206 * @access public
207 * @param mixed $options Options.
208 * @return array|bool
209 */
210 function stats_upgrade_options( $options ) {
211 _deprecated_function( __METHOD__, 'jetpack-11.5', 'Automattic\Jetpack\Stats\Options::upgrade_options' );
212 return Stats_Options::upgrade_options( $options );
213 }
214
215 /**
216 * Admin Pages.
217 *
218 * @access public
219 * @return void
220 */
221 function stats_admin_menu() {
222 global $pagenow;
223
224 // If we're at an old Stats URL, redirect to the new one.
225 // Don't even bother with caps, menu_page_url(), etc. Just do it.
226 if ( 'index.php' === $pagenow && isset( $_GET['page'] ) && 'stats' === $_GET['page'] ) { // phpcs:ignore WordPress.Security.NonceVerification.Recommended
227 $redirect_url = str_replace( array( '/wp-admin/index.php?', '/wp-admin/?' ), '/wp-admin/admin.php?', isset( $_SERVER['REQUEST_URI'] ) ? filter_var( wp_unslash( $_SERVER['REQUEST_URI'] ) ) : null );
228 $relative_pos = strpos( $redirect_url, '/wp-admin/' );
229 if ( false !== $relative_pos ) {
230 wp_safe_redirect( admin_url( substr( $redirect_url, $relative_pos + 10 ) ) );
231 exit;
232 }
233 }
234
235 // phpcs:ignore WordPress.Security.NonceVerification.Recommended
236 if ( ! ( new Host() )->is_woa_site() && isset( $_GET['enable_new_stats'] ) && '1' === $_GET['enable_new_stats'] ) {
237 // Passing true enables Odyssey Stats.
238 // We're ignorning the return value for now.
239 Stats_Main::update_new_stats_status( true );
240 }
241
242 // phpcs:ignore WordPress.Security.NonceVerification.Recommended
243 if ( ( new Host() )->is_woa_site() || ! Stats_Options::get_option( 'enable_odyssey_stats' ) || isset( $_GET['noheader'] ) ) {
244 // Show old Jetpack Stats interface for:
245 // - Atomic sites.
246 // - When the "enable_odyssey_stats" option is disabled.
247 // - When being shown in the adminbar outside of wp-admin.
248 $hook = add_submenu_page( 'jetpack', __( 'Stats', 'jetpack' ), __( 'Stats', 'jetpack' ), 'view_stats', 'stats', 'jetpack_admin_ui_stats_report_page_wrapper' );
249 add_action( "load-$hook", 'stats_reports_load' );
250 } else {
251 // Enable the new Odyssey Stats experience.
252 $stats_dashboard = new Stats_Dashboard();
253 $hook = add_submenu_page( 'jetpack', __( 'Stats', 'jetpack' ), __( 'Stats', 'jetpack' ), 'view_stats', 'stats', array( $stats_dashboard, 'render' ) );
254 add_action( "load-$hook", array( $stats_dashboard, 'admin_init' ) );
255 }
256 }
257
258 /**
259 * Stats Admin Path.
260 *
261 * @access public
262 * @return string
263 */
264 function stats_admin_path() {
265 return Jetpack::module_configuration_url( __FILE__ );
266 }
267
268 /**
269 * Stats Reports Load.
270 *
271 * @access public
272 * @return void
273 */
274 function stats_reports_load() {
275 require_once __DIR__ . '/stats/class-jetpack-stats-upgrade-nudges.php';
276 Jetpack_Stats_Upgrade_Nudges::init();
277
278 wp_enqueue_script( 'jquery' );
279 wp_enqueue_script( 'postbox' );
280 wp_enqueue_script( 'underscore' );
281
282 Jetpack_Admin_Page::load_wrapper_styles();
283 add_action( 'admin_print_styles', 'stats_reports_css' );
284
285 if ( ! empty( $_GET['nojs'] ) ) { // phpcs:ignore WordPress.Security.NonceVerification.Recommended
286 $parsed = wp_parse_url( admin_url() );
287 // Remember user doesn't want JS.
288 setcookie( 'stnojs', '1', time() + 172800, $parsed['path'], COOKIE_DOMAIN, is_ssl(), true ); // 2 days.
289 }
290
291 if ( ! empty( $_COOKIE['stnojs'] ) ) {
292 // Detect if JS is on. If so, remove cookie so next page load is via JS.
293 add_action( 'admin_print_footer_scripts', 'stats_js_remove_stnojs_cookie' );
294 } elseif ( ! isset( $_GET['noheader'] ) && empty( $_GET['nojs'] ) ) { // phpcs:ignore WordPress.Security.NonceVerification.Recommended
295 // Normal page load. Load page content via JS.
296 add_action( 'admin_print_footer_scripts', 'stats_js_load_page_via_ajax' );
297 add_action( 'admin_print_footer_scripts', 'stats_script_dismiss_nudge_handler' );
298 }
299 }
300
301 /**
302 * JavaScript to dismiss the Odyssey nudge.
303 *
304 * @access public
305 * @return void
306 */
307 function stats_script_dismiss_nudge_handler() {
308 ?>
309 <script type="text/javascript">
310 function stats_odyssey_dismiss_nudge() {
311 // Hide the nudge UI, effectively dismissing it.
312 var element = document.getElementById( "stats-odyssey-nudge-main" );
313 element.classList.toggle( "is-hidden" );
314 // Send an AJAX request.
315 // Note we can provide a 'postponed_for' parameter to set the delay.
316 // Without a parameter it defaults to 30 days which is what we want here.
317 let nonce = <?php echo wp_json_encode( wp_create_nonce( 'wp_rest' ) ); ?>;
318 let url = <?php echo wp_json_encode( rest_url( '/jetpack/v4/stats-app/stats/notices' ) ); ?>;
319 let data = {
320 id: 'opt_in_new_stats',
321 status: 'postponed',
322 };
323 jQuery.ajax({
324 type: "POST",
325 url: url,
326 data: data,
327 headers: { "x-wp-nonce": nonce },
328 });
329 }
330 </script>
331 <?php
332 }
333
334 /**
335 * Stats Reports CSS.
336 *
337 * @access public
338 * @return void
339 */
340 function stats_reports_css() {
341 ?>
342 <style type="text/css">
343 #jp-stats-wrap, #jp-stats-report-bottom {
344 max-width: 1040px;
345 margin: 0 auto;
346 overflow: hidden;
347 }
348
349 #stats-loading-wrap p {
350 text-align: center;
351 font-size: 2em;
352 margin-bottom: 3em;
353 height: 64px;
354 line-height: 64px;
355 }
356 </style>
357 <?php
358 }
359
360 /**
361 * Detect if JS is on. If so, remove cookie so next page load is via JS.
362 *
363 * @access public
364 * @return void
365 */
366 function stats_js_remove_stnojs_cookie() {
367 $parsed = wp_parse_url( admin_url() );
368 ?>
369 <script type="text/javascript">
370 /* <![CDATA[ */
371 document.cookie = 'stnojs=0; expires=Wed, 9 Mar 2011 16:55:50 UTC; path=<?php echo esc_js( $parsed['path'] ); ?>';
372 /* ]]> */
373 </script>
374 <?php
375 }
376
377 /**
378 * Normal page load. Load page content via JS.
379 *
380 * @access public
381 * @return void
382 */
383 function stats_js_load_page_via_ajax() {
384 ?>
385 <script type="text/javascript">
386 /* <![CDATA[ */
387 if ( -1 == document.location.href.indexOf( 'noheader' ) ) {
388 jQuery( function( $ ) {
389 const loadStatsUrl = new URL( document.location.href );
390 loadStatsUrl.searchParams.append( 'noheader', 1 );
391 $.get( loadStatsUrl.toString(), function( responseText ) {
392 $( '#stats-loading-wrap' ).replaceWith( responseText );
393 $( '#jp-stats-wrap' )[0].dispatchEvent( new Event( 'stats-loaded' ) );
394 } );
395 } );
396 }
397 /* ]]> */
398 </script>
399 <?php
400 }
401
402 /**
403 * Jetpack Admin Page Wrapper.
404 */
405 function jetpack_admin_ui_stats_report_page_wrapper() {
406 if ( ! isset( $_GET['noheader'] ) && empty( $_GET['nojs'] ) && empty( $_COOKIE['stnojs'] ) ) { // phpcs:ignore WordPress.Security.NonceVerification.Recommended
407 Jetpack_Admin_Page::wrap_ui( 'stats_reports_page', array( 'is-wide' => true ) );
408 } else {
409 stats_reports_page();
410 }
411 }
412
413 /**
414 * Stats Report Page.
415 *
416 * @access public
417 * @param bool $main_chart_only (default: false) Main Chart Only.
418 */
419 function stats_reports_page( $main_chart_only = false ) {
420 if ( isset( $_GET['dashboard'] ) ) { // phpcs:ignore WordPress.Security.NonceVerification.Recommended
421 return stats_dashboard_widget_content();
422 }
423
424 $blog_id = Stats_Options::get_option( 'blog_id' );
425
426 if ( ! $main_chart_only && ! isset( $_GET['noheader'] ) && empty( $_GET['nojs'] ) && empty( $_COOKIE['stnojs'] ) ) { // phpcs:ignore WordPress.Security.NonceVerification.Recommended
427 $nojs_url = add_query_arg( 'nojs', '1' );
428 $http = is_ssl() ? 'https' : 'http';
429 // Loading message. No JS fallback message.
430 ?>
431
432 <div id="jp-stats-wrap">
433 <div class="wrap">
434 <h1><?php esc_html_e( 'Jetpack Stats', 'jetpack' ); ?>
435 <?php
436 if ( current_user_can( 'jetpack_manage_modules' ) ) :
437 $i18n_headers = jetpack_get_module_i18n( 'stats' );
438 ?>
439 <a
440 style="font-size:13px;"
441 href="<?php echo esc_url( admin_url( 'admin.php?page=jetpack#/settings?term=' . rawurlencode( $i18n_headers['name'] ) ) ); ?>"
442 >
443 <?php esc_html_e( 'Configure', 'jetpack' ); ?>
444 </a>
445 <?php
446 endif;
447
448 /**
449 * Sets external resource URL.
450 *
451 * @module stats
452 *
453 * @since 1.4.0
454 * @todo Clean up various uses of this filter. It's seemingly filtering different types of images in different places.
455 *
456 * @param string $args URL of external resource.
457 */
458 $static_url = apply_filters( 'jetpack_static_url', "{$http}://en.wordpress.com/i/loading/loading-64.gif" );
459 ?>
460 </h2>
461 </div>
462 <div id="stats-loading-wrap" class="wrap">
463 <p class="hide-if-no-js"><img width="32" height="32" alt="<?php esc_attr_e( 'Loading&hellip;', 'jetpack' ); ?>" src="<?php echo esc_url( $static_url ); ?>" /></p>
464 <p class="hide-if-js"><?php esc_html_e( 'Jetpack Stats work better with JavaScript enabled.', 'jetpack' ); ?><br />
465 <a href="<?php echo esc_url( $nojs_url ); ?>"><?php esc_html_e( 'View Jetpack Stats without JavaScript', 'jetpack' ); ?></a>.</p>
466 </div>
467 </div>
468 <?php
469 return;
470 }
471
472 $day = isset( $_GET['day'] ) && preg_match( '/^\d{4}-\d{2}-\d{2}$/', $_GET['day'] ) ? $_GET['day'] : false; // phpcs:ignore WordPress.Security.NonceVerification.Recommended, WordPress.Security.ValidatedSanitizedInput
473 $q = array(
474 'noheader' => 'true',
475 'proxy' => '',
476 'page' => 'stats',
477 'day' => $day,
478 'blog' => $blog_id,
479 'charset' => get_option( 'blog_charset' ),
480 'color' => get_user_option( 'admin_color' ),
481 'ssl' => is_ssl(),
482 'j' => sprintf( '%s:%s', JETPACK__API_VERSION, JETPACK__VERSION ),
483 );
484 if ( get_locale() !== 'en_US' ) {
485 $q['jp_lang'] = get_locale();
486 }
487 // Only show the main chart, without extra header data, or metaboxes.
488 $q['main_chart_only'] = $main_chart_only;
489 $args = array(
490 'view' => array( 'referrers', 'postviews', 'searchterms', 'clicks', 'post', 'table' ),
491 'numdays' => 'int',
492 'day' => 'date',
493 'unit' => array( '1', '7', '31', 'human' ),
494 'humanize' => array( 'true' ),
495 'num' => 'int',
496 'summarize' => null,
497 'post' => 'int',
498 'width' => 'int',
499 'height' => 'int',
500 'data' => 'data',
501 'blog_subscribers' => 'int',
502 'comment_subscribers' => null,
503 'type' => array( 'wpcom', 'email', 'pending' ),
504 'pagenum' => 'int',
505 'masterbar' => null,
506 );
507 foreach ( $args as $var => $vals ) {
508 if ( ! isset( $_REQUEST[ $var ] ) ) { // phpcs:ignore WordPress.Security.NonceVerification.Recommended
509 continue;
510 }
511 $val = wp_unslash( $_REQUEST[ $var ] ); // phpcs:ignore WordPress.Security.NonceVerification.Recommended, WordPress.Security.ValidatedSanitizedInput.InputNotSanitized
512 if ( is_array( $vals ) ) {
513 if ( in_array( $val, $vals, true ) ) {
514 $q[ $var ] = $val;
515 }
516 } elseif ( 'int' === $vals ) {
517 $q[ $var ] = (int) $val;
518 } elseif ( 'date' === $vals ) {
519 if ( preg_match( '/^\d{4}-\d{2}-\d{2}$/', $val ) ) {
520 $q[ $var ] = $val;
521 }
522 } elseif ( null === $vals ) {
523 $q[ $var ] = '';
524 } elseif ( 'data' === $vals ) {
525 if ( 'index.php' === substr( $val, 0, 9 ) ) {
526 $q[ $var ] = $val;
527 }
528 }
529 }
530
531 if ( isset( $_GET['chart'] ) ) { // phpcs:ignore WordPress.Security.NonceVerification.Recommended
532 if ( preg_match( '/^[a-z0-9-]+$/', $_GET['chart'] ) ) { // phpcs:ignore WordPress.Security.NonceVerification.Recommended, WordPress.Security.ValidatedSanitizedInput
533 $chart = sanitize_title( $_GET['chart'] ); // phpcs:ignore WordPress.Security.NonceVerification.Recommended, WordPress.Security.ValidatedSanitizedInput
534 $url = 'https://' . STATS_DASHBOARD_SERVER . "/wp-includes/charts/{$chart}.php";
535 }
536 } else {
537 $url = 'https://' . STATS_DASHBOARD_SERVER . '/wp-admin/index.php';
538 }
539
540 $url = add_query_arg( $q, $url );
541 $method = 'GET';
542 $timeout = 90;
543 $user_id = 0; // Means use the blog token.
544
545 $get = Client::remote_request( compact( 'url', 'method', 'timeout', 'user_id' ) );
546 $get_code = wp_remote_retrieve_response_code( $get );
547 if ( is_wp_error( $get ) || ( 2 !== (int) ( $get_code / 100 ) && 304 !== $get_code ) || empty( $get['body'] ) ) {
548 stats_print_wp_remote_error( $get, $url );
549 } else {
550 if ( ! empty( $get['headers']['content-type'] ) ) {
551 $type = $get['headers']['content-type'];
552 if ( substr( $type, 0, 5 ) === 'image' ) {
553 $img = $get['body'];
554 header( 'Content-Type: ' . $type );
555 header( 'Content-Length: ' . strlen( $img ) );
556 echo $img; // phpcs:ignore WordPress.Security.EscapeOutput.OutputNotEscaped
557 die();
558 }
559 }
560 $body = stats_convert_post_titles( $get['body'] );
561 $body = stats_convert_chart_urls( $body );
562 $body = stats_convert_image_urls( $body );
563 $body = stats_convert_admin_urls( $body );
564
565 // The response can contain either the content to display OR
566 // the scripts for the chart UI. The following calls inspect the
567 // response, insert the Odyssey nudge as needed, and make sure
568 // everything is output correctly.
569 stats_print_header_section( $body );
570 stats_print_odyssey_nudge( $body );
571 stats_print_content_section( $body );
572 stats_print_chart_scripts( $body );
573 }
574
575 if ( isset( $_GET['page'] ) && 'stats' === $_GET['page'] && ! isset( $_GET['chart'] ) ) { // phpcs:ignore WordPress.Security.NonceVerification.Recommended
576 $tracking = new Tracking();
577 $tracking->record_user_event( 'wpa_page_view', array( 'path' => 'old_stats' ) );
578 }
579
580 if ( isset( $_GET['noheader'] ) ) { // phpcs:ignore WordPress.Security.NonceVerification.Recommended
581 die;
582 }
583 }
584
585 /**
586 * Legacy Stats: Print Header Section
587 *
588 * @access public
589 * @param mixed $html HTML.
590 * @return void
591 */
592 function stats_print_header_section( $html ) {
593 $header = stats_parse_header_section( $html );
594 if ( $header !== '' ) {
595 echo $header; // phpcs:ignore WordPress.Security.EscapeOutput.OutputNotEscaped
596 }
597 }
598
599 /**
600 * Legacy Stats: Print Content Section
601 *
602 * @access public
603 * @param mixed $html HTML.
604 * @return void
605 */
606 function stats_print_content_section( $html ) {
607 $content = stats_parse_content_section( $html );
608 if ( $content !== '' ) {
609 echo $content; // phpcs:ignore WordPress.Security.EscapeOutput.OutputNotEscaped
610 }
611 }
612
613 /**
614 * Legacy Stats: Print Chart Scripts
615 *
616 * @access public
617 * @param mixed $html HTML.
618 * @return void
619 */
620 function stats_print_chart_scripts( $html ) {
621 if ( is_chart_scripts( $html ) ) {
622 echo $html; // phpcs:ignore WordPress.Security.EscapeOutput.OutputNotEscaped
623 }
624 }
625
626 /**
627 * Legacy Stats: Test for presence of chart scripts
628 *
629 * @access public
630 * @param mixed $html Input HTML that may or may not include the chart scripts.
631 * @return bool
632 */
633 function is_chart_scripts( $html ) {
634 $pos = strpos( $html, STATS_CONTENT_MARKER );
635 return $pos === false;
636 }
637
638 /**
639 * Legacy Stats: Parse Header Section
640 *
641 * Returns the section of the content up to and including the date header.
642 *
643 * @access public
644 * @param mixed $html HTML.
645 * @return string
646 */
647 function stats_parse_header_section( $html ) {
648 $head = strstr( $html, STATS_CONTENT_MARKER, true );
649 // Enforce a string result instead of string|false.
650 if ( $head === false ) {
651 return '';
652 }
653 return $head;
654 }
655
656 /**
657 * Legacy Stats: Print Content Section
658 *
659 * Returns the section of the content excluding the date header.
660 *
661 * @access public
662 * @param mixed $html HTML.
663 * @return string
664 */
665 function stats_parse_content_section( $html ) {
666 $body = strstr( $html, STATS_BODY_MARKER );
667 // Enforce a string result instead of string|false.
668 if ( $body === false ) {
669 return '';
670 }
671 return $body;
672 }
673
674 /**
675 * Legacy Stats: Determine if we need to show the Odyssey upgrade nudge.
676 *
677 * @access public
678 * @return boolean
679 */
680 function stats_should_show_odyssey_nudge() {
681 $stats_notices = ( new Stats_Notices() )->get_notices_to_show();
682 return isset( $stats_notices[ Stats_Notices::OPT_IN_NEW_STATS_NOTICE_ID ] )
683 && $stats_notices[ Stats_Notices::OPT_IN_NEW_STATS_NOTICE_ID ];
684 }
685
686 /**
687 * Legacy Stats: Print the Odyssey upgrade nudge.
688 *
689 * @access public
690 * @param mixed $html HTML.
691 * @return void
692 */
693 function stats_print_odyssey_nudge( $html ) {
694 if ( ! stats_should_show_odyssey_nudge() ) {
695 return;
696 }
697 $pos = strpos( $html, STATS_CONTENT_MARKER );
698 if ( $pos === false ) {
699 return;
700 }
701 $learn_url = Redirect::get_url( 'jetpack-stats-learn-more' );
702 $redirect_url = admin_url( 'admin.php?page=stats&enable_new_stats=1' );
703 ?>
704 <style>
705 .stats-odyssey-notice {
706 display: flex;
707 font-size: var( --font-body );
708
709 border: 1px solid var( --jp-gray-5 );
710 border-left-color: var( --jp-black );
711 border-left-width: 6px;
712 border-radius: 4px;
713
714 margin-top: 24px;
715 background: white;
716 position: relative;
717 }
718 .stats-odyssey-notice--content {
719 padding: 24px 0 24px 30px;
720 font-size: 2em;
721 width: 100%;
722 }
723 .stats-odyssey-notice--content-header {
724 font-size: 24px;
725 line-height: 32px;
726 margin: 0;
727 margin-bottom: 8px;
728 }
729 .stats-odyssey-notice--content-text {
730 font-size: 16px;
731 margin: 0;
732 }
733 .stats-odyssey-notice--image-container {
734 background-image: url("/wp-content/plugins/jetpack/images/odyssey-upgrade/background.png"), url("/wp-content/plugins/jetpack/images/odyssey-upgrade/gradient.png");
735 background-size: cover;
736 padding-right: 28px;
737 width: 100%;
738 }
739 .stats-odyssey-notice--close-button {
740 position: absolute;
741 top: 1rem;
742 right: 1rem;
743 background-color: transparent;
744 border: none;
745 cursor: pointer;
746 }
747 .stats-odyssey-notice--action-bar {
748 display: flex;
749 align-items: center;
750 margin-top: 24px;
751 }
752 .stats-odyssey-notice--primary-button {
753 margin-right: 18px;
754 padding-left: 20px;
755 padding-right: 20px;
756 font-size: 16px;
757 border-color: black;
758 background-color: black;
759 }
760 .stats-odyssey-notice--primary-button:hover {
761 border-color: #3c434a;
762 background-color: #3c434a;
763 }
764 .is-primary-link {
765 color: white;
766 text-decoration: none;
767 }
768 .is-primary-link:active {
769 color: white;
770 }
771 .is-primary-link:focus {
772 color: white;
773 box-shadow: none;
774 outline: none;
775 }
776 .is-primary-link:hover {
777 color: white;
778 }
779 .is-secondary-link {
780 color: black;
781 font-size: var( --font-body );
782 }
783 .is-secondary-link:hover {
784 color: black;
785 }
786 .is-hidden {
787 display: none;
788 }
789 </style>
790 <div id="stats-odyssey-nudge-main" class="stats-odyssey-notice">
791 <div class="stats-odyssey-notice--content">
792 <h2 class="stats-odyssey-notice--content-header"><?php esc_html_e( 'Explore the new Jetpack Stats', 'jetpack' ); ?></h2>
793 <p class="stats-odyssey-notice--content-text"><?php esc_html_e( "We've added new stats and insights in a more modern and mobile friendly experience to help you grow your site.", 'jetpack' ); ?></p>
794 <div class="stats-odyssey-notice--action-bar">
795 <button class="dops-button stats-odyssey-notice--primary-button">
796 <a class="is-primary-link" href="<?php echo esc_url( $redirect_url ); ?>"><?php esc_html_e( 'Switch to new Stats', 'jetpack' ); ?></a>
797 </button>
798 <a class="is-secondary-link" href="<?php echo esc_url( $learn_url ); ?>" rel="noopener noreferrer" target="_blank"><?php esc_html_e( 'Learn about Stats', 'jetpack' ); ?> <svg xmlns="http://www.w3.org/2000/svg" style="vertical-align: middle;" viewBox="0 0 24 24" width="16" height="16" aria-hidden="true" focusable="false"><path d="M18.2 17c0 .7-.6 1.2-1.2 1.2H7c-.7 0-1.2-.6-1.2-1.2V7c0-.7.6-1.2 1.2-1.2h3.2V4.2H7C5.5 4.2 4.2 5.5 4.2 7v10c0 1.5 1.2 2.8 2.8 2.8h10c1.5 0 2.8-1.2 2.8-2.8v-3.6h-1.5V17zM14.9 3v1.5h3.7l-6.4 6.4 1.1 1.1 6.4-6.4v3.7h1.5V3h-6.3z"></path></svg></a>
799 </div>
800 </div>
801 <div class="stats-odyssey-notice--image-container"></div>
802 <button class="stats-odyssey-notice--close-button" onclick="stats_odyssey_dismiss_nudge()"><svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 24 24" width="24" height="24" aria-hidden="true" focusable="false"><path d="M13 11.8l6.1-6.3-1-1-6.1 6.2-6.1-6.2-1 1 6.1 6.3-6.5 6.7 1 1 6.5-6.6 6.5 6.6 1-1z"></path></svg></button>
803 </div>
804 <?php
805 }
806
807 /**
808 * Stats Convert Admin Urls.
809 *
810 * @access public
811 * @param mixed $html HTML.
812 * @return string
813 */
814 function stats_convert_admin_urls( $html ) {
815 return str_replace( 'index.php?page=stats', 'admin.php?page=stats', $html );
816 }
817
818 /**
819 * Stats Convert Image URLs.
820 *
821 * @access public
822 * @param mixed $html HTML.
823 * @return string
824 */
825 function stats_convert_image_urls( $html ) {
826 $url = set_url_scheme( 'https://' . STATS_DASHBOARD_SERVER );
827 $html = preg_replace( '|(["\'])(/i/stats.+)\\1|', '$1' . $url . '$2$1', $html );
828 return $html;
829 }
830
831 /**
832 * Callback for preg_replace_callback used in stats_convert_chart_urls()
833 *
834 * @since 5.6.0
835 *
836 * @param array $matches The matches resulting from the preg_replace_callback call.
837 * @return string The admin url for the chart.
838 */
839 function jetpack_stats_convert_chart_urls_callback( $matches ) {
840 // If there is a query string, change the beginning '?' to a '&' so it fits into the middle of this query string.
841 return 'admin.php?page=stats&noheader&chart=' . $matches[1] . str_replace( '?', '&', $matches[2] );
842 }
843
844 /**
845 * Stats Convert Chart URLs.
846 *
847 * @access public
848 * @param mixed $html HTML.
849 * @return string
850 */
851 function stats_convert_chart_urls( $html ) {
852 $html = preg_replace_callback(
853 '|https?://[-.a-z0-9]+/wp-includes/charts/([-.a-z0-9]+).php(\??)|',
854 'jetpack_stats_convert_chart_urls_callback',
855 $html
856 );
857 return $html;
858 }
859
860 /**
861 * Stats Convert Post Title HTML
862 *
863 * @access public
864 * @param mixed $html HTML.
865 * @return string
866 */
867 function stats_convert_post_titles( $html ) {
868 global $stats_posts;
869 $pattern = "<span class='post-(\d+)-link'>.*?</span>";
870 if ( ! preg_match_all( "!$pattern!", $html, $matches ) ) {
871 return $html;
872 }
873 $posts = get_posts(
874 array(
875 'include' => implode( ',', $matches[1] ),
876 'post_type' => 'any',
877 'post_status' => 'any',
878 'numberposts' => -1,
879 'suppress_filters' => false,
880 )
881 );
882 foreach ( $posts as $post ) {
883 $stats_posts[ $post->ID ] = $post;
884 }
885 $html = preg_replace_callback( "!$pattern!", 'stats_convert_post_title', $html );
886 return $html;
887 }
888
889 /**
890 * Stats Convert Post Title Matches.
891 *
892 * @access public
893 * @param mixed $matches Matches.
894 * @return string
895 */
896 function stats_convert_post_title( $matches ) {
897 global $stats_posts;
898 $post_id = $matches[1];
899 if ( isset( $stats_posts[ $post_id ] ) ) {
900 return '<a href="' . get_permalink( $post_id ) . '" target="_blank">' . get_the_title( $post_id ) . '</a>';
901 }
902 return $matches[0];
903 }
904
905 /**
906 * CSS to hide the tracking pixel smiley.
907 * It is now hidden for everyone (used to be visible if you had set the hide_smile option).
908 *
909 * @access public
910 * @return void
911 */
912 function stats_hide_smile_css() {
913 ?>
914 <style>img#wpstats{display:none}</style>
915 <?php
916 }
917
918 /**
919 * Stats Admin Bar Head.
920 *
921 * @access public
922 * @return void
923 */
924 function stats_admin_bar_head() {
925 if ( ! Stats_Options::get_option( 'admin_bar' ) ) {
926 return;
927 }
928
929 if ( ! current_user_can( 'view_stats' ) ) {
930 return;
931 }
932
933 if ( ! is_admin_bar_showing() ) {
934 return;
935 }
936
937 add_action( 'admin_bar_menu', 'stats_admin_bar_menu', 100 );
938 ?>
939
940 <style data-ampdevmode type='text/css'>
941 #wpadminbar .quicklinks li#wp-admin-bar-stats {
942 height: 32px;
943 }
944 #wpadminbar .quicklinks li#wp-admin-bar-stats a {
945 height: 32px;
946 padding: 0;
947 }
948 #wpadminbar .quicklinks li#wp-admin-bar-stats a div {
949 height: 32px;
950 width: 95px;
951 overflow: hidden;
952 margin: 0 10px;
953 }
954 #wpadminbar .quicklinks li#wp-admin-bar-stats a:hover div {
955 width: auto;
956 margin: 0 8px 0 10px;
957 }
958 #wpadminbar .quicklinks li#wp-admin-bar-stats a img {
959 height: 24px;
960 margin: 4px 0;
961 max-width: none;
962 border: none;
963 }
964 </style>
965 <?php
966 }
967
968 /**
969 * Gets the image source of the given stats chart.
970 *
971 * @param string $chart Name of the chart.
972 * @param array $args Extra list of argument to use in the image source.
973 * @return string An image source.
974 */
975 function stats_get_image_chart_src( $chart, $args = array() ) {
976 $url = add_query_arg( 'page', 'stats', admin_url( 'admin.php' ) );
977
978 return add_query_arg(
979 array_merge(
980 array(
981 'noheader' => '',
982 'proxy' => '',
983 'chart' => $chart,
984 ),
985 $args
986 ),
987 $url
988 );
989 }
990
991 /**
992 * Stats AdminBar.
993 *
994 * @access public
995 * @param mixed $wp_admin_bar WPAdminBar.
996 * @return void
997 */
998 function stats_admin_bar_menu( &$wp_admin_bar ) {
999 $img_src = esc_attr( stats_get_image_chart_src( 'admin-bar-hours-scale' ) );
1000 $img_src_2x = esc_attr( stats_get_image_chart_src( 'admin-bar-hours-scale-2x' ) );
1001 $alt = esc_attr( __( 'Stats', 'jetpack' ) );
1002 $title = esc_attr( __( 'Views over 48 hours. Click for more Jetpack Stats.', 'jetpack' ) );
1003
1004 $menu = array(
1005 'id' => 'stats',
1006 'href' => add_query_arg( 'page', 'stats', admin_url( 'admin.php' ) ), // no menu_page_url() blog-side.
1007 'title' => "<div><img src='$img_src' srcset='$img_src 1x, $img_src_2x 2x' width='112' height='24' alt='$alt' title='$title'></div>",
1008 );
1009
1010 $wp_admin_bar->add_menu( $menu );
1011 }
1012
1013 /**
1014 *
1015 * Deprecated. The stats module should not update blog details. This is handled by Sync.
1016 *
1017 * Stats Update Blog.
1018 *
1019 * @access public
1020 * @return void
1021 *
1022 * @deprecated since 10.3.
1023 */
1024 function stats_update_blog() {
1025 _deprecated_function( __METHOD__, 'jetpack-10.3' );
1026 XMLRPC_Async_Call::add_call( 'jetpack.updateBlog', 0, stats_get_blog() );
1027 }
1028
1029 /**
1030 * Stats Get Blog.
1031 *
1032 * @deprecated 11.5
1033 *
1034 * @access public
1035 * @return string
1036 */
1037 function stats_get_blog() {
1038 _deprecated_function( __METHOD__, 'jetpack-11.5' );
1039 return Stats_XMLRPC::init()->get_blog();
1040 }
1041
1042 /**
1043 * Stats Dashboard Widget Options.
1044 *
1045 * TODO: This should be moved into class-jetpack-stats-dashboard-widget.php.
1046 *
1047 * @access public
1048 * @return array
1049 */
1050 function stats_dashboard_widget_options() {
1051 $defaults = array(
1052 'chart' => 1,
1053 'top' => 1,
1054 'search' => 7,
1055 );
1056 $options = get_option( 'stats_dashboard_widget' );
1057 if ( ( ! $options ) || ! is_array( $options ) ) {
1058 $options = array();
1059 }
1060
1061 // Ignore obsolete option values.
1062 $intervals = array( 1, 7, 31, 90, 365 );
1063 foreach ( array( 'top', 'search' ) as $key ) {
1064 if ( isset( $options[ $key ] ) && ! in_array( (int) $options[ $key ], $intervals, true ) ) {
1065 unset( $options[ $key ] );
1066 }
1067 }
1068
1069 return array_merge( $defaults, $options );
1070 }
1071
1072 /**
1073 * Stats Dashboard Widget Control.
1074 *
1075 * TODO: This should be moved into class-jetpack-stats-dashboard-widget.php.
1076 *
1077 * @access public
1078 * @return void
1079 */
1080 function stats_dashboard_widget_control() {
1081 stats_dashboard_widget_controls_handle_submission();
1082 $periods = array(
1083 '1' => __( 'day', 'jetpack' ),
1084 '7' => __( 'week', 'jetpack' ),
1085 '31' => __( 'month', 'jetpack' ),
1086 );
1087 $intervals = array(
1088 '1' => __( 'the past day', 'jetpack' ),
1089 '7' => __( 'the past week', 'jetpack' ),
1090 '31' => __( 'the past month', 'jetpack' ),
1091 '90' => __( 'the past quarter', 'jetpack' ),
1092 '365' => __( 'the past year', 'jetpack' ),
1093 );
1094 stats_dashboard_widget_controls_html( $intervals, $periods, stats_dashboard_widget_options() );
1095 }
1096
1097 /**
1098 * Handle widget controls form submission.
1099 *
1100 * TODO: This should be moved into class-jetpack-stats-dashboard-widget.php.
1101 *
1102 * @access public
1103 * @return void
1104 */
1105 function stats_dashboard_widget_controls_handle_submission() {
1106 $options = stats_dashboard_widget_options();
1107 $defaults = array(
1108 'top' => 1,
1109 'search' => 7,
1110 );
1111
1112 // Check if the correct form was submitted.
1113 if ( isset( $_POST['stats_id'] ) && 'dashboard_stats' === $_POST['stats_id'] ) {
1114 // Perform nonce verification.
1115 if (
1116 isset( $_POST['dashboard-widget-nonce'] ) &&
1117 wp_verify_nonce( filter_var( wp_unslash( $_POST['dashboard-widget-nonce'] ) ), 'edit-dashboard-widget_dashboard_stats' )
1118 ) {
1119 // Update options.
1120 $options['chart'] = isset( $_POST['chart'] ) ? (int) $_POST['chart'] : 1;
1121 foreach ( array( 'top', 'search' ) as $key ) {
1122 $options[ $key ] = isset( $_POST[ $key ] ) ? (int) $_POST[ $key ] : $defaults[ $key ];
1123 }
1124 update_option( 'stats_dashboard_widget', $options );
1125 }
1126 }
1127 }
1128
1129 /**
1130 * Output HTML for widget controls.
1131 *
1132 * @param array $intervals Array of intervals.
1133 * @param array $periods Array of periods.
1134 * @param array $options Array of options.
1135 *
1136 * TODO: This should be moved into class-jetpack-stats-dashboard-widget.php.
1137 *
1138 * @access public
1139 * @return void
1140 */
1141 function stats_dashboard_widget_controls_html( $intervals, $periods, $options ) {
1142 ?>
1143 <p>
1144 <label for="chart"><?php esc_html_e( 'Chart stats by', 'jetpack' ); ?></label>
1145 <select id="chart" name="chart">
1146 <?php
1147 foreach ( $periods as $val => $label ) {
1148 ?>
1149 <option value="<?php echo esc_attr( $val ); ?>"<?php selected( $val, $options['chart'] ); ?>><?php echo esc_html( $label ); ?></option>
1150 <?php
1151 }
1152 ?>
1153 </select>.
1154 </p>
1155
1156 <p>
1157 <label for="top"><?php esc_html_e( 'Show top posts over', 'jetpack' ); ?></label>
1158 <select id="top" name="top">
1159 <?php
1160 foreach ( $intervals as $val => $label ) {
1161 ?>
1162 <option value="<?php echo esc_attr( $val ); ?>"<?php selected( $val, $options['top'] ); ?>><?php echo esc_html( $label ); ?></option>
1163 <?php
1164 }
1165 ?>
1166 </select>.
1167 </p>
1168
1169 <p>
1170 <label for="search"><?php esc_html_e( 'Show top search terms over', 'jetpack' ); ?></label>
1171 <select id="search" name="search">
1172 <?php
1173 foreach ( $intervals as $val => $label ) {
1174 ?>
1175 <option value="<?php echo esc_attr( $val ); ?>"<?php selected( $val, $options['search'] ); ?>><?php echo esc_html( $label ); ?></option>
1176 <?php
1177 }
1178 ?>
1179 </select>.
1180 </p>
1181 <?php
1182 }
1183
1184 /**
1185 * Jetpack Stats Dashboard Widget.
1186 *
1187 * TODO: This should be moved into class-jetpack-stats-dashboard-widget.php.
1188 *
1189 * @access public
1190 * @return void
1191 */
1192 function stats_jetpack_dashboard_widget() {
1193 ?>
1194 <form id="stats_dashboard_widget_control" action="<?php echo esc_url( admin_url() ); ?>" method="post">
1195 <?php stats_dashboard_widget_control(); ?>
1196 <?php wp_nonce_field( 'edit-dashboard-widget_dashboard_stats', 'dashboard-widget-nonce' ); ?>
1197 <input type="hidden" name="stats_id" value="dashboard_stats" />
1198 <?php submit_button( __( 'Submit', 'jetpack' ) ); ?>
1199 </form>
1200 <button type="button" class="handlediv js-toggle-stats_dashboard_widget_control" aria-expanded="true">
1201 <span class="screen-reader-text"><?php esc_html_e( 'Configure', 'jetpack' ); ?></span>
1202 <span class="toggle-indicator" aria-hidden="true"></span>
1203 </button>
1204 <div id="dashboard_stats" class="is-loading">
1205 <div class="inside">
1206 <div style="height: 250px;"></div>
1207 </div>
1208 </div>
1209 <?php
1210 }
1211
1212 /**
1213 * Stats Dashboard Widget Content.
1214 *
1215 * TODO: This should be moved into class-jetpack-stats-dashboard-widget.php.
1216 *
1217 * @access public
1218 * @return void
1219 */
1220 function stats_dashboard_widget_content() {
1221 $width = isset( $_GET['width'] ) ? intval( $_GET['width'] ) / 2 : null; // phpcs:ignore WordPress.Security.NonceVerification.Recommended
1222 $height = isset( $_GET['height'] ) ? intval( $_GET['height'] ) - 36 : null; // phpcs:ignore WordPress.Security.NonceVerification.Recommended
1223 if ( ! $width || $width < 250 ) {
1224 $width = 370;
1225 }
1226 if ( ! $height || $height < 230 ) {
1227 $height = 180;
1228 }
1229
1230 $_width = $width - 5;
1231 $_height = $height - 5;
1232
1233 $options = stats_dashboard_widget_options();
1234 $blog_id = Jetpack_Options::get_option( 'id' );
1235
1236 $q = array(
1237 'noheader' => 'true',
1238 'proxy' => '',
1239 'blog' => $blog_id,
1240 'page' => 'stats',
1241 'chart' => '',
1242 'unit' => $options['chart'],
1243 'color' => get_user_option( 'admin_color' ),
1244 'width' => $_width,
1245 'height' => $_height,
1246 'ssl' => is_ssl(),
1247 'j' => sprintf( '%s:%s', JETPACK__API_VERSION, JETPACK__VERSION ),
1248 );
1249
1250 $url = 'https://' . STATS_DASHBOARD_SERVER . '/wp-admin/index.php';
1251
1252 $url = add_query_arg( $q, $url );
1253 $method = 'GET';
1254 $timeout = 90;
1255 $user_id = 0; // Means use the blog token.
1256
1257 $get = Client::remote_request( compact( 'url', 'method', 'timeout', 'user_id' ) );
1258 $get_code = wp_remote_retrieve_response_code( $get );
1259 if ( is_wp_error( $get ) || ( 2 !== (int) ( $get_code / 100 ) && 304 !== $get_code ) || empty( $get['body'] ) ) {
1260 stats_print_wp_remote_error( $get, $url );
1261 } else {
1262 $body = stats_convert_post_titles( $get['body'] );
1263 $body = stats_convert_chart_urls( $body );
1264 $body = stats_convert_image_urls( $body );
1265 echo $body; // phpcs:ignore WordPress.Security.EscapeOutput
1266 }
1267
1268 $post_ids = array();
1269
1270 $csv_end_date = current_time( 'Y-m-d' );
1271 $csv_args = array(
1272 'top' => "&limit=6&end=$csv_end_date",
1273 'search' => "&limit=5&end=$csv_end_date",
1274 );
1275
1276 $top_posts = stats_get_csv( 'postviews', "days=$options[top]$csv_args[top]" );
1277 foreach ( $top_posts as $i => $post ) {
1278 if ( 0 === $post['post_id'] ) {
1279 unset( $top_posts[ $i ] );
1280 continue;
1281 }
1282 $post_ids[] = $post['post_id'];
1283 }
1284
1285 // Cache.
1286 get_posts( array( 'include' => implode( ',', array_unique( $post_ids ) ) ) );
1287
1288 $searches = array();
1289 $search_terms = stats_get_csv( 'searchterms', "days=$options[search]$csv_args[search]" );
1290 foreach ( $search_terms as $search_term ) {
1291 if ( 'encrypted_search_terms' === $search_term['searchterm'] ) {
1292 continue;
1293 }
1294 $searches[] = esc_html( $search_term['searchterm'] );
1295 }
1296
1297 ?>
1298 <div id="stats-info">
1299 <div id="stats-info-container">
1300 <div class="stats-info-header">
1301 <h2><?php esc_html_e( 'Highlights', 'jetpack' ); ?></h2>
1302 <div class="stats-info-header-right">
1303 <a href="<?php echo esc_url( admin_url( 'admin.php?page=stats' ) ); ?>" class="button button-primary">
1304 <?php esc_html_e( 'View detailed stats', 'jetpack' ); ?>
1305 </a>
1306 </div>
1307 </div>
1308 <div class="stats-info-content">
1309 <div id="top-posts" class="stats-section">
1310 <div class="stats-section-inner">
1311 <h3 class="heading"><?php esc_html_e( 'Top Posts', 'jetpack' ); ?></h3>
1312 <?php
1313 if ( empty( $top_posts ) ) {
1314 ?>
1315 <p class="nothing"><?php esc_html_e( 'Sorry, nothing to report.', 'jetpack' ); ?></p>
1316 <?php
1317 } else {
1318 foreach ( $top_posts as $post ) {
1319 if ( ! get_post( $post['post_id'] ) ) {
1320 continue;
1321 }
1322 ?>
1323 <p>
1324 <?php
1325 printf(
1326 esc_html(
1327 /* Translators: Stats dashboard widget Post list with view count: "Post Title 1 View (or Views if plural)". */
1328 _n( '%1$s %2$s View', '%1$s %2$s Views', $post['views'], 'jetpack' )
1329 ),
1330 '<a href="' . esc_url( get_permalink( $post['post_id'] ) ) . '">' . esc_html( get_the_title( $post['post_id'] ) ) . '</a>',
1331 esc_html( number_format_i18n( $post['views'] ) )
1332 );
1333 ?>
1334 </p>
1335 <?php
1336 }
1337 }
1338 ?>
1339 </div>
1340 </div>
1341 <div id="top-search" class="stats-section">
1342 <div class="stats-section-inner">
1343 <h3 class="heading"><?php esc_html_e( 'Top Searches', 'jetpack' ); ?></h3>
1344 <?php
1345 if ( empty( $searches ) ) {
1346 ?>
1347 <p class="nothing"><?php esc_html_e( 'Sorry, nothing to report.', 'jetpack' ); ?></p>
1348 <?php
1349 } else {
1350 foreach ( $searches as $search_term_item ) {
1351 printf(
1352 '<p>%s</p>',
1353 esc_html( $search_term_item )
1354 );
1355 }
1356 }
1357 ?>
1358 </div>
1359 </div>
1360 </div>
1361 </div>
1362 </div>
1363 <?php
1364 exit;
1365 }
1366
1367 /**
1368 * Stats Print WP Remote Error.
1369 *
1370 * @access public
1371 * @param mixed $get Get.
1372 * @param mixed $url URL.
1373 * @return void
1374 */
1375 function stats_print_wp_remote_error( $get, $url ) {
1376 $state_name = 'stats_remote_error_' . substr( md5( $url ), 0, 8 );
1377 $previous_error = Jetpack::state( $state_name );
1378 $error = md5( wp_json_encode( compact( 'get', 'url' ) ) );
1379 Jetpack::state( $state_name, $error );
1380 if ( $error !== $previous_error ) {
1381 ?>
1382 <div class="wrap">
1383 <p><?php esc_html_e( 'We were unable to get your stats just now. Please reload this page to try again.', 'jetpack' ); ?></p>
1384 </div>
1385 <?php
1386 return;
1387 }
1388 ?>
1389 <div class="wrap">
1390 <p>
1391 <?php
1392 printf(
1393 /* translators: placeholder is an a href for a support site. */
1394 esc_html__( 'We were unable to get your stats just now. Please reload this page to try again. If this error persists, please contact %1$s. In your report, please include the information below.', 'jetpack' ),
1395 sprintf(
1396 '<a href="https://support.wordpress.com/contact/?jetpack=needs-service">%s</a>',
1397 esc_html__( 'Jetpack Support', 'jetpack' )
1398 )
1399 );
1400 ?>
1401 </p>
1402 <pre class="stats-widget-error">
1403 User Agent: "<?php echo isset( $_SERVER['HTTP_USER_AGENT'] ) ? esc_html( wp_unslash( $_SERVER['HTTP_USER_AGENT'] ) ) : ''; // phpcs:ignore WordPress.Security.ValidatedSanitizedInput.InputNotSanitized ?>"
1404 Page URL: "http<?php echo ( is_ssl() ? 's' : '' ) . '://' . esc_html( ( isset( $_SERVER['HTTP_HOST'] ) ? wp_unslash( $_SERVER['HTTP_HOST'] ) : '' ) . ( isset( $_SERVER['REQUEST_URI'] ) ? wp_unslash( $_SERVER['REQUEST_URI'] ) : '' ) ); // phpcs:ignore WordPress.Security.ValidatedSanitizedInput.InputNotSanitized ?>"
1405 API URL: "<?php echo esc_url( $url ); ?>"
1406 <?php
1407 if ( is_wp_error( $get ) ) {
1408 foreach ( $get->get_error_codes() as $code ) {
1409 foreach ( $get->get_error_messages( $code ) as $message ) {
1410 print esc_html( $code ) . ': "' . esc_html( $message ) . '"';
1411 }
1412 }
1413 } else {
1414 $get_code = wp_remote_retrieve_response_code( $get );
1415 $content_length = strlen( wp_remote_retrieve_body( $get ) );
1416 ?>
1417 Response code: "<?php print esc_html( $get_code ); ?>"
1418 Content length: "<?php print esc_html( $content_length ); ?>"
1419 <?php
1420 }
1421 ?>
1422 </pre>
1423 </div>
1424 <?php
1425 }
1426
1427 /**
1428 * Get stats from WordPress.com
1429 *
1430 * @param string $table The stats which you want to retrieve: postviews, or searchterms.
1431 * @param array $args {
1432 * An associative array of arguments.
1433 *
1434 * @type bool $end The last day of the desired time frame. Format is 'Y-m-d' (e.g. 2007-05-01)
1435 * and default timezone is UTC date. Default value is Now.
1436 * @type string $days The length of the desired time frame. Default is 30. Maximum 90 days.
1437 * @type int $limit The maximum number of records to return. Default is 10. Maximum 100.
1438 * @type int $post_id The ID of the post to retrieve stats data for
1439 * @type string $summarize If present, summarizes all matching records. Default Null.
1440 *
1441 * }
1442 *
1443 * @return array {
1444 * An array of post view data, each post as an array
1445 *
1446 * array {
1447 * The post view data for a single post
1448 *
1449 * @type string $post_id The ID of the post
1450 * @type string $post_title The title of the post
1451 * @type string $post_permalink The permalink for the post
1452 * @type string $views The number of views for the post within the $num_days specified
1453 * }
1454 * }
1455 */
1456 function stats_get_csv( $table, $args = null ) {
1457 $defaults = array(
1458 'end' => false,
1459 'days' => false,
1460 'limit' => 3,
1461 'post_id' => false,
1462 'summarize' => '',
1463 );
1464
1465 $args = wp_parse_args( $args, $defaults );
1466 $args['table'] = $table;
1467 $args['blog_id'] = Jetpack_Options::get_option( 'id' );
1468
1469 $stats_csv_url = add_query_arg( $args, 'https://stats.wordpress.com/csv.php' );
1470
1471 $key = md5( $stats_csv_url );
1472
1473 // Get cache.
1474 $stats_cache = get_option( 'stats_cache' );
1475 if ( ! $stats_cache || ! is_array( $stats_cache ) ) {
1476 $stats_cache = array();
1477 }
1478
1479 // Return or expire this key.
1480 if ( isset( $stats_cache[ $key ] ) ) {
1481 $time = key( $stats_cache[ $key ] );
1482 if ( time() - $time < 300 ) {
1483 return $stats_cache[ $key ][ $time ];
1484 }
1485 unset( $stats_cache[ $key ] );
1486 }
1487
1488 $stats_rows = array();
1489 do {
1490 $stats = stats_get_remote_csv( $stats_csv_url );
1491 if ( ! $stats ) {
1492 break;
1493 }
1494
1495 $labels = array_shift( $stats );
1496
1497 if ( 0 === stripos( $labels[0], 'error' ) ) {
1498 break;
1499 }
1500
1501 $stats_rows = array();
1502 for ( $s = 0; isset( $stats[ $s ] ); $s++ ) {
1503 $row = array();
1504 foreach ( $labels as $col => $label ) {
1505 $row[ $label ] = $stats[ $s ][ $col ];
1506 }
1507 $stats_rows[] = $row;
1508 }
1509 } while ( 0 );
1510
1511 // Expire old keys.
1512 foreach ( $stats_cache as $k => $cache ) {
1513 if ( ! is_array( $cache ) || 300 < time() - key( $cache ) ) {
1514 unset( $stats_cache[ $k ] );
1515 }
1516 }
1517
1518 // Set cache.
1519 $stats_cache[ $key ] = array( time() => $stats_rows );
1520 update_option( 'stats_cache', $stats_cache );
1521
1522 return $stats_rows;
1523 }
1524
1525 /**
1526 * Stats get remote CSV.
1527 *
1528 * @access public
1529 * @param mixed $url URL.
1530 * @return array
1531 */
1532 function stats_get_remote_csv( $url ) {
1533 $method = 'GET';
1534 $timeout = 90;
1535 $user_id = 0; // Blog token.
1536
1537 $get = Client::remote_request( compact( 'url', 'method', 'timeout', 'user_id' ) );
1538 $get_code = wp_remote_retrieve_response_code( $get );
1539 if ( is_wp_error( $get ) || ( 2 !== (int) ( $get_code / 100 ) && 304 !== $get_code ) || empty( $get['body'] ) ) {
1540 return array(); // @todo: return an error?
1541 } else {
1542 return stats_str_getcsv( $get['body'] );
1543 }
1544 }
1545
1546 /**
1547 * Recursively run str_getcsv on the stats csv.
1548 *
1549 * @since 9.7.0 Remove custom handling since str_getcsv is available on all servers running this now.
1550 *
1551 * @param mixed $csv CSV.
1552 * @return array.
1553 */
1554 function stats_str_getcsv( $csv ) {
1555 $lines = str_getcsv( $csv, "\n" );
1556 return array_map( 'str_getcsv', $lines );
1557 }
1558
1559 /**
1560 * Abstract out building the rest api stats path.
1561 *
1562 * @param string $resource Resource.
1563 * @return string
1564 */
1565 function jetpack_stats_api_path( $resource = '' ) {
1566 $resource = ltrim( $resource, '/' );
1567 return sprintf( '/sites/%d/stats/%s', Stats_Options::get_option( 'blog_id' ), $resource );
1568 }
1569
1570 /**
1571 * Fetches stats data from the REST API. Caches locally for 5 minutes.
1572 *
1573 * @link: https://developer.wordpress.com/docs/api/1.1/get/sites/%24site/stats/
1574 * @access public
1575 * @deprecated 11.5 Use WPCOM_Stats available methodsinstead.
1576 * @param array $args (default: array()) The args that are passed to the endpoint.
1577 * @param string $resource (default: '') Optional sub-endpoint following /stats/.
1578 * @return array|WP_Error.
1579 */
1580 function stats_get_from_restapi( $args = array(), $resource = '' ) {
1581 _deprecated_function( __METHOD__, 'jetpack-11.5', 'Please checkout the methods available in Automattic\Jetpack\Stats\WPCOM_Stats' );
1582 $endpoint = jetpack_stats_api_path( $resource );
1583 $api_version = '1.1';
1584 $args = wp_parse_args( $args, array() );
1585 $cache_key = md5( implode( '|', array( $endpoint, $api_version, wp_json_encode( $args ) ) ) );
1586
1587 $transient_name = "jetpack_restapi_stats_cache_{$cache_key}";
1588
1589 $stats_cache = get_transient( $transient_name );
1590
1591 // Return or expire this key.
1592 if ( $stats_cache ) {
1593 $time = key( $stats_cache );
1594 $data = $stats_cache[ $time ]; // WP_Error or string (JSON encoded object).
1595
1596 if ( is_wp_error( $data ) ) {
1597 return $data;
1598 }
1599
1600 return (object) array_merge( array( 'cached_at' => $time ), (array) json_decode( $data ) );
1601 }
1602
1603 // Do the dirty work.
1604 $response = Client::wpcom_json_api_request_as_blog( $endpoint, $api_version, $args );
1605 if ( 200 !== wp_remote_retrieve_response_code( $response ) ) {
1606 // WP_Error.
1607 $data = is_wp_error( $response ) ? $response : new WP_Error( 'stats_error' );
1608 // WP_Error.
1609 $return = $data;
1610 } else {
1611 // string (JSON encoded object).
1612 $data = wp_remote_retrieve_body( $response );
1613 // object (rare: null on JSON failure).
1614 $return = json_decode( $data );
1615 }
1616
1617 // To reduce size in storage: store with time as key, store JSON encoded data (unless error).
1618 set_transient( $transient_name, array( time() => $data ), 5 * MINUTE_IN_SECONDS );
1619
1620 return $return;
1621 }
1622
1623 /**
1624 * Load CSS needed for Stats column width in WP-Admin area.
1625 *
1626 * @since 4.7.0
1627 */
1628 function jetpack_stats_load_admin_css() {
1629 ?>
1630 <style type="text/css">
1631 .fixed .column-stats {
1632 width: 5em;
1633 }
1634 </style>
1635 <?php
1636 }
1637
1638 /**
1639 * Set header for column that allows to view an entry's stats.
1640 *
1641 * @param array $columns An array of column names.
1642 *
1643 * @since 4.7.0
1644 *
1645 * @return mixed
1646 */
1647 function jetpack_stats_post_table( $columns ) {
1648 /*
1649 * Stats can be accessed in wp-admin or in Calypso,
1650 * depending on what version of the stats screen is enabled on your site.
1651 *
1652 * In both cases, the user must be allowed to access stats.
1653 *
1654 * If the Odyssey Stats experience isn't enabled, the user will need to go to Calypso,
1655 * so they need to be connected to WordPress.com to be able to access that page.
1656 */
1657 if (
1658 ! current_user_can( 'view_stats' )
1659 || (
1660 ! Stats_Options::get_option( 'enable_odyssey_stats' )
1661 && ! ( new Connection_Manager( 'jetpack' ) )->is_user_connected()
1662 )
1663 ) {
1664 return $columns;
1665 }
1666
1667 // Array-Fu to add before comments.
1668 $pos = array_search( 'comments', array_keys( $columns ), true );
1669
1670 // Fallback to the last position if the post type does not support comments.
1671 if ( ! is_int( $pos ) ) {
1672 $pos = count( $columns );
1673 }
1674
1675 // Final fallback, if the array was malformed by another plugin for example.
1676 if ( ! is_int( $pos ) ) {
1677 return $columns;
1678 }
1679
1680 $chunks = array_chunk( $columns, $pos, true );
1681 $chunks[0]['stats'] = esc_html__( 'Stats', 'jetpack' );
1682
1683 return call_user_func_array( 'array_merge', $chunks );
1684 }
1685
1686 /**
1687 * Set content for cell with link to an entry's stats in Odyssey Stats.
1688 *
1689 * @param string $column The name of the column to display.
1690 * @param int $post_id The current post ID.
1691 *
1692 * @since 4.7.0
1693 *
1694 * @return mixed
1695 */
1696 function jetpack_stats_post_table_cell( $column, $post_id ) {
1697 if ( 'stats' === $column ) {
1698 if ( 'publish' !== get_post_status( $post_id ) ) {
1699 printf(
1700 '<span aria-hidden="true">—</span><span class="screen-reader-text">%s</span>',
1701 esc_html__( 'No stats', 'jetpack' )
1702 );
1703 } else {
1704 $stats_post_url = ! ( new Host() )->is_woa_site() && Stats_Options::get_option( 'enable_odyssey_stats' )
1705 ? admin_url( sprintf( 'admin.php?page=stats#!/stats/post/%d/%d', $post_id, Jetpack_Options::get_option( 'id', 0 ) ) )
1706 : Redirect::get_url(
1707 'calypso-stats-post',
1708 array(
1709 'path' => $post_id,
1710 )
1711 );
1712
1713 printf(
1714 '<a href="%s" title="%s" class="dashicons dashicons-chart-bar" target="_blank"></a>',
1715 esc_url( $stats_post_url ),
1716 esc_html__( 'View stats for this post', 'jetpack' )
1717 );
1718 }
1719 }
1720 }
1721
1722 /**
1723 * Add the Jetpack plugin version to the stats tracking data.
1724 *
1725 * @param array $kvs The stats array in key values.
1726 * @return array
1727 */
1728 function filter_stats_array_add_jp_version( $kvs ) {
1729 $kvs['j'] = sprintf( '%s:%s', JETPACK__API_VERSION, JETPACK__VERSION );
1730
1731 return $kvs;
1732 }
1733
1734 /**
1735 * Convert stats array to object after sanity checking the array is valid.
1736 *
1737 * @param array $stats_array The stats array.
1738 * @return WP_Error|Object|null
1739 */
1740 function convert_stats_array_to_object( $stats_array ) {
1741
1742 if ( is_wp_error( $stats_array ) ) {
1743 return $stats_array;
1744 }
1745 $encoded_array = wp_json_encode( $stats_array );
1746 if ( ! $encoded_array ) {
1747 return new WP_Error( 'stats_encoding_error', 'Failed to encode stats array' );
1748 }
1749 return json_decode( $encoded_array );
1750 }
1751