PluginProbe ʕ •ᴥ•ʔ
Jetpack – WP Security, Backup, Speed, & Growth / 13.2.4
Jetpack – WP Security, Backup, Speed, & Growth v13.2.4
12.0.3 12.1.3 12.2.3 12.3.2 12.4.2 12.5.2 12.6.4 12.7.3 12.8.3 12.9.5 13.0.2 13.1.5 13.2.4 13.3.3 13.4.5 13.5.2 13.6.2 13.7.2 13.8.3 13.9.2 14.0.1 14.1.1 14.2.2 14.3.1 14.4.2 14.5.1 14.6.1 14.7.1 14.8.1 14.9.2 15.0.3 15.1.2 15.2.1 15.3.2 15.4.1 15.5.1 15.6.1 15.7.2 15.8.1 15.9.2 16.0.2 16.1.3 16.2-a.5 16.2-a.3 16.1.2 16.2-a.1 16.1.1 16.1 16.1-beta 16.1-beta.2 16.1-beta.3 16.1-a.5 16.1-a.3 16.0.1 16.1-a.1 16.0 16.0-beta 16.0-a.7 16.0-a.5 15.9.1 16.0-a.3 16.0-a.1 15.9 15.9-beta 15.9-a.7 15.9-a.5 15.9-a.3 15.9-a.1 15.8 15.8-beta 15.8-a.7 15.8-a.5 5.2.5 5.3.4 5.4.4 5.5.5 5.6.5 5.7.5 5.8.4 5.9.4 6.0.4 6.1 6.1.1 6.1.2 6.1.3 6.1.4 6.1.5 6.2 6.2.1 6.2.2 6.2.3 6.2.4 6.2.5 6.3 6.3.1 6.3.2 6.3.3 6.3.4 6.3.5 6.3.6 6.3.7 6.4 6.4.1 6.4.2 6.4.3 6.4.4 6.4.5 6.4.6 6.5 6.5.1 6.5.2 6.5.3 6.5.4 6.6 6.6.1 6.6.2 6.6.3 6.6.4 6.6.5 6.7 6.7.1 6.7.2 6.7.3 6.7.4 6.8 6.8.1 6.8.2 6.8.3 6.8.4 6.8.5 6.9 6.9.1 6.9.2 6.9.3 6.9.4 7.0 7.0.1 7.0.2 7.0.3 7.0.4 7.0.5 7.1 7.1.1 7.1.2 7.1.3 7.1.4 7.1.5 7.2 7.2.1 7.2.1.1 7.2.2 7.2.3 7.2.4 7.2.5 7.3 7.3.0.1 7.3.1 7.3.1.1 7.3.2 7.3.3 7.3.4 7.3.5 7.4 7.4.1 7.4.2 7.4.3 7.4.4 7.4.5 7.5 7.5.0.1 7.5.1 7.5.2 7.5.3 7.5.4 7.5.5 7.5.6 7.5.7 7.6 7.6.1 7.6.2 7.6.3 7.6.4 7.7 7.7.1 7.7.2 7.7.3 7.7.4 7.7.5 7.7.6 7.8 7.8.1 7.8.2 7.8.3 7.8.4 7.9 7.9.1 7.9.2 7.9.3 7.9.4 8.0 8.0.1 8.0.2 8.0.3 8.1 8.1.1 8.1.2 8.1.3 8.1.4 8.2 8.2.0.1 8.2.1 8.2.2 8.2.3 8.2.4 8.2.5 8.2.6 8.3 8.3.1 8.3.2 8.3.3 8.4 8.4.1 8.4.2 8.4.3 8.4.4 8.4.5 8.5 8.5.1 8.5.2 8.5.3 8.6 8.6.1 8.6.2 8.6.3 8.6.4 8.7 8.7.0.1 8.7.1 8.7.2 8.7.3 8.7.4 8.8 8.8.1 8.8.2 8.8.3 8.8.4 8.8.5 8.9 8.9.1 8.9.2 8.9.3 8.9.4 9.0 9.0.1 9.0.2 9.0.3 9.0.4 9.0.5 9.1 9.1.1 9.1.2 9.1.3 9.2 9.2.1 9.2.2 9.2.3 9.2.4 9.3 9.3.1 9.3.2 9.3.3 9.3.4 9.3.5 9.4 9.4.1 9.4.2 9.4.3 9.4.4 9.5 9.5.1 9.5.2 9.5.3 9.5.4 9.5.5 9.6 9.6.1 9.6.2 9.6.3 9.6.4 9.7 9.7.1 9.7.2 15.7-beta.2 9.7.3 15.7.1 9.8 15.8-a.1 9.8.1 15.8-a.3 9.8.2 2.0.9 9.8.3 2.1.7 9.9 2.2.10 9.9.1 2.3.10 9.9.2 2.4.7 9.9.3 2.5.5 2.6.6 2.7.5 2.8.5 2.9.6 3.0.6 3.1.5 3.2.5 3.3.6 3.4.6 3.5.6 3.6.4 3.7.5 3.8.5 3.9.10 4.0.7 4.1.4 4.2.5 4.3.5 4.4.5 4.5.3 4.6.3 4.7.4 4.8.5 4.9.3 5.0.3 5.1.4 trunk 10.0 10.0.1 10.0.2 10.1 10.1.1 10.1.2 10.2 10.2.1 10.2.2 10.2.3 10.3 10.3.1 10.3.2 10.4 10.4.1 10.4.2 10.5 10.5.1 10.5.2 10.5.3 10.6 10.6.1 10.6.2 10.7 10.7.1 10.7.2 10.8 10.8.1 10.8.2 10.9 10.9.1 10.9.2 10.9.3 11.0 11.0.1 11.0.2 11.1 11.1.1 11.1.2 11.1.3 11.1.4 11.2 11.2.1 11.2.2 11.3 11.3.1 11.3.2 11.3.3 11.3.4 11.4 11.4.1 11.4.2 11.5 11.5.1 11.5.2 11.5.3 11.6 11.6.1 11.6.2 11.7 11.7.1 11.7.2 11.7.3 11.8 11.8.3 11.8.4 11.8.5 11.8.6 11.9 11.9.1 11.9.2 11.9.3 12.0 12.0.1 12.0.2 12.1 12.1.1 12.1.2 12.2 12.2.1 12.2.2 12.3 12.3.1 12.4 12.4.1 12.5 12.5.1 12.6 12.6.1 12.6.2 12.6.3 12.7 12.7.1 12.7.2 12.8 12.8.1 12.8.2 12.9 12.9.1 12.9.2 12.9.3 12.9.4 13.0 13.0.1 13.1 13.1.1 13.1.2 13.1.3 13.1.4 13.2 13.2.1 13.2.2 13.2.3 13.3 13.3.1 13.3.2 13.4 13.4.1 13.4.2 13.4.3 13.4.4 13.5 13.5.1 13.6 13.6.1 13.7 13.7.1 13.8 13.8.1 13.8.2 13.9 13.9.1 14.0 14.1 14.2 14.2.1 14.3 14.4 14.4.1 14.5 14.6 14.7 14.8 14.9 14.9.1 15.0 15.0.1 15.0.2 15.1 15.1.1 15.2 15.3 15.3.1 15.4 15.5 15.6 15.7 15.7-a.1 15.7-a.3 15.7-a.5 15.7-a.7 15.7-beta
jetpack / modules / scan / class-admin-bar-notice.php
jetpack / modules / scan Last commit date
admin-bar-notice.js 6 years ago class-admin-bar-notice.php 2 years ago class-admin-sidebar-link.php 2 years ago scan.php 2 years ago
class-admin-bar-notice.php
229 lines
1 <?php
2 /**
3 * A class that adds the scan notice to the admin bar.
4 *
5 * @package automattic/jetpack
6 */
7
8 namespace Automattic\Jetpack\Scan;
9
10 use Automattic\Jetpack\Assets;
11 use Automattic\Jetpack\Redirect;
12
13 /**
14 * Class Main
15 *
16 * Responsible for loading the admin bar notice if threats are found.
17 *
18 * @package Automattic\Jetpack\Scan
19 */
20 class Admin_Bar_Notice {
21 const SCRIPT_NAME = 'jetpack-scan-show-notice';
22 const SCRIPT_VERSION = '1';
23
24 /**
25 * The singleton instance of this class.
26 *
27 * @var Admin_Bar_Notice
28 */
29 protected static $instance;
30
31 /**
32 * Get the singleton instance of the class.
33 *
34 * @return Admin_Bar_Notice
35 */
36 public static function instance() {
37 if ( ! isset( self::$instance ) ) {
38 self::$instance = new Admin_Bar_Notice();
39 self::$instance->init_hooks();
40 }
41
42 return self::$instance;
43 }
44 /**
45 * Initalize the hooks as needed.
46 */
47 private function init_hooks() {
48 if ( ! $this->should_try_to_display_notice() ) {
49 return;
50 }
51
52 add_action( 'wp_enqueue_scripts', array( $this, 'enqueue_toolbar_script' ) );
53 add_action( 'admin_enqueue_scripts', array( $this, 'enqueue_toolbar_script' ) );
54 add_action( 'admin_bar_menu', array( $this, 'add_threats_to_toolbar' ), 999 );
55
56 // Inject the data-ampdevmode attribute into the inline <script> output via wp_localize_script(). To revisit after https://github.com/ampproject/amp-wp/issues/4598.
57 add_filter(
58 'amp_dev_mode_element_xpaths',
59 static function ( $expressions ) {
60 $expressions[] = '//script[ contains( text(), "Jetpack_Scan" ) ]';
61 return $expressions;
62 }
63 );
64 }
65
66 /**
67 * Whether to even try to display the notice or now.
68 *
69 * @return bool
70 */
71 private function should_try_to_display_notice() {
72 // Jetpack Scan is currently not supported on multisite.
73 if ( is_multisite() ) {
74 return false;
75 }
76
77 // Check if VaultPress is active, the assumtion there is that VaultPress is working.
78 // It has its own notice in the admin bar.
79 if ( class_exists( 'VaultPress' ) ) {
80 return false;
81 }
82
83 // Check if Protect is active.
84 // It has its own notice in the admin bar.
85 if ( class_exists( 'Jetpack_Protect' ) ) {
86 return false;
87 }
88
89 // Only show the notice to admins.
90 if ( ! current_user_can( 'manage_options' ) ) {
91 return false;
92 }
93
94 return true;
95 }
96
97 /**
98 * Add the inline styles and scripts if they are needed.
99 */
100 public function enqueue_toolbar_script() {
101 $this->add_inline_styles();
102
103 if ( $this->has_threats() !== null ) {
104 return;
105 }
106
107 // We don't know about threats in the cache lets load the JS that fetches the info and updates the admin bar.
108 Assets::register_script(
109 self::SCRIPT_NAME,
110 '_inc/build/scan/admin-bar-notice.min.js',
111 JETPACK__PLUGIN_FILE,
112 array(
113 'in_footer' => true,
114 'strategy' => 'defer',
115 'nonmin_path' => 'modules/scan/admin-bar-notice.js',
116 'dependencies' => array( 'admin-bar' ),
117 'version' => self::SCRIPT_VERSION,
118 'enqueue' => true,
119 )
120 );
121 $script_data = array(
122 'nonce' => wp_create_nonce( 'wp_rest' ),
123 'scan_endpoint' => get_rest_url( null, 'jetpack/v4/scan' ),
124 'scan_dashboard_url' => Redirect::get_url( 'calypso-scanner' ),
125 /* translators: %s is the alert icon */
126 'singular' => sprintf( esc_html__( '%s Threat found', 'jetpack' ), $this->get_icon() ),
127 /* translators: %s is the alert icon */
128 'multiple' => sprintf( esc_html__( '%s Threats found', 'jetpack' ), $this->get_icon() ),
129 );
130 wp_localize_script( self::SCRIPT_NAME, 'Jetpack_Scan', $script_data );
131 }
132
133 /**
134 * Adds the inline styles if they are needed.
135 */
136 public function add_inline_styles() {
137 // We know there are no threats so lets not include any css.
138 if ( false === $this->has_threats() ) {
139 return;
140 }
141
142 // We might be showing the threats in the admin bar lets make sure that they look great!
143 $hide_wording_on_mobile = '#wp-admin-bar-jetpack-scan-notice .is-hidden { display:none; } @media screen and (max-width: 959px ) { #wpadminbar #wp-admin-bar-jetpack-scan-notice { width:32px; } #wpadminbar #wp-admin-bar-jetpack-scan-notice a { color: transparent!important; } }';
144 $style = '#wp-admin-bar-jetpack-scan-notice svg { float:left; margin-top: 4px; margin-right: 6px; width: 18px; height: 22px; }' . $hide_wording_on_mobile;
145 if ( is_rtl() ) {
146 $style = '#wp-admin-bar-jetpack-scan-notice svg { float:right; margin-top: 4px; margin-left: 6px; width: 18px; height: 22px; }' . $hide_wording_on_mobile;
147 }
148 wp_add_inline_style( 'admin-bar', $style );
149 }
150
151 /**
152 * Add the link to the admin bar.
153 *
154 * @param WP_Admin_Bar $wp_admin_bar WP Admin Bar class object.
155 */
156 public function add_threats_to_toolbar( $wp_admin_bar ) {
157 if ( ! $this->should_try_to_display_notice() ) {
158 return;
159 }
160
161 $has_threats = $this->has_threats();
162 if ( false === $has_threats ) {
163 return;
164 }
165
166 $node = array(
167 'id' => 'jetpack-scan-notice',
168 'title' => '',
169 'parent' => 'top-secondary',
170 'meta' => array(
171 'title' => esc_attr__( 'View security scan details', 'jetpack' ),
172 'class' => 'error is-hidden',
173 ),
174 );
175
176 if ( $has_threats ) {
177 $node['href'] = esc_url( Redirect::get_url( 'calypso-scanner' ) );
178 $node['meta']['onclick'] = 'window.open( this.href ); return false;';
179 $node['meta']['class'] = 'error';
180 $node['title'] = sprintf(
181 esc_html(
182 /* translators: %s is the alert icon */
183 _n( '%s Threat found', '%s Threats found', $this->get_threat_count(), 'jetpack' )
184 ),
185 $this->get_icon()
186 );
187 }
188
189 $wp_admin_bar->add_node( $node );
190 }
191
192 /**
193 * Returns the shield icon.
194 *
195 * @return string
196 */
197 private function get_icon() {
198 return '<svg width="18" height="22" viewBox="0 0 18 22" fill="none" xmlns="http://www.w3.org/2000/svg"><path d="M9 0L0 4V10C0 15.55 3.84 20.74 9 22C14.16 20.74 18 15.55 18 10V4L9 0Z" fill="#D63638"/><path d="M7.99121 6.00894H10.0085V11.9968H7.99121V6.00894Z" fill="#FFF"/><path d="M7.99121 14.014H10.0085V15.9911H7.99121V14.014Z" fill="#FFF"/></svg>';
199 }
200
201 /**
202 *
203 * Return Whether boolean cached threats exist or null if the state is unknown.
204 * * @return boolean or null
205 */
206 public function has_threats() {
207 $scan_state = get_transient( 'jetpack_scan_state' );
208 if ( empty( $scan_state ) ) {
209 return null;
210 }
211 // Return true if there is at least one threat found.
212 return (bool) isset( $scan_state->threats[0] );
213 }
214
215 /**
216 * Returns the number of threats found or 0.
217 *
218 * @return int
219 */
220 public function get_threat_count() {
221 if ( ! $this->has_threats() ) {
222 return 0;
223 }
224
225 $scan_state = get_transient( 'jetpack_scan_state' );
226 return is_array( $scan_state->threats ) ? count( $scan_state->threats ) : 0;
227 }
228 }
229