PluginProbe
Mailchimp List Subscribe Form / trunk
Mailchimp List Subscribe Form vtrunk
1.2.4 1.2.5 1.2.6 1.2.7 1.2.8 1.2.9 1.3 1.4 1.4.1 1.4.2 1.4.3 1.4.4 1.4.5 1.5 1.5.1 1.5.2 1.5.3 1.5.4 1.5.5 1.5.6 1.5.7 1.5.8 1.5.9 1.6.0 1.6.1 All 55 releases
← All changes | mailchimp.php +776 -1226 1.3trunk View file →
@@ -1,84 +1,179 @@
1 1 <?php
2 -/*
3 -Plugin Name: MailChimp
4 -Plugin URI: http://www.mailchimp.com/plugins/mailchimp-wordpress-plugin/
5 -Description: The MailChimp plugin allows you to quickly and easily add a signup form for your MailChimp list.
6 -Version: 1.3
7 -Author: MailChimp and Crowd Favorite
8 -Author URI: http://mailchimp.com/api/
9 -*/
10 -/* Copyright 2008-2012 MailChimp.com (email : api@mailchimp.com)
2 +/**
3 + * Plugin Name: Mailchimp
4 + * Plugin URI: https://mailchimp.com/help/connect-or-disconnect-list-subscribe-for-wordpress/
5 + * Description: Add a Mailchimp signup form block, widget or shortcode to your WordPress site.
6 + * Text Domain: mailchimp
7 + * Version: 2.1.0
8 + * Requires at least: 6.6
9 + * Requires PHP: 7.4
10 + * PHP tested up to: 8.3
11 + * Author: Mailchimp
12 + * Author URI: https://mailchimp.com/
13 + * License: GPL-2.0-or-later
14 + * License URI: https://spdx.org/licenses/GPL-2.0-or-later.html
15 + *
16 + * @package Mailchimp
17 + **/
11 18
12 - This program is free software; you can redistribute it and/or modify
13 - it under the terms of the GNU General Public License as published by
14 - the Free Software Foundation; either version 2 of the License, or
15 - (at your option) any later version.
19 +/**
20 + * Copyright 2008-2012 Mailchimp.com (email : api@mailchimp.com)
21 + *
22 + * This program is free software; you can redistribute it and/or modify
23 + * it under the terms of the GNU General Public License as published by
24 + * the Free Software Foundation; either version 2 of the License, or
25 + * (at your option) any later version.
26 + *
27 + * This program is distributed in the hope that it will be useful,
28 + * but WITHOUT ANY WARRANTY; without even the implied warranty of
29 + * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
30 + * GNU General Public License for more details.
31 + *
32 + * You should have received a copy of the GNU General Public License
33 + * along with this program; if not, write to the Free Software
34 + * Foundation, Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA
35 + */
16 36
17 - This program is distributed in the hope that it will be useful,
18 - but WITHOUT ANY WARRANTY; without even the implied warranty of
19 - MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
20 - GNU General Public License for more details.
37 +// Check if the autoload file exists
38 +if ( is_readable( __DIR__ . '/vendor/autoload.php' ) ) {
39 + require_once __DIR__ . '/vendor/autoload.php';
40 +} else {
41 + add_action(
42 + 'admin_notices',
43 + function () {
44 + ?>
45 + <div class="notice notice-error">
46 + <p>
47 + <?php
48 + echo wp_kses_post(
49 + sprintf(
50 + /* translators: 1: Command to run, e.g., <code>composer install</code>, 2: Support URL, e.g., https://wordpress.org/support/plugin/mailchimp/. */
51 + __( 'The composer autoload file is not found or not readable. Please contact <a href="%2$s" target="_blank">support</a> if you\'re a user. Please run %1$s if you\'re a developer in a development environment.', 'mailchimp' ),
52 + '<code>composer install</code>',
53 + 'https://wordpress.org/support/plugin/mailchimp/'
54 + )
55 + );
56 + ?>
57 + </p>
58 + </div>
59 + <?php
60 + }
61 + );
21 62
22 - You should have received a copy of the GNU General Public License
23 - along with this program; if not, write to the Free Software
24 - Foundation, Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA
25 -*/
63 + // Exit early.
64 + return;
65 +}
26 66
67 +use function Mailchimp\WordPress\Includes\Admin\{admin_notice_error, admin_notice_success};
68 +
27 69 // Version constant for easy CSS refreshes
28 -define('MCSF_VER', '1.3');
70 +define( 'MCSF_VER', '2.1.0' );
29 71
30 72 // What's our permission (capability) threshold
31 -define('MCSF_CAP_THRESHOLD', 'manage_options');
73 +define( 'MCSF_CAP_THRESHOLD', 'manage_options' );
32 74
33 75 // Define our location constants, both MCSF_DIR and MCSF_URL
34 -mailchimpSF_where_am_i();
76 +mailchimp_sf_where_am_i();
35 77
36 -// Get our MailChimp API class in scope
37 -if (!class_exists('Sopresto_MailChimp')) {
38 - require_once(MCSF_DIR.'lib/sopresto/sopresto.php');
78 +// Get our Mailchimp API class in scope
79 +if ( ! class_exists( 'MailChimp_API' ) ) {
80 + $path = plugin_dir_path( __FILE__ );
81 + require_once $path . 'lib/mailchimp/mailchimp.php';
39 82 }
40 83
84 +// Encryption utility class.
85 +require_once plugin_dir_path( __FILE__ ) . 'includes/class-mailchimp-data-encryption.php';
86 +
41 87 // includes the widget code so it can be easily called either normally or via ajax
42 -include_once('mailchimp_widget.php');
88 +require_once 'mailchimp_widget.php';
43 89
44 90 // includes the backwards compatibility functions
45 -include_once('mailchimp_compat.php');
91 +require_once 'mailchimp_compat.php';
46 92
93 +// Upgrade routines.
94 +require_once 'mailchimp_upgrade.php';
95 +
96 +// Init Admin functions.
97 +require_once plugin_dir_path( __FILE__ ) . 'includes/class-mailchimp-user-sync-backgroud-process.php';
98 +require_once plugin_dir_path( __FILE__ ) . 'includes/admin/class-mailchimp-user-sync.php';
99 +require_once plugin_dir_path( __FILE__ ) . 'includes/admin/class-mailchimp-admin-notices.php';
100 +require_once plugin_dir_path( __FILE__ ) . 'includes/class-mailchimp-admin.php';
101 +$admin = new Mailchimp_Admin();
102 +$admin->init();
103 +
104 +// Init the blocks.
105 +require_once plugin_dir_path( __FILE__ ) . 'includes/blocks/class-mailchimp-list-subscribe-form-blocks.php';
106 +$block = new Mailchimp_List_Subscribe_Form_Blocks();
107 +$block->init();
108 +
109 +// Form submission handler class.
110 +require_once plugin_dir_path( __FILE__ ) . 'includes/class-mailchimp-form-submission.php';
111 +$form_submission = new Mailchimp_Form_Submission();
112 +$form_submission->init();
113 +
114 +// Shared bucketing helpers used by both analytics chart data providers.
115 +require_once plugin_dir_path( __FILE__ ) . 'includes/trait-mailchimp-analytics-bucketing.php';
116 +
117 +// Init Analytics page.
118 +require_once plugin_dir_path( __FILE__ ) . 'includes/class-mailchimp-analytics.php';
119 +$analytics = new Mailchimp_Analytics();
120 +$analytics->init();
121 +
122 +// Analytics data class.
123 +require_once plugin_dir_path( __FILE__ ) . 'includes/class-mailchimp-analytics-data.php';
124 +$analytics_data = new Mailchimp_Analytics_Data();
125 +$analytics_data->init();
126 +
127 +// Subscriber activity (Mailchimp Activity API) data class.
128 +require_once plugin_dir_path( __FILE__ ) . 'includes/class-mailchimp-subscriber-activity.php';
129 +$subscriber_activity = new Mailchimp_Subscriber_Activity();
130 +$subscriber_activity->init();
131 +
132 +// Form performance (local analytics DB) data class.
133 +require_once plugin_dir_path( __FILE__ ) . 'includes/class-mailchimp-form-performance.php';
134 +$form_performance = new Mailchimp_Form_Performance();
135 +$form_performance->init();
136 +
137 +// Deprecated functions.
138 +require_once plugin_dir_path( __FILE__ ) . 'includes/mailchimp-deprecated-functions.php';
139 +
47 140 /**
48 141 * Do the following plugin setup steps here
49 142 *
50 - * Internationalization
51 143 * Resource (JS & CSS) enqueuing
52 144 *
53 145 * @return void
54 146 */
55 -function mailchimpSF_plugin_init() {
56 - // Internationalize the plugin
57 - $textdomain = 'mailchimp_i18n';
58 - $locale = apply_filters( 'plugin_locale', get_locale(), $textdomain);
59 - load_textdomain('mailchimp_i18n', MCSF_LANG_DIR.$textdomain.'-'.$locale.'.mo');
147 +function mailchimp_sf_plugin_init() {
60 148
61 - // Bring in our appropriate JS and CSS resources
62 - mailchimpSF_load_resources();
149 + if ( get_option( 'mc_list_id' ) && get_option( 'mc_merge_field_migrate' ) !== '1' && mailchimp_sf_get_api() !== false ) {
150 + mailchimp_sf_update_merge_fields();
151 + }
152 +
153 + if ( mailchimp_sf_should_display_form() ) {
154 + // Bring in our appropriate JS and CSS resources
155 + add_action( 'wp_enqueue_scripts', 'mailchimp_sf_load_resources' );
156 + }
63 157 }
64 -add_action( 'init', 'mailchimpSF_plugin_init' );
65 158
159 +add_action( 'init', 'mailchimp_sf_plugin_init' );
66 160
67 161 /**
68 - * Add the settings link to the MailChimp plugin row
162 + * Add the settings link to the Mailchimp plugin row
69 163 *
70 164 * @param array $links - Links for the plugin
71 165 * @return array - Links
72 166 */
73 -function mailchimpSD_plugin_action_links($links) {
74 - $settings_page = add_query_arg(array('page' => 'mailchimpSF_options'), admin_url('options-general.php'));
75 - $settings_link = '<a href="'.esc_url($settings_page).'">'.__('Settings', 'mailchimp_i18n' ).'</a>';
76 - array_unshift($links, $settings_link);
167 +function mailchimp_sf_plugin_action_links( $links ) {
168 + $settings_page = add_query_arg( array( 'page' => 'mailchimp_sf_options' ), admin_url( 'admin.php' ) );
169 + $settings_link = '<a href="' . esc_url( $settings_page ) . '">' . esc_html__( 'Settings', 'mailchimp' ) . '</a>';
170 + array_unshift( $links, $settings_link );
77 171 return $links;
78 172 }
79 -add_filter('plugin_action_links_'.plugin_basename(__FILE__), 'mailchimpSD_plugin_action_links', 10, 1);
80 173
174 +add_filter( 'plugin_action_links_' . plugin_basename( __FILE__ ), 'mailchimp_sf_plugin_action_links', 10, 1 );
175 +
81 176 /**
82 177 * Loads the appropriate JS and CSS resources depending on
83 178 * settings and context (admin or not)
84 179 *
@@ -83,355 +178,153 @@
83 178 * settings and context (admin or not)
84 179 *
85 180 * @return void
86 181 */
87 -function mailchimpSF_load_resources() {
182 +function mailchimp_sf_load_resources() {
88 183 // JS
89 - if (get_option('mc_use_javascript') == 'on') {
90 - if (!is_admin()) {
91 - wp_enqueue_script('jquery_scrollto', MCSF_URL.'js/scrollTo.js', array('jquery'), MCSF_VER);
92 - wp_enqueue_script('mailchimpSF_main_js', MCSF_URL.'js/mailchimp.js', array('jquery', 'jquery-form'), MCSF_VER);
93 - // some javascript to get ajax version submitting to the proper location
94 - global $wp_scripts;
95 - $wp_scripts->localize('mailchimpSF_main_js', 'mailchimpSF', array(
96 - 'ajax_url' => trailingslashit(home_url()),
97 - ));
98 - }
99 - }
184 + wp_enqueue_script( 'mailchimp_sf_main_js', MCSF_URL . 'assets/js/mailchimp.js', array( 'jquery', 'jquery-form', 'jquery-ui-datepicker' ), MCSF_VER, true );
185 + // some javascript to get ajax version submitting to the proper location
186 + global $wp_scripts;
187 + $localize_data = array(
188 + 'ajax_url' => trailingslashit( home_url() ),
189 + 'phone_validation_error' => esc_html__( 'Please enter a valid phone number.', 'mailchimp' ),
190 + );
100 191
101 - if (get_option('mc_use_datepicker') == 'on' && !is_admin()) {
102 - // Datepicker theme
103 - wp_enqueue_style('flick', MCSF_URL.'/css/flick/flick.css');
104 - // Datepicker JS
105 - wp_enqueue_script('datepicker', MCSF_URL.'/js/datepicker.js', array('jquery','jquery-ui-core'));
192 + if ( ! is_admin() ) {
193 + $localize_data['analytics_ajax_url'] = admin_url( 'admin-ajax.php' );
194 + $localize_data['analytics_nonce'] = wp_create_nonce( 'mailchimp_sf_analytics_nonce' );
106 195 }
107 196
108 - wp_enqueue_style('mailchimpSF_main_css', home_url('?mcsf_action=main_css&ver='.MCSF_VER));
109 - wp_enqueue_style('mailchimpSF_ie_css', MCSF_URL.'css/ie.css');
110 - global $wp_styles;
111 - $wp_styles->add_data( 'mailchimpSF_ie_css', 'conditional', 'IE' );
112 -}
197 + $wp_scripts->localize(
198 + 'mailchimp_sf_main_js',
199 + 'mailchimpSF',
200 + $localize_data
201 + );
113 202
203 + // Datepicker theme
204 + wp_enqueue_style( 'flick', MCSF_URL . 'assets/css/flick/flick.css', array(), MCSF_VER );
114 205
115 -/**
116 - * Loads resources for the MailChimp admin page
117 - *
118 - * @return void
119 - */
120 -function mc_admin_page_load_resources() {
121 - wp_enqueue_style('mailchimpSF_admin_css', MCSF_URL.'css/admin.css');
122 - wp_enqueue_script('mailchimpSF_admin_js', MCSF_URL.'js/admin.js');
123 -}
124 -add_action('load-settings_page_mailchimpSF_options', 'mc_admin_page_load_resources');
206 + // CSS
207 + if ( get_option( 'mc_nuke_all_styles' ) !== '1' ) {
208 + wp_enqueue_style( 'mailchimp_sf_main_css', MCSF_URL . 'assets/css/frontend.css', array(), MCSF_VER );
125 209
126 -
127 -/**
128 - * Loads jQuery Datepicker for the date-pick class
129 - **/
130 -function mc_datepicker_load() {
131 -?>
132 - <script type="text/javascript">
133 - jQuery(function($) {
134 - $('.date-pick').each(function() {
135 - var format = $(this).data('format') || 'mm/dd/yyyy';
136 - format = format.replace(/yyyy/i, 'yy');
137 - $(this).datepicker({
138 - autoFocusNextInput: true,
139 - constrainInput: false,
140 - changeMonth: true,
141 - changeYear: true,
142 - beforeShow: function(input, inst) { $('#ui-datepicker-div').addClass('show'); },
143 - dateFormat: format.toLowerCase(),
144 - });
145 - });
146 - d = new Date();
147 - $('.birthdate-pick').each(function() {
148 - var format = $(this).data('format') || 'mm/dd';
149 - format = format.replace(/yyyy/i, 'yy');
150 - $(this).datepicker({
151 - autoFocusNextInput: true,
152 - constrainInput: false,
153 - changeMonth: true,
154 - changeYear: false,
155 - minDate: new Date(d.getFullYear(), 1-1, 1),
156 - maxDate: new Date(d.getFullYear(), 12-1, 31),
157 - beforeShow: function(input, inst) { $('#ui-datepicker-div').removeClass('show'); },
158 - dateFormat: format.toLowerCase(),
159 - });
160 -
161 - });
162 -
163 - });
164 - </script>
165 - <?php
166 -}
167 -if (get_option('mc_use_datepicker') == 'on' && !is_admin()) {
168 - add_action('wp_head', 'mc_datepicker_load');
169 -}
170 -
171 -/**
172 - * Handles requests that as light-weight a load as possible.
173 - * typically, JS or CSS
174 - **/
175 -function mailchimpSF_early_request_handler() {
176 - if (isset($_GET['mcsf_action'])) {
177 - switch ($_GET['mcsf_action']) {
178 - case 'main_css':
179 - header("Content-type: text/css");
180 - mailchimpSF_main_css();
181 - exit;
182 - case 'authorize':
183 - mailchimpSF_authorize();
184 - break;
185 - case 'authorized':
186 - mailchimpSF_authorized();
187 - break;
210 + // Backwards compatibility. TODO: Remove this in a future version.
211 + if ( get_option( 'mc_custom_style' ) === 'on' ) {
212 + $custom_css = mailchimp_sf_custom_style_css();
213 + wp_add_inline_style( 'mailchimp_sf_main_css', $custom_css );
188 214 }
189 215 }
190 216 }
191 -add_action('init', 'mailchimpSF_early_request_handler', 0);
192 217
193 218 /**
194 - * Outputs the front-end CSS. This checks several options, so it
195 - * was best to put it in a Request-handled script, as opposed to
196 - * a static file.
219 + * Custom styles CSS
220 + *
221 + * @return string
197 222 */
198 -function mailchimpSF_main_css() {
223 +function mailchimp_sf_custom_style_css() {
224 + ob_start();
199 225 ?>
200 - .mc_error_msg {
201 - color: red;
202 - margin-bottom: 1.0em;
203 - }
204 - .mc_success_msg {
205 - color: green;
206 - margin-bottom: 1.0em;
207 - }
208 - .mc_merge_var{
209 - padding:0;
210 - margin:0;
211 - }
212 -<?php
213 -// If we're utilizing custom styles
214 -if (get_option('mc_custom_style')=='on'){
215 - ?>
216 - #mc_signup_form {
226 + .mc_signup_form {
217 227 padding:5px;
218 - border-width: <?php echo get_option('mc_form_border_width'); ?>px;
219 - border-style: <?php echo (get_option('mc_form_border_width')==0) ? 'none' : 'solid'; ?>;
220 - border-color: #<?php echo get_option('mc_form_border_color'); ?>;
221 - color: #<?php echo get_option('mc_form_text_color'); ?>;
222 - background-color: #<?php echo get_option('mc_form_background'); ?>;
228 + border-width: <?php echo absint( get_option( 'mc_form_border_width' ) ); ?>px;
229 + border-style: <?php echo ( get_option( 'mc_form_border_width' ) === 0 ) ? 'none' : 'solid'; ?>;
230 + border-color: #<?php echo esc_attr( get_option( 'mc_form_border_color' ) ); ?>;
231 + color: #<?php echo esc_attr( get_option( 'mc_form_text_color' ) ); ?>;
232 + background-color: #<?php echo esc_attr( get_option( 'mc_form_background' ) ); ?>;
223 233 }
224 -
225 -
226 - .mc_custom_border_hdr {
227 - border-width: <?php echo get_option('mc_header_border_width'); ?>px;
228 - border-style: <?php echo (get_option('mc_header_border_width')==0) ? 'none' : 'solid'; ?>;
229 - border-color: #<?php echo get_option('mc_header_border_color'); ?>;
230 - color: #<?php echo get_option('mc_header_text_color'); ?>;
231 - background-color: #<?php echo get_option('mc_header_background'); ?>;
232 - <!-- font-size: 1.2em;-->
233 - padding:5px 10px;
234 - width: 100%;
235 - }
236 234 <?php
235 + return ob_get_clean();
237 236 }
238 -?>
239 - #mc_signup_container {}
240 - #mc_signup_form {}
241 - #mc_signup_form .mc_var_label {}
242 - #mc_signup_form .mc_input {}
243 - #mc-indicates-required {
244 - width:100%;
245 - }
246 - #mc_display_rewards {}
247 - .mc_interests_header {
248 - font-weight:bold;
249 - }
250 - div.mc_interest{
251 - width:100%;
252 - }
253 - #mc_signup_form input.mc_interest {}
254 - #mc_signup_form select {}
255 - #mc_signup_form label.mc_interest_label {
256 - display:inline;
257 - }
258 - .mc_signup_submit {
259 - text-align:center;
260 - }
261 - ul.mc_list {
262 - list-style-type: none;
263 - }
264 - ul.mc_list li {
265 - font-size: 12px;
266 - }
267 - .ui-datepicker-year {
268 - display: none;
269 - }
270 - #ui-datepicker-div.show .ui-datepicker-year {
271 - display: inline;
272 - padding-left: 3px
273 - }
274 - <?php
275 -}
276 237
277 -
278 238 /**
279 - * Add our settings page to the admin menu
239 + * Request handler
280 240 *
281 241 * @return void
282 242 */
283 -function mailchimpSF_add_pages(){
284 - // Add settings page for users who can edit plugins
285 - add_options_page( __( 'MailChimp Setup', 'mailchimp_i18n' ), __( 'MailChimp Setup', 'mailchimp_i18n' ), MCSF_CAP_THRESHOLD, 'mailchimpSF_options', 'mailchimpSF_setup_page');
286 -}
287 -add_action('admin_menu', 'mailchimpSF_add_pages');
288 -
289 -function mailchimpSF_request_handler() {
290 - if (isset($_POST['mcsf_action'])) {
291 - switch ($_POST['mcsf_action']) {
243 +function mailchimp_sf_request_handler() {
244 + if ( isset( $_POST['mcsf_action'] ) ) {
245 + switch ( $_POST['mcsf_action'] ) {
292 246 case 'logout':
293 247 // Check capability & Verify nonce
294 - if (!current_user_can(MCSF_CAP_THRESHOLD) || !wp_verify_nonce($_POST['_mcsf_nonce_action'], 'mc_logout')) {
295 - wp_die('Cheatin&rsquo; huh?');
248 + if (
249 + ! current_user_can( MCSF_CAP_THRESHOLD ) ||
250 + ! isset( $_POST['_mcsf_nonce_action'] ) ||
251 + ! wp_verify_nonce( sanitize_key( $_POST['_mcsf_nonce_action'] ), 'mc_logout' )
252 + ) {
253 + wp_die( 'Cheatin&rsquo; huh?' );
296 254 }
297 255
298 256 // erase auth information
299 - delete_option('mc_sopresto_user');
300 - delete_option('mc_sopresto_public_key');
301 - delete_option('mc_sopresto_secret_key');
257 + $options = array( 'mc_api_key', 'mailchimp_sf_access_token', 'mc_datacenter', 'mailchimp_sf_auth_error', 'mailchimp_sf_waiting_for_login' );
258 + mailchimp_sf_delete_options( $options );
302 259 break;
303 - case 'reset_list':
304 - // Check capability & Verify nonce
305 - if (!current_user_can(MCSF_CAP_THRESHOLD) || !wp_verify_nonce($_POST['_mcsf_nonce_action'], 'reset_mailchimp_list')) {
306 - wp_die('Cheatin&rsquo; huh?');
307 - }
308 -
309 - mailchimpSF_reset_list_settings();
310 - break;
311 260 case 'change_form_settings':
312 - if (!current_user_can(MCSF_CAP_THRESHOLD) || !wp_verify_nonce($_POST['_mcsf_nonce_action'], 'update_general_form_settings')) {
313 - wp_die('Cheatin&rsquo; huh?');
261 + if (
262 + ! current_user_can( MCSF_CAP_THRESHOLD ) ||
263 + ! isset( $_POST['_mcsf_nonce_action'] ) ||
264 + ! wp_verify_nonce( sanitize_key( $_POST['_mcsf_nonce_action'] ), 'update_general_form_settings' )
265 + ) {
266 + wp_die( 'Cheatin&rsquo; huh?' );
314 267 }
315 268
316 269 // Update the form settings
317 - mailchimpSF_save_general_form_settings();
270 + mailchimp_sf_save_general_form_settings();
318 271 break;
319 - case 'mc_submit_signup_form':
320 - // Validate nonce
321 - if (!wp_verify_nonce($_POST['_mc_submit_signup_form_nonce'], 'mc_submit_signup_form')) {
322 - wp_die('Cheatin&rsquo; huh?');
323 - }
324 -
325 - // Attempt the signup
326 - mailchimpSF_signup_submit();
327 -
328 - // Do a different action for html vs. js
329 - switch ($_POST['mc_submit_type']) {
330 - case 'html':
331 - /* Allow to fall through. The widget will pick up the
332 - * global message left over from the signup_submit function */
333 - break;
334 - case 'js':
335 - if (!headers_sent()){ //just in case...
336 - header('Last-Modified: '.gmdate('D, d M Y H:i:s').' GMT', true, 200);
337 - }
338 - echo mailchimpSF_global_msg(); // Don't esc_html this, b/c we've already escaped it
339 - exit;
340 - }
341 272 }
342 273 }
343 274 }
344 -add_action('init', 'mailchimpSF_request_handler');
275 +add_action( 'init', 'mailchimp_sf_request_handler' );
345 276
346 -function mailchimpSF_auth_nonce_key($salt = null) {
347 - if (is_null($salt)) {
348 - $salt = mailchimpSF_auth_nonce_salt();
349 - }
350 - return md5('social_authentication'.AUTH_KEY.$salt);
277 +/**
278 + * Update merge fields
279 + *
280 + * @return void
281 + */
282 +function mailchimp_sf_update_merge_fields() {
283 + mailchimp_sf_get_merge_vars( get_option( 'mc_list_id' ), true );
284 + mailchimp_sf_get_interest_categories( get_option( 'mc_list_id' ), true );
285 + update_option( 'mc_merge_field_migrate', true );
351 286 }
352 287
353 -function mailchimpSF_auth_nonce_salt() {
354 - return md5(microtime().$_SERVER['SERVER_ADDR']);
355 -}
356 -
357 -function mailchimpSF_authorize() {
358 - $api = mailchimpSF_get_api(true);
359 - $proxy = apply_filters('mailchimp_authorize_url', $api->getApiUrl('authorize'));
360 - if (strpos($proxy, 'socialize-this') !== false) {
361 - $salt = mailchimpSF_auth_nonce_salt();
362 - $id = wp_create_nonce(mailchimpSF_auth_nonce_key($salt));
363 - $url = home_url('index.php');
364 - $args = array(
365 - 'mcsf_action' => 'authorized',
366 - 'salt' => $salt,
367 - 'user_id' => get_current_user_id(),
368 - );
369 -
370 - $proxy = add_query_arg(array(
371 - 'id' => $id,
372 - 'response_url' => urlencode(add_query_arg($args, $url))
373 - ), $proxy);
374 -
375 - $proxy = apply_filters('mailchimp_proxy_url', $proxy);
288 +/**
289 + * Get auth key
290 + *
291 + * @param mixed $salt Salt
292 + * @return string
293 + */
294 +function mailchimp_sf_auth_nonce_key( $salt = null ) {
295 + if ( is_null( $salt ) ) {
296 + $salt = mailchimp_sf_auth_nonce_salt();
376 297 }
377 -
378 - wp_redirect($proxy);
379 - exit;
298 + return 'social_authentication' . md5( AUTH_KEY . $salt );
380 299 }
381 300
382 -function mailchimpSF_authorized() {
383 - // User ID on the request? Must be set before nonce comparison
384 - $user_id = stripslashes($_GET['user_id']);
385 - if ($user_id !== null) {
386 - wp_set_current_user($user_id);
387 - }
388 -
389 - $nonce = stripslashes($_POST['id']);
390 - $salt = stripslashes($_GET['salt']);
391 - if (wp_verify_nonce($nonce, mailchimpSF_auth_nonce_key($salt)) === false) {
392 - wp_die('Cheatin&rsquo; huh?');
393 - }
394 -
395 - $response = stripslashes_deep($_POST['response']);
396 -
397 - if (!isset($response['keys']) || !isset($response['user'])) {
398 - wp_die('Something went wrong, please try again');
399 - }
400 -
401 - update_option('mc_sopresto_user', $response['user']);
402 - update_option('mc_sopresto_dc', $response['dc']);
403 - update_option('mc_sopresto_public_key', $response['keys']['public']);
404 - update_option('mc_sopresto_secret_key', $response['keys']['secret']);
405 - exit;
406 -}
407 -
408 301 /**
409 - * Upgrades data if it needs to. Checks on admin_init
302 + * Return auth nonce salt
410 303 *
411 - * @return void
304 + * @return string
412 305 */
413 -function mailchimpSF_upgrade() {
414 - // See if we need an upgrade
415 - if (mailchimpSF_needs_upgrade()) {
416 - // remove password option if it's set (0.5)
417 - // Update interest group data
418 - mailchimpSF_do_upgrade();
419 - }
306 +function mailchimp_sf_auth_nonce_salt() {
307 + return md5( microtime() . isset( $_SERVER['SERVER_ADDR'] ) ? sanitize_text_field( wp_unslash( $_SERVER['SERVER_ADDR'] ) ) : '' );
420 308 }
421 -add_action('admin_init', 'mailchimpSF_upgrade');
422 309
423 310 /**
424 - * Creates new Sopresto API object
311 + * Creates new Mailchimp API v3 object
425 312 *
426 - * @return Sopresto_MailChimp|false
313 + * @return MailChimp_API | false
427 314 */
428 -function mailchimpSF_get_api($force = false) {
429 - $public_key = get_option('mc_sopresto_public_key');
430 - $secret_key = get_option('mc_sopresto_secret_key');
315 +function mailchimp_sf_get_api() {
316 + // Check for the access token first.
317 + $access_token = mailchimp_sf_get_access_token();
318 + $data_center = get_option( 'mc_datacenter' );
319 + if ( ! empty( $access_token ) && ! empty( $data_center ) ) {
320 + return new MailChimp_API( $access_token, $data_center );
321 + }
431 322
432 - if ($public_key && $secret_key || $force) {
433 - return new Sopresto_MailChimp($public_key, $secret_key, '1.3');
323 + // Check for the API key if the access token is not available.
324 + $key = get_option( 'mc_api_key' );
325 + if ( $key ) {
326 + return new MailChimp_API( $key );
434 327 }
435 328
436 329 return false;
437 330 }
@@ -441,116 +334,80 @@
441 334 * to upgrade to the API key
442 335 *
443 336 * @return bool
444 337 **/
445 -function mailchimpSF_needs_upgrade() {
446 - $igs = get_option('mc_interest_groups');
338 +function mailchimp_sf_needs_upgrade() {
339 + $igs = get_option( 'mc_interest_groups' );
447 340
448 - if ($igs !== false // we have an option
341 + if ( false !== $igs // we have an option
449 342 && (
450 - empty($igs) || // it can be an empty array (no interest groups)
451 - (is_array($igs) && isset($igs[0]['id'])) // OR it should be a populated array that's well-formed
452 - )) {
343 + empty( $igs ) || // it can be an empty array (no interest groups)
344 + ( is_array( $igs ) && isset( $igs[0]['id'] ) ) // OR it should be a populated array that's well-formed
345 + )
346 + ) {
453 347 return false; // no need to upgrade
454 - }
455 - else {
348 + } else {
456 349 return true; // yeah, let's do it
457 350 }
458 351 }
459 352
460 353 /**
461 - * 1.2.4 -> 1.2.5 - Update to support multiple interest groups
462 - * MCAPIv1.2 -> MCAPIv1.3 - update interest groups
463 - * 2011-02-09 - old password upgrade code deleted as 0.5 is way old
464 - */
465 -function mailchimpSF_do_upgrade() {
466 - # TODO: reload this
467 -}
354 + * Deletes all Mailchimp options
355 + *
356 + * TODO: The options names should be moved to a config file
357 + * or to a class dedicated to options
358 + **/
359 +function mailchimp_sf_delete_setup() {
360 + $options = array(
361 + 'mc_user_id',
362 + 'mc_use_unsub_link',
363 + 'mc_list_id',
364 + 'mc_list_name',
365 + 'mc_interest_groups',
366 + 'mc_merge_vars',
367 + );
468 368
469 -/**
470 - * Deletes all mailchimp options
471 - **/
472 -function mailchimpSF_delete_setup() {
473 - delete_option('mc_user_id');
474 - delete_option('mc_sopresto_user');
475 - delete_option('mc_sopresto_public_key');
476 - delete_option('mc_sopresto_secret_key');
477 - delete_option('mc_rewards');
478 - delete_option('mc_use_javascript');
479 - delete_option('mc_use_datepicker');
480 - delete_option('mc_use_unsub_link');
481 - delete_option('mc_list_id');
482 - delete_option('mc_list_name');
483 - $igs = get_option('mc_interest_groups');
484 - if (is_array($igs)) {
485 - foreach ($igs as $ig) {
486 - $opt = 'mc_show_interest_groups_'.$ig['id'];
487 - delete_option($opt);
369 + $igs = get_option( 'mc_interest_groups' );
370 + if ( is_array( $igs ) ) {
371 + foreach ( $igs as $ig ) {
372 + $opt = 'mc_show_interest_groups_' . $ig['id'];
373 + $options[] = $opt;
488 374 }
489 375 }
490 - delete_option('mc_interest_groups');
491 - $mv = get_option('mc_merge_vars');
492 - if (is_array($mv)){
493 - foreach($mv as $var){
494 - $opt = 'mc_mv_'.$var['tag'];
495 - delete_option($opt);
496 - }
497 - }
498 - delete_option('mc_merge_vars');
499 -}
500 376
501 -/**
502 - * Resets the list settings, there's only one list
503 - * that can have settings at a time, so no list_id
504 - * parameter is necessary.
505 - **/
506 -function mailchimpSF_reset_list_settings() {
377 + $mv = get_option( 'mc_merge_vars' );
378 + if ( is_array( $mv ) ) {
379 + foreach ( $mv as $mv_var ) {
380 + $opt = 'mc_mv_' . $mv_var['tag'];
381 + $options[] = $opt;
382 + }
383 + }
507 384
508 - delete_option('mc_list_id');
509 - delete_option('mc_list_name');
510 - delete_option('mc_merge_vars');
511 - delete_option('mc_interest_groups');
512 -
513 - delete_option('mc_use_javascript');
514 - delete_option('mc_use_unsub_link');
515 - delete_option('mc_use_datepicker');
516 -
517 - delete_option('mc_header_content');
518 - delete_option('mc_subheader_content');
519 - delete_option('mc_submit_text');
520 -
521 - delete_option('mc_custom_style');
522 -
523 - delete_option('mc_header_border_width');
524 - delete_option('mc_header_border_color');
525 - delete_option('mc_header_background');
526 - delete_option('mc_header_text_color');
527 -
528 - delete_option('mc_form_border_width');
529 - delete_option('mc_form_border_color');
530 - delete_option('mc_form_background');
531 - delete_option('mc_form_text_color');
532 -
533 - $msg = '<p class="success_msg">'.esc_html(__('Successfully Reset your List selection... Now you get to pick again!', 'mailchimp_i18n')).'</p>';
534 - mailchimpSF_global_msg($msg);
385 + mailchimp_sf_delete_options( $options );
535 386 }
536 387
537 388 /**
538 - * Gets or sets a global message based on parameter passed to it
389 + * Gets or sets a frontend message based on parameter passed to it
539 390 *
391 + * Used to convey error messages to the user outside of the WP Admin
392 + *
393 + * On the plugin settings page, WP admin notices are used exclusively
394 + * instead of the frontend message.
395 + *
396 + * @param mixed $msg Message
540 397 * @return string/bool depending on get/set
541 - **/
542 -function mailchimpSF_global_msg($msg = null) {
398 + */
399 +function mailchimp_sf_frontend_msg( $msg = null ) {
543 400 global $mcsf_msgs;
544 401
545 402 // Make sure we're formed properly
546 - if (!is_array($mcsf_msgs)) {
403 + if ( ! is_array( $mcsf_msgs ) ) {
547 404 $mcsf_msgs = array();
548 405 }
549 406
550 407 // See if we're getting
551 - if (is_null($msg)) {
552 - return implode('', $mcsf_msgs);
408 + if ( is_null( $msg ) ) {
409 + return implode( '', $mcsf_msgs );
553 410 }
554 411
555 412 // Must be setting
556 413 $mcsf_msgs[] = $msg;
@@ -557,27 +414,37 @@
557 414 return true;
558 415 }
559 416
560 417 /**
418 + * Gets or sets a frontend message based on parameter passed to it
419 + *
420 + * TODO: Deprecate this function in favor of mailchimp_sf_frontend_msg()
421 + *
422 + * @param mixed $msg Message
423 + * @return string/bool depending on get/set
424 + */
425 +function mailchimp_sf_global_msg( $msg = null ) {
426 + return mailchimp_sf_frontend_msg( $msg );
427 +}
428 +
429 +/**
561 430 * Sets the default options for the option form
562 - **/
563 -function mailchimpSF_set_form_defaults($list_name = '') {
564 - update_option('mc_header_content',__( 'Sign up for', 'mailchimp_i18n' ).' '.$list_name);
565 - update_option('mc_submit_text',__( 'Subscribe', 'mailchimp_i18n' ));
431 + *
432 + * @param string $list_name The Mailchimp list name.
433 + * @return void
434 + */
435 +function mailchimp_sf_set_form_defaults( $list_name = '' ) {
436 + update_option( 'mc_header_content', esc_html__( 'Sign up for', 'mailchimp' ) . ' ' . $list_name );
437 + update_option( 'mc_submit_text', esc_html__( 'Subscribe', 'mailchimp' ) );
566 438
567 - update_option('mc_use_datepicker', 'on');
568 - update_option('mc_custom_style','off');
569 - update_option('mc_use_javascript','on');
570 - update_option('mc_use_unsub_link','off');
571 - update_option('mc_header_border_width','1');
572 - update_option('mc_header_border_color','E3E3E3');
573 - update_option('mc_header_background','FFFFFF');
574 - update_option('mc_header_text_color','CC6600');
439 + update_option( 'mc_custom_style', 'off' );
440 + update_option( 'mc_double_optin', true );
441 + update_option( 'mc_use_unsub_link', 'off' );
575 442
576 - update_option('mc_form_border_width','1');
577 - update_option('mc_form_border_color','E0E0E0');
578 - update_option('mc_form_background','FFFFFF');
579 - update_option('mc_form_text_color','3F3F3f');
443 + update_option( 'mc_form_border_width', '1' );
444 + update_option( 'mc_form_border_color', 'E0E0E0' );
445 + update_option( 'mc_form_background', 'FFFFFF' );
446 + update_option( 'mc_form_text_color', '3F3F3f' );
580 447 }
581 448
582 449 /**
583 450 * Saves the General Form settings on the options page
@@ -583,903 +450,468 @@
583 450 * Saves the General Form settings on the options page
584 451 *
585 452 * @return void
586 453 **/
587 -function mailchimpSF_save_general_form_settings() {
588 - if (isset($_POST['mc_rewards'])){
589 - update_option('mc_rewards', 'on');
590 - $msg = '<p class="success_msg">'.__('Monkey Rewards turned On!', 'mailchimp_i18n').'</p>';
591 - mailchimpSF_global_msg($msg);
592 - } else if (get_option('mc_rewards')!='off') {
593 - update_option('mc_rewards', 'off');
594 - $msg = '<p class="success_msg">'.__('Monkey Rewards turned Off!', 'mailchimp_i18n').'</p>';
595 - mailchimpSF_global_msg($msg);
454 +function mailchimp_sf_save_general_form_settings() {
455 + // phpcs:disable WordPress.Security.NonceVerification.Missing -- Nonce check is already done in the mailchimp_sf_request_handler() function.
456 + /*Enable double optin toggle*/
457 + if ( isset( $_POST['mc_double_optin'] ) ) {
458 + update_option( 'mc_double_optin', true );
459 + $msg = esc_html__( 'Double opt-in turned On!', 'mailchimp' );
460 + admin_notice_success( $msg );
461 + } elseif ( get_option( 'mc_double_optin' ) !== false ) {
462 + update_option( 'mc_double_optin', false );
463 + $msg = esc_html__( 'Double opt-in turned Off!', 'mailchimp' );
464 + admin_notice_success( $msg );
596 465 }
597 - if (isset($_POST['mc_use_javascript'])){
598 - update_option('mc_use_javascript', 'on');
599 - $msg = '<p class="success_msg">'.__('Fancy Javascript submission turned On!', 'mailchimp_i18n').'</p>';
600 - mailchimpSF_global_msg($msg);
601 - } else if (get_option('mc_use_javascript')!='off') {
602 - update_option('mc_use_javascript', 'off');
603 - $msg = '<p class="success_msg">'.__('Fancy Javascript submission turned Off!', 'mailchimp_i18n').'</p>';
604 - mailchimpSF_global_msg($msg);
466 +
467 + /* NUKE the CSS! */
468 + if ( isset( $_POST['mc_nuke_all_styles'] ) ) {
469 + update_option( 'mc_nuke_all_styles', true );
470 + $msg = esc_html__( 'Mailchimp CSS turned Off!', 'mailchimp' );
471 + admin_notice_success( $msg );
472 + } elseif ( get_option( 'mc_nuke_all_styles' ) !== false ) {
473 + update_option( 'mc_nuke_all_styles', false );
474 + $msg = esc_html__( 'Mailchimp CSS turned On!', 'mailchimp' );
475 + admin_notice_success( $msg );
605 476 }
606 477
607 - if (isset($_POST['mc_use_datepicker'])){
608 - update_option('mc_use_datepicker', 'on');
609 - $msg = '<p class="success_msg">'.__('Datepicker turned On!', 'mailchimp_i18n').'</p>';
610 - mailchimpSF_global_msg($msg);
611 - } else if (get_option('mc_use_datepicker')!='off') {
612 - update_option('mc_use_datepicker', 'off');
613 - $msg = '<p class="success_msg">'.__('Datepicker turned Off!', 'mailchimp_i18n').'</p>';
614 - mailchimpSF_global_msg($msg);
478 + /* Update existing */
479 + if ( isset( $_POST['mc_update_existing'] ) ) {
480 + update_option( 'mc_update_existing', true );
481 + $msg = esc_html__( 'Update existing subscribers turned On!', 'mailchimp' );
482 + admin_notice_success( $msg );
483 + } elseif ( get_option( 'mc_update_existing' ) !== false ) {
484 + update_option( 'mc_update_existing', false );
485 + $msg = esc_html__( 'Update existing subscribers turned Off!', 'mailchimp' );
486 + admin_notice_success( $msg );
615 487 }
616 488
617 - if (isset($_POST['mc_use_unsub_link'])){
618 - update_option('mc_use_unsub_link', 'on');
619 - $msg = '<p class="success_msg">'.__('Unsubscribe link turned On!', 'mailchimp_i18n').'</p>';
620 - mailchimpSF_global_msg($msg);
621 - } else if (get_option('mc_use_unsub_link')!='off') {
622 - update_option('mc_use_unsub_link', 'off');
623 - $msg = '<p class="success_msg">'.__('Unsubscribe link turned Off!', 'mailchimp_i18n').'</p>';
624 - mailchimpSF_global_msg($msg);
489 + if ( isset( $_POST['mc_use_unsub_link'] ) ) {
490 + update_option( 'mc_use_unsub_link', 'on' );
491 + $msg = esc_html__( 'Unsubscribe link turned On!', 'mailchimp' );
492 + admin_notice_success( $msg );
493 + } elseif ( get_option( 'mc_use_unsub_link' ) !== 'off' ) {
494 + update_option( 'mc_use_unsub_link', 'off' );
495 + $msg = esc_html__( 'Unsubscribe link turned Off!', 'mailchimp' );
496 + admin_notice_success( $msg );
625 497 }
626 498
627 - $content = stripslashes($_POST['mc_header_content']);
628 - $content = str_replace("\r\n","<br/>", $content);
629 - update_option('mc_header_content', $content );
499 + $content = isset( $_POST['mc_header_content'] ) ? wp_kses_post( wp_unslash( $_POST['mc_header_content'] ) ) : '';
500 + $content = str_replace( "\r\n", '<br/>', $content );
501 + update_option( 'mc_header_content', $content );
630 502
631 - $content = stripslashes($_POST['mc_subheader_content']);
632 - $content = str_replace("\r\n","<br/>", $content);
633 - update_option('mc_subheader_content', $content );
503 + $content = isset( $_POST['mc_subheader_content'] ) ? wp_kses_post( wp_unslash( $_POST['mc_subheader_content'] ) ) : '';
504 + $content = str_replace( "\r\n", '<br/>', $content );
505 + update_option( 'mc_subheader_content', $content );
634 506
507 + $submit_text = isset( $_POST['mc_submit_text'] ) ? sanitize_text_field( wp_unslash( $_POST['mc_submit_text'] ) ) : '';
508 + $submit_text = str_replace( "\r\n", '', $submit_text );
509 + update_option( 'mc_submit_text', $submit_text );
635 510
636 - $submit_text = stripslashes($_POST['mc_submit_text']);
637 - $submit_text = str_replace("\r\n","", $submit_text);
638 - update_option('mc_submit_text', $submit_text);
639 -
640 511 // Set Custom Style option
641 - update_option('mc_custom_style', isset($_POST['mc_custom_style']) ? 'on' : 'off');
512 + update_option( 'mc_custom_style', isset( $_POST['mc_custom_style'] ) ? 'on' : 'off' );
642 513
643 - //we told them not to put these things we are replacing in, but let's just make sure they are listening...
644 - update_option('mc_header_border_width',str_replace('px','',$_POST['mc_header_border_width']) );
645 - update_option('mc_header_border_color', str_replace('#','',$_POST['mc_header_border_color']));
646 - update_option('mc_header_background',str_replace('#','',$_POST['mc_header_background']));
647 - update_option('mc_header_text_color', str_replace('#','',$_POST['mc_header_text_color']));
514 + // we told them not to put these things we are replacing in, but let's just make sure they are listening...
515 + if ( isset( $_POST['mc_form_border_width'] ) ) {
516 + update_option( 'mc_form_border_width', str_replace( 'px', '', absint( $_POST['mc_form_border_width'] ) ) );
517 + }
518 + if ( isset( $_POST['mc_form_border_color'] ) ) {
519 + update_option( 'mc_form_border_color', str_replace( '#', '', sanitize_text_field( wp_unslash( $_POST['mc_form_border_color'] ) ) ) );
520 + }
521 + if ( isset( $_POST['mc_form_background'] ) ) {
522 + update_option( 'mc_form_background', str_replace( '#', '', sanitize_text_field( wp_unslash( $_POST['mc_form_background'] ) ) ) );
523 + }
524 + if ( isset( $_POST['mc_form_text_color'] ) ) {
525 + update_option( 'mc_form_text_color', str_replace( '#', '', sanitize_text_field( wp_unslash( $_POST['mc_form_text_color'] ) ) ) );
526 + }
648 527
649 - update_option('mc_form_border_width',str_replace('px','',$_POST['mc_form_border_width']) );
650 - update_option('mc_form_border_color', str_replace('#','',$_POST['mc_form_border_color']));
651 - update_option('mc_form_background',str_replace('#','',$_POST['mc_form_background']));
652 - update_option('mc_form_text_color', str_replace('#','',$_POST['mc_form_text_color']));
653 -
654 - $igs = get_option('mc_interest_groups');
655 - if (is_array($igs)) {
656 - foreach($igs as $var){
657 - $opt = 'mc_show_interest_groups_'.$var['id'];
658 - if (isset($_POST[$opt])){
659 - update_option($opt,'on');
528 + // IF NOT DEV MODE
529 + $igs = get_option( 'mc_interest_groups' );
530 + if ( is_array( $igs ) ) {
531 + foreach ( $igs as $mv_var ) {
532 + $opt = 'mc_show_interest_groups_' . $mv_var['id'];
533 + if ( isset( $_POST[ $opt ] ) ) {
534 + update_option( $opt, 'on' );
660 535 } else {
661 - update_option($opt,'off');
536 + update_option( $opt, 'off' );
662 537 }
663 538 }
664 539 }
665 540
666 - $mv = get_option('mc_merge_vars');
667 - if (is_array($mv)) {
668 - foreach($mv as $var){
669 - $opt = 'mc_mv_'.$var['tag'];
670 - if (isset($_POST[$opt]) || $var['req']=='Y'){
671 - update_option($opt,'on');
541 + $mv = get_option( 'mc_merge_vars' );
542 + if ( is_array( $mv ) ) {
543 + foreach ( $mv as $mv_var ) {
544 + $opt = 'mc_mv_' . $mv_var['tag'];
545 + if ( isset( $_POST[ $opt ] ) || true === (bool) $mv_var['required'] ) {
546 + update_option( $opt, 'on' );
672 547 } else {
673 - update_option($opt,'off');
548 + update_option( $opt, 'off' );
674 549 }
675 550 }
676 551 }
677 - $msg = '<p class="success_msg">'.esc_html(__('Successfully Updated your List Subscribe Form Settings!', 'mailchimp_i18n')).'</p>';
678 - mailchimpSF_global_msg($msg);
552 +
553 + $msg = esc_html__( 'Successfully Updated your List Subscribe Form Settings!', 'mailchimp' );
554 + admin_notice_success( $msg );
555 + // phpcs:enable WordPress.Security.NonceVerification.Missing
679 556 }
680 557
681 558 /**
682 559 * Sees if the user changed the list, and updates options accordingly
683 560 **/
684 -function mailchimpSF_change_list_if_necessary() {
685 - // Simple permission check before going through all this
686 - if (!current_user_can(MCSF_CAP_THRESHOLD)) { return; }
561 +function mailchimp_sf_change_list_if_necessary() {
562 + if ( ! isset( $_POST['mc_list_id'] ) ) {
563 + return;
564 + }
687 565
688 - $api = mailchimpSF_get_api();
689 - if (!$api) { return; }
566 + if (
567 + ! current_user_can( MCSF_CAP_THRESHOLD ) ||
568 + ! isset( $_POST['update_mc_list_id_nonce'] ) ||
569 + ! wp_verify_nonce( sanitize_key( $_POST['update_mc_list_id_nonce'] ), 'update_mc_list_id_action' )
570 + ) {
571 + wp_die( 'Security check failed.' );
572 + }
690 573
691 - //we *could* support paging, but few users have that many lists (and shouldn't)
692 - $lists = $api->lists(array(),0,100);
693 - $lists = $lists['data'];
574 + if ( empty( $_POST['mc_list_id'] ) ) {
575 + $msg = esc_html__( 'Please choose a valid list', 'mailchimp' );
576 + admin_notice_error( $msg );
577 + return;
578 + }
694 579
695 - if (is_array($lists) && !empty($lists) && isset($_POST['mc_list_id'])) {
580 + $lists = mailchimp_sf_get_lists();
581 + if ( is_wp_error( $lists ) || ! isset( $lists['lists'] ) ) {
582 + return;
583 + }
696 584
697 - /* If our incoming list ID (the one chosen in the select dropdown)
698 - is in our array of lists, the set it to be the active list */
699 - foreach($lists as $key => $list) {
700 - if ($list['id'] == $_POST['mc_list_id']) {
701 - $list_id = $_POST['mc_list_id'];
585 + $lists = $lists['lists'];
586 +
587 + if ( is_array( $lists ) && ! empty( $lists ) ) {
588 +
589 + /**
590 + * If our incoming list ID (the one chosen in the select dropdown)
591 + * is in our array of lists, the set it to be the active list
592 + */
593 + foreach ( $lists as $key => $list ) {
594 + if ( isset( $_POST['mc_list_id'] ) && $list['id'] === $_POST['mc_list_id'] ) {
595 + $list_id = sanitize_text_field( wp_unslash( $_POST['mc_list_id'] ) );
702 596 $list_name = $list['name'];
703 - $list_key = $key;
597 + $list_key = $key;
704 598 }
599 +
600 + $merge_fields = mailchimp_sf_get_merge_vars( $list['id'], false, false );
601 + $interests = mailchimp_sf_get_interest_categories( $list['id'], false, false );
602 + if ( ! empty( $merge_fields ) ) {
603 + update_option( 'mailchimp_sf_merge_fields_' . $list['id'], $merge_fields );
604 + }
605 + if ( ! empty( $interests ) ) {
606 + update_option( 'mailchimp_sf_interest_groups_' . $list['id'], $interests );
607 + }
705 608 }
706 609
707 - $orig_list = get_option('mc_list_id');
708 - if ($list_id != '') {
709 - update_option('mc_list_id', $list_id);
710 - update_option('mc_list_name', $list_name);
711 - update_option('mc_email_type_option', $lists[$list_key]['email_type_option']);
610 + $orig_list = get_option( 'mc_list_id' );
611 + if ( '' !== $list_id ) {
612 + update_option( 'mc_list_id', $list_id );
613 + update_option( 'mc_list_name', $list_name );
614 + update_option( 'mc_email_type_option', $lists[ $list_key ]['email_type_option'] );
712 615
713 -
714 616 // See if the user changed the list
715 - if ($orig_list != $list_id){
617 + $new_list = false;
618 + if ( $orig_list !== $list_id ) {
716 619 // The user changed the list, Reset the Form Defaults
717 - mailchimpSF_set_form_defaults($list_name);
718 - }
719 - // email_type_option
620 + mailchimp_sf_set_form_defaults( $list_name );
720 621
622 + $new_list = true;
623 + }
624 +
721 625 // Grab the merge vars and interest groups
722 - $mv = $api->listMergeVars($list_id);
723 - $igs = $api->listInterestGroupings($list_id);
626 + $mv = mailchimp_sf_get_merge_vars( $list_id, $new_list );
627 + $igs = mailchimp_sf_get_interest_categories( $list_id, $new_list );
724 628
725 - update_option('mc_merge_vars', $mv);
726 - foreach($mv as $var){
727 - $opt = 'mc_mv_'.$var['tag'];
728 - //turn them all on by default
729 - if ($orig_list != $list_id) {
730 - update_option($opt, 'on' );
731 - }
732 - }
733 - update_option('mc_interest_groups', $igs);
734 - if (is_array($igs)) {
735 - foreach ($igs as $var){
736 - $opt = 'mc_show_interest_groups_'.$var['id'];
737 - //turn them all on by default
738 - if ($orig_list != $list_id) {
739 - update_option($opt, 'on' );
740 - }
741 - }
742 - }
743 629 $igs_text = ' ';
744 - if (is_array($igs)) {
745 - $igs_text .= sprintf(__('and %s Sets of Interest Groups', 'mailchimp_i18n'), count($igs));
630 + if ( is_array( $igs ) ) {
631 + /* translators: %s: count (number) */
632 + $igs_text .= sprintf( esc_html__( 'and %s Sets of Interest Groups', 'mailchimp' ), count( $igs ) );
746 633 }
747 634
748 - $msg = '<p class="success_msg">'.
749 - sprintf(
750 - __('<b>Success!</b> Loaded and saved the info for %d Merge Variables', 'mailchimp_i18n').$igs_text,
751 - count($mv)
752 - ).' '.
753 - __('from your list').' "'.$list_name.'"<br/><br/>'.
754 - __('Now you should either Turn On the MailChimp Widget or change your options below, then turn it on.', 'mailchimp_i18n').'</p>';
755 - mailchimpSF_global_msg($msg);
635 + $msg = sprintf(
636 + /* translators: %s: count (number) */
637 + __( '<b>Success!</b> Loaded and saved the info for %d Merge Variables', 'mailchimp' ) . $igs_text,
638 + count( $mv )
639 + ) . ' ' .
640 + esc_html__( 'from your list', 'mailchimp' ) . ' "' . $list_name . '"<br/><br/>' .
641 + esc_html__( 'Now you should either Turn On the Mailchimp Widget or change your options below, then turn it on.', 'mailchimp' );
642 +
643 + admin_notice_success( $msg );
756 644 }
645 +
646 + // Update the lists option.
647 + update_option( 'mailchimp_sf_lists', $lists );
757 648 }
758 649 }
759 650
760 -
761 651 /**
762 - * Outputs the Settings/Options page
652 + * Get merge vars
653 + *
654 + * @param string $list_id List ID
655 + * @param bool $new_list Whether this is a new list
656 + * @param bool $update_option Whether to update the option
657 + * @return array
763 658 */
764 -function mailchimpSF_setup_page() {
765 -?>
766 -<div class="wrap">
659 +function mailchimp_sf_get_merge_vars( $list_id, $new_list, $update_option = true ) {
660 + $api = mailchimp_sf_get_api();
661 + $mv = $api->get( 'lists/' . $list_id . '/merge-fields', 80 );
767 662
768 - <div class="mailchimp-header">
769 - <h2><?php esc_html_e('MailChimp List Setup', 'mailchimp_i18n');?> </h2>
770 - </div>
771 -<?php
772 -$user = get_option('mc_sopresto_user');
663 + // if we get an error back from the api, exit this process.
664 + if ( is_wp_error( $mv ) ) {
665 + return;
666 + }
773 667
774 -// If we have an API Key, see if we need to change the lists and its options
775 -mailchimpSF_change_list_if_necessary();
668 + $mv['merge_fields'] = mailchimp_sf_add_email_field( $mv['merge_fields'] );
669 + if ( $update_option ) {
670 + update_option( 'mc_merge_vars', $mv['merge_fields'] );
671 + }
776 672
777 -// Display our success/error message(s) if have them
778 -if (mailchimpSF_global_msg() != ''){
779 - // Message has already been html escaped, so we don't want to 2x escape it here
780 - ?>
781 - <div id="mc_message" class=""><?php echo mailchimpSF_global_msg(); ?></div>
782 - <?php
783 -}
784 -
785 -
786 -// If we don't have an API Key, do a login form
787 -if (!$user) {
788 -?>
789 - <div>
790 - </div>
791 - <div>
792 - <h3 class="mc-h2"><?php esc_html_e('Log In', 'mailchimp_i18n');?></h3>
793 - <p class="mc-p" style="width: 40%;line-height: 21px;"><?php esc_html_e('To start using the MailChimp plugin, we first need to connect your MailChimp account. Click login below to connect.', 'mailchimp_i18n'); ?></p>
794 - <p class="mc-a">
795 - <?php
796 - echo sprintf(
797 - '%1$s <a href="http://www.mailchimp.com/signup/" target="_blank">%2$s</a>',
798 - esc_html(__("Don't have a MailChimp account?", 'mailchimp_i18n')),
799 - esc_html(__('Try one for Free!', 'mailchimp_i18n'))
800 - );
801 - ?>
802 - </p>
803 -
804 - <div style="width: 900px;">
805 - <table class="widefat mc-widefat mc-api">
806 - <tr valign="top">
807 - <th scope="row" class="mailchimp-connect"><?php esc_html_e('Connect to MailChimp', 'mailchimp_i18n'); ?></th>
808 - <td>
809 - <a href="<?php echo add_query_arg(array("mcsf_action" => "authorize"), home_url('index.php')) ?>" class="mailchimp-login">Connect</a>
810 - </td>
811 - </tr>
812 - </table>
813 - </div>
814 - </div>
815 - <br/>
816 -<!--<div class="notes_msg">
817 - <?php
818 - if ($user && $user['username'] != ''){
819 - ?>
820 - <strong><?php esc_html_e('Notes', 'mailchimp_i18n'); ?>:</strong>
821 - <ul>
822 - <li><?php esc_html_e('Changing your settings at MailChimp.com may cause this to stop working.', 'mailchimp_i18n'); ?></li>
823 - <li><?php esc_html_e('If you change your login to a different account, the info you have setup below will be erased.', 'mailchimp_i18n'); ?></li>
824 - <li><?php esc_html_e('If any of that happens, no biggie - just reconfigure your login and the items below...', 'mailchimp_i18n'); ?></li>
825 - </ul>
826 -</div>-->
827 - <?php
828 - }
829 -} // End of login form
830 -
831 -// Start logout form
832 -else {
833 -?>
834 -<table style="min-width:400px;" class="mc-user" cellspacing="0">
835 - <tr>
836 - <td><h3><?php esc_html_e('Logged in as', 'mailchimp_i18n');?>: <?php echo esc_html($user['username']); ?></h3>
837 - </td>
838 - <td>
839 - <form method="post" action="options-general.php?page=mailchimpSF_options">
840 - <input type="hidden" name="mcsf_action" value="logout"/>
841 - <input type="submit" name="Submit" value="<?php esc_attr_e('Logout', 'mailchimp_i18n');?>" class="button" />
842 - <?php wp_nonce_field('mc_logout', '_mcsf_nonce_action'); ?>
843 - </form>
844 - </td>
845 - </tr>
846 -</table>
847 -<?php
848 -} // End Logout form
849 -
850 -
851 -
852 -//Just get out if nothing else matters...
853 -$api = mailchimpSF_get_api();
854 -if (!$api) { return; }
855 -
856 -if ($api){
857 - ?>
858 - <h3 class="mc-h2"><?php esc_html_e('Your Lists', 'mailchimp_i18n'); ?></h3>
859 -
860 -<div>
861 -
862 - <p class="mc-p"><?php esc_html_e('Please select the List you wish to create a Signup Form for.', 'mailchimp_i18n'); ?></p>
863 - <p class="mc-list-note"><strong><?php esc_html_e('Note:', 'mailchimp_i18n'); ?></strong> <?php esc_html_e('Updating your list will not cause settings below to be lost. Changing to a new list will.', 'mailchimp_i18n'); ?></p>
864 -
865 - <form method="post" action="options-general.php?page=mailchimpSF_options">
866 - <?php
867 - //we *could* support paging, but few users have that many lists (and shouldn't)
868 - $lists = $api->lists(array(),0,100);
869 - $lists = $lists['data'];
870 -
871 - if (count($lists) == 0) {
872 - ?>
873 - <span class='error_msg'>
874 - <?php
875 - echo sprintf(
876 - esc_html(__("Uh-oh, you don't have any lists defined! Please visit %s, login, and setup a list before using this tool!", 'mailchimp_i18n')),
877 - "<a href='http://www.mailchimp.com/'>MailChimp</a>"
878 - );
879 - ?>
880 - </span>
881 - <?php
673 + foreach ( $mv['merge_fields'] as $mv_var ) {
674 + $opt = 'mc_mv_' . $mv_var['tag'];
675 + if ( $new_list ) {
676 + $public = $mv_var['public'] ?? false;
677 + if ( ! $public ) {
678 + // This is a hidden field, so we don't want to include it.
679 + update_option( $opt, 'off' );
680 + } else {
681 + // We need to set the option to 'on' so that it shows up in the form.
682 + update_option( $opt, 'on' );
683 + }
882 684 }
883 - else {
884 - ?>
885 - <table style="min-width:400px" class="mc-list-select" cellspacing="0">
886 - <tr class="mc-list-row">
887 - <td>
888 - <select name="mc_list_id" style="min-width:200px;">
889 - <option value=""> &mdash; <?php esc_html_e('Select A List','mailchimp_i18n'); ?> &mdash; </option>
890 - <?php
891 - foreach ($lists as $list) {
892 - $option = get_option('mc_list_id');
893 - ?>
894 - <option value="<?php echo esc_attr($list['id']); ?>"<?php selected($list['id'], $option); ?>><?php echo esc_html($list['name']); ?></option>
895 - <?php
896 - }
897 - ?>
898 - </select>
899 - </td>
900 - <td>
901 - <input type="hidden" name="mcsf_action" value="update_mc_list_id" />
902 - <input type="submit" name="Submit" value="<?php esc_attr_e('Update List', 'mailchimp_i18n'); ?>" class="button" />
903 - </td>
904 - </tr>
905 - </table>
906 - <?php
907 - } //end select list
908 - ?>
909 - </form>
910 -</div>
911 -
912 -<br/>
913 -
914 -<?php
685 + }
686 + return $mv['merge_fields'];
915 687 }
916 -else {
917 -//display the selected list...
918 -?>
919 688
920 -<p class="submit">
921 - <form method="post" action="options-general.php?page=mailchimpSF_options">
922 - <input type="hidden" name="mcsf_action" value="reset_list" />
923 - <input type="submit" name="reset_list" value="<?php esc_attr_e('Reset List Options and Select again', 'mailchimp_i18n'); ?>" class="button" />
924 - <?php wp_nonce_field('reset_mailchimp_list', '_mcsf_nonce_action'); ?>
925 - </form>
926 -</p>
927 -<h3><?php esc_html_e('Subscribe Form Widget Settings for this List', 'mailchimp_i18n'); ?>:</h3>
928 -<h4><?php esc_html_e('Selected MailChimp List', 'mailchimp_i18n'); ?>: <?php echo esc_html(get_option('mc_list_name')); ?></h4>
929 -<?php
689 +/**
690 + * Add email field
691 + *
692 + * @param array $merge Merge
693 + * @return array
694 + */
695 +function mailchimp_sf_add_email_field( $merge ) {
696 + $email = array(
697 + 'tag' => 'EMAIL',
698 + 'name' => esc_html__( 'Email Address', 'mailchimp' ),
699 + 'type' => 'email',
700 + 'required' => true,
701 + 'public' => true,
702 + 'display_order' => 1,
703 + 'default_value' => null,
704 + );
705 + array_unshift( $merge, $email );
706 + return $merge;
930 707 }
931 708
932 -//Just get out if nothing else matters...
933 -if (get_option('mc_list_id') == '') return;
709 +/**
710 + * Get interest categories
711 + *
712 + * @param string $list_id List ID
713 + * @param bool $new_list Whether this is a new list
714 + * @param bool $update_option Whether to update the option
715 + * @return array
716 + */
717 +function mailchimp_sf_get_interest_categories( $list_id, $new_list, $update_option = true ) {
718 + $api = mailchimp_sf_get_api();
719 + $igs = $api->get( 'lists/' . $list_id . '/interest-categories', 60 );
934 720
935 -
936 -// The main Settings form
937 -?>
938 -
939 -<div>
940 -<form method="post" action="options-general.php?page=mailchimpSF_options">
941 -<div style="width:900px;">
942 -<input type="hidden" name="mcsf_action" value="change_form_settings">
943 -<?php wp_nonce_field('update_general_form_settings', '_mcsf_nonce_action'); ?>
944 -<!--<input type="submit" value="<?php esc_attr_e('Update Subscribe Form Settings', 'mailchimp_i18n'); ?>" class="button" />-->
945 -<table class="widefat mc-widefat mc-label-options">
946 - <tr><th colspan="2">Content Options</th></tr>
947 - <tr valign="top">
948 - <th scope="row"><?php esc_html_e('Header', 'mailchimp_i18n'); ?></th>
949 - <td>
950 - <textarea name="mc_header_content" rows="2" cols="70"><?php echo esc_html(get_option('mc_header_content')); ?></textarea><br/>
951 - <?php esc_html_e('You can fill this with your own Text, HTML markup (including image links), or Nothing!', 'mailchimp_i18n'); ?>
952 - </td>
953 - </tr>
954 -
955 - <tr valign="top">
956 - <th scope="row"><?php esc_html_e('Sub-header', 'mailchimp_i18n'); ?></th>
957 - <td>
958 - <textarea name="mc_subheader_content" rows="2" cols="70"><?php echo esc_html(get_option('mc_subheader_content')); ?></textarea><br/>
959 - <?php esc_html_e('You can fill this with your own Text, HTML markup (including image links), or Nothing!', 'mailchimp_i18n'); ?>.<br/>
960 - <?php esc_html_e('This will be displayed under the heading and above the form.', 'mailchimp_i18n'); ?>
961 - </td>
962 - </tr>
963 -
964 - <tr valign="top" class="last-row">
965 - <th scope="row"><?php esc_html_e('Submit Button', 'mailchimp_i18n'); ?></th>
966 - <td>
967 - <input type="text" name="mc_submit_text" size="70" value="<?php echo esc_attr(get_option('mc_submit_text')); ?>"/>
968 - </td>
969 - </tr>
970 -</table>
971 -
972 -<input type="submit" value="<?php esc_attr_e('Update Subscribe Form Settings', 'mailchimp_i18n'); ?>" class="button mc-submit" /><br/>
973 -
974 -<table class="widefat mc-widefat mc-custom-styling">
975 - <tr><th colspan="2">Custom Styling</th></tr>
976 - <tr class="mc-turned-on"><th><label for="mc_custom_style"><?php esc_html_e('Enabled?', 'mailchimp_i18n'); ?></label></th><td><span class="mc-pre-input"></span><input type="checkbox" name="mc_custom_style" id="mc_custom_style"<?php checked(get_option('mc_custom_style'), 'on'); ?> /></td></tr>
977 -
978 - <tr class="mc-internal-heading"><th colspan="2"><?php esc_html_e('Form Settings', 'mailchimp_i18n'); ?></th></tr>
979 - <tr><th><?php esc_html_e('Border Width', 'mailchimp_i18n'); ?></th><td><span class="mc-pre-input"></span><input type="text" name="mc_form_border_width" size="3" maxlength="3" value="<?php echo esc_attr(get_option('mc_form_border_width')); ?>"/>
980 - <em>px •<?php esc_html_e('Set to 0 for no border, do not enter', 'mailchimp_i18n'); ?> <strong>px</strong>!</em>
981 - </td></tr>
982 - <tr><th><?php esc_html_e('Border Color', 'mailchimp_i18n'); ?></th><td><span class="mc-pre-input">#</span><input type="text" name="mc_form_border_color" size="7" maxlength="6" value="<?php echo esc_attr(get_option('mc_form_border_color')); ?>"/>
983 - <em><?php esc_html_e('Do not enter initial', 'mailchimp_i18n'); ?> <strong>#</strong></em>
984 - </td></tr>
985 - <tr><th><?php esc_html_e('Text Color', 'mailchimp_i18n'); ?></th><td><span class="mc-pre-input">#</span><input type="text" name="mc_form_text_color" size="7" maxlength="6" value="<?php echo esc_attr(get_option('mc_form_text_color')); ?>"/>
986 - <em><?php esc_html_e('Do not enter initial', 'mailchimp_i18n'); ?> <strong>#</strong></em>
987 - </td></tr>
988 - <tr class="last-row"><th><?php esc_html_e('Background Color', 'mailchimp_i18n'); ?></th><td><span class="mc-pre-input">#</span><input type="text" name="mc_form_background" size="7" maxlength="6" value="<?php echo esc_attr(get_option('mc_form_background')); ?>"/>
989 - <em><?php esc_html_e('Do not enter initial', 'mailchimp_i18n'); ?> <strong>#</strong></em>
990 - </td></tr>
991 -</table>
992 -
993 -<input type="submit" value="<?php esc_attr_e('Update Subscribe Form Settings', 'mailchimp_i18n'); ?>" class="button mc-submit" /><br/>
994 -
995 -<table class="widefat mc-widefat">
996 - <tr><th colspan="2">List Options</th></tr>
997 - <tr valign="top">
998 - <th scope="row"><?php esc_html_e('Monkey Rewards', 'mailchimp_i18n'); ?>?</th>
999 - <td><input name="mc_rewards" type="checkbox"<?php if (get_option('mc_rewards')=='on' || get_option('mc_rewards')=='' ) { echo ' checked="checked"'; } ?> id="mc_rewards" class="code" />
1000 - <em><label for="mc_rewards"><?php esc_html_e('Turning this on will place a "powered by MailChimp" link in your form that will earn you credits with us. It is optional and can be turned on or off at any time.', 'mailchimp_i18n'); ?></label></em>
1001 - </td>
1002 - </tr>
1003 -
1004 - <tr valign="top">
1005 - <th scope="row"><?php esc_html_e('Use Javascript Support?', 'mailchimp_i18n'); ?></th>
1006 - <td><input name="mc_use_javascript" type="checkbox" <?php checked(get_option('mc_use_javascript'), 'on'); ?> id="mc_use_javascript" class="code" />
1007 - <em><label for="mc_use_javascript"><?php esc_html_e('Turning this on will use fancy javascript submission and should degrade gracefully for users not using javascript. It is optional and can be turned on or off at any time.', 'mailchimp_i18n'); ?></label></em>
1008 - </td>
1009 - </tr>
1010 -
1011 - <tr valign="top">
1012 - <th scope="row"><?php esc_html_e('Use Javascript Datepicker?', 'mailchimp_i18n'); ?></th>
1013 - <td><input name="mc_use_datepicker" type="checkbox" <?php checked(get_option('mc_use_datepicker'), 'on'); ?> id="mc_use_datepicker" class="code" />
1014 - <em><label for="mc_use_datepicker"><?php esc_html_e('Turning this on will use the jQuery UI Datepicker for dates.', 'mailchimp_i18n'); ?></label></em>
1015 - </td>
1016 - </tr>
1017 - <tr valign="top" class="last-row">
1018 - <th scope="row"><?php esc_html_e('Include Unsubscribe link?', 'mailchimp_i18n'); ?></th>
1019 - <td><input name="mc_use_unsub_link" type="checkbox"<?php checked(get_option('mc_use_unsub_link'), 'on'); ?> id="mc_use_unsub_link" class="code" />
1020 - <em><label for="mc_use_unsub_link"><?php esc_html_e('Turning this on will add a link to your host unsubscribe form', 'mailchimp_i18n'); ?></label></em>
1021 - </td>
1022 - </tr>
1023 -
1024 -
1025 -</table>
1026 -
1027 -</div>
1028 -
1029 -
1030 -
1031 -<?php
1032 -// Merge Variables Table
1033 -?>
1034 -<div style="width:900px;">
1035 -
1036 - <input type="submit" value="<?php esc_attr_e('Update Subscribe Form Settings', 'mailchimp_i18n'); ?>" class="button mc-submit" /><br/>
1037 -
1038 - <table class='widefat mc-widefat'>
1039 - <tr>
1040 - <th colspan="4">
1041 - <?php esc_html_e('Merge Variables Included', 'mailchimp_i18n'); ?>
1042 -
1043 - <?php
1044 - $mv = get_option('mc_merge_vars');
1045 -
1046 - if (count($mv) == 0 || !is_array($mv)){
1047 - ?>
1048 - <em><?php esc_html_e('No Merge Variables found.', 'mailchimp_i18n'); ?></em>
1049 - <?php
1050 - } else {
1051 - ?>
1052 - </th>
1053 - </tr>
1054 - <tr valign="top">
1055 - <th><?php esc_html_e('Name', 'mailchimp_i18n');?></th>
1056 - <th><?php esc_html_e('Tag', 'mailchimp_i18n');?></th>
1057 - <th><?php esc_html_e('Required?', 'mailchimp_i18n');?></th>
1058 - <th><?php esc_html_e('Include?', 'mailchimp_i18n');?></th>
1059 - </tr>
1060 - <?php
1061 - foreach($mv as $var){
1062 - ?>
1063 - <tr valign="top">
1064 - <td><?php echo esc_html($var['name']); ?></td>
1065 - <td><?php echo esc_html($var['tag']); ?></td>
1066 - <td><?php echo esc_html(($var['req'] == 1) ? 'Y' : 'N'); ?></td>
1067 - <td>
1068 - <?php
1069 - if (!$var['req']){
1070 - $opt = 'mc_mv_'.$var['tag'];
1071 - ?>
1072 - <input name="<?php echo esc_attr($opt); ?>" type="checkbox" id="<?php echo esc_attr($opt); ?>" class="code"<?php checked(get_option($opt), 'on'); ?> />
1073 - <?php
1074 - } else {
1075 - ?>
1076 - &nbsp;&mdash;&nbsp;
1077 - <?php
1078 - }
1079 - ?>
1080 - </td>
1081 - </tr>
1082 - <?php
721 + // if we get an error back from the api, exis
722 + if ( is_wp_error( $igs ) ) {
723 + return;
1083 724 }
1084 - ?>
1085 - </table>
1086 - <?php
1087 -}
1088 725
1089 -?>
726 + if ( is_array( $igs ) ) {
727 + $key = 0;
728 + foreach ( $igs['categories'] as $ig ) {
729 + $groups = $api->get( 'lists/' . $list_id . '/interest-categories/' . $ig['id'] . '/interests', 60 );
730 + $igs['categories'][ $key ]['groups'] = $groups['interests'];
731 + $opt = 'mc_show_interest_groups_' . $ig['id'];
1090 732
1091 -<input type="submit" value="<?php esc_attr_e('Update Subscribe Form Settings', 'mailchimp_i18n'); ?>" class="button mc-submit" /><br/>
1092 -
1093 -<?php
1094 -// Interest Groups Table
1095 -$igs = get_option('mc_interest_groups');
1096 -if (is_array($igs) && !isset($igs['id'])) { ?>
1097 - <h3 class="mc-h3"><?php esc_html_e('Group Settings', 'mailchimp_i18n'); ?></h3> <?php
1098 - // Determines whether or not to continue processing. Only false if there was an error.
1099 - $continue = true;
1100 - foreach ($igs as $ig) {
1101 - if ($continue) {
1102 - if (!is_array($ig) || empty($ig) || $ig == 'N' ) {
1103 - ?>
1104 - <em><?php esc_html_e('No Interest Groups Setup for this List', 'mailchimp_i18n'); ?></em>
1105 - <?php
1106 - $continue = false;
733 + // turn them all on by default
734 + if ( $new_list ) {
735 + update_option( $opt, 'on' );
1107 736 }
1108 - else {
1109 - ?>
1110 - <table class='mc-widefat mc-blue' width="450px" cellspacing="0">
1111 - <tr valign="top">
1112 - <th colspan="2"><?php echo esc_html($ig['name']); ?></th>
1113 - </tr>
1114 - <tr valign="top">
1115 - <th>
1116 - <label for="<?php echo esc_attr('mc_show_interest_groups_'.$ig['id']); ?>"><?php esc_html_e('Show?', 'mailchimp_i18n'); ?></label>
1117 - </th>
1118 - <th>
1119 - <input name="<?php echo esc_attr('mc_show_interest_groups_'.$ig['id']); ?>" id="<?php echo esc_attr('mc_show_interest_groups_'.$ig['id']); ?>" type="checkbox" class="code"<?php checked('on', get_option('mc_show_interest_groups_'.$ig['id'])); ?> />
1120 - </th>
1121 - </tr>
1122 - <tr valign="top">
1123 - <th><?php esc_html_e('Input Type', 'mailchimp_i18n'); ?></th>
1124 - <td><?php echo esc_html($ig['form_field']); ?></td>
1125 - </tr>
1126 - <tr valign="top" class="last-row">
1127 - <th><?php esc_html_e('Options', 'mailchimp_i18n'); ?></th>
1128 - <td>
1129 - <ul>
1130 - <?php
1131 - foreach($ig['groups'] as $interest){
1132 - ?>
1133 - <li><?php echo esc_html($interest['name']); ?></li>
1134 - <?php
1135 - }
1136 - ?>
1137 - </ul>
1138 - </td>
1139 - </tr>
1140 - </table>
1141 - <?php
1142 - }
737 + ++$key;
1143 738 }
1144 739 }
1145 -}
1146 -?>
1147 740
1148 -<table class="widefat mc-widefat mc-yellow">
1149 - <tr><th colspan="2">CSS Cheat Sheet</th></tr>
1150 - <tr valign="top">
1151 - <th scope="row">.widget_mailchimpsf_widget </th>
1152 - <td>This targets the entire widget container.</td>
1153 - </tr>
1154 - <tr valign="top">
1155 - <th scope="row">.widget-title</th>
1156 - <td>This styles the title of your MailChimp widget. <i>Modifying this class will affect your other widget titles.</i></td>
1157 - </tr>
1158 - <tr valign="top">
1159 - <th scope="row">#mc_signup</th>
1160 - <td>This targets the entirity of the widget beneath the widget title.</td>
1161 - </tr>
1162 - <tr valign="top">
1163 - <th scope="row">#mc_subheader</th>
1164 - <td>This styles the subheader text.</td>
1165 - </tr>
1166 - <tr valign="top">
1167 - <th scope="row">.mc_form_inside</th>
1168 - <td>The guts and main container for the all of the form elements (the entirety of the widget minus the header and the sub header).</td>
1169 - </tr>
1170 - <tr valign="top">
1171 - <th scope="row">.mc_header</th>
1172 - <td>This targets the label above the input fields.</td>
1173 - </tr>
1174 - <tr valign="top">
1175 - <th scope="row">.mc_input</th>
1176 - <td>This attaches to the input fields.</td>
1177 - </tr>
1178 - <tr valign="top">
1179 - <th scope="row">.mc_header_address</th>
1180 - <td>This is the label above an address group.</td>
1181 - </tr>
1182 - <tr valign="top">
1183 - <th scope="row">.mc_radio_label</th>
1184 - <td>These are the labels associated with radio buttons.</td>
1185 - </tr>
1186 - <tr valign="top">
1187 - <th scope="row">#mc-indicates-required</th>
1188 - <td>This targets the “Indicates Required Field” text.</td>
1189 - </tr>
1190 - <tr valign="top">
1191 - <th scope="row">#mc_signup_submit</th>
1192 - <td>Use this to style the submit button.</td>
1193 - </tr>
1194 -
741 + if ( $update_option ) {
742 + update_option( 'mc_interest_groups', $igs['categories'] );
743 + }
1195 744
1196 -</table>
745 + return $igs['categories'];
746 +}
1197 747
1198 -</div>
1199 -
1200 -
1201 -
1202 -</form>
1203 -</div>
1204 -</div><!--wrap-->
1205 -<?php
1206 -}//mailchimpSF_setup_page()
1207 -
1208 -
1209 -function mailchimpSF_register_widgets() {
1210 - if (mailchimpSF_get_api()) {
1211 - register_widget('mailchimpSF_Widget');
748 +/**
749 + * Register the widget.
750 + *
751 + * @return void
752 + */
753 +function mailchimp_sf_register_widgets() {
754 + if ( mailchimp_sf_get_api() ) {
755 + register_widget( 'Mailchimp_SF_Widget' );
1212 756 }
1213 757 }
1214 -add_action('widgets_init', 'mailchimpSF_register_widgets');
758 +add_action( 'widgets_init', 'mailchimp_sf_register_widgets' );
1215 759
1216 -function mailchimpSF_shortcode($atts){
760 +/**
761 + * Add shortcode
762 + *
763 + * @return string
764 + */
765 +function mailchimp_sf_shortcode() {
1217 766 ob_start();
1218 - mailchimpSF_signup_form();
767 + mailchimp_sf_signup_form();
1219 768 return ob_get_clean();
1220 769 }
1221 -add_shortcode('mailchimpsf_form', 'mailchimpSF_shortcode');
770 +add_shortcode( 'mailchimpsf_form', 'mailchimp_sf_shortcode' );
1222 771
1223 772 /**
1224 - * Attempts to signup a user, per the $_POST args.
773 + * Cleans up merge fields and interests to make them
774 + * API 3.0-friendly.
1225 775 *
1226 - * This sets a global message, that is then used in the widget
1227 - * output to retrieve and display that message.
1228 - *
1229 - * @return bool
776 + * @param [type] $merge Merge fields
777 + * @param [type] $igs Interest groups
778 + * @param string $email_type Email type
779 + * @param string $email Email
780 + * @param string|false $status Status The subscription status ('subscribed', 'unsubscribed', 'pending', etc.) or false if an error occurred.
781 + * @param string $double_optin Whether double opt-in is enabled. "1" for enabled and "" for disabled.
782 + * @return stdClass
1230 783 */
1231 -function mailchimpSF_signup_submit() {
1232 - $mv = get_option('mc_merge_vars', array());
1233 - $mv_tag_keys = array();
784 +function mailchimp_sf_subscribe_body( $merge, $igs, $email_type, $email, $status, $double_optin ) {
785 + $body = new stdClass();
786 + $body->email_address = $email;
787 + $body->email_type = $email_type;
788 + $body->merge_fields = $merge;
1234 789
1235 - $igs = get_option('mc_interest_groups', array());
1236 -
1237 - $success = true;
1238 - $listId = get_option('mc_list_id');
1239 - $email = isset($_POST['mc_mv_EMAIL']) ? strip_tags(stripslashes($_POST['mc_mv_EMAIL'])) : '';
1240 - $merge = $errs = $html_errs = array(); // Set up some vars
1241 -
1242 - // Loop through our Merge Vars, and if they're empty, but required, then print an error, and mark as failed
1243 - foreach($mv as $var) {
1244 - $opt = 'mc_mv_'.$var['tag'];
1245 -
1246 - $opt_val = isset($_POST[$opt]) ? $_POST[$opt] : '';
1247 -
1248 - if (is_array($opt_val) && isset($opt_val['area'])) {
1249 - $opt_val = implode('-', $opt_val);
1250 - }
1251 - else if (is_array($opt_val) && $var['field_type'] == 'address') {
1252 - if ($var['req'] == 'Y') {
1253 - if (empty($opt_val['addr1']) || empty($opt_val['city'])) {
1254 - $errs[] = sprintf(__("You must fill in %s.", 'mailchimp_i18n'), esc_html($var['name']));
1255 - $success = false;
1256 - }
1257 - }
1258 - $merge[$var['tag']] = $opt_val;
1259 - continue;
1260 - }
1261 - else if (is_array($opt_val)) {
1262 - $opt_val = implode($opt_val);
1263 - }
1264 -
1265 - if ($var['req'] == 'Y' && trim($opt_val) == '') {
1266 - $success = false;
1267 - $errs[] = sprintf(__("You must fill in %s.", 'mailchimp_i18n'), esc_html($var['name']));
1268 - }
1269 - else {
1270 - if ($var['tag'] != 'EMAIL') {
1271 - $merge[$var['tag']] = $opt_val;
1272 - }
1273 - }
1274 -
1275 - // We also want to create an array where the keys are the tags for easier validation later
1276 - $mv_tag_keys[$var['tag']] = $var;
1277 -
790 + if ( ! empty( $igs ) ) {
791 + $body->interests = $igs;
1278 792 }
1279 793
1280 - // Head back to the beginning of the merge vars array
1281 - reset($mv);
1282 -
1283 - // Ensure we have an array
1284 - $igs = !is_array($igs) ? array() : $igs;
1285 - foreach ($igs as $ig) {
1286 - $groups = '';
1287 - if (get_option('mc_show_interest_groups_'.$ig['id']) == 'on') {
1288 - $groupings = array();
1289 - switch ($ig['form_field']) {
1290 - case 'select':
1291 - case 'dropdown':
1292 - case 'radio':
1293 - if (isset($_POST['group'][$ig['id']])) {
1294 - $groupings = array(
1295 - 'id' => $ig['id'],
1296 - 'groups' => str_replace(',', '\,', stripslashes($_POST['group'][$ig['id']])),
1297 - );
1298 - }
1299 - break;
1300 - case 'checkboxes':
1301 - case 'checkbox':
1302 - if (isset($_POST['group'][$ig['id']])) {
1303 - foreach ($_POST['group'][$ig['id']] as $i => $value) {
1304 - // Escape
1305 - $groups .= str_replace(',', '\,', stripslashes($value)).',';
1306 - }
1307 - $groupings = array(
1308 - 'id' => $ig['id'],
1309 - 'groups' => $groups,
1310 - );
1311 - }
1312 - break;
1313 - default:
1314 - // Nothing
1315 - break;
1316 - }
1317 - if (!isset($merge['GROUPINGS']) || !is_array($merge['GROUPINGS'])) {
1318 - $merge['GROUPINGS'] = array();
1319 - }
1320 - if (!empty($groupings)) {
1321 - $merge['GROUPINGS'][] = $groupings;
1322 - }
1323 - }
794 + // Early return for already subscribed users
795 + if ( 'subscribed' === $status ) {
796 + return $body;
1324 797 }
1325 798
1326 - // If we're good
1327 - if ($success) {
1328 - // Clear out empty merge vars
1329 - foreach ($merge as $k => $v) {
1330 - if (is_array($v) && empty($v)) {
1331 - unset($merge[$k]);
1332 - }
1333 - else if (!is_array($v) && trim($v) === '') {
1334 - unset($merge[$k]);
1335 - }
1336 - }
799 + // Subscribe the email immediately unless double opt-in is enabled
800 + // "unsubscribed" and "subscribed" existing emails have been excluded at this stage
801 + // "pending" emails should follow double opt-in rules
802 + $body->status = $double_optin ? 'pending' : 'subscribed';
1337 803
1338 - // If we have an empty $merge, then assign empty string.
1339 - if (count($merge) == 0 || $merge == '') {
1340 - $merge = '';
1341 - }
804 + return $body;
805 +}
1342 806
1343 - if (isset($_POST['email_type']) && in_array($_POST['email_type'], array('text', 'html', 'mobile'))) {
1344 - $email_type = $_POST['email_type'];
1345 - }
1346 - else {
1347 - $email_type = 'html';
1348 - }
1349 -
1350 - // Custom validation based on type
1351 - if (is_array($merge) && !empty($merge)) {
1352 - foreach ($merge as $merge_key => $merge_value) {
1353 - if ($merge_key !== 'GROUPINGS') {
1354 - switch ($mv_tag_keys[$merge_key]['field_type']) {
1355 - case 'phone':
1356 - if ($mv_tag_keys[$merge_key]['phoneformat'] == 'US') {
1357 - $phone = $merge_value;
1358 - if (!empty($phone)) {
1359 - if (!preg_match('/[0-9]{0,3}-[0-9]{0,3}-[0-9]{0,4}/', $phone)) {
1360 - $errs[] = sprintf(__("%s must consist of only numbers", 'mailchimp_i18n'), esc_html($mv_tag_keys[$merge_key]['name']));
1361 - $success = false;
1362 - }
1363 - }
1364 - }
1365 - break;
1366 -
1367 - default:
1368 - break;
1369 - }
1370 - }
1371 - }
1372 - }
1373 - if ($success) {
1374 - $api = mailchimpSF_get_api();
1375 - if (!$api) { return; }
1376 -
1377 - $retval = $api->listSubscribe( $listId, $email, $merge, $email_type);
1378 - if (!$retval) {
1379 - switch($api->errorCode) {
1380 - case '105' :
1381 - $errs[] = __("Please try again later", 'mailchimp_i18n').'.';
1382 - break;
1383 - case '214' :
1384 - $msg = __("That email address is already subscribed to the list", 'mailchimp_i18n') . '.';
1385 -
1386 - $account = $api->getAccountDetails(array("modules", "orders", "rewards-credits", "rewards-inspections", "rewards-referrals", "rewards-applied"));
1387 - if (!$api->errorCode) {
1388 - $dc = get_option('mc_sopresto_dc');
1389 - $uid = $account['user_id'];
1390 - $username = preg_replace('/\s+/', '-', $account['username']);
1391 - $eid = base64_encode($email);
1392 - $msg .= ' ' . sprintf(__('<a href="%s">Click here to update your profile.</a>', 'mailchimp_i18n'), "http://$username.$dc.list-manage.com/subscribe/send-email?u=$uid&id=$listId&e=$eid");
1393 - }
1394 -
1395 - $errs[] = $msg;
1396 - $html_errs[] = count($errs)-1;
1397 - break;
1398 - case '250' :
1399 - list($field, $rest) = explode(' ', $api->errorMessage, 2);
1400 - $errs[] = sprintf(__("You must fill in %s.", 'mailchimp_i18n'), esc_html($mv_tag_keys[$field]['name']));
1401 - break;
1402 - case '254' :
1403 - list($i1, $i2, $i3, $field, $rest) = explode(' ',$api->errorMessage,5);
1404 - $errs[] = sprintf(__("%s has invalid content.", 'mailchimp_i18n'), esc_html($mv_tag_keys[$field]['name']));
1405 - break;
1406 - case '270' :
1407 - $errs[] = __("An invalid Interest Group was selected", 'mailchimp_i18n').'.';
1408 - break;
1409 - case '502' :
1410 - $errs[] = __("That email address is invalid", 'mailchimp_i18n').'.';
1411 - break;
1412 - default:
1413 - $errs[] = $api->errorCode.":".$api->errorMessage;
1414 - break;
1415 - }
1416 - $success = false;
1417 - }
1418 - }
807 +/**
808 + * Check the status of a subscriber in the list.
809 + *
810 + * @param string $endpoint API endpoint to check the status.
811 + * @return string|false The subscription status ('subscribed', 'unsubscribed', 'pending', etc.) or false if the API returned 404 or an error occurred.
812 + */
813 +function mailchimp_sf_check_status( $endpoint ) {
814 + $endpoint .= '?fields=status';
815 + $api = mailchimp_sf_get_api();
816 + $subscriber = $api->get( $endpoint, null );
817 + if ( is_wp_error( $subscriber ) ) {
818 + return false;
1419 819 }
820 + return $subscriber['status'];
821 +}
1420 822
1421 - // If we have errors, then show them
1422 - if (count($errs) > 0) {
1423 - $msg = '<span class="mc_error_msg">';
1424 - foreach($errs as $error_index => $error){
1425 - if (!in_array($error_index, $html_errs)) {
1426 - $error = esc_html($error);
1427 - }
1428 - $msg .= '&raquo; '.$error.'<br />';
1429 - }
1430 - $msg .= '</span>';
823 +/**
824 + * Verify key
825 + *
826 + * @param MailChimp_API $api API instance
827 + * @return mixed
828 + */
829 +function mailchimp_sf_verify_key( $api ) {
830 + $user = $api->get( '' );
831 + if ( is_wp_error( $user ) ) {
832 + return $user;
1431 833 }
1432 - else {
1433 - $msg = "<strong class='mc_success_msg'>".esc_html(__("Success, you've been signed up! Please look for our confirmation email!", 'mailchimp_i18n'))."</strong>";
1434 - }
1435 834
1436 - // Set our global message
1437 - mailchimpSF_global_msg($msg);
835 + // Might as well set this data if we have it already.
836 + $valid_roles = array( 'owner', 'admin', 'manager' );
837 + if ( isset( $user['role'] ) && in_array( $user['role'], $valid_roles, true ) ) {
838 + update_option( 'mc_api_key', $api->key );
839 + update_option( 'mc_user', $user );
840 + update_option( 'mc_datacenter', $api->datacenter );
1438 841
1439 - return $success;
842 + } else {
843 + $msg = esc_html__( 'API Key must belong to "Owner", "Admin", or "Manager."', 'mailchimp' );
844 + return new WP_Error( 'mc-invalid-role', $msg );
845 + }
1440 846 }
1441 847
848 +/**
849 + * Update profile URL.
850 + *
851 + * @param string $email Email
852 + * @return string
853 + */
854 +function mailchimp_sf_update_profile_url( $email ) {
855 + $dc = get_option( 'mc_datacenter' );
856 + // This is the expected encoding for emails.
857 + $eid = base64_encode( $email ); // phpcs:ignore WordPress.PHP.DiscouragedPHPFunctions.obfuscation_base64_encode -- ignoring because this is the expected data for the endpoint
858 + $user = get_option( 'mc_user' );
859 + $list_id = get_option( 'mc_list_id' );
860 + $url = 'http://' . $dc . '.list-manage.com/subscribe/send-email?u=' . $user['account_id'] . '&id=' . $list_id . '&e=' . $eid;
861 + return $url;
862 +}
1442 863
864 +/**
865 + * Delete options
866 + *
867 + * @param array $options Options
868 + * @return void
869 + */
870 +function mailchimp_sf_delete_options( $options = array() ) {
871 + foreach ( $options as $option ) {
872 + delete_option( $option );
873 + }
874 +}
1443 875
1444 876 /**********************
1445 877 * Utility Functions *
1446 -**********************/
878 + **********************/
1447 879 /**
1448 880 * Utility function to allow placement of plugin in plugins, mu-plugins, child or parent theme's plugins folders
1449 881 *
1450 882 * This function must be ran _very early_ in the load process, as it sets up important constants for the rest of the plugin
1451 883 */
1452 -function mailchimpSF_where_am_i() {
884 +function mailchimp_sf_where_am_i() {
1453 885 $locations = array(
1454 - 'plugins' => array(
1455 - 'dir' => WP_PLUGIN_DIR,
1456 - 'url' => plugins_url()
886 + 'plugins' => array(
887 + 'dir' => plugin_dir_path( __FILE__ ),
888 + 'url' => plugins_url(),
1457 889 ),
1458 890 'mu_plugins' => array(
1459 - 'dir' => WPMU_PLUGIN_DIR,
891 + 'dir' => plugin_dir_path( __FILE__ ),
1460 892 'url' => plugins_url(),
1461 893 ),
1462 - 'template' => array(
1463 - 'dir' => trailingslashit(get_template_directory()).'plugins/',
1464 - 'url' => trailingslashit(get_template_directory_uri()).'plugins/',
894 + 'template' => array(
895 + 'dir' => trailingslashit( get_template_directory() ) . 'plugins/',
896 + 'url' => trailingslashit( get_template_directory_uri() ) . 'plugins/',
1465 897 ),
1466 898 'stylesheet' => array(
1467 - 'dir' => trailingslashit(get_stylesheet_directory()).'plugins/',
1468 - 'url' => trailingslashit(get_stylesheet_directory_uri()).'plugins/',
899 + 'dir' => trailingslashit( get_stylesheet_directory() ) . 'plugins/',
900 + 'url' => trailingslashit( get_stylesheet_directory_uri() ) . 'plugins/',
1469 901 ),
1470 902 );
1471 903
1472 904 // Set defaults
1473 - $mscf_dirbase = trailingslashit(basename(dirname(__FILE__))); // Typically wp-mailchimp/ or mailchimp/
1474 - $mscf_dir = trailingslashit(WP_PLUGIN_DIR).$mscf_dirbase;
1475 - $mscf_url = trailingslashit(WP_PLUGIN_URL).$mscf_dirbase;
905 + $mscf_dirbase = trailingslashit( basename( __DIR__ ) ); // Typically wp-mailchimp/ or mailchimp/
906 + $mscf_dir = trailingslashit( plugin_dir_path( __FILE__ ) );
907 + $mscf_url = trailingslashit( plugins_url( '', __FILE__ ) );
1476 908
1477 909 // Try our hands at finding the real location
1478 - foreach ($locations as $key => $loc) {
1479 - $dir = trailingslashit($loc['dir']).$mscf_dirbase;
1480 - $url = trailingslashit($loc['url']).$mscf_dirbase;
1481 - if (is_file($dir.basename(__FILE__))) {
910 + foreach ( $locations as $key => $loc ) {
911 + $dir = trailingslashit( $loc['dir'] ) . $mscf_dirbase;
912 + $url = trailingslashit( $loc['url'] ) . $mscf_dirbase;
913 + if ( is_file( $dir . basename( __FILE__ ) ) ) {
1482 914 $mscf_dir = $dir;
1483 915 $mscf_url = $url;
1484 916 break;
1485 917 }
@@ -1485,16 +917,134 @@
1485 917 }
1486 918 }
1487 919
1488 920 // Define our complete filesystem path
1489 - define('MCSF_DIR', $mscf_dir);
921 + define( 'MCSF_DIR', $mscf_dir );
1490 922
1491 - /* Lang location needs to be relative *from* ABSPATH,
1492 - so strip it out of our language dir location */
1493 - define('MCSF_LANG_DIR', trailingslashit(MCSF_DIR).'po/');
923 + // Define our complete URL to the plugin folder
924 + define( 'MCSF_URL', $mscf_url );
925 +}
1494 926
1495 - // Define our complete URL to the plugin folder
1496 - define('MCSF_URL', $mscf_url);
927 +
928 +/**
929 + * MODIFIED VERSION of wp_verify_nonce from WP Core. Core was not overridden to prevent problems when replacing
930 + * something universally.
931 + *
932 + * Verify that correct nonce was used with time limit.
933 + *
934 + * The user is given an amount of time to use the token, so therefore, since the
935 + * UID and $action remain the same, the independent variable is the time.
936 + *
937 + * @param string $nonce Nonce that was used in the form to verify
938 + * @param string|int $action Should give context to what is taking place and be the same when nonce was created.
939 + * @return bool Whether the nonce check passed or failed.
940 + */
941 +function mailchimp_sf_verify_nonce( $nonce, $action = -1 ) {
942 + $user = wp_get_current_user();
943 + $uid = (int) $user->ID;
944 + if ( ! $uid ) {
945 + $uid = apply_filters( 'nonce_user_logged_out', $uid, $action );
946 + }
947 +
948 + if ( empty( $nonce ) ) {
949 + return false;
950 + }
951 +
952 + $token = 'MAILCHIMP';
953 + $i = wp_nonce_tick();
954 +
955 + // Nonce generated 0-12 hours ago
956 + $expected = substr( wp_hash( $i . '|' . $action . '|' . $uid . '|' . $token, 'nonce' ), -12, 10 );
957 + if ( hash_equals( $expected, $nonce ) ) {
958 + return 1;
959 + }
960 +
961 + // Nonce generated 12-24 hours ago
962 + $expected = substr( wp_hash( ( $i - 1 ) . '|' . $action . '|' . $uid . '|' . $token, 'nonce' ), -12, 10 );
963 + if ( hash_equals( $expected, $nonce ) ) {
964 + return 2;
965 + }
966 +
967 + // Invalid nonce
968 + return false;
1497 969 }
1498 970
1499 971
1500 -?>
972 +/**
973 + * MODIFIED VERSION of wp_create_nonce from WP Core. Core was not overridden to prevent problems when replacing
974 + * something universally.
975 + *
976 + * Creates a cryptographic token tied to a specific action, user, and window of time.
977 + *
978 + * @param string $action Scalar value to add context to the nonce.
979 + * @return string The token.
980 + */
981 +function mailchimp_sf_create_nonce( $action = -1 ) {
982 + $user = wp_get_current_user();
983 + $uid = (int) $user->ID;
984 + if ( ! $uid ) {
985 + /** This filter is documented in wp-includes/pluggable.php */
986 + $uid = apply_filters( 'nonce_user_logged_out', $uid, $action );
987 + }
988 +
989 + $token = 'MAILCHIMP';
990 + $i = wp_nonce_tick();
991 +
992 + return substr( wp_hash( $i . '|' . $action . '|' . $uid . '|' . $token, 'nonce' ), -12, 10 );
993 +}
994 +
995 +/**
996 + * Get Mailchimp Access Token.
997 + *
998 + * @since 1.6.0
999 + * @return string|bool
1000 + */
1001 +function mailchimp_sf_get_access_token() {
1002 + $access_token = get_option( 'mailchimp_sf_access_token' );
1003 + if ( empty( $access_token ) ) {
1004 + return false;
1005 + }
1006 +
1007 + $data_encryption = new Mailchimp_Data_Encryption();
1008 + $access_token = $data_encryption->decrypt( $access_token );
1009 +
1010 + // If decryption fails, display notice to user to re-authenticate.
1011 + if ( false === $access_token ) {
1012 + update_option( 'mailchimp_sf_auth_error', true );
1013 + }
1014 +
1015 + return $access_token;
1016 +}
1017 +
1018 +/**
1019 + * Should display Mailchimp Signup form.
1020 + *
1021 + * @since 1.6.0
1022 + * @return bool
1023 + */
1024 +function mailchimp_sf_should_display_form() {
1025 + return mailchimp_sf_get_api() && ! get_option( 'mailchimp_sf_auth_error' ) && get_option( 'mc_list_id' );
1026 +}
1027 +
1028 +/**
1029 + * Get Mailchimp Lists.
1030 + *
1031 + * @since 2.1.0
1032 + * @return array|WP_Error|false List of Mailchimp lists, or an error/false from the API request.
1033 + */
1034 +function mailchimp_sf_get_lists() {
1035 + /**
1036 + * Filter the limit of lists to fetch.
1037 + *
1038 + * This value is sanitized to a positive integer and clamped before the API request.
1039 + * Defaults to 100. 1000 is the maximum allowed by the API. 1 is the minimum allowed.
1040 + */
1041 + $limit = apply_filters( 'mailchimp_sf_list_limit', 100 ); // Default to 100.
1042 + $limit = max( 1, min( 1000, absint( $limit ) ) );
1043 +
1044 + $api = mailchimp_sf_get_api();
1045 + if ( ! $api ) {
1046 + return array();
1047 + }
1048 +
1049 + return $api->get( 'lists', $limit, array( 'fields' => 'lists.id,lists.name,lists.email_type_option' ) );
1050 +}