ItemController.class.php 20 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618
  1. <?php
  2. namespace Api\Controller;
  3. use Think\Controller;
  4. class ItemController extends BaseController {
  5. //单个项目信息
  6. public function info(){
  7. $this->checkLogin(false);
  8. $item_id = I("item_id/s");
  9. $item_domain = I("item_domain/s");
  10. $current_page_id = I("page_id/d");
  11. if (! is_numeric($item_id)) {
  12. $item_domain = $item_id ;
  13. }
  14. //判断个性域名
  15. if ($item_domain) {
  16. $item = D("Item")->where("item_domain = '%s'",array($item_domain))->find();
  17. if ($item['item_id']) {
  18. $item_id = $item['item_id'] ;
  19. }
  20. }
  21. $login_user = session("login_user");
  22. $uid = $login_user['uid'] ? $login_user['uid'] : 0 ;
  23. if(!$this->checkItemVisit($uid , $item_id)){
  24. $this->sendError(10303);
  25. return ;
  26. }
  27. $item = D("Item")->where("item_id = '%d' ",array($item_id))->find();
  28. if (!$item || $item['is_del'] == 1) {
  29. sleep(1);
  30. $this->sendError(10101,'项目不存在或者已删除');
  31. return false;
  32. }
  33. //从2020.7.5开始,常规项目和单页项目合并在一起返回
  34. $this->_show_regular_item($item);
  35. }
  36. //展示常规项目
  37. private function _show_regular_item($item){
  38. $item_id = $item['item_id'];
  39. $default_page_id = I("default_page_id/d");
  40. $current_page_id = I("page_id/d");
  41. $keyword = I("keyword");
  42. $default_cat_id2 = $default_cat_id3 = 0 ;
  43. $login_user = session("login_user");
  44. $uid = $login_user['uid'] ? $login_user['uid'] : 0 ;
  45. $is_login = $uid > 0 ? true :false;
  46. $menu = array(
  47. "pages" =>array(),
  48. "catalogs" =>array(),
  49. );
  50. //是否有搜索词
  51. if ($keyword) {
  52. $keyword = strtolower ($keyword) ;
  53. $keyword = \SQLite3::escapeString($keyword) ;
  54. $pages = D("Page")->where("item_id = '$item_id' and is_del = 0 and ( lower(page_title) like '%{$keyword}%' or lower(page_content) like '%{$keyword}%' ) ")->order(" s_number asc ")->field("page_id,author_uid,cat_id,page_title,addtime")->select();
  55. $menu['pages'] = $pages ? $pages : array();
  56. }else{
  57. $menu = D("Item")->getMemu($item_id) ;
  58. if($uid > 0 ){
  59. $menu = D("Item")->filteMemberItem($uid , $item_id , $menu);
  60. }
  61. }
  62. $domain = $item['item_domain'] ? $item['item_domain'] : $item['item_id'];
  63. $share_url = get_domain().__APP__.'/'.$domain;
  64. $ItemPermn = $this->checkItemPermn($uid , $item_id) ;
  65. $ItemCreator = $this->checkItemCreator($uid , $item_id);
  66. //如果带了默认展开的页面id,则获取该页面所在的二级目录/三级目录/四级目录
  67. if ($default_page_id) {
  68. $page = D("Page")->where(" page_id = '$default_page_id' ")->find();
  69. if ($page) {
  70. $default_cat_id4 = $page['cat_id'] ;
  71. $cat1 = D("Catalog")->where(" cat_id = '$default_cat_id4' and parent_cat_id > 0 ")->find();
  72. if ($cat1) {
  73. $default_cat_id3 = $cat1['parent_cat_id'];
  74. }else{
  75. $default_cat_id3 = $default_cat_id4;
  76. $default_cat_id4 = 0 ;
  77. }
  78. $cat2 = D("Catalog")->where(" cat_id = '$default_cat_id3' and parent_cat_id > 0 ")->find();
  79. if ($cat2) {
  80. $default_cat_id2 = $cat2['parent_cat_id'];
  81. }else{
  82. $default_cat_id2 = $default_cat_id3;
  83. $default_cat_id3 = 0 ;
  84. }
  85. }
  86. }
  87. if (LANG_SET == 'en-us') {
  88. $help_url = "https://www.showdoc.cc/help-en";
  89. }
  90. else{
  91. $help_url = "https://www.showdoc.cc/help";
  92. }
  93. //当已经归档了,则去掉编辑权限
  94. if($item['is_archived']){
  95. $ItemPermn = $ItemCreator = false;
  96. }
  97. //如果项目类型为runapi,则获取看看有没有全局参数
  98. $global_param = array() ;
  99. if($item['item_type'] == 3){
  100. $global_param = D("Runapi")->getGlobalParam($item_id);
  101. }
  102. $return = array(
  103. "item_id"=>$item_id ,
  104. "item_domain"=>$item['item_domain'] ,
  105. "is_archived"=>$item['is_archived'] ,
  106. "item_name"=>$item['item_name'] ,
  107. "default_page_id"=>(string)$default_page_id ,
  108. "default_cat_id2"=>$default_cat_id2 ,
  109. "default_cat_id3"=>$default_cat_id3 ,
  110. "default_cat_id4"=>$default_cat_id4 ,
  111. "unread_count"=>$unread_count ,
  112. "item_type"=>$item['item_type'] ,
  113. "menu"=>$menu ,
  114. "is_login"=>$is_login,
  115. "ItemPermn"=>$ItemPermn ,
  116. "ItemCreator"=>$ItemCreator ,
  117. "current_page_id"=>$current_page_id ,
  118. "global_param"=>$global_param ,
  119. );
  120. $this->sendResult($return);
  121. }
  122. //我的项目列表
  123. public function myList(){
  124. $login_user = $this->checkLogin();
  125. $member_item_ids = array(-1) ;
  126. $item_members = D("ItemMember")->where("uid = '$login_user[uid]'")->select();
  127. if ($item_members) {
  128. foreach ($item_members as $key => $value) {
  129. $member_item_ids[] = $value['item_id'] ;
  130. }
  131. }
  132. $team_item_members = D("TeamItemMember")->where("member_uid = '$login_user[uid]'")->select();
  133. if ($team_item_members) {
  134. foreach ($team_item_members as $key => $value) {
  135. $member_item_ids[] = $value['item_id'] ;
  136. }
  137. }
  138. $items = D("Item")->field("item_id,uid,item_name,item_domain,item_type,last_update_time,item_description,is_del,password")->where("uid = '$login_user[uid]' or item_id in ( ".implode(",", $member_item_ids)." ) ")->order("item_id asc")->select();
  139. foreach ($items as $key => $value) {
  140. if ($value['uid'] == $login_user['uid']) {
  141. $items[$key]['creator'] = 1 ;
  142. }else{
  143. $items[$key]['creator'] = 0 ;
  144. unset($items[$key]['password']);
  145. }
  146. //判断是否为私密项目
  147. if ($value['password']) {
  148. $items[$key]['is_private'] = 1 ;
  149. }else{
  150. $items[$key]['is_private'] = 0 ;
  151. }
  152. //如果项目已标识为删除
  153. if ($value['is_del'] == 1) {
  154. unset($items[$key]);
  155. }
  156. }
  157. $items = array_values($items);
  158. //读取需要置顶的项目
  159. $top_items = D("ItemTop")->where("uid = '$login_user[uid]'")->select();
  160. if ($top_items) {
  161. $top_item_ids = array() ;
  162. foreach ($top_items as $key => $value) {
  163. $top_item_ids[] = $value['item_id'];
  164. }
  165. foreach ($items as $key => $value) {
  166. $items[$key]['top'] = 0 ;
  167. if (in_array($value['item_id'], $top_item_ids) ) {
  168. $items[$key]['top'] = 1 ;
  169. $tmp = $items[$key] ;
  170. unset($items[$key]);
  171. array_unshift($items,$tmp) ;
  172. }
  173. }
  174. }
  175. //读取项目顺序
  176. $item_sort = D("ItemSort")->where("uid = '$login_user[uid]'")->find();
  177. if ($item_sort) {
  178. $item_sort_data = json_decode(htmlspecialchars_decode($item_sort['item_sort_data']) , true) ;
  179. //var_dump($item_sort_data);
  180. foreach ($items as $key => &$value) {
  181. //如果item_id有设置了序号,则赋值序号。没有则默认填上0
  182. if ($item_sort_data[$value['item_id']]) {
  183. $value['s_number'] = $item_sort_data[$value['item_id']] ;
  184. }else{
  185. $value['s_number'] = 0 ;
  186. }
  187. }
  188. $items = $this->_sort_by_key($items , 's_number' ) ;
  189. }
  190. $items = $items ? array_values($items) : array();
  191. $this->sendResult($items);
  192. }
  193. private function _sort_by_key($array , $mykey){
  194. for ($i=0; $i < count($array) ; $i++) {
  195. for ($j = $i + 1 ; $j < count($array) ; $j++) {
  196. if ($array[$i][$mykey] > $array[$j][$mykey] ) {
  197. $tmp = $array[$i] ;
  198. $array[$i] = $array[$j] ;
  199. $array[$j] = $tmp ;
  200. }
  201. }
  202. }
  203. return $array;
  204. }
  205. //项目详情
  206. public function detail(){
  207. $login_user = $this->checkLogin();
  208. $item_id = I("item_id/d");
  209. $uid = $login_user['uid'] ;
  210. if(!$this->checkItemCreator($uid , $item_id)){
  211. $this->sendError(10303);
  212. return ;
  213. }
  214. $items = D("Item")->where("item_id = '$item_id' ")->find();
  215. $items = $items ? $items : array();
  216. $this->sendResult($items);
  217. }
  218. //更新项目信息
  219. public function update(){
  220. $login_user = $this->checkLogin();
  221. $item_id = I("item_id/d");
  222. $item_name = I("item_name");
  223. $item_description = I("item_description");
  224. $item_domain = I("item_domain");
  225. $password = I("password");
  226. $uid = $login_user['uid'] ;
  227. if(!$this->checkItemCreator($uid , $item_id)){
  228. $this->sendError(10303);
  229. return ;
  230. }
  231. if ($item_domain) {
  232. if(!ctype_alnum($item_domain) || is_numeric($item_domain) ){
  233. //echo '个性域名只能是字母或数字的组合';exit;
  234. $this->sendError(10305);
  235. return false;
  236. }
  237. $item = D("Item")->where("item_domain = '%s' and item_id !='%s' ",array($item_domain,$item_id))->find();
  238. if ($item) {
  239. //个性域名已经存在
  240. $this->sendError(10304);
  241. return false;
  242. }
  243. }
  244. $save_data = array(
  245. "item_name" => $item_name ,
  246. "item_description" => $item_description ,
  247. "item_domain" => $item_domain ,
  248. "password" => $password ,
  249. );
  250. $items = D("Item")->where("item_id = '$item_id' ")->save($save_data);
  251. $items = $items ? $items : array();
  252. $this->sendResult($items);
  253. }
  254. //转让项目
  255. public function attorn(){
  256. $login_user = $this->checkLogin();
  257. $username = I("username");
  258. $item_id = I("item_id/d");
  259. $password = I("password");
  260. $item = D("Item")->where("item_id = '$item_id' ")->find();
  261. if(!$this->checkItemCreator($login_user['uid'] , $item['item_id'])){
  262. $this->sendError(10303);
  263. return ;
  264. }
  265. if(! D("User")-> checkLogin($item['username'],$password)){
  266. $this->sendError(10208);
  267. return ;
  268. }
  269. $member = D("User")->where(" username = '%s' ",array($username))->find();
  270. if (!$member) {
  271. $this->sendError(10209);
  272. return ;
  273. }
  274. $data['username'] = $member['username'] ;
  275. $data['uid'] = $member['uid'] ;
  276. $id = D("Item")->where(" item_id = '$item_id' ")->save($data);
  277. $return = D("Item")->where("item_id = '$item_id' ")->find();
  278. if (!$return) {
  279. $this->sendError(10101);
  280. }
  281. $this->sendResult($return);
  282. }
  283. //删除项目
  284. public function delete(){
  285. $login_user = $this->checkLogin();
  286. $item_id = I("item_id/d");
  287. $password = I("password");
  288. $item = D("Item")->where("item_id = '$item_id' ")->find();
  289. if(!$this->checkItemCreator($login_user['uid'] , $item['item_id'])){
  290. $this->sendError(10303);
  291. return ;
  292. }
  293. if(! D("User")-> checkLogin($item['username'],$password)){
  294. $this->sendError(10208);
  295. return ;
  296. }
  297. $return = D("Item")->soft_delete_item($item_id);
  298. if (!$return) {
  299. $this->sendError(10101);
  300. }else{
  301. }
  302. $this->sendResult($return);
  303. }
  304. //归档项目
  305. public function archive(){
  306. $login_user = $this->checkLogin();
  307. $item_id = I("item_id/d");
  308. $password = I("password");
  309. $item = D("Item")->where("item_id = '$item_id' ")->find();
  310. if(!$this->checkItemCreator($login_user['uid'] , $item['item_id'])){
  311. $this->sendError(10303);
  312. return ;
  313. }
  314. if(! D("User")-> checkLogin($item['username'],$password)){
  315. $this->sendError(10208);
  316. return ;
  317. }
  318. $return = D("Item")->where("item_id = '$item_id' ")->save(array("is_archived"=>1));
  319. if (!$return) {
  320. $this->sendError(10101);
  321. }else{
  322. $this->sendResult($return);
  323. }
  324. }
  325. public function getKey(){
  326. $login_user = $this->checkLogin();
  327. $item_id = I("item_id/d");
  328. $item = D("Item")->where("item_id = '$item_id' ")->find();
  329. if(!$this->checkItemCreator($login_user['uid'] , $item['item_id'])){
  330. $this->sendError(10303);
  331. return ;
  332. }
  333. $item_token = D("ItemToken")->getTokenByItemId($item_id);
  334. if (!$item_token) {
  335. $this->sendError(10101);
  336. }
  337. $this->sendResult($item_token);
  338. }
  339. public function resetKey(){
  340. $login_user = $this->checkLogin();
  341. $item_id = I("item_id/d");
  342. $item = D("Item")->where("item_id = '$item_id' ")->find();
  343. if(!$this->checkItemCreator($login_user['uid'] , $item['item_id'])){
  344. $this->sendError(10303);
  345. return ;
  346. }
  347. $ret = D("ItemToken")->where("item_id = '$item_id' ")->delete();
  348. if ($ret) {
  349. $this->getKey();
  350. }else{
  351. $this->sendError(10101);
  352. }
  353. }
  354. public function updateByApi(){
  355. //转到Open控制器的updateItem方法
  356. R('Open/updateItem');
  357. }
  358. //置顶项目
  359. public function top(){
  360. $login_user = $this->checkLogin();
  361. $item_id = I("item_id/d");
  362. $action = I("action");
  363. if ($action == 'top') {
  364. $ret = D("ItemTop")->add(array("item_id"=>$item_id,"uid"=>$login_user['uid'],"addtime"=>time()));
  365. }
  366. elseif ($action == 'cancel') {
  367. $ret = D("ItemTop")->where(" uid = '$login_user[uid]' and item_id = '$item_id' ")->delete();
  368. }
  369. if ($ret) {
  370. $this->sendResult(array());
  371. }else{
  372. $this->sendError(10101);
  373. }
  374. }
  375. //验证访问密码
  376. public function pwd(){
  377. $item_id = I("item_id/d");
  378. $password = I("password");
  379. $v_code = I("v_code");
  380. $refer_url = I('refer_url');
  381. //检查用户输错密码的次数。如果超过一定次数,则需要验证 验证码
  382. $key= 'item_pwd_fail_times_'.$item_id;
  383. if(!D("VerifyCode")->_check_times($key,10)){
  384. if (!$v_code || $v_code != session('v_code')) {
  385. $this->sendError(10206,L('verification_code_are_incorrect'));
  386. return;
  387. }
  388. }
  389. session('v_code',null) ;
  390. $item = D("Item")->where("item_id = '$item_id' ")->find();
  391. if ($item['password'] == $password) {
  392. session("visit_item_".$item_id , 1 );
  393. $this->sendResult(array("refer_url"=>base64_decode($refer_url)));
  394. }else{
  395. D("VerifyCode")->_ins_times($key);//输错密码则设置输错次数
  396. if(D("VerifyCode")->_check_times($key,10)){
  397. $error_code = 10307 ;
  398. }else{
  399. $error_code = 10308 ;
  400. }
  401. $this->sendError($error_code,L('access_password_are_incorrect'));
  402. }
  403. }
  404. public function itemList(){
  405. $login_user = $this->checkLogin();
  406. $items = D("Item")->where("uid = '$login_user[uid]' ")->select();
  407. $items = $items ? $items : array();
  408. $this->sendResult($items);
  409. }
  410. //新建项目
  411. public function add(){
  412. $login_user = $this->checkLogin();
  413. $item_name = I("item_name");
  414. $item_domain = I("item_domain") ? I("item_domain") : '';
  415. $copy_item_id = I("copy_item_id");
  416. $password = I("password");
  417. $item_description = I("item_description");
  418. $item_type = I("item_type");
  419. if ($item_domain) {
  420. if(!ctype_alnum($item_domain) || is_numeric($item_domain) ){
  421. //echo '个性域名只能是字母或数字的组合';exit;
  422. $this->sendError(10305);
  423. return false;
  424. }
  425. $item = D("Item")->where("item_domain = '%s' ",array($item_domain))->find();
  426. if ($item) {
  427. //个性域名已经存在
  428. $this->sendError(10304);
  429. return false;
  430. }
  431. }
  432. //如果是复制项目
  433. if ($copy_item_id > 0) {
  434. if (!$this->checkItemPermn($login_user['uid'] , $copy_item_id)) {
  435. $this->sendError(10103);
  436. return;
  437. }
  438. $item_id = D("Item")->copy($copy_item_id,$login_user['uid'],$item_name,$item_description,$password,$item_domain);
  439. if ($item_id) {
  440. $this->sendResult(array("item_id"=>$item_id));
  441. }else{
  442. $this->sendError(10101);
  443. }
  444. return ;
  445. }
  446. $insert = array(
  447. "uid" => $login_user['uid'] ,
  448. "username" => $login_user['username'] ,
  449. "item_name" => $item_name ,
  450. "password" => $password ,
  451. "item_description" => $item_description ,
  452. "item_domain" => $item_domain ,
  453. "item_type" => $item_type ,
  454. "addtime" =>time()
  455. );
  456. $item_id = D("Item")->add($insert);
  457. if ($item_id) {
  458. //如果是单页应用,则新建一个默认页
  459. if ($item_type == 2 ) {
  460. $insert = array(
  461. 'author_uid' => $login_user['uid'] ,
  462. 'author_username' => $login_user['username'],
  463. "page_title" => $item_name ,
  464. "item_id" => $item_id ,
  465. "cat_id" => 0 ,
  466. "page_content" => '欢迎使用showdoc。点击右上方的编辑按钮进行编辑吧!' ,
  467. "addtime" =>time()
  468. );
  469. $page_id = D("Page")->add($insert);
  470. }
  471. //如果是表格应用,则新建一个默认页
  472. if ($item_type == 4 ) {
  473. $insert = array(
  474. 'author_uid' => $login_user['uid'] ,
  475. 'author_username' => $login_user['username'],
  476. "page_title" => $item_name ,
  477. "item_id" => $item_id ,
  478. "cat_id" => 0 ,
  479. "page_content" => '' ,
  480. "addtime" =>time()
  481. );
  482. $page_id = D("Page")->add($insert);
  483. }
  484. $this->sendResult(array("item_id"=>$item_id));
  485. }else{
  486. $this->sendError(10101);
  487. }
  488. }
  489. //保存项目排序
  490. public function sort(){
  491. $login_user = $this->checkLogin();
  492. $data = I("data");
  493. D("ItemSort")->where(" uid = '$login_user[uid]' ")->delete();
  494. $ret = D("ItemSort")->add(array("item_sort_data"=>$data,"uid"=>$login_user['uid'],"addtime"=>time()),array(),true);
  495. if ($ret) {
  496. $this->sendResult(array());
  497. }else{
  498. $this->sendError(10101);
  499. }
  500. }
  501. public function exitItem(){
  502. $login_user = $this->checkLogin();
  503. $item_id = I("item_id/d");
  504. $ret = D("ItemMember")->where("item_id = '$item_id' and uid ='$login_user[uid]' ")->delete();
  505. $row = D("TeamItemMember")->join(" left join team on team.id = team_item_member.team_id ")->where("item_id = '$item_id' and member_uid ='$login_user[uid]' ")->find();
  506. if ($row) {
  507. $ret = D("TeamItemMember")->where(" member_uid = '$login_user[uid]' and team_id = '$row[team_id]' ")->delete();
  508. $ret = D("TeamMember")->where(" member_uid = '$login_user[uid]' and team_id = '$row[team_id]' ")->delete();
  509. }
  510. if ($ret) {
  511. $this->sendResult(array());
  512. }else{
  513. $this->sendError(10101);
  514. }
  515. }
  516. }