mirror of
				https://github.com/firefly-iii/firefly-iii.git
				synced 2025-11-03 20:55:05 +00:00 
			
		
		
		
	
		
			
				
	
	
		
			181 lines
		
	
	
		
			6.6 KiB
		
	
	
	
		
			PHP
		
	
	
	
	
	
			
		
		
	
	
			181 lines
		
	
	
		
			6.6 KiB
		
	
	
	
		
			PHP
		
	
	
	
	
	
<?php
 | 
						|
 | 
						|
/*
 | 
						|
 * ShowController.php
 | 
						|
 * Copyright (c) 2021 james@firefly-iii.org
 | 
						|
 *
 | 
						|
 * This file is part of Firefly III (https://github.com/firefly-iii).
 | 
						|
 *
 | 
						|
 * This program is free software: you can redistribute it and/or modify
 | 
						|
 * it under the terms of the GNU Affero General Public License as
 | 
						|
 * published by the Free Software Foundation, either version 3 of the
 | 
						|
 * License, or (at your option) any later version.
 | 
						|
 *
 | 
						|
 * This program is distributed in the hope that it will be useful,
 | 
						|
 * but WITHOUT ANY WARRANTY; without even the implied warranty of
 | 
						|
 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.  See the
 | 
						|
 * GNU Affero General Public License for more details.
 | 
						|
 *
 | 
						|
 * You should have received a copy of the GNU Affero General Public License
 | 
						|
 * along with this program.  If not, see <https://www.gnu.org/licenses/>.
 | 
						|
 */
 | 
						|
 | 
						|
declare(strict_types=1);
 | 
						|
 | 
						|
namespace FireflyIII\Api\V1\Controllers\Models\Attachment;
 | 
						|
 | 
						|
use FireflyIII\Api\V1\Controllers\Controller;
 | 
						|
use FireflyIII\Api\V1\Middleware\ApiDemoUser;
 | 
						|
use FireflyIII\Api\V1\Requests\PaginationRequest;
 | 
						|
use FireflyIII\Exceptions\FireflyException;
 | 
						|
use FireflyIII\Models\Attachment;
 | 
						|
use FireflyIII\Repositories\Attachment\AttachmentRepositoryInterface;
 | 
						|
use FireflyIII\Transformers\AttachmentTransformer;
 | 
						|
use FireflyIII\User;
 | 
						|
use Illuminate\Http\JsonResponse;
 | 
						|
use Illuminate\Http\Response as LaravelResponse;
 | 
						|
use Illuminate\Pagination\LengthAwarePaginator;
 | 
						|
use Illuminate\Support\Facades\Log;
 | 
						|
use League\Fractal\Pagination\IlluminatePaginatorAdapter;
 | 
						|
use League\Fractal\Resource\Collection as FractalCollection;
 | 
						|
use League\Fractal\Resource\Item;
 | 
						|
use Symfony\Component\HttpKernel\Exception\NotFoundHttpException;
 | 
						|
 | 
						|
/**
 | 
						|
 * Class ShowController
 | 
						|
 */
 | 
						|
class ShowController extends Controller
 | 
						|
{
 | 
						|
    private AttachmentRepositoryInterface $repository;
 | 
						|
 | 
						|
    /**
 | 
						|
     * ShowController constructor.
 | 
						|
     */
 | 
						|
    public function __construct()
 | 
						|
    {
 | 
						|
        parent::__construct();
 | 
						|
        $this->middleware(ApiDemoUser::class)->except(['delete', 'download', 'show', 'index']);
 | 
						|
        $this->middleware(
 | 
						|
            function ($request, $next) {
 | 
						|
                /** @var User $user */
 | 
						|
                $user             = auth()->user();
 | 
						|
                $this->repository = app(AttachmentRepositoryInterface::class);
 | 
						|
                $this->repository->setUser($user);
 | 
						|
 | 
						|
                return $next($request);
 | 
						|
            }
 | 
						|
        );
 | 
						|
    }
 | 
						|
 | 
						|
    /**
 | 
						|
     * This endpoint is documented at:
 | 
						|
     * https://api-docs.firefly-iii.org/?urls.primaryName=2.0.0%20(v1)#/attachments/downloadAttachment
 | 
						|
     *
 | 
						|
     * Download an attachment.
 | 
						|
     *
 | 
						|
     * @throws FireflyException
 | 
						|
     */
 | 
						|
    public function download(Attachment $attachment): LaravelResponse
 | 
						|
    {
 | 
						|
        if (true === auth()->user()->hasRole('demo')) {
 | 
						|
            Log::channel('audit')->warning(sprintf('Demo user tries to access attachment API in %s', __METHOD__));
 | 
						|
 | 
						|
            throw new NotFoundHttpException();
 | 
						|
        }
 | 
						|
        if (false === $attachment->uploaded) {
 | 
						|
            throw new FireflyException('200000: File has not been uploaded (yet).');
 | 
						|
        }
 | 
						|
        if (0 === $attachment->size) {
 | 
						|
            throw new FireflyException('200000: File has not been uploaded (yet).');
 | 
						|
        }
 | 
						|
        if ($this->repository->exists($attachment)) {
 | 
						|
            $content  = $this->repository->getContent($attachment);
 | 
						|
            if ('' === $content) {
 | 
						|
                throw new FireflyException('200002: File is empty (zero bytes).');
 | 
						|
            }
 | 
						|
            $quoted   = sprintf('"%s"', addcslashes(basename($attachment->filename), '"\\'));
 | 
						|
 | 
						|
            /** @var LaravelResponse $response */
 | 
						|
            $response = response($content);
 | 
						|
            $response
 | 
						|
                ->header('Content-Description', 'File Transfer')
 | 
						|
                ->header('Content-Type', 'application/octet-stream')
 | 
						|
                ->header('Content-Disposition', 'attachment; filename='.$quoted)
 | 
						|
                ->header('Content-Transfer-Encoding', 'binary')
 | 
						|
                ->header('Connection', 'Keep-Alive')
 | 
						|
                ->header('Expires', '0')
 | 
						|
                ->header('Cache-Control', 'must-revalidate, post-check=0, pre-check=0')
 | 
						|
                ->header('Pragma', 'public')
 | 
						|
                ->header('Content-Length', (string) strlen($content))
 | 
						|
            ;
 | 
						|
 | 
						|
            return $response;
 | 
						|
        }
 | 
						|
 | 
						|
        throw new FireflyException('200003: File does not exist.');
 | 
						|
    }
 | 
						|
 | 
						|
    /**
 | 
						|
     * This endpoint is documented at:
 | 
						|
     * https://api-docs.firefly-iii.org/?urls.primaryName=2.0.0%20(v1)#/attachments/listAttachment
 | 
						|
     *
 | 
						|
     * Display a listing of the resource.
 | 
						|
     */
 | 
						|
    public function index(PaginationRequest $request): JsonResponse
 | 
						|
    {
 | 
						|
        [
 | 
						|
            'limit'  => $limit,
 | 
						|
            'offset' => $offset,
 | 
						|
            'page'   => $page,
 | 
						|
        ]            = $request->attributes->all();
 | 
						|
 | 
						|
        if (true === auth()->user()->hasRole('demo')) {
 | 
						|
            Log::channel('audit')->warning(sprintf('Demo user tries to access attachment API in %s', __METHOD__));
 | 
						|
 | 
						|
            throw new NotFoundHttpException();
 | 
						|
        }
 | 
						|
 | 
						|
        $manager     = $this->getManager();
 | 
						|
 | 
						|
        // get list of attachments. Count it and split it.
 | 
						|
        $collection  = $this->repository->get();
 | 
						|
        $count       = $collection->count();
 | 
						|
        $attachments = $collection->slice($offset, $limit);
 | 
						|
 | 
						|
        // make paginator:
 | 
						|
        $paginator   = new LengthAwarePaginator($attachments, $count, $limit, $page);
 | 
						|
        $paginator->setPath(route('api.v1.attachments.index').$this->buildParams());
 | 
						|
 | 
						|
        /** @var AttachmentTransformer $transformer */
 | 
						|
        $transformer = app(AttachmentTransformer::class);
 | 
						|
 | 
						|
        $resource    = new FractalCollection($attachments, $transformer, 'attachments');
 | 
						|
        $resource->setPaginator(new IlluminatePaginatorAdapter($paginator));
 | 
						|
 | 
						|
        return response()->json($manager->createData($resource)->toArray())->header('Content-Type', self::CONTENT_TYPE);
 | 
						|
    }
 | 
						|
 | 
						|
    /**
 | 
						|
     * This endpoint is documented at:
 | 
						|
     * https://api-docs.firefly-iii.org/?urls.primaryName=2.0.0%20(v1)#/attachments/getAttachment
 | 
						|
     *
 | 
						|
     * Display the specified resource.
 | 
						|
     */
 | 
						|
    public function show(Attachment $attachment): JsonResponse
 | 
						|
    {
 | 
						|
        if (true === auth()->user()->hasRole('demo')) {
 | 
						|
            Log::channel('audit')->warning(sprintf('Demo user tries to access attachment API in %s', __METHOD__));
 | 
						|
 | 
						|
            throw new NotFoundHttpException();
 | 
						|
        }
 | 
						|
        $manager     = $this->getManager();
 | 
						|
 | 
						|
        /** @var AttachmentTransformer $transformer */
 | 
						|
        $transformer = app(AttachmentTransformer::class);
 | 
						|
 | 
						|
        $resource    = new Item($attachment, $transformer, 'attachments');
 | 
						|
 | 
						|
        return response()->json($manager->createData($resource)->toArray())->header('Content-Type', self::CONTENT_TYPE);
 | 
						|
    }
 | 
						|
}
 |