mirror of
https://github.com/superseriousbusiness/gotosocial.git
synced 2025-01-25 15:50:20 +00:00
1d51e3c8d6
* update activity library so dereferencer returns full response and checks *final* link to allow for redirects * temporarily add bodged fixed library * remove unused code * update getAccountFeatured() to use dereferenceCollectionPage() * make sure to release map * perform a 2nd decode to ensure reader is empty after primary decode * add comment explaining choice of using Decode() instead of Unmarshal() * update embedded activity library to latest matching https://github.com/superseriousbusiness/activity/pull/21 * add checks to look for changed URI and re-check database if redirected * update max iteration count to 512, add checks during dereferenceAncestors() for indirect URLs * remove doubled-up code * fix use of status instead of current * use URIs for checking equality for security * use the latest known URI for boost_of_uri in case original was an indirect * add dereferenceCollection() function for dereferenceAccountFeatured() * pull in latest github.com/superseriousbusiness/activity version (and remove the bodge!!) * fix typo in code comments * update decodeType() to accept a readcloser and handle body closing * switch to checking using BoostOfID and add note why not using BoostOfURI * ensure InReplyTo gets unset when deleting status parent in case currently stubbed * add tests for Collection and CollectionPage iterators
132 lines
4.1 KiB
Go
132 lines
4.1 KiB
Go
// GoToSocial
|
|
// Copyright (C) GoToSocial Authors admin@gotosocial.org
|
|
// SPDX-License-Identifier: AGPL-3.0-or-later
|
|
//
|
|
// This program is free software: you can redistribute it and/or modify
|
|
// it under the terms of the GNU Affero General Public License as published by
|
|
// the Free Software Foundation, either version 3 of the License, or
|
|
// (at your option) any later version.
|
|
//
|
|
// This program is distributed in the hope that it will be useful,
|
|
// but WITHOUT ANY WARRANTY; without even the implied warranty of
|
|
// MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
|
|
// GNU Affero General Public License for more details.
|
|
//
|
|
// You should have received a copy of the GNU Affero General Public License
|
|
// along with this program. If not, see <http://www.gnu.org/licenses/>.
|
|
|
|
package dereferencing
|
|
|
|
import (
|
|
"context"
|
|
"errors"
|
|
"net/url"
|
|
|
|
"github.com/superseriousbusiness/gotosocial/internal/config"
|
|
"github.com/superseriousbusiness/gotosocial/internal/db"
|
|
"github.com/superseriousbusiness/gotosocial/internal/gtserror"
|
|
"github.com/superseriousbusiness/gotosocial/internal/gtsmodel"
|
|
"github.com/superseriousbusiness/gotosocial/internal/id"
|
|
)
|
|
|
|
// EnrichAnnounce enriches the given boost wrapper status
|
|
// by either fetching from the DB or dereferencing the target
|
|
// status, populating the boost wrapper's fields based on the
|
|
// target status, and then storing the wrapper in the database.
|
|
// The wrapper is then returned to the caller.
|
|
//
|
|
// The provided boost wrapper status must have BoostOfURI set.
|
|
func (d *Dereferencer) EnrichAnnounce(
|
|
ctx context.Context,
|
|
boost *gtsmodel.Status,
|
|
requestUser string,
|
|
) (*gtsmodel.Status, error) {
|
|
targetURI := boost.BoostOfURI
|
|
if targetURI == "" {
|
|
// We can't do anything.
|
|
return nil, gtserror.Newf("no URI to dereference")
|
|
}
|
|
|
|
// Parse the boost target status URI.
|
|
targetURIObj, err := url.Parse(targetURI)
|
|
if err != nil {
|
|
return nil, gtserror.Newf(
|
|
"couldn't parse boost target status URI %s: %w",
|
|
targetURI, err,
|
|
)
|
|
}
|
|
|
|
// Fetch/deref status being boosted.
|
|
var target *gtsmodel.Status
|
|
|
|
if targetURIObj.Host == config.GetHost() {
|
|
// This is a local status, fetch from the database
|
|
target, err = d.state.DB.GetStatusByURI(ctx, targetURI)
|
|
} else {
|
|
// This is a remote status, we need to dereference it.
|
|
//
|
|
// d.GetStatusByURI will handle domain block checking for us,
|
|
// so we don't try to deref an announce target on a blocked host.
|
|
target, _, err = d.GetStatusByURI(ctx, requestUser, targetURIObj)
|
|
}
|
|
|
|
if err != nil {
|
|
return nil, gtserror.Newf(
|
|
"error getting boost target status %s: %w",
|
|
targetURI, err,
|
|
)
|
|
}
|
|
|
|
// Generate an ID for the boost wrapper status.
|
|
boost.ID, err = id.NewULIDFromTime(boost.CreatedAt)
|
|
if err != nil {
|
|
return nil, gtserror.Newf("error generating id: %w", err)
|
|
}
|
|
|
|
// Set boost_of_uri again in case the
|
|
// original URI was an indirect link.
|
|
boost.BoostOfURI = target.URI
|
|
|
|
// Populate remaining fields on
|
|
// the boost wrapper using target.
|
|
boost.Content = target.Content
|
|
boost.ContentWarning = target.ContentWarning
|
|
boost.ActivityStreamsType = target.ActivityStreamsType
|
|
boost.Sensitive = target.Sensitive
|
|
boost.Language = target.Language
|
|
boost.Text = target.Text
|
|
boost.BoostOfID = target.ID
|
|
boost.BoostOf = target
|
|
boost.BoostOfAccountID = target.AccountID
|
|
boost.BoostOfAccount = target.Account
|
|
boost.Visibility = target.Visibility
|
|
boost.Federated = target.Federated
|
|
boost.Boostable = target.Boostable
|
|
boost.Replyable = target.Replyable
|
|
boost.Likeable = target.Likeable
|
|
|
|
// Store the boost wrapper status in database.
|
|
switch err = d.state.DB.PutStatus(ctx, boost); {
|
|
case err == nil:
|
|
// all groovy.
|
|
|
|
case errors.Is(err, db.ErrAlreadyExists):
|
|
uri := boost.URI
|
|
|
|
// DATA RACE! We likely lost out to another goroutine
|
|
// in a call to db.Put(Status). Look again in DB by URI.
|
|
boost, err = d.state.DB.GetStatusByURI(ctx, uri)
|
|
if err != nil {
|
|
return nil, gtserror.Newf(
|
|
"error getting boost wrapper status %s from database after race: %w",
|
|
uri, err,
|
|
)
|
|
}
|
|
|
|
default: // Proper database error.
|
|
return nil, gtserror.Newf("db error inserting status: %w", err)
|
|
}
|
|
|
|
return boost, err
|
|
}
|