2 activities::{verify_is_public, verify_person_in_community},
3 check_apub_id_valid_with_strictness,
5 objects::{read_from_string_or_source_opt, verify_is_remote_object},
8 page::{Attachment, AttributedTo, Page, PageType},
16 use activitypub_federation::{
19 protocol::{values::MediaTypeMarkdownOrHtml, verification::verify_domains_match},
23 use chrono::NaiveDateTime;
24 use html2md::parse_html;
25 use lemmy_api_common::{
26 context::LemmyContext,
27 request::fetch_site_data,
28 utils::{is_mod_or_admin, local_site_opt_to_slur_regex},
30 use lemmy_db_schema::{
34 local_site::LocalSite,
35 moderator::{ModLockPost, ModLockPostForm},
37 post::{Post, PostInsertForm, PostUpdateForm},
44 markdown::markdown_to_html,
45 slurs::{check_slurs_opt, remove_slurs},
46 time::convert_datetime,
52 const MAX_TITLE_LENGTH: usize = 200;
54 #[derive(Clone, Debug)]
55 pub struct ApubPost(pub(crate) Post);
57 impl Deref for ApubPost {
59 fn deref(&self) -> &Self::Target {
64 impl From<Post> for ApubPost {
65 fn from(p: Post) -> Self {
70 #[async_trait::async_trait]
71 impl Object for ApubPost {
72 type DataType = LemmyContext;
74 type Error = LemmyError;
76 fn last_refreshed_at(&self) -> Option<NaiveDateTime> {
80 #[tracing::instrument(skip_all)]
81 async fn read_from_id(
83 context: &Data<Self::DataType>,
84 ) -> Result<Option<Self>, LemmyError> {
86 Post::read_from_apub_id(context.pool(), object_id)
92 #[tracing::instrument(skip_all)]
93 async fn delete(self, context: &Data<Self::DataType>) -> Result<(), LemmyError> {
95 let form = PostUpdateForm::builder().deleted(Some(true)).build();
96 Post::update(context.pool(), self.id, &form).await?;
101 // Turn a Lemmy post into an ActivityPub page that can be sent out over the network.
102 #[tracing::instrument(skip_all)]
103 async fn into_json(self, context: &Data<Self::DataType>) -> Result<Page, LemmyError> {
104 let creator_id = self.creator_id;
105 let creator = Person::read(context.pool(), creator_id).await?;
106 let community_id = self.community_id;
107 let community = Community::read(context.pool(), community_id).await?;
108 let language = LanguageTag::new_single(self.language_id, context.pool()).await?;
111 kind: PageType::Page,
112 id: self.ap_id.clone().into(),
113 attributed_to: AttributedTo::Lemmy(creator.actor_id.into()),
114 to: vec![community.actor_id.clone().into(), public()],
116 name: Some(self.name.clone()),
117 content: self.body.as_ref().map(|b| markdown_to_html(b)),
118 media_type: Some(MediaTypeMarkdownOrHtml::Html),
119 source: self.body.clone().map(Source::new),
120 attachment: self.url.clone().map(Attachment::new).into_iter().collect(),
121 image: self.thumbnail_url.clone().map(ImageObject::new),
122 comments_enabled: Some(!self.locked),
123 sensitive: Some(self.nsfw),
125 published: Some(convert_datetime(self.published)),
126 updated: self.updated.map(convert_datetime),
127 audience: Some(community.actor_id.into()),
133 #[tracing::instrument(skip_all)]
136 expected_domain: &Url,
137 context: &Data<Self::DataType>,
138 ) -> Result<(), LemmyError> {
139 // We can't verify the domain in case of mod action, because the mod may be on a different
140 // instance from the post author.
141 if !page.is_mod_action(context).await? {
142 verify_domains_match(page.id.inner(), expected_domain)?;
143 verify_is_remote_object(page.id.inner(), context.settings())?;
146 let local_site_data = fetch_local_site_data(context.pool()).await?;
148 let community = page.community(context).await?;
149 check_apub_id_valid_with_strictness(
155 verify_person_in_community(&page.creator()?, &community, context).await?;
157 let slur_regex = &local_site_opt_to_slur_regex(&local_site_data.local_site);
158 check_slurs_opt(&page.name, slur_regex)?;
160 verify_domains_match(page.creator()?.inner(), page.id.inner())?;
161 verify_is_public(&page.to, &page.cc)?;
165 #[tracing::instrument(skip_all)]
166 async fn from_json(page: Page, context: &Data<Self::DataType>) -> Result<ApubPost, LemmyError> {
167 let creator = page.creator()?.dereference(context).await?;
168 let community = page.community(context).await?;
169 if community.posting_restricted_to_mods {
170 is_mod_or_admin(context.pool(), creator.id, community.id).await?;
180 .and_then(|c| parse_html(c).lines().next().map(ToString::to_string))
182 .ok_or_else(|| anyhow!("Object must have name or content"))?;
183 if name.chars().count() > MAX_TITLE_LENGTH {
184 name = name.chars().take(MAX_TITLE_LENGTH).collect();
187 // read existing, local post if any (for generating mod log)
188 let old_post = page.id.dereference_local(context).await;
190 let form = if !page.is_mod_action(context).await? {
191 let first_attachment = page.attachment.into_iter().map(Attachment::url).next();
192 let url = if first_attachment.is_some() {
194 } else if page.kind == PageType::Video {
195 // we cant display videos directly, so insert a link to external video page
196 Some(page.id.inner().clone())
200 // Only fetch metadata if the post has a url and was not seen previously. We dont want to
201 // waste resources by fetching metadata for the same post multiple times.
202 let (metadata_res, thumbnail_url) = match &url {
203 Some(url) if old_post.is_err() => {
204 fetch_site_data(context.client(), context.settings(), Some(url)).await
206 _ => (None, page.image.map(|i| i.url.into())),
208 let (embed_title, embed_description, embed_video_url) = metadata_res
209 .map(|u| (u.title, u.description, u.embed_video_url))
210 .unwrap_or_default();
211 let local_site = LocalSite::read(context.pool()).await.ok();
212 let slur_regex = &local_site_opt_to_slur_regex(&local_site);
214 let body_slurs_removed =
215 read_from_string_or_source_opt(&page.content, &page.media_type, &page.source)
216 .map(|s| remove_slurs(&s, slur_regex));
217 let language_id = LanguageTag::to_language_id_single(page.language, context.pool()).await?;
221 url: url.map(Into::into),
222 body: body_slurs_removed,
223 creator_id: creator.id,
224 community_id: community.id,
226 locked: page.comments_enabled.map(|e| !e),
227 published: page.published.map(|u| u.naive_local()),
228 updated: page.updated.map(|u| u.naive_local()),
229 deleted: Some(false),
230 nsfw: page.sensitive,
235 ap_id: Some(page.id.clone().into()),
238 featured_community: None,
239 featured_local: None,
242 // if is mod action, only update locked/stickied fields, nothing else
243 PostInsertForm::builder()
245 .creator_id(creator.id)
246 .community_id(community.id)
247 .ap_id(Some(page.id.clone().into()))
248 .locked(page.comments_enabled.map(|e| !e))
249 .updated(page.updated.map(|u| u.naive_local()))
253 let post = Post::create(context.pool(), &form).await?;
255 // write mod log entry for lock
256 if Page::is_locked_changed(&old_post, &page.comments_enabled) {
257 let form = ModLockPostForm {
258 mod_person_id: creator.id,
260 locked: Some(post.locked),
262 ModLockPost::create(context.pool(), &form).await?;
274 community::tests::parse_lemmy_community,
275 person::tests::parse_lemmy_person,
279 protocol::tests::file_to_json_object,
281 use lemmy_db_schema::source::site::Site;
282 use serial_test::serial;
286 async fn test_parse_lemmy_post() {
287 let context = init_context().await;
288 let (person, site) = parse_lemmy_person(&context).await;
289 let community = parse_lemmy_community(&context).await;
291 let json = file_to_json_object("assets/lemmy/objects/page.json").unwrap();
292 let url = Url::parse("https://enterprise.lemmy.ml/post/55143").unwrap();
293 ApubPost::verify(&json, &url, &context).await.unwrap();
294 let post = ApubPost::from_json(json, &context).await.unwrap();
296 assert_eq!(post.ap_id, url.into());
297 assert_eq!(post.name, "Post title");
298 assert!(post.body.is_some());
299 assert_eq!(post.body.as_ref().unwrap().len(), 45);
300 assert!(!post.locked);
301 assert!(!post.featured_community);
302 assert_eq!(context.request_count(), 0);
304 Post::delete(context.pool(), post.id).await.unwrap();
305 Person::delete(context.pool(), person.id).await.unwrap();
306 Community::delete(context.pool(), community.id)
309 Site::delete(context.pool(), site.id).await.unwrap();