webapp.py 50 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273747576777879808182838485868788899091929394959697989910010110210310410510610710810911011111211311411511611711811912012112212312412512612712812913013113213313413513613713813914014114214314414514614714814915015115215315415515615715815916016116216316416516616716816917017117217317417517617717817918018118218318418518618718818919019119219319419519619719819920020120220320420520620720820921021121221321421521621721821922022122222322422522622722822923023123223323423523623723823924024124224324424524624724824925025125225325425525625725825926026126226326426526626726826927027127227327427527627727827928028128228328428528628728828929029129229329429529629729829930030130230330430530630730830931031131231331431531631731831932032132232332432532632732832933033133233333433533633733833934034134234334434534634734834935035135235335435535635735835936036136236336436536636736836937037137237337437537637737837938038138238338438538638738838939039139239339439539639739839940040140240340440540640740840941041141241341441541641741841942042142242342442542642742842943043143243343443543643743843944044144244344444544644744844945045145245345445545645745845946046146246346446546646746846947047147247347447547647747847948048148248348448548648748848949049149249349449549649749849950050150250350450550650750850951051151251351451551651751851952052152252352452552652752852953053153253353453553653753853954054154254354454554654754854955055155255355455555655755855956056156256356456556656756856957057157257357457557657757857958058158258358458558658758858959059159259359459559659759859960060160260360460560660760860961061161261361461561661761861962062162262362462562662762862963063163263363463563663763863964064164264364464564664764864965065165265365465565665765865966066166266366466566666766866967067167267367467567667767867968068168268368468568668768868969069169269369469569669769869970070170270370470570670770870971071171271371471571671771871972072172272372472572672772872973073173273373473573673773873974074174274374474574674774874975075175275375475575675775875976076176276376476576676776876977077177277377477577677777877978078178278378478578678778878979079179279379479579679779879980080180280380480580680780880981081181281381481581681781881982082182282382482582682782882983083183283383483583683783883984084184284384484584684784884985085185285385485585685785885986086186286386486586686786886987087187287387487587687787887988088188288388488588688788888989089189289389489589689789889990090190290390490590690790890991091191291391491591691791891992092192292392492592692792892993093193293393493593693793893994094194294394494594694794894995095195295395495595695795895996096196296396496596696796896997097197297397497597697797897998098198298398498598698798898999099199299399499599699799899910001001100210031004100510061007100810091010101110121013101410151016101710181019102010211022102310241025102610271028102910301031103210331034103510361037103810391040104110421043104410451046104710481049105010511052105310541055105610571058105910601061106210631064106510661067106810691070107110721073107410751076107710781079108010811082108310841085108610871088108910901091109210931094109510961097109810991100110111021103110411051106110711081109111011111112111311141115111611171118111911201121112211231124112511261127112811291130113111321133113411351136113711381139114011411142114311441145114611471148114911501151115211531154115511561157115811591160116111621163116411651166116711681169117011711172117311741175117611771178117911801181118211831184118511861187118811891190119111921193119411951196119711981199120012011202120312041205120612071208120912101211121212131214121512161217121812191220122112221223122412251226122712281229123012311232123312341235123612371238123912401241124212431244124512461247124812491250125112521253125412551256125712581259126012611262126312641265126612671268126912701271127212731274127512761277127812791280128112821283128412851286128712881289129012911292129312941295129612971298129913001301130213031304130513061307130813091310131113121313131413151316131713181319132013211322132313241325132613271328132913301331133213331334133513361337133813391340134113421343134413451346134713481349135013511352135313541355135613571358135913601361136213631364136513661367136813691370137113721373137413751376137713781379138013811382138313841385138613871388138913901391139213931394139513961397139813991400140114021403140414051406140714081409141014111412141314141415141614171418141914201421
  1. #!/usr/bin/env python
  2. # SPDX-License-Identifier: AGPL-3.0-or-later
  3. # lint: pylint
  4. # pylint: disable=missing-function-docstring
  5. """WebbApp
  6. """
  7. import hashlib
  8. import hmac
  9. import json
  10. import os
  11. import sys
  12. from datetime import datetime, timedelta
  13. from timeit import default_timer
  14. from html import escape
  15. from io import StringIO
  16. import urllib
  17. from urllib.parse import (
  18. urlencode,
  19. urlparse,
  20. )
  21. import httpx
  22. from pygments import highlight
  23. from pygments.lexers import get_lexer_by_name
  24. from pygments.formatters import HtmlFormatter # pylint: disable=no-name-in-module
  25. from werkzeug.middleware.proxy_fix import ProxyFix
  26. from werkzeug.serving import WSGIRequestHandler
  27. import flask
  28. from flask import (
  29. Flask,
  30. request,
  31. render_template,
  32. url_for,
  33. Response,
  34. make_response,
  35. redirect,
  36. send_from_directory,
  37. )
  38. from flask.ctx import has_request_context
  39. from flask.json import jsonify
  40. from babel.support import Translations
  41. import flask_babel
  42. from flask_babel import (
  43. Babel,
  44. gettext,
  45. format_date,
  46. format_decimal,
  47. )
  48. from searx import logger
  49. from searx import brand, static_path
  50. from searx import (
  51. settings,
  52. searx_dir,
  53. searx_debug,
  54. )
  55. from searx.exceptions import SearxParameterException
  56. from searx.engines import (
  57. categories,
  58. engines,
  59. engine_shortcuts,
  60. )
  61. from searx.webutils import (
  62. UnicodeWriter,
  63. highlight_content,
  64. get_resources_directory,
  65. get_static_files,
  66. get_result_templates,
  67. get_themes,
  68. prettify_url,
  69. new_hmac,
  70. is_flask_run_cmdline,
  71. )
  72. from searx.webadapter import (
  73. get_search_query_from_webapp,
  74. get_selected_categories,
  75. )
  76. from searx.utils import (
  77. html_to_text,
  78. gen_useragent,
  79. dict_subset,
  80. match_language,
  81. get_value,
  82. )
  83. from searx.version import VERSION_STRING
  84. from searx.query import RawTextQuery
  85. from searx.plugins import plugins
  86. from searx.plugins.oa_doi_rewrite import get_doi_resolver
  87. from searx.preferences import (
  88. Preferences,
  89. ValidationException,
  90. LANGUAGE_CODES,
  91. )
  92. from searx.answerers import answerers
  93. from searx.answerers import ask
  94. from searx.metrics import (
  95. get_engines_stats,
  96. get_engine_errors,
  97. get_reliabilities,
  98. histogram,
  99. counter,
  100. )
  101. # renaming names from searx imports ...
  102. from searx.autocomplete import search_autocomplete, backends as autocomplete_backends
  103. from searx.languages import language_codes as languages
  104. from searx.search import SearchWithPlugins, initialize as search_initialize
  105. from searx.network import stream as http_stream
  106. from searx.search.checker import get_result as checker_get_result
  107. # set Unix thread name
  108. try:
  109. import setproctitle
  110. except ImportError:
  111. pass
  112. else:
  113. import threading
  114. old_thread_init = threading.Thread.__init__
  115. def new_thread_init(self, *args, **kwargs):
  116. # pylint: disable=protected-access, disable=c-extension-no-member
  117. old_thread_init(self, *args, **kwargs)
  118. setproctitle.setthreadtitle(self._name)
  119. threading.Thread.__init__ = new_thread_init
  120. if sys.version_info[0] < 3:
  121. print('\033[1;31m Python2 is no longer supported\033[0m')
  122. sys.exit(1)
  123. logger = logger.getChild('webapp')
  124. # serve pages with HTTP/1.1
  125. WSGIRequestHandler.protocol_version = "HTTP/{}".format(settings['server'].get('http_protocol_version', '1.0'))
  126. # check secret_key
  127. if not searx_debug and settings['server']['secret_key'] == 'ultrasecretkey':
  128. logger.error('server.secret_key is not changed. Please use something else instead of ultrasecretkey.')
  129. sys.exit(1)
  130. # about static
  131. static_path = get_resources_directory(searx_dir, 'static', settings['ui']['static_path'])
  132. logger.debug('static directory is %s', static_path)
  133. static_files = get_static_files(static_path)
  134. # about templates
  135. default_theme = settings['ui']['default_theme']
  136. templates_path = get_resources_directory(searx_dir, 'templates', settings['ui']['templates_path'])
  137. logger.debug('templates directory is %s', templates_path)
  138. themes = get_themes(templates_path)
  139. result_templates = get_result_templates(templates_path)
  140. global_favicons = []
  141. for indice, theme in enumerate(themes):
  142. global_favicons.append([])
  143. theme_img_path = os.path.join(static_path, 'themes', theme, 'img', 'icons')
  144. for (dirpath, dirnames, filenames) in os.walk(theme_img_path):
  145. global_favicons[indice].extend(filenames)
  146. OUTPUT_FORMATS = ['html', 'csv', 'json', 'rss']
  147. STATS_SORT_PARAMETERS = {
  148. 'name': (False, 'name', ''),
  149. 'score': (True, 'score', 0),
  150. 'result_count': (True, 'result_count', 0),
  151. 'time': (False, 'total', 0),
  152. 'reliability': (False, 'reliability', 100),
  153. }
  154. # Flask app
  155. app = Flask(
  156. __name__,
  157. static_folder=static_path,
  158. template_folder=templates_path
  159. )
  160. app.jinja_env.trim_blocks = True
  161. app.jinja_env.lstrip_blocks = True
  162. app.jinja_env.add_extension('jinja2.ext.loopcontrols') # pylint: disable=no-member
  163. app.secret_key = settings['server']['secret_key']
  164. # see https://flask.palletsprojects.com/en/1.1.x/cli/
  165. # True if "FLASK_APP=searx/webapp.py FLASK_ENV=development flask run"
  166. flask_run_development = \
  167. os.environ.get("FLASK_APP") is not None\
  168. and os.environ.get("FLASK_ENV") == 'development'\
  169. and is_flask_run_cmdline()
  170. # True if reload feature is activated of werkzeug, False otherwise (including uwsgi, etc..)
  171. # __name__ != "__main__" if searx.webapp is imported (make test, make docs, uwsgi...)
  172. # see run() at the end of this file : searx_debug activates the reload feature.
  173. werkzeug_reloader = flask_run_development or (searx_debug and __name__ == "__main__")
  174. # initialize the engines except on the first run of the werkzeug server.
  175. if not werkzeug_reloader\
  176. or (werkzeug_reloader and os.environ.get("WERKZEUG_RUN_MAIN") == "true"):
  177. search_initialize(enable_checker=True)
  178. babel = Babel(app)
  179. rtl_locales = ['ar', 'arc', 'bcc', 'bqi', 'ckb', 'dv', 'fa', 'fa_IR', 'glk', 'he',
  180. 'ku', 'mzn', 'pnb', 'ps', 'sd', 'ug', 'ur', 'yi']
  181. ui_locale_codes = [l.replace('_', '-') for l in settings['locales'].keys()]
  182. # used when translating category names
  183. _category_names = (gettext('files'),
  184. gettext('general'),
  185. gettext('music'),
  186. gettext('social media'),
  187. gettext('images'),
  188. gettext('videos'),
  189. gettext('it'),
  190. gettext('news'),
  191. gettext('map'),
  192. gettext('onions'),
  193. gettext('science'))
  194. #
  195. timeout_text = gettext('timeout')
  196. parsing_error_text = gettext('parsing error')
  197. http_protocol_error_text = gettext('HTTP protocol error')
  198. network_error_text = gettext('network error')
  199. exception_classname_to_text = {
  200. None: gettext('unexpected crash'),
  201. 'timeout': timeout_text,
  202. 'asyncio.TimeoutError': timeout_text,
  203. 'httpx.TimeoutException': timeout_text,
  204. 'httpx.ConnectTimeout': timeout_text,
  205. 'httpx.ReadTimeout': timeout_text,
  206. 'httpx.WriteTimeout': timeout_text,
  207. 'httpx.HTTPStatusError': gettext('HTTP error'),
  208. 'httpx.ConnectError': gettext("HTTP connection error"),
  209. 'httpx.RemoteProtocolError': http_protocol_error_text,
  210. 'httpx.LocalProtocolError': http_protocol_error_text,
  211. 'httpx.ProtocolError': http_protocol_error_text,
  212. 'httpx.ReadError': network_error_text,
  213. 'httpx.WriteError': network_error_text,
  214. 'httpx.ProxyError': gettext("proxy error"),
  215. 'searx.exceptions.SearxEngineCaptchaException': gettext("CAPTCHA"),
  216. 'searx.exceptions.SearxEngineTooManyRequestsException': gettext("too many requests"),
  217. 'searx.exceptions.SearxEngineAccessDeniedException': gettext("access denied"),
  218. 'searx.exceptions.SearxEngineAPIException': gettext("server API error"),
  219. 'searx.exceptions.SearxEngineXPathException': parsing_error_text,
  220. 'KeyError': parsing_error_text,
  221. 'json.decoder.JSONDecodeError': parsing_error_text,
  222. 'lxml.etree.ParserError': parsing_error_text,
  223. }
  224. _flask_babel_get_translations = flask_babel.get_translations
  225. # monkey patch for flask_babel.get_translations
  226. def _get_translations():
  227. if has_request_context() and request.form.get('use-translation') == 'oc':
  228. babel_ext = flask_babel.current_app.extensions['babel']
  229. return Translations.load(next(babel_ext.translation_directories), 'oc')
  230. return _flask_babel_get_translations()
  231. flask_babel.get_translations = _get_translations
  232. def _get_browser_or_settings_language(req, lang_list):
  233. for lang in req.headers.get("Accept-Language", "en").split(","):
  234. if ';' in lang:
  235. lang = lang.split(';')[0]
  236. if '-' in lang:
  237. lang_parts = lang.split('-')
  238. lang = "{}-{}".format(lang_parts[0], lang_parts[-1].upper())
  239. locale = match_language(lang, lang_list, fallback=None)
  240. if locale is not None:
  241. return locale
  242. return settings['search']['default_lang'] or 'en'
  243. @babel.localeselector
  244. def get_locale():
  245. if 'locale' in request.form\
  246. and request.form['locale'] in settings['locales']:
  247. # use locale from the form
  248. locale = request.form['locale']
  249. locale_source = 'form'
  250. elif request.preferences.get_value('locale') != '':
  251. # use locale from the preferences
  252. locale = request.preferences.get_value('locale')
  253. locale_source = 'preferences'
  254. else:
  255. # use local from the browser
  256. locale = _get_browser_or_settings_language(request, ui_locale_codes)
  257. locale = locale.replace('-', '_')
  258. locale_source = 'browser'
  259. # see _get_translations function
  260. # and https://github.com/searx/searx/pull/1863
  261. if locale == 'oc':
  262. request.form['use-translation'] = 'oc'
  263. locale = 'fr_FR'
  264. logger.debug(
  265. "%s uses locale `%s` from %s", urllib.parse.quote(request.url), locale, locale_source
  266. )
  267. return locale
  268. # code-highlighter
  269. @app.template_filter('code_highlighter')
  270. def code_highlighter(codelines, language=None):
  271. if not language:
  272. language = 'text'
  273. try:
  274. # find lexer by programing language
  275. lexer = get_lexer_by_name(language, stripall=True)
  276. except Exception as e: # pylint: disable=broad-except
  277. logger.exception(e, exc_info=True)
  278. # if lexer is not found, using default one
  279. lexer = get_lexer_by_name('text', stripall=True)
  280. html_code = ''
  281. tmp_code = ''
  282. last_line = None
  283. # parse lines
  284. for line, code in codelines:
  285. if not last_line:
  286. line_code_start = line
  287. # new codeblock is detected
  288. if last_line is not None and\
  289. last_line + 1 != line:
  290. # highlight last codepart
  291. formatter = HtmlFormatter(linenos='inline',
  292. linenostart=line_code_start,
  293. cssclass="code-highlight")
  294. html_code = html_code + highlight(tmp_code, lexer, formatter)
  295. # reset conditions for next codepart
  296. tmp_code = ''
  297. line_code_start = line
  298. # add codepart
  299. tmp_code += code + '\n'
  300. # update line
  301. last_line = line
  302. # highlight last codepart
  303. formatter = HtmlFormatter(linenos='inline', linenostart=line_code_start, cssclass="code-highlight")
  304. html_code = html_code + highlight(tmp_code, lexer, formatter)
  305. return html_code
  306. # Extract domain from url
  307. @app.template_filter('extract_domain')
  308. def extract_domain(url):
  309. return urlparse(url)[1]
  310. def get_base_url():
  311. return url_for('index', _external=True)
  312. def get_current_theme_name(override=None):
  313. """Returns theme name.
  314. Checks in this order:
  315. 1. override
  316. 2. cookies
  317. 3. settings"""
  318. if override and (override in themes or override == '__common__'):
  319. return override
  320. theme_name = request.args.get('theme', request.preferences.get_value('theme'))
  321. if theme_name not in themes:
  322. theme_name = default_theme
  323. return theme_name
  324. def get_result_template(theme_name, template_name):
  325. themed_path = theme_name + '/result_templates/' + template_name
  326. if themed_path in result_templates:
  327. return themed_path
  328. return 'result_templates/' + template_name
  329. def url_for_theme(endpoint, override_theme=None, **values):
  330. if endpoint == 'static' and values.get('filename'):
  331. theme_name = get_current_theme_name(override=override_theme)
  332. filename_with_theme = "themes/{}/{}".format(theme_name, values['filename'])
  333. if filename_with_theme in static_files:
  334. values['filename'] = filename_with_theme
  335. url = url_for(endpoint, **values)
  336. return url
  337. def proxify(url):
  338. if url.startswith('//'):
  339. url = 'https:' + url
  340. if not settings.get('result_proxy'):
  341. return url
  342. url_params = dict(mortyurl=url.encode())
  343. if settings['result_proxy'].get('key'):
  344. url_params['mortyhash'] = hmac.new(settings['result_proxy']['key'],
  345. url.encode(),
  346. hashlib.sha256).hexdigest()
  347. return '{0}?{1}'.format(settings['result_proxy']['url'],
  348. urlencode(url_params))
  349. def image_proxify(url):
  350. if url.startswith('//'):
  351. url = 'https:' + url
  352. if not request.preferences.get_value('image_proxy'):
  353. return url
  354. if url.startswith('data:image/'):
  355. # 50 is an arbitrary number to get only the beginning of the image.
  356. partial_base64 = url[len('data:image/'):50].split(';')
  357. if len(partial_base64) == 2 \
  358. and partial_base64[0] in ['gif', 'png', 'jpeg', 'pjpeg', 'webp', 'tiff', 'bmp']\
  359. and partial_base64[1].startswith('base64,'):
  360. return url
  361. return None
  362. if settings.get('result_proxy'):
  363. return proxify(url)
  364. h = new_hmac(settings['server']['secret_key'], url.encode())
  365. return '{0}?{1}'.format(url_for('image_proxy'),
  366. urlencode(dict(url=url.encode(), h=h)))
  367. def get_translations():
  368. return {
  369. # when overpass AJAX request fails (on a map result)
  370. 'could_not_load': gettext('could not load data'),
  371. # when there is autocompletion
  372. 'no_item_found': gettext('No item found')
  373. }
  374. def render(template_name, override_theme=None, **kwargs):
  375. disabled_engines = request.preferences.engines.get_disabled()
  376. enabled_categories = set(category for engine_name in engines
  377. for category in engines[engine_name].categories
  378. if (engine_name, category) not in disabled_engines)
  379. if 'categories' not in kwargs:
  380. kwargs['categories'] = [x for x in
  381. _get_ordered_categories()
  382. if x in enabled_categories]
  383. if 'autocomplete' not in kwargs:
  384. kwargs['autocomplete'] = request.preferences.get_value('autocomplete')
  385. locale = request.preferences.get_value('locale')
  386. if locale in rtl_locales and 'rtl' not in kwargs:
  387. kwargs['rtl'] = True
  388. kwargs['searx_version'] = VERSION_STRING
  389. kwargs['method'] = request.preferences.get_value('method')
  390. kwargs['safesearch'] = str(request.preferences.get_value('safesearch'))
  391. kwargs['language_codes'] = languages
  392. if 'current_language' not in kwargs:
  393. kwargs['current_language'] = match_language(request.preferences.get_value('language'),
  394. LANGUAGE_CODES)
  395. # override url_for function in templates
  396. kwargs['url_for'] = url_for_theme
  397. kwargs['image_proxify'] = image_proxify
  398. kwargs['proxify'] = proxify if settings.get('result_proxy', {}).get('url') else None
  399. kwargs['proxify_results'] = settings.get('result_proxy', {}).get('proxify_results', True)
  400. kwargs['opensearch_url'] = url_for('opensearch') + '?' \
  401. + urlencode({'method': kwargs['method'], 'autocomplete': kwargs['autocomplete']})
  402. kwargs['get_result_template'] = get_result_template
  403. kwargs['theme'] = get_current_theme_name(override=override_theme)
  404. kwargs['template_name'] = template_name
  405. kwargs['cookies'] = request.cookies
  406. kwargs['errors'] = request.errors
  407. kwargs['instance_name'] = settings['general']['instance_name']
  408. kwargs['results_on_new_tab'] = request.preferences.get_value('results_on_new_tab')
  409. kwargs['preferences'] = request.preferences
  410. kwargs['search_formats'] = [
  411. x for x in get_value(
  412. settings, 'search', 'formats', default=OUTPUT_FORMATS)
  413. if x != 'html']
  414. kwargs['brand'] = brand
  415. kwargs['translations'] = json.dumps(get_translations(), separators=(',', ':'))
  416. kwargs['scripts'] = set()
  417. kwargs['endpoint'] = 'results' if 'q' in kwargs else request.endpoint
  418. for plugin in request.user_plugins:
  419. for script in plugin.js_dependencies:
  420. kwargs['scripts'].add(script)
  421. kwargs['styles'] = set()
  422. for plugin in request.user_plugins:
  423. for css in plugin.css_dependencies:
  424. kwargs['styles'].add(css)
  425. start_time = default_timer()
  426. result = render_template(
  427. '{}/{}'.format(kwargs['theme'], template_name), **kwargs)
  428. request.render_time += default_timer() - start_time # pylint: disable=assigning-non-slot
  429. return result
  430. def _get_ordered_categories():
  431. ordered_categories = []
  432. if 'categories_order' not in settings['ui']:
  433. ordered_categories = ['general']
  434. ordered_categories.extend(x for x in sorted(categories.keys()) if x != 'general')
  435. return ordered_categories
  436. ordered_categories = settings['ui']['categories_order']
  437. ordered_categories.extend(x for x in sorted(categories.keys()) if x not in ordered_categories)
  438. return ordered_categories
  439. @app.before_request
  440. def pre_request():
  441. request.start_time = default_timer() # pylint: disable=assigning-non-slot
  442. request.render_time = 0 # pylint: disable=assigning-non-slot
  443. request.timings = [] # pylint: disable=assigning-non-slot
  444. request.errors = [] # pylint: disable=assigning-non-slot
  445. preferences = Preferences(themes, list(categories.keys()), engines, plugins) # pylint: disable=redefined-outer-name
  446. user_agent = request.headers.get('User-Agent', '').lower()
  447. if 'webkit' in user_agent and 'android' in user_agent:
  448. preferences.key_value_settings['method'].value = 'GET'
  449. request.preferences = preferences # pylint: disable=assigning-non-slot
  450. try:
  451. preferences.parse_dict(request.cookies)
  452. except Exception as e: # pylint: disable=broad-except
  453. logger.exception(e, exc_info=True)
  454. request.errors.append(gettext('Invalid settings, please edit your preferences'))
  455. # merge GET, POST vars
  456. # request.form
  457. request.form = dict(request.form.items()) # pylint: disable=assigning-non-slot
  458. for k, v in request.args.items():
  459. if k not in request.form:
  460. request.form[k] = v
  461. if request.form.get('preferences'):
  462. preferences.parse_encoded_data(request.form['preferences'])
  463. else:
  464. try:
  465. preferences.parse_dict(request.form)
  466. except Exception as e: # pylint: disable=broad-except
  467. logger.exception(e, exc_info=True)
  468. request.errors.append(gettext('Invalid settings'))
  469. # init search language and locale
  470. if not preferences.get_value("language"):
  471. preferences.parse_dict({"language": _get_browser_or_settings_language(request, LANGUAGE_CODES)})
  472. if not preferences.get_value("locale"):
  473. preferences.parse_dict({"locale": get_locale()})
  474. # request.user_plugins
  475. request.user_plugins = [] # pylint: disable=assigning-non-slot
  476. allowed_plugins = preferences.plugins.get_enabled()
  477. disabled_plugins = preferences.plugins.get_disabled()
  478. for plugin in plugins:
  479. if ((plugin.default_on and plugin.id not in disabled_plugins)
  480. or plugin.id in allowed_plugins):
  481. request.user_plugins.append(plugin)
  482. @app.after_request
  483. def add_default_headers(response):
  484. # set default http headers
  485. for header, value in settings['server'].get('default_http_headers', {}).items():
  486. if header in response.headers:
  487. continue
  488. response.headers[header] = value
  489. return response
  490. @app.after_request
  491. def post_request(response):
  492. total_time = default_timer() - request.start_time
  493. timings_all = ['total;dur=' + str(round(total_time * 1000, 3)),
  494. 'render;dur=' + str(round(request.render_time * 1000, 3))]
  495. if len(request.timings) > 0:
  496. timings = sorted(request.timings, key=lambda v: v['total'])
  497. timings_total = ['total_' + str(i) + '_' + v['engine'] +
  498. ';dur=' + str(round(v['total'] * 1000, 3)) for i, v in enumerate(timings)]
  499. timings_load = ['load_' + str(i) + '_' + v['engine'] +
  500. ';dur=' + str(round(v['load'] * 1000, 3)) for i, v in enumerate(timings) if v.get('load')]
  501. timings_all = timings_all + timings_total + timings_load
  502. response.headers.add('Server-Timing', ', '.join(timings_all))
  503. return response
  504. def index_error(output_format, error_message):
  505. if output_format == 'json':
  506. return Response(json.dumps({'error': error_message}),
  507. mimetype='application/json')
  508. if output_format == 'csv':
  509. response = Response('', mimetype='application/csv')
  510. cont_disp = 'attachment;Filename=searx.csv'
  511. response.headers.add('Content-Disposition', cont_disp)
  512. return response
  513. if output_format == 'rss':
  514. response_rss = render(
  515. 'opensearch_response_rss.xml',
  516. results=[],
  517. q=request.form['q'] if 'q' in request.form else '',
  518. number_of_results=0,
  519. base_url=get_base_url(),
  520. error_message=error_message,
  521. override_theme='__common__',
  522. )
  523. return Response(response_rss, mimetype='text/xml')
  524. # html
  525. request.errors.append(gettext('search error'))
  526. return render(
  527. 'index.html',
  528. selected_categories=get_selected_categories(request.preferences, request.form),
  529. )
  530. @app.route('/', methods=['GET', 'POST'])
  531. def index():
  532. """Render index page."""
  533. # UI
  534. advanced_search = request.preferences.get_value('advanced_search')
  535. # redirect to search if there's a query in the request
  536. if request.form.get('q'):
  537. query = ('?' + request.query_string.decode()) if request.query_string else ''
  538. return redirect(url_for('search') + query, 308)
  539. return render(
  540. 'index.html',
  541. selected_categories=get_selected_categories(request.preferences, request.form),
  542. advanced_search=advanced_search,
  543. )
  544. @app.route('/search', methods=['GET', 'POST'])
  545. def search():
  546. """Search query in q and return results.
  547. Supported outputs: html, json, csv, rss.
  548. """
  549. # pylint: disable=too-many-locals, too-many-return-statements, too-many-branches
  550. # pylint: disable=too-many-statements
  551. # output_format
  552. output_format = request.form.get('format', 'html')
  553. if output_format not in OUTPUT_FORMATS:
  554. output_format = 'html'
  555. if output_format not in get_value(settings, 'search', 'formats', default=OUTPUT_FORMATS):
  556. flask.abort(403)
  557. # check if there is query (not None and not an empty string)
  558. if not request.form.get('q'):
  559. if output_format == 'html':
  560. return render(
  561. 'index.html',
  562. advanced_search=request.preferences.get_value('advanced_search'),
  563. selected_categories=get_selected_categories(request.preferences, request.form),
  564. )
  565. return index_error(output_format, 'No query'), 400
  566. # search
  567. search_query = None
  568. raw_text_query = None
  569. result_container = None
  570. try:
  571. search_query, raw_text_query, _, _ = get_search_query_from_webapp(request.preferences, request.form)
  572. # search = Search(search_query) # without plugins
  573. search = SearchWithPlugins(search_query, request.user_plugins, request) # pylint: disable=redefined-outer-name
  574. result_container = search.search()
  575. except SearxParameterException as e:
  576. logger.exception('search error: SearxParameterException')
  577. return index_error(output_format, e.message), 400
  578. except Exception as e: # pylint: disable=broad-except
  579. logger.exception(e, exc_info=True)
  580. return index_error(output_format, gettext('search error')), 500
  581. # results
  582. results = result_container.get_ordered_results()
  583. number_of_results = result_container.results_number()
  584. if number_of_results < result_container.results_length():
  585. number_of_results = 0
  586. # checkin for a external bang
  587. if result_container.redirect_url:
  588. return redirect(result_container.redirect_url)
  589. # Server-Timing header
  590. request.timings = result_container.get_timings() # pylint: disable=assigning-non-slot
  591. # output
  592. for result in results:
  593. if output_format == 'html':
  594. if 'content' in result and result['content']:
  595. result['content'] = highlight_content(escape(result['content'][:1024]), search_query.query)
  596. if 'title' in result and result['title']:
  597. result['title'] = highlight_content(escape(result['title'] or ''), search_query.query)
  598. else:
  599. if result.get('content'):
  600. result['content'] = html_to_text(result['content']).strip()
  601. # removing html content and whitespace duplications
  602. result['title'] = ' '.join(html_to_text(result['title']).strip().split())
  603. if 'url' in result:
  604. result['pretty_url'] = prettify_url(result['url'])
  605. # TODO, check if timezone is calculated right # pylint: disable=fixme
  606. if result.get('publishedDate'): # do not try to get a date from an empty string or a None type
  607. try: # test if publishedDate >= 1900 (datetime module bug)
  608. result['pubdate'] = result['publishedDate'].strftime('%Y-%m-%d %H:%M:%S%z')
  609. except ValueError:
  610. result['publishedDate'] = None
  611. else:
  612. if result['publishedDate'].replace(tzinfo=None) >= datetime.now() - timedelta(days=1):
  613. timedifference = datetime.now() - result['publishedDate'].replace(tzinfo=None)
  614. minutes = int((timedifference.seconds / 60) % 60)
  615. hours = int(timedifference.seconds / 60 / 60)
  616. if hours == 0:
  617. result['publishedDate'] = gettext('{minutes} minute(s) ago').format(minutes=minutes)
  618. else:
  619. result['publishedDate'] = gettext(
  620. '{hours} hour(s), {minutes} minute(s) ago').format(
  621. hours=hours, minutes=minutes
  622. )
  623. else:
  624. result['publishedDate'] = format_date(result['publishedDate'])
  625. if output_format == 'json':
  626. return Response(
  627. json.dumps(
  628. {
  629. 'query': search_query.query,
  630. 'number_of_results': number_of_results,
  631. 'results': results,
  632. 'answers': list(result_container.answers),
  633. 'corrections': list(result_container.corrections),
  634. 'infoboxes': result_container.infoboxes,
  635. 'suggestions': list(result_container.suggestions),
  636. 'unresponsive_engines': __get_translated_errors(result_container.unresponsive_engines)
  637. },
  638. default = lambda item: list(item) if isinstance(item, set) else item
  639. ),
  640. mimetype='application/json'
  641. )
  642. if output_format == 'csv':
  643. csv = UnicodeWriter(StringIO())
  644. keys = ('title', 'url', 'content', 'host', 'engine', 'score', 'type')
  645. csv.writerow(keys)
  646. for row in results:
  647. row['host'] = row['parsed_url'].netloc
  648. row['type'] = 'result'
  649. csv.writerow([row.get(key, '') for key in keys])
  650. for a in result_container.answers:
  651. row = {'title': a, 'type': 'answer'}
  652. csv.writerow([row.get(key, '') for key in keys])
  653. for a in result_container.suggestions:
  654. row = {'title': a, 'type': 'suggestion'}
  655. csv.writerow([row.get(key, '') for key in keys])
  656. for a in result_container.corrections:
  657. row = {'title': a, 'type': 'correction'}
  658. csv.writerow([row.get(key, '') for key in keys])
  659. csv.stream.seek(0)
  660. response = Response(csv.stream.read(), mimetype='application/csv')
  661. cont_disp = 'attachment;Filename=searx_-_{0}.csv'.format(search_query.query)
  662. response.headers.add('Content-Disposition', cont_disp)
  663. return response
  664. if output_format == 'rss':
  665. response_rss = render(
  666. 'opensearch_response_rss.xml',
  667. results=results,
  668. answers=result_container.answers,
  669. corrections=result_container.corrections,
  670. suggestions=result_container.suggestions,
  671. q=request.form['q'],
  672. number_of_results=number_of_results,
  673. base_url=get_base_url(),
  674. override_theme='__common__',
  675. )
  676. return Response(response_rss, mimetype='text/xml')
  677. # HTML output format
  678. # suggestions: use RawTextQuery to get the suggestion URLs with the same bang
  679. suggestion_urls = list(map(lambda suggestion: {
  680. 'url': raw_text_query.changeQuery(suggestion).getFullQuery(),
  681. 'title': suggestion
  682. },
  683. result_container.suggestions))
  684. correction_urls = list(map(lambda correction: {
  685. 'url': raw_text_query.changeQuery(correction).getFullQuery(),
  686. 'title': correction
  687. },
  688. result_container.corrections))
  689. #
  690. return render(
  691. 'results.html',
  692. results=results,
  693. q=request.form['q'],
  694. selected_categories=search_query.categories,
  695. pageno=search_query.pageno,
  696. time_range=search_query.time_range,
  697. number_of_results=format_decimal(number_of_results),
  698. suggestions=suggestion_urls,
  699. answers=result_container.answers,
  700. corrections=correction_urls,
  701. infoboxes=result_container.infoboxes,
  702. engine_data=result_container.engine_data,
  703. paging=result_container.paging,
  704. unresponsive_engines=__get_translated_errors(result_container.unresponsive_engines),
  705. current_language=match_language(search_query.lang,
  706. LANGUAGE_CODES,
  707. fallback=request.preferences.get_value("language")),
  708. base_url=get_base_url(),
  709. theme=get_current_theme_name(),
  710. favicons=global_favicons[themes.index(get_current_theme_name())],
  711. timeout_limit=request.form.get('timeout_limit', None)
  712. )
  713. def __get_translated_errors(unresponsive_engines):
  714. translated_errors = []
  715. # make a copy unresponsive_engines to avoid "RuntimeError: Set changed size during iteration"
  716. # it happens when an engine modifies the ResultContainer after the search_multiple_requests method
  717. # has stopped waiting
  718. for unresponsive_engine in list(unresponsive_engines):
  719. error_user_text = exception_classname_to_text.get(unresponsive_engine[1])
  720. if not error_user_text:
  721. error_user_text = exception_classname_to_text[None]
  722. error_msg = gettext(error_user_text)
  723. if unresponsive_engine[2]:
  724. error_msg = "{} {}".format(error_msg, unresponsive_engine[2])
  725. if unresponsive_engine[3]:
  726. error_msg = gettext('Suspended') + ': ' + error_msg
  727. translated_errors.append((unresponsive_engine[0], error_msg))
  728. return sorted(translated_errors, key=lambda e: e[0])
  729. @app.route('/about', methods=['GET'])
  730. def about():
  731. """Render about page"""
  732. return render(
  733. 'about.html',
  734. )
  735. @app.route('/autocompleter', methods=['GET', 'POST'])
  736. def autocompleter():
  737. """Return autocompleter results"""
  738. # run autocompleter
  739. results = []
  740. # set blocked engines
  741. disabled_engines = request.preferences.engines.get_disabled()
  742. # parse query
  743. raw_text_query = RawTextQuery(request.form.get('q', ''), disabled_engines)
  744. sug_prefix = raw_text_query.getQuery()
  745. # normal autocompletion results only appear if no inner results returned
  746. # and there is a query part
  747. if len(raw_text_query.autocomplete_list) == 0 and len(sug_prefix) > 0:
  748. # get language from cookie
  749. language = request.preferences.get_value('language')
  750. if not language or language == 'all':
  751. language = 'en'
  752. else:
  753. language = language.split('-')[0]
  754. # run autocompletion
  755. raw_results = search_autocomplete(
  756. request.preferences.get_value('autocomplete'), sug_prefix, language
  757. )
  758. for result in raw_results:
  759. # attention: this loop will change raw_text_query object and this is
  760. # the reason why the sug_prefix was stored before (see above)
  761. results.append(raw_text_query.changeQuery(result).getFullQuery())
  762. if len(raw_text_query.autocomplete_list) > 0:
  763. for autocomplete_text in raw_text_query.autocomplete_list:
  764. results.append(raw_text_query.get_autocomplete_full_query(autocomplete_text))
  765. for answers in ask(raw_text_query):
  766. for answer in answers:
  767. results.append(str(answer['answer']))
  768. if request.headers.get('X-Requested-With') == 'XMLHttpRequest':
  769. # the suggestion request comes from the searx search form
  770. suggestions = json.dumps(results)
  771. mimetype = 'application/json'
  772. else:
  773. # the suggestion request comes from browser's URL bar
  774. suggestions = json.dumps([sug_prefix, results])
  775. mimetype = 'application/x-suggestions+json'
  776. return Response(suggestions, mimetype=mimetype)
  777. @app.route('/preferences', methods=['GET', 'POST'])
  778. def preferences():
  779. """Render preferences page && save user preferences"""
  780. # pylint: disable=too-many-locals, too-many-return-statements, too-many-branches
  781. # pylint: disable=too-many-statements
  782. # save preferences
  783. if request.method == 'POST':
  784. resp = make_response(redirect(url_for('index', _external=True)))
  785. try:
  786. request.preferences.parse_form(request.form)
  787. except ValidationException:
  788. request.errors.append(gettext('Invalid settings, please edit your preferences'))
  789. return resp
  790. return request.preferences.save(resp)
  791. # render preferences
  792. image_proxy = request.preferences.get_value('image_proxy') # pylint: disable=redefined-outer-name
  793. disabled_engines = request.preferences.engines.get_disabled()
  794. allowed_plugins = request.preferences.plugins.get_enabled()
  795. # stats for preferences page
  796. filtered_engines = dict(filter(lambda kv: (kv[0], request.preferences.validate_token(kv[1])), engines.items()))
  797. engines_by_category = {}
  798. for c in categories:
  799. engines_by_category[c] = [e for e in categories[c] if e.name in filtered_engines]
  800. # sort the engines alphabetically since the order in settings.yml is meaningless.
  801. list.sort(engines_by_category[c], key=lambda e: e.name)
  802. # get first element [0], the engine time,
  803. # and then the second element [1] : the time (the first one is the label)
  804. stats = {} # pylint: disable=redefined-outer-name
  805. max_rate95 = 0
  806. for _, e in filtered_engines.items():
  807. h = histogram('engine', e.name, 'time', 'total')
  808. median = round(h.percentage(50), 1) if h.count > 0 else None
  809. rate80 = round(h.percentage(80), 1) if h.count > 0 else None
  810. rate95 = round(h.percentage(95), 1) if h.count > 0 else None
  811. max_rate95 = max(max_rate95, rate95 or 0)
  812. result_count_sum = histogram('engine', e.name, 'result', 'count').sum
  813. successful_count = counter('engine', e.name, 'search', 'count', 'successful')
  814. result_count = int(result_count_sum / float(successful_count)) if successful_count else 0
  815. stats[e.name] = {
  816. 'time': median,
  817. 'rate80': rate80,
  818. 'rate95': rate95,
  819. 'warn_timeout': e.timeout > settings['outgoing']['request_timeout'],
  820. 'supports_selected_language': _is_selected_language_supported(e, request.preferences),
  821. 'result_count': result_count,
  822. }
  823. # end of stats
  824. # reliabilities
  825. reliabilities = {}
  826. engine_errors = get_engine_errors(filtered_engines)
  827. checker_results = checker_get_result()
  828. checker_results = checker_results['engines'] \
  829. if checker_results['status'] == 'ok' and 'engines' in checker_results else {}
  830. for _, e in filtered_engines.items():
  831. checker_result = checker_results.get(e.name, {})
  832. checker_success = checker_result.get('success', True)
  833. errors = engine_errors.get(e.name) or []
  834. if counter('engine', e.name, 'search', 'count', 'sent') == 0:
  835. # no request
  836. reliablity = None
  837. elif checker_success and not errors:
  838. reliablity = 100
  839. elif 'simple' in checker_result.get('errors', {}):
  840. # the basic (simple) test doesn't work: the engine is broken accoding to the checker
  841. # even if there is no exception
  842. reliablity = 0
  843. else:
  844. reliablity = 100 - sum([error['percentage'] for error in errors if not error.get('secondary')])
  845. reliabilities[e.name] = {
  846. 'reliablity': reliablity,
  847. 'errors': [],
  848. 'checker': checker_results.get(e.name, {}).get('errors', {}).keys(),
  849. }
  850. # keep the order of the list checker_results[e.name]['errors'] and deduplicate.
  851. # the first element has the highest percentage rate.
  852. reliabilities_errors = []
  853. for error in errors:
  854. error_user_text = None
  855. if error.get('secondary') or 'exception_classname' not in error:
  856. continue
  857. error_user_text = exception_classname_to_text.get(error.get('exception_classname'))
  858. if not error:
  859. error_user_text = exception_classname_to_text[None]
  860. if error_user_text not in reliabilities_errors:
  861. reliabilities_errors.append(error_user_text)
  862. reliabilities[e.name]['errors'] = reliabilities_errors
  863. # supports
  864. supports = {}
  865. for _, e in filtered_engines.items():
  866. supports_selected_language = _is_selected_language_supported(e, request.preferences)
  867. safesearch = e.safesearch
  868. time_range_support = e.time_range_support
  869. for checker_test_name in checker_results.get(e.name, {}).get('errors', {}):
  870. if supports_selected_language and checker_test_name.startswith('lang_'):
  871. supports_selected_language = '?'
  872. elif safesearch and checker_test_name == 'safesearch':
  873. safesearch = '?'
  874. elif time_range_support and checker_test_name == 'time_range':
  875. time_range_support = '?'
  876. supports[e.name] = {
  877. 'supports_selected_language': supports_selected_language,
  878. 'safesearch': safesearch,
  879. 'time_range_support': time_range_support,
  880. }
  881. #
  882. locked_preferences = list()
  883. if 'preferences' in settings and 'lock' in settings['preferences']:
  884. locked_preferences = settings['preferences']['lock']
  885. #
  886. return render('preferences.html',
  887. selected_categories=get_selected_categories(request.preferences, request.form),
  888. all_categories=_get_ordered_categories(),
  889. locales=settings['locales'],
  890. current_locale=request.preferences.get_value("locale"),
  891. image_proxy=image_proxy,
  892. engines_by_category=engines_by_category,
  893. stats=stats,
  894. max_rate95=max_rate95,
  895. reliabilities=reliabilities,
  896. supports=supports,
  897. answerers=[{'info': a.self_info(), 'keywords': a.keywords} for a in answerers],
  898. disabled_engines=disabled_engines,
  899. autocomplete_backends=autocomplete_backends,
  900. shortcuts={y: x for x, y in engine_shortcuts.items()},
  901. themes=themes,
  902. plugins=plugins,
  903. doi_resolvers=settings['doi_resolvers'],
  904. current_doi_resolver=get_doi_resolver(request.args, request.preferences.get_value('doi_resolver')),
  905. allowed_plugins=allowed_plugins,
  906. theme=get_current_theme_name(),
  907. preferences_url_params=request.preferences.get_as_url_params(),
  908. base_url=get_base_url(),
  909. locked_preferences=locked_preferences,
  910. preferences=True)
  911. def _is_selected_language_supported(engine, preferences): # pylint: disable=redefined-outer-name
  912. language = preferences.get_value('language')
  913. return (language == 'all'
  914. or match_language(language,
  915. getattr(engine, 'supported_languages', []),
  916. getattr(engine, 'language_aliases', {}), None))
  917. @app.route('/image_proxy', methods=['GET'])
  918. def image_proxy():
  919. # pylint: disable=too-many-return-statements
  920. url = request.args.get('url')
  921. if not url:
  922. return '', 400
  923. h = new_hmac(settings['server']['secret_key'], url.encode())
  924. if h != request.args.get('h'):
  925. return '', 400
  926. maximum_size = 5 * 1024 * 1024
  927. try:
  928. headers = dict_subset(request.headers, {'If-Modified-Since', 'If-None-Match'})
  929. headers['User-Agent'] = gen_useragent()
  930. stream = http_stream(
  931. method='GET',
  932. url=url,
  933. headers=headers,
  934. timeout=settings['outgoing']['request_timeout'],
  935. allow_redirects=True,
  936. max_redirects=20)
  937. resp = next(stream)
  938. content_length = resp.headers.get('Content-Length')
  939. if content_length and content_length.isdigit() and int(content_length) > maximum_size:
  940. return 'Max size', 400
  941. if resp.status_code == 304:
  942. return '', resp.status_code
  943. if resp.status_code != 200:
  944. logger.debug('image-proxy: wrong response code: {0}'.format(resp.status_code))
  945. if resp.status_code >= 400:
  946. return '', resp.status_code
  947. return '', 400
  948. if not resp.headers.get('content-type', '').startswith('image/'):
  949. logger.debug('image-proxy: wrong content-type: {0}'.format(resp.headers.get('content-type')))
  950. return '', 400
  951. headers = dict_subset(resp.headers, {'Content-Length', 'Length', 'Date', 'Last-Modified', 'Expires', 'Etag'})
  952. total_length = 0
  953. def forward_chunk():
  954. nonlocal total_length
  955. for chunk in stream:
  956. total_length += len(chunk)
  957. if total_length > maximum_size:
  958. break
  959. yield chunk
  960. return Response(forward_chunk(), mimetype=resp.headers['Content-Type'], headers=headers)
  961. except httpx.HTTPError:
  962. return '', 400
  963. @app.route('/stats', methods=['GET'])
  964. def stats():
  965. """Render engine statistics page."""
  966. sort_order = request.args.get('sort', default='name', type=str)
  967. selected_engine_name = request.args.get('engine', default=None, type=str)
  968. filtered_engines = dict(filter(lambda kv: (kv[0], request.preferences.validate_token(kv[1])), engines.items()))
  969. if selected_engine_name:
  970. if selected_engine_name not in filtered_engines:
  971. selected_engine_name = None
  972. else:
  973. filtered_engines = [selected_engine_name]
  974. checker_results = checker_get_result()
  975. checker_results = checker_results['engines'] \
  976. if checker_results['status'] == 'ok' and 'engines' in checker_results else {}
  977. engine_stats = get_engines_stats(filtered_engines)
  978. engine_reliabilities = get_reliabilities(filtered_engines, checker_results)
  979. if sort_order not in STATS_SORT_PARAMETERS:
  980. sort_order = 'name'
  981. reverse, key_name, default_value = STATS_SORT_PARAMETERS[sort_order]
  982. def get_key(engine_stat):
  983. reliability = engine_reliabilities.get(engine_stat['name']).get('reliablity', 0)
  984. reliability_order = 0 if reliability else 1
  985. if key_name == 'reliability':
  986. key = reliability
  987. reliability_order = 0
  988. else:
  989. key = engine_stat.get(key_name) or default_value
  990. if reverse:
  991. reliability_order = 1 - reliability_order
  992. return (reliability_order, key, engine_stat['name'])
  993. engine_stats['time'] = sorted(engine_stats['time'], reverse=reverse, key=get_key)
  994. return render(
  995. 'stats.html',
  996. sort_order=sort_order,
  997. engine_stats=engine_stats,
  998. engine_reliabilities=engine_reliabilities,
  999. selected_engine_name=selected_engine_name,
  1000. )
  1001. @app.route('/stats/errors', methods=['GET'])
  1002. def stats_errors():
  1003. filtered_engines = dict(filter(lambda kv: (kv[0], request.preferences.validate_token(kv[1])), engines.items()))
  1004. result = get_engine_errors(filtered_engines)
  1005. return jsonify(result)
  1006. @app.route('/stats/checker', methods=['GET'])
  1007. def stats_checker():
  1008. result = checker_get_result()
  1009. return jsonify(result)
  1010. @app.route('/robots.txt', methods=['GET'])
  1011. def robots():
  1012. return Response("""User-agent: *
  1013. Allow: /
  1014. Allow: /about
  1015. Disallow: /stats
  1016. Disallow: /preferences
  1017. Disallow: /*?*q=*
  1018. """, mimetype='text/plain')
  1019. @app.route('/opensearch.xml', methods=['GET'])
  1020. def opensearch():
  1021. method = 'post'
  1022. if request.preferences.get_value('method') == 'GET':
  1023. method = 'get'
  1024. # chrome/chromium only supports HTTP GET....
  1025. if request.headers.get('User-Agent', '').lower().find('webkit') >= 0:
  1026. method = 'get'
  1027. ret = render(
  1028. 'opensearch.xml',
  1029. opensearch_method=method,
  1030. override_theme='__common__'
  1031. )
  1032. resp = Response(response=ret,
  1033. status=200,
  1034. mimetype="application/opensearchdescription+xml")
  1035. return resp
  1036. @app.route('/favicon.ico')
  1037. def favicon():
  1038. return send_from_directory(
  1039. os.path.join(
  1040. app.root_path,
  1041. static_path,
  1042. 'themes',
  1043. get_current_theme_name(),
  1044. 'img'),
  1045. 'favicon.png',
  1046. mimetype = 'image/vnd.microsoft.icon'
  1047. )
  1048. @app.route('/clear_cookies')
  1049. def clear_cookies():
  1050. resp = make_response(redirect(url_for('index', _external=True)))
  1051. for cookie_name in request.cookies:
  1052. resp.delete_cookie(cookie_name)
  1053. return resp
  1054. @app.route('/config')
  1055. def config():
  1056. """Return configuration in JSON format."""
  1057. _engines = []
  1058. for name, engine in engines.items():
  1059. if not request.preferences.validate_token(engine):
  1060. continue
  1061. supported_languages = engine.supported_languages
  1062. if isinstance(engine.supported_languages, dict):
  1063. supported_languages = list(engine.supported_languages.keys())
  1064. _engines.append({
  1065. 'name': name,
  1066. 'categories': engine.categories,
  1067. 'shortcut': engine.shortcut,
  1068. 'enabled': not engine.disabled,
  1069. 'paging': engine.paging,
  1070. 'language_support': engine.language_support,
  1071. 'supported_languages': supported_languages,
  1072. 'safesearch': engine.safesearch,
  1073. 'time_range_support': engine.time_range_support,
  1074. 'timeout': engine.timeout
  1075. })
  1076. _plugins = []
  1077. for _ in plugins:
  1078. _plugins.append({'name': _.name, 'enabled': _.default_on})
  1079. return jsonify({
  1080. 'categories': list(categories.keys()),
  1081. 'engines': _engines,
  1082. 'plugins': _plugins,
  1083. 'instance_name': settings['general']['instance_name'],
  1084. 'locales': settings['locales'],
  1085. 'default_locale': settings['ui']['default_locale'],
  1086. 'autocomplete': settings['search']['autocomplete'],
  1087. 'safe_search': settings['search']['safe_search'],
  1088. 'default_theme': settings['ui']['default_theme'],
  1089. 'version': VERSION_STRING,
  1090. 'brand': {
  1091. 'CONTACT_URL': brand.CONTACT_URL,
  1092. 'GIT_URL': brand.GIT_URL,
  1093. 'DOCS_URL': brand.DOCS_URL
  1094. },
  1095. 'doi_resolvers': list(settings['doi_resolvers'].keys()),
  1096. 'default_doi_resolver': settings['default_doi_resolver'],
  1097. })
  1098. @app.errorhandler(404)
  1099. def page_not_found(_e):
  1100. return render('404.html'), 404
  1101. def run():
  1102. logger.debug('starting webserver on %s:%s', settings['server']['bind_address'], settings['server']['port'])
  1103. app.run(
  1104. debug=searx_debug,
  1105. use_debugger=searx_debug,
  1106. port=settings['server']['port'],
  1107. host=settings['server']['bind_address'],
  1108. threaded=True
  1109. )
  1110. class ReverseProxyPathFix:
  1111. '''Wrap the application in this middleware and configure the
  1112. front-end server to add these headers, to let you quietly bind
  1113. this to a URL other than / and to an HTTP scheme that is
  1114. different than what is used locally.
  1115. http://flask.pocoo.org/snippets/35/
  1116. In nginx:
  1117. location /myprefix {
  1118. proxy_pass http://127.0.0.1:8000;
  1119. proxy_set_header Host $host;
  1120. proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
  1121. proxy_set_header X-Scheme $scheme;
  1122. proxy_set_header X-Script-Name /myprefix;
  1123. }
  1124. :param wsgi_app: the WSGI application
  1125. '''
  1126. # pylint: disable=too-few-public-methods
  1127. def __init__(self, wsgi_app):
  1128. self.wsgi_app = wsgi_app
  1129. self.script_name = None
  1130. self.scheme = None
  1131. self.server = None
  1132. if settings['server']['base_url']:
  1133. # If base_url is specified, then these values from are given
  1134. # preference over any Flask's generics.
  1135. base_url = urlparse(settings['server']['base_url'])
  1136. self.script_name = base_url.path
  1137. if self.script_name.endswith('/'):
  1138. # remove trailing slash to avoid infinite redirect on the index
  1139. # see https://github.com/searx/searx/issues/2729
  1140. self.script_name = self.script_name[:-1]
  1141. self.scheme = base_url.scheme
  1142. self.server = base_url.netloc
  1143. def __call__(self, environ, start_response):
  1144. script_name = self.script_name or environ.get('HTTP_X_SCRIPT_NAME', '')
  1145. if script_name:
  1146. environ['SCRIPT_NAME'] = script_name
  1147. path_info = environ['PATH_INFO']
  1148. if path_info.startswith(script_name):
  1149. environ['PATH_INFO'] = path_info[len(script_name):]
  1150. scheme = self.scheme or environ.get('HTTP_X_SCHEME', '')
  1151. if scheme:
  1152. environ['wsgi.url_scheme'] = scheme
  1153. server = self.server or environ.get('HTTP_X_FORWARDED_HOST', '')
  1154. if server:
  1155. environ['HTTP_HOST'] = server
  1156. return self.wsgi_app(environ, start_response)
  1157. application = app
  1158. # patch app to handle non root url-s behind proxy & wsgi
  1159. app.wsgi_app = ReverseProxyPathFix(ProxyFix(application.wsgi_app))
  1160. if __name__ == "__main__":
  1161. run()