webapp.py 43 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897898899900901902903904905906907908909910911912913914915916917918919920921922923924925926927928929930931932933934935936937938939940941942943944945946947948949950951952953954955956957958959960961962963964965966967968969970971972973974975976977978979980981982983984985986987988989990991992993994995996997998999100010011002100310041005100610071008100910101011101210131014101510161017101810191020102110221023102410251026102710281029103010311032103310341035103610371038103910401041104210431044104510461047104810491050105110521053105410551056105710581059106010611062106310641065106610671068106910701071107210731074107510761077107810791080108110821083108410851086108710881089109010911092109310941095109610971098109911001101110211031104110511061107110811091110111111121113111411151116111711181119112011211122112311241125112611271128112911301131113211331134113511361137113811391140114111421143114411451146114711481149115011511152115311541155115611571158115911601161116211631164116511661167116811691170117111721173117411751176117711781179118011811182
  1. #!/usr/bin/env python
  2. '''
  3. searx is free software: you can redistribute it and/or modify
  4. it under the terms of the GNU Affero General Public License as published by
  5. the Free Software Foundation, either version 3 of the License, or
  6. (at your option) any later version.
  7. searx is distributed in the hope that it will be useful,
  8. but WITHOUT ANY WARRANTY; without even the implied warranty of
  9. MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
  10. GNU Affero General Public License for more details.
  11. You should have received a copy of the GNU Affero General Public License
  12. along with searx. If not, see < http://www.gnu.org/licenses/ >.
  13. (C) 2013- by Adam Tauber, <asciimoo@gmail.com>
  14. '''
  15. import sys
  16. if sys.version_info[0] < 3:
  17. print('\033[1;31m Python2 is no longer supported\033[0m')
  18. exit(1)
  19. if __name__ == '__main__':
  20. from os.path import realpath, dirname
  21. sys.path.append(realpath(dirname(realpath(__file__)) + '/../'))
  22. # set Unix thread name
  23. try:
  24. import setproctitle
  25. except ImportError:
  26. pass
  27. else:
  28. import threading
  29. old_thread_init = threading.Thread.__init__
  30. def new_thread_init(self, *args, **kwargs):
  31. old_thread_init(self, *args, **kwargs)
  32. setproctitle.setthreadtitle(self._name)
  33. threading.Thread.__init__ = new_thread_init
  34. import hashlib
  35. import hmac
  36. import json
  37. import os
  38. import httpx
  39. from searx import logger
  40. logger = logger.getChild('webapp')
  41. from datetime import datetime, timedelta
  42. from timeit import default_timer
  43. from html import escape
  44. from io import StringIO
  45. from urllib.parse import urlencode, urlparse
  46. from pygments import highlight
  47. from pygments.lexers import get_lexer_by_name
  48. from pygments.formatters import HtmlFormatter # pylint: disable=no-name-in-module
  49. from werkzeug.middleware.proxy_fix import ProxyFix
  50. from flask import (
  51. Flask, request, render_template, url_for, Response, make_response,
  52. redirect, send_from_directory
  53. )
  54. from babel.support import Translations
  55. import flask_babel
  56. from flask_babel import Babel, gettext, format_date, format_decimal
  57. from flask.ctx import has_request_context
  58. from flask.json import jsonify
  59. from searx import brand, static_path
  60. from searx import settings, searx_dir, searx_debug
  61. from searx.exceptions import SearxParameterException
  62. from searx.engines import categories, engines, engine_shortcuts
  63. from searx.webutils import (
  64. UnicodeWriter, highlight_content, get_resources_directory,
  65. get_static_files, get_result_templates, get_themes,
  66. prettify_url, new_hmac, is_flask_run_cmdline
  67. )
  68. from searx.webadapter import get_search_query_from_webapp, get_selected_categories
  69. from searx.utils import html_to_text, gen_useragent, dict_subset, match_language
  70. from searx.version import VERSION_STRING
  71. from searx.languages import language_codes as languages
  72. from searx.search import SearchWithPlugins, initialize as search_initialize
  73. from searx.search.checker import get_result as checker_get_result
  74. from searx.query import RawTextQuery
  75. from searx.autocomplete import search_autocomplete, backends as autocomplete_backends
  76. from searx.plugins import plugins
  77. from searx.plugins.oa_doi_rewrite import get_doi_resolver
  78. from searx.preferences import Preferences, ValidationException, LANGUAGE_CODES
  79. from searx.answerers import answerers
  80. from searx.network import stream as http_stream
  81. from searx.answerers import ask
  82. from searx.metrics import get_engines_stats, get_engine_errors, histogram
  83. # serve pages with HTTP/1.1
  84. from werkzeug.serving import WSGIRequestHandler
  85. WSGIRequestHandler.protocol_version = "HTTP/{}".format(settings['server'].get('http_protocol_version', '1.0'))
  86. # check secret_key
  87. if not searx_debug and settings['server']['secret_key'] == 'ultrasecretkey':
  88. logger.error('server.secret_key is not changed. Please use something else instead of ultrasecretkey.')
  89. exit(1)
  90. # about static
  91. static_path = get_resources_directory(searx_dir, 'static', settings['ui']['static_path'])
  92. logger.debug('static directory is %s', static_path)
  93. static_files = get_static_files(static_path)
  94. # about templates
  95. default_theme = settings['ui']['default_theme']
  96. templates_path = get_resources_directory(searx_dir, 'templates', settings['ui']['templates_path'])
  97. logger.debug('templates directory is %s', templates_path)
  98. themes = get_themes(templates_path)
  99. result_templates = get_result_templates(templates_path)
  100. global_favicons = []
  101. for indice, theme in enumerate(themes):
  102. global_favicons.append([])
  103. theme_img_path = os.path.join(static_path, 'themes', theme, 'img', 'icons')
  104. for (dirpath, dirnames, filenames) in os.walk(theme_img_path):
  105. global_favicons[indice].extend(filenames)
  106. # Flask app
  107. app = Flask(
  108. __name__,
  109. static_folder=static_path,
  110. template_folder=templates_path
  111. )
  112. app.jinja_env.trim_blocks = True
  113. app.jinja_env.lstrip_blocks = True
  114. app.jinja_env.add_extension('jinja2.ext.loopcontrols') # pylint: disable=no-member
  115. app.secret_key = settings['server']['secret_key']
  116. # see https://flask.palletsprojects.com/en/1.1.x/cli/
  117. # True if "FLASK_APP=searx/webapp.py FLASK_ENV=development flask run"
  118. flask_run_development = \
  119. os.environ.get("FLASK_APP") is not None\
  120. and os.environ.get("FLASK_ENV") == 'development'\
  121. and is_flask_run_cmdline()
  122. # True if reload feature is activated of werkzeug, False otherwise (including uwsgi, etc..)
  123. # __name__ != "__main__" if searx.webapp is imported (make test, make docs, uwsgi...)
  124. # see run() at the end of this file : searx_debug activates the reload feature.
  125. werkzeug_reloader = flask_run_development or (searx_debug and __name__ == "__main__")
  126. # initialize the engines except on the first run of the werkzeug server.
  127. if not werkzeug_reloader\
  128. or (werkzeug_reloader and os.environ.get("WERKZEUG_RUN_MAIN") == "true"):
  129. search_initialize(enable_checker=True)
  130. babel = Babel(app)
  131. rtl_locales = ['ar', 'arc', 'bcc', 'bqi', 'ckb', 'dv', 'fa', 'fa_IR', 'glk', 'he',
  132. 'ku', 'mzn', 'pnb', 'ps', 'sd', 'ug', 'ur', 'yi']
  133. ui_locale_codes = [l.replace('_', '-') for l in settings['locales'].keys()]
  134. # used when translating category names
  135. _category_names = (gettext('files'),
  136. gettext('general'),
  137. gettext('music'),
  138. gettext('social media'),
  139. gettext('images'),
  140. gettext('videos'),
  141. gettext('it'),
  142. gettext('news'),
  143. gettext('map'),
  144. gettext('onions'),
  145. gettext('science'))
  146. _flask_babel_get_translations = flask_babel.get_translations
  147. # monkey patch for flask_babel.get_translations
  148. def _get_translations():
  149. if has_request_context() and request.form.get('use-translation') == 'oc':
  150. babel_ext = flask_babel.current_app.extensions['babel']
  151. return Translations.load(next(babel_ext.translation_directories), 'oc')
  152. return _flask_babel_get_translations()
  153. flask_babel.get_translations = _get_translations
  154. def _get_browser_or_settings_language(request, lang_list):
  155. for lang in request.headers.get("Accept-Language", "en").split(","):
  156. if ';' in lang:
  157. lang = lang.split(';')[0]
  158. if '-' in lang:
  159. lang_parts = lang.split('-')
  160. lang = "{}-{}".format(lang_parts[0], lang_parts[-1].upper())
  161. locale = match_language(lang, lang_list, fallback=None)
  162. if locale is not None:
  163. return locale
  164. return settings['search']['default_lang'] or 'en'
  165. @babel.localeselector
  166. def get_locale():
  167. if 'locale' in request.form\
  168. and request.form['locale'] in settings['locales']:
  169. # use locale from the form
  170. locale = request.form['locale']
  171. locale_source = 'form'
  172. elif request.preferences.get_value('locale') != '':
  173. # use locale from the preferences
  174. locale = request.preferences.get_value('locale')
  175. locale_source = 'preferences'
  176. else:
  177. # use local from the browser
  178. locale = _get_browser_or_settings_language(request, ui_locale_codes)
  179. locale = locale.replace('-', '_')
  180. locale_source = 'browser'
  181. # see _get_translations function
  182. # and https://github.com/searx/searx/pull/1863
  183. if locale == 'oc':
  184. request.form['use-translation'] = 'oc'
  185. locale = 'fr_FR'
  186. logger.debug("%s uses locale `%s` from %s", request.url, locale, locale_source)
  187. return locale
  188. # code-highlighter
  189. @app.template_filter('code_highlighter')
  190. def code_highlighter(codelines, language=None):
  191. if not language:
  192. language = 'text'
  193. try:
  194. # find lexer by programing language
  195. lexer = get_lexer_by_name(language, stripall=True)
  196. except:
  197. # if lexer is not found, using default one
  198. logger.debug('highlighter cannot find lexer for {0}'.format(language))
  199. lexer = get_lexer_by_name('text', stripall=True)
  200. html_code = ''
  201. tmp_code = ''
  202. last_line = None
  203. # parse lines
  204. for line, code in codelines:
  205. if not last_line:
  206. line_code_start = line
  207. # new codeblock is detected
  208. if last_line is not None and\
  209. last_line + 1 != line:
  210. # highlight last codepart
  211. formatter = HtmlFormatter(linenos='inline',
  212. linenostart=line_code_start,
  213. cssclass="code-highlight")
  214. html_code = html_code + highlight(tmp_code, lexer, formatter)
  215. # reset conditions for next codepart
  216. tmp_code = ''
  217. line_code_start = line
  218. # add codepart
  219. tmp_code += code + '\n'
  220. # update line
  221. last_line = line
  222. # highlight last codepart
  223. formatter = HtmlFormatter(linenos='inline', linenostart=line_code_start, cssclass="code-highlight")
  224. html_code = html_code + highlight(tmp_code, lexer, formatter)
  225. return html_code
  226. # Extract domain from url
  227. @app.template_filter('extract_domain')
  228. def extract_domain(url):
  229. return urlparse(url)[1]
  230. def get_base_url():
  231. return url_for('index', _external=True)
  232. def get_current_theme_name(override=None):
  233. """Returns theme name.
  234. Checks in this order:
  235. 1. override
  236. 2. cookies
  237. 3. settings"""
  238. if override and (override in themes or override == '__common__'):
  239. return override
  240. theme_name = request.args.get('theme', request.preferences.get_value('theme'))
  241. if theme_name not in themes:
  242. theme_name = default_theme
  243. return theme_name
  244. def get_result_template(theme, template_name):
  245. themed_path = theme + '/result_templates/' + template_name
  246. if themed_path in result_templates:
  247. return themed_path
  248. return 'result_templates/' + template_name
  249. def url_for_theme(endpoint, override_theme=None, **values):
  250. if endpoint == 'static' and values.get('filename'):
  251. theme_name = get_current_theme_name(override=override_theme)
  252. filename_with_theme = "themes/{}/{}".format(theme_name, values['filename'])
  253. if filename_with_theme in static_files:
  254. values['filename'] = filename_with_theme
  255. url = url_for(endpoint, **values)
  256. return url
  257. def proxify(url):
  258. if url.startswith('//'):
  259. url = 'https:' + url
  260. if not settings.get('result_proxy'):
  261. return url
  262. url_params = dict(mortyurl=url.encode())
  263. if settings['result_proxy'].get('key'):
  264. url_params['mortyhash'] = hmac.new(settings['result_proxy']['key'],
  265. url.encode(),
  266. hashlib.sha256).hexdigest()
  267. return '{0}?{1}'.format(settings['result_proxy']['url'],
  268. urlencode(url_params))
  269. def image_proxify(url):
  270. if url.startswith('//'):
  271. url = 'https:' + url
  272. if not request.preferences.get_value('image_proxy'):
  273. return url
  274. if url.startswith('data:image/'):
  275. # 50 is an arbitrary number to get only the beginning of the image.
  276. partial_base64 = url[len('data:image/'):50].split(';')
  277. if len(partial_base64) == 2 \
  278. and partial_base64[0] in ['gif', 'png', 'jpeg', 'pjpeg', 'webp', 'tiff', 'bmp']\
  279. and partial_base64[1].startswith('base64,'):
  280. return url
  281. else:
  282. return None
  283. if settings.get('result_proxy'):
  284. return proxify(url)
  285. h = new_hmac(settings['server']['secret_key'], url.encode())
  286. return '{0}?{1}'.format(url_for('image_proxy'),
  287. urlencode(dict(url=url.encode(), h=h)))
  288. def get_translations():
  289. return {
  290. # when overpass AJAX request fails (on a map result)
  291. 'could_not_load': gettext('could not load data'),
  292. # when there is autocompletion
  293. 'no_item_found': gettext('No item found')
  294. }
  295. def render(template_name, override_theme=None, **kwargs):
  296. disabled_engines = request.preferences.engines.get_disabled()
  297. enabled_categories = set(category for engine_name in engines
  298. for category in engines[engine_name].categories
  299. if (engine_name, category) not in disabled_engines)
  300. if 'categories' not in kwargs:
  301. kwargs['categories'] = [x for x in
  302. _get_ordered_categories()
  303. if x in enabled_categories]
  304. if 'autocomplete' not in kwargs:
  305. kwargs['autocomplete'] = request.preferences.get_value('autocomplete')
  306. locale = request.preferences.get_value('locale')
  307. if locale in rtl_locales and 'rtl' not in kwargs:
  308. kwargs['rtl'] = True
  309. kwargs['searx_version'] = VERSION_STRING
  310. kwargs['method'] = request.preferences.get_value('method')
  311. kwargs['safesearch'] = str(request.preferences.get_value('safesearch'))
  312. kwargs['language_codes'] = languages
  313. if 'current_language' not in kwargs:
  314. kwargs['current_language'] = match_language(request.preferences.get_value('language'),
  315. LANGUAGE_CODES)
  316. # override url_for function in templates
  317. kwargs['url_for'] = url_for_theme
  318. kwargs['image_proxify'] = image_proxify
  319. kwargs['proxify'] = proxify if settings.get('result_proxy', {}).get('url') else None
  320. kwargs['opensearch_url'] = url_for('opensearch') + '?' \
  321. + urlencode({'method': kwargs['method'], 'autocomplete': kwargs['autocomplete']})
  322. kwargs['get_result_template'] = get_result_template
  323. kwargs['theme'] = get_current_theme_name(override=override_theme)
  324. kwargs['template_name'] = template_name
  325. kwargs['cookies'] = request.cookies
  326. kwargs['errors'] = request.errors
  327. kwargs['instance_name'] = settings['general']['instance_name']
  328. kwargs['results_on_new_tab'] = request.preferences.get_value('results_on_new_tab')
  329. kwargs['preferences'] = request.preferences
  330. kwargs['brand'] = brand
  331. kwargs['translations'] = json.dumps(get_translations(), separators=(',', ':'))
  332. kwargs['scripts'] = set()
  333. kwargs['endpoint'] = 'results' if 'q' in kwargs else request.endpoint
  334. for plugin in request.user_plugins:
  335. for script in plugin.js_dependencies:
  336. kwargs['scripts'].add(script)
  337. kwargs['styles'] = set()
  338. for plugin in request.user_plugins:
  339. for css in plugin.css_dependencies:
  340. kwargs['styles'].add(css)
  341. return render_template(
  342. '{}/{}'.format(kwargs['theme'], template_name), **kwargs)
  343. def _get_ordered_categories():
  344. ordered_categories = []
  345. if 'categories_order' not in settings['ui']:
  346. ordered_categories = ['general']
  347. ordered_categories.extend(x for x in sorted(categories.keys()) if x != 'general')
  348. return ordered_categories
  349. ordered_categories = settings['ui']['categories_order']
  350. ordered_categories.extend(x for x in sorted(categories.keys()) if x not in ordered_categories)
  351. return ordered_categories
  352. @app.before_request
  353. def pre_request():
  354. request.start_time = default_timer()
  355. request.timings = []
  356. request.errors = []
  357. preferences = Preferences(themes, list(categories.keys()), engines, plugins)
  358. user_agent = request.headers.get('User-Agent', '').lower()
  359. if 'webkit' in user_agent and 'android' in user_agent:
  360. preferences.key_value_settings['method'].value = 'GET'
  361. request.preferences = preferences
  362. try:
  363. preferences.parse_dict(request.cookies)
  364. except:
  365. request.errors.append(gettext('Invalid settings, please edit your preferences'))
  366. # merge GET, POST vars
  367. # request.form
  368. request.form = dict(request.form.items())
  369. for k, v in request.args.items():
  370. if k not in request.form:
  371. request.form[k] = v
  372. if request.form.get('preferences'):
  373. preferences.parse_encoded_data(request.form['preferences'])
  374. else:
  375. try:
  376. preferences.parse_dict(request.form)
  377. except Exception:
  378. logger.exception('invalid settings')
  379. request.errors.append(gettext('Invalid settings'))
  380. # init search language and locale
  381. if not preferences.get_value("language"):
  382. preferences.parse_dict({"language": _get_browser_or_settings_language(request, LANGUAGE_CODES)})
  383. if not preferences.get_value("locale"):
  384. preferences.parse_dict({"locale": get_locale()})
  385. # request.user_plugins
  386. request.user_plugins = []
  387. allowed_plugins = preferences.plugins.get_enabled()
  388. disabled_plugins = preferences.plugins.get_disabled()
  389. for plugin in plugins:
  390. if ((plugin.default_on and plugin.id not in disabled_plugins)
  391. or plugin.id in allowed_plugins):
  392. request.user_plugins.append(plugin)
  393. @app.after_request
  394. def add_default_headers(response):
  395. # set default http headers
  396. for header, value in settings['server'].get('default_http_headers', {}).items():
  397. if header in response.headers:
  398. continue
  399. response.headers[header] = value
  400. return response
  401. @app.after_request
  402. def post_request(response):
  403. total_time = default_timer() - request.start_time
  404. timings_all = ['total;dur=' + str(round(total_time * 1000, 3))]
  405. if len(request.timings) > 0:
  406. timings = sorted(request.timings, key=lambda v: v['total'])
  407. timings_total = ['total_' + str(i) + '_' + v['engine'] +
  408. ';dur=' + str(round(v['total'] * 1000, 3)) for i, v in enumerate(timings)]
  409. timings_load = ['load_' + str(i) + '_' + v['engine'] +
  410. ';dur=' + str(round(v['load'] * 1000, 3)) for i, v in enumerate(timings)]
  411. timings_all = timings_all + timings_total + timings_load
  412. response.headers.add('Server-Timing', ', '.join(timings_all))
  413. return response
  414. def index_error(output_format, error_message):
  415. if output_format == 'json':
  416. return Response(json.dumps({'error': error_message}),
  417. mimetype='application/json')
  418. elif output_format == 'csv':
  419. response = Response('', mimetype='application/csv')
  420. cont_disp = 'attachment;Filename=searx.csv'
  421. response.headers.add('Content-Disposition', cont_disp)
  422. return response
  423. elif output_format == 'rss':
  424. response_rss = render(
  425. 'opensearch_response_rss.xml',
  426. results=[],
  427. q=request.form['q'] if 'q' in request.form else '',
  428. number_of_results=0,
  429. base_url=get_base_url(),
  430. error_message=error_message,
  431. override_theme='__common__',
  432. )
  433. return Response(response_rss, mimetype='text/xml')
  434. else:
  435. # html
  436. request.errors.append(gettext('search error'))
  437. return render(
  438. 'index.html',
  439. selected_categories=get_selected_categories(request.preferences, request.form),
  440. )
  441. @app.route('/', methods=['GET', 'POST'])
  442. def index():
  443. """Render index page."""
  444. # UI
  445. advanced_search = request.preferences.get_value('advanced_search')
  446. # redirect to search if there's a query in the request
  447. if request.form.get('q'):
  448. query = ('?' + request.query_string.decode()) if request.query_string else ''
  449. return redirect(url_for('search') + query, 308)
  450. return render(
  451. 'index.html',
  452. selected_categories=get_selected_categories(request.preferences, request.form),
  453. advanced_search=advanced_search,
  454. )
  455. @app.route('/search', methods=['GET', 'POST'])
  456. def search():
  457. """Search query in q and return results.
  458. Supported outputs: html, json, csv, rss.
  459. """
  460. # output_format
  461. output_format = request.form.get('format', 'html')
  462. if output_format not in ['html', 'csv', 'json', 'rss']:
  463. output_format = 'html'
  464. # check if there is query (not None and not an empty string)
  465. if not request.form.get('q'):
  466. if output_format == 'html':
  467. return render(
  468. 'index.html',
  469. advanced_search=request.preferences.get_value('advanced_search'),
  470. selected_categories=get_selected_categories(request.preferences, request.form),
  471. )
  472. else:
  473. return index_error(output_format, 'No query'), 400
  474. # search
  475. search_query = None
  476. raw_text_query = None
  477. result_container = None
  478. try:
  479. search_query, raw_text_query, _, _ = get_search_query_from_webapp(request.preferences, request.form)
  480. # search = Search(search_query) # without plugins
  481. search = SearchWithPlugins(search_query, request.user_plugins, request)
  482. result_container = search.search()
  483. except SearxParameterException as e:
  484. logger.exception('search error: SearxParameterException')
  485. return index_error(output_format, e.message), 400
  486. except Exception as e:
  487. logger.exception('search error')
  488. return index_error(output_format, gettext('search error')), 500
  489. # results
  490. results = result_container.get_ordered_results()
  491. number_of_results = result_container.results_number()
  492. if number_of_results < result_container.results_length():
  493. number_of_results = 0
  494. # checkin for a external bang
  495. if result_container.redirect_url:
  496. return redirect(result_container.redirect_url)
  497. # Server-Timing header
  498. request.timings = result_container.get_timings()
  499. # output
  500. for result in results:
  501. if output_format == 'html':
  502. if 'content' in result and result['content']:
  503. result['content'] = highlight_content(escape(result['content'][:1024]), search_query.query)
  504. if 'title' in result and result['title']:
  505. result['title'] = highlight_content(escape(result['title'] or ''), search_query.query)
  506. else:
  507. if result.get('content'):
  508. result['content'] = html_to_text(result['content']).strip()
  509. # removing html content and whitespace duplications
  510. result['title'] = ' '.join(html_to_text(result['title']).strip().split())
  511. if 'url' in result:
  512. result['pretty_url'] = prettify_url(result['url'])
  513. # TODO, check if timezone is calculated right
  514. if result.get('publishedDate'): # do not try to get a date from an empty string or a None type
  515. try: # test if publishedDate >= 1900 (datetime module bug)
  516. result['pubdate'] = result['publishedDate'].strftime('%Y-%m-%d %H:%M:%S%z')
  517. except ValueError:
  518. result['publishedDate'] = None
  519. else:
  520. if result['publishedDate'].replace(tzinfo=None) >= datetime.now() - timedelta(days=1):
  521. timedifference = datetime.now() - result['publishedDate'].replace(tzinfo=None)
  522. minutes = int((timedifference.seconds / 60) % 60)
  523. hours = int(timedifference.seconds / 60 / 60)
  524. if hours == 0:
  525. result['publishedDate'] = gettext('{minutes} minute(s) ago').format(minutes=minutes)
  526. else:
  527. result['publishedDate'] = gettext('{hours} hour(s), {minutes} minute(s) ago').format(hours=hours, minutes=minutes) # noqa
  528. else:
  529. result['publishedDate'] = format_date(result['publishedDate'])
  530. if output_format == 'json':
  531. return Response(json.dumps({'query': search_query.query,
  532. 'number_of_results': number_of_results,
  533. 'results': results,
  534. 'answers': list(result_container.answers),
  535. 'corrections': list(result_container.corrections),
  536. 'infoboxes': result_container.infoboxes,
  537. 'suggestions': list(result_container.suggestions),
  538. 'unresponsive_engines': __get_translated_errors(result_container.unresponsive_engines)}, # noqa
  539. default=lambda item: list(item) if isinstance(item, set) else item),
  540. mimetype='application/json')
  541. elif output_format == 'csv':
  542. csv = UnicodeWriter(StringIO())
  543. keys = ('title', 'url', 'content', 'host', 'engine', 'score', 'type')
  544. csv.writerow(keys)
  545. for row in results:
  546. row['host'] = row['parsed_url'].netloc
  547. row['type'] = 'result'
  548. csv.writerow([row.get(key, '') for key in keys])
  549. for a in result_container.answers:
  550. row = {'title': a, 'type': 'answer'}
  551. csv.writerow([row.get(key, '') for key in keys])
  552. for a in result_container.suggestions:
  553. row = {'title': a, 'type': 'suggestion'}
  554. csv.writerow([row.get(key, '') for key in keys])
  555. for a in result_container.corrections:
  556. row = {'title': a, 'type': 'correction'}
  557. csv.writerow([row.get(key, '') for key in keys])
  558. csv.stream.seek(0)
  559. response = Response(csv.stream.read(), mimetype='application/csv')
  560. cont_disp = 'attachment;Filename=searx_-_{0}.csv'.format(search_query.query)
  561. response.headers.add('Content-Disposition', cont_disp)
  562. return response
  563. elif output_format == 'rss':
  564. response_rss = render(
  565. 'opensearch_response_rss.xml',
  566. results=results,
  567. answers=result_container.answers,
  568. corrections=result_container.corrections,
  569. suggestions=result_container.suggestions,
  570. q=request.form['q'],
  571. number_of_results=number_of_results,
  572. base_url=get_base_url(),
  573. override_theme='__common__',
  574. )
  575. return Response(response_rss, mimetype='text/xml')
  576. # HTML output format
  577. # suggestions: use RawTextQuery to get the suggestion URLs with the same bang
  578. suggestion_urls = list(map(lambda suggestion: {
  579. 'url': raw_text_query.changeQuery(suggestion).getFullQuery(),
  580. 'title': suggestion
  581. },
  582. result_container.suggestions))
  583. correction_urls = list(map(lambda correction: {
  584. 'url': raw_text_query.changeQuery(correction).getFullQuery(),
  585. 'title': correction
  586. },
  587. result_container.corrections))
  588. #
  589. return render(
  590. 'results.html',
  591. results=results,
  592. q=request.form['q'],
  593. selected_categories=search_query.categories,
  594. pageno=search_query.pageno,
  595. time_range=search_query.time_range,
  596. number_of_results=format_decimal(number_of_results),
  597. suggestions=suggestion_urls,
  598. answers=result_container.answers,
  599. corrections=correction_urls,
  600. infoboxes=result_container.infoboxes,
  601. engine_data=result_container.engine_data,
  602. paging=result_container.paging,
  603. unresponsive_engines=__get_translated_errors(result_container.unresponsive_engines),
  604. current_language=match_language(search_query.lang,
  605. LANGUAGE_CODES,
  606. fallback=request.preferences.get_value("language")),
  607. base_url=get_base_url(),
  608. theme=get_current_theme_name(),
  609. favicons=global_favicons[themes.index(get_current_theme_name())],
  610. timeout_limit=request.form.get('timeout_limit', None)
  611. )
  612. def __get_translated_errors(unresponsive_engines):
  613. translated_errors = set()
  614. for unresponsive_engine in unresponsive_engines:
  615. error_msg = gettext(unresponsive_engine[1])
  616. if unresponsive_engine[2]:
  617. error_msg = "{} {}".format(error_msg, unresponsive_engine[2])
  618. if unresponsive_engine[3]:
  619. error_msg = gettext('Suspended') + ': ' + error_msg
  620. translated_errors.add((unresponsive_engine[0], error_msg))
  621. return translated_errors
  622. @app.route('/about', methods=['GET'])
  623. def about():
  624. """Render about page"""
  625. return render(
  626. 'about.html',
  627. )
  628. @app.route('/autocompleter', methods=['GET', 'POST'])
  629. def autocompleter():
  630. """Return autocompleter results"""
  631. # run autocompleter
  632. results = []
  633. # set blocked engines
  634. disabled_engines = request.preferences.engines.get_disabled()
  635. # parse query
  636. raw_text_query = RawTextQuery(request.form.get('q', ''), disabled_engines)
  637. sug_prefix = raw_text_query.getQuery()
  638. # normal autocompletion results only appear if no inner results returned
  639. # and there is a query part
  640. if len(raw_text_query.autocomplete_list) == 0 and len(sug_prefix) > 0:
  641. # get language from cookie
  642. language = request.preferences.get_value('language')
  643. if not language or language == 'all':
  644. language = 'en'
  645. else:
  646. language = language.split('-')[0]
  647. # run autocompletion
  648. raw_results = search_autocomplete(
  649. request.preferences.get_value('autocomplete'), sug_prefix, language
  650. )
  651. for result in raw_results:
  652. # attention: this loop will change raw_text_query object and this is
  653. # the reason why the sug_prefix was stored before (see above)
  654. results.append(raw_text_query.changeQuery(result).getFullQuery())
  655. if len(raw_text_query.autocomplete_list) > 0:
  656. for autocomplete_text in raw_text_query.autocomplete_list:
  657. results.append(raw_text_query.get_autocomplete_full_query(autocomplete_text))
  658. for answers in ask(raw_text_query):
  659. for answer in answers:
  660. results.append(str(answer['answer']))
  661. if request.headers.get('X-Requested-With') == 'XMLHttpRequest':
  662. # the suggestion request comes from the searx search form
  663. suggestions = json.dumps(results)
  664. mimetype = 'application/json'
  665. else:
  666. # the suggestion request comes from browser's URL bar
  667. suggestions = json.dumps([sug_prefix, results])
  668. mimetype = 'application/x-suggestions+json'
  669. return Response(suggestions, mimetype=mimetype)
  670. @app.route('/preferences', methods=['GET', 'POST'])
  671. def preferences():
  672. """Render preferences page && save user preferences"""
  673. # save preferences
  674. if request.method == 'POST':
  675. resp = make_response(redirect(url_for('index', _external=True)))
  676. try:
  677. request.preferences.parse_form(request.form)
  678. except ValidationException:
  679. request.errors.append(gettext('Invalid settings, please edit your preferences'))
  680. return resp
  681. return request.preferences.save(resp)
  682. # render preferences
  683. image_proxy = request.preferences.get_value('image_proxy')
  684. disabled_engines = request.preferences.engines.get_disabled()
  685. allowed_plugins = request.preferences.plugins.get_enabled()
  686. # stats for preferences page
  687. filtered_engines = dict(filter(lambda kv: (kv[0], request.preferences.validate_token(kv[1])), engines.items()))
  688. engines_by_category = {}
  689. for c in categories:
  690. engines_by_category[c] = [e for e in categories[c] if e.name in filtered_engines]
  691. # get first element [0], the engine time,
  692. # and then the second element [1] : the time (the first one is the label)
  693. stats = {}
  694. for _, e in filtered_engines.items():
  695. h = histogram('engine', e.name, 'time', 'total')
  696. median = round(h.percentage(50), 1) if h.count > 0 else None
  697. stats[e.name] = {
  698. 'time': median if median else None,
  699. 'warn_time': median is not None and median > settings['outgoing']['request_timeout'],
  700. 'warn_timeout': e.timeout > settings['outgoing']['request_timeout'],
  701. 'supports_selected_language': _is_selected_language_supported(e, request.preferences)
  702. }
  703. # end of stats
  704. locked_preferences = list()
  705. if 'preferences' in settings and 'lock' in settings['preferences']:
  706. locked_preferences = settings['preferences']['lock']
  707. return render('preferences.html',
  708. selected_categories=get_selected_categories(request.preferences, request.form),
  709. all_categories=_get_ordered_categories(),
  710. locales=settings['locales'],
  711. current_locale=request.preferences.get_value("locale"),
  712. image_proxy=image_proxy,
  713. engines_by_category=engines_by_category,
  714. stats=stats,
  715. answerers=[{'info': a.self_info(), 'keywords': a.keywords} for a in answerers],
  716. disabled_engines=disabled_engines,
  717. autocomplete_backends=autocomplete_backends,
  718. shortcuts={y: x for x, y in engine_shortcuts.items()},
  719. themes=themes,
  720. plugins=plugins,
  721. doi_resolvers=settings['doi_resolvers'],
  722. current_doi_resolver=get_doi_resolver(request.args, request.preferences.get_value('doi_resolver')),
  723. allowed_plugins=allowed_plugins,
  724. theme=get_current_theme_name(),
  725. preferences_url_params=request.preferences.get_as_url_params(),
  726. base_url=get_base_url(),
  727. locked_preferences=locked_preferences,
  728. preferences=True)
  729. def _is_selected_language_supported(engine, preferences):
  730. language = preferences.get_value('language')
  731. return (language == 'all'
  732. or match_language(language,
  733. getattr(engine, 'supported_languages', []),
  734. getattr(engine, 'language_aliases', {}), None))
  735. @app.route('/image_proxy', methods=['GET'])
  736. def image_proxy():
  737. url = request.args.get('url')
  738. if not url:
  739. return '', 400
  740. h = new_hmac(settings['server']['secret_key'], url.encode())
  741. if h != request.args.get('h'):
  742. return '', 400
  743. maximum_size = 5 * 1024 * 1024
  744. try:
  745. headers = dict_subset(request.headers, {'If-Modified-Since', 'If-None-Match'})
  746. headers['User-Agent'] = gen_useragent()
  747. stream = http_stream(
  748. method='GET',
  749. url=url,
  750. headers=headers,
  751. timeout=settings['outgoing']['request_timeout'],
  752. allow_redirects=True,
  753. max_redirects=20)
  754. resp = next(stream)
  755. content_length = resp.headers.get('Content-Length')
  756. if content_length and content_length.isdigit() and int(content_length) > maximum_size:
  757. return 'Max size', 400
  758. if resp.status_code == 304:
  759. return '', resp.status_code
  760. if resp.status_code != 200:
  761. logger.debug('image-proxy: wrong response code: {0}'.format(resp.status_code))
  762. if resp.status_code >= 400:
  763. return '', resp.status_code
  764. return '', 400
  765. if not resp.headers.get('content-type', '').startswith('image/'):
  766. logger.debug('image-proxy: wrong content-type: {0}'.format(resp.headers.get('content-type')))
  767. return '', 400
  768. headers = dict_subset(resp.headers, {'Content-Length', 'Length', 'Date', 'Last-Modified', 'Expires', 'Etag'})
  769. total_length = 0
  770. def forward_chunk():
  771. nonlocal total_length
  772. for chunk in stream:
  773. total_length += len(chunk)
  774. if total_length > maximum_size:
  775. break
  776. yield chunk
  777. return Response(forward_chunk(), mimetype=resp.headers['Content-Type'], headers=headers)
  778. except httpx.HTTPError:
  779. return '', 400
  780. @app.route('/stats', methods=['GET'])
  781. def stats():
  782. """Render engine statistics page."""
  783. filtered_engines = dict(filter(lambda kv: (kv[0], request.preferences.validate_token(kv[1])), engines.items()))
  784. engine_stats = get_engines_stats(filtered_engines)
  785. return render(
  786. 'stats.html',
  787. stats=[(gettext('Engine time (sec)'), engine_stats['time_total']),
  788. (gettext('Page loads (sec)'), engine_stats['time_http']),
  789. (gettext('Number of results'), engine_stats['result_count']),
  790. (gettext('Scores'), engine_stats['scores']),
  791. (gettext('Scores per result'), engine_stats['scores_per_result']),
  792. (gettext('Errors'), engine_stats['error_count'])]
  793. )
  794. @app.route('/stats/errors', methods=['GET'])
  795. def stats_errors():
  796. filtered_engines = dict(filter(lambda kv: (kv[0], request.preferences.validate_token(kv[1])), engines.items()))
  797. result = get_engine_errors(filtered_engines)
  798. return jsonify(result)
  799. @app.route('/stats/checker', methods=['GET'])
  800. def stats_checker():
  801. result = checker_get_result()
  802. return jsonify(result)
  803. @app.route('/robots.txt', methods=['GET'])
  804. def robots():
  805. return Response("""User-agent: *
  806. Allow: /
  807. Allow: /about
  808. Disallow: /stats
  809. Disallow: /preferences
  810. Disallow: /*?*q=*
  811. """, mimetype='text/plain')
  812. @app.route('/opensearch.xml', methods=['GET'])
  813. def opensearch():
  814. method = 'post'
  815. if request.preferences.get_value('method') == 'GET':
  816. method = 'get'
  817. # chrome/chromium only supports HTTP GET....
  818. if request.headers.get('User-Agent', '').lower().find('webkit') >= 0:
  819. method = 'get'
  820. ret = render(
  821. 'opensearch.xml',
  822. opensearch_method=method,
  823. override_theme='__common__'
  824. )
  825. resp = Response(response=ret,
  826. status=200,
  827. mimetype="application/opensearchdescription+xml")
  828. return resp
  829. @app.route('/favicon.ico')
  830. def favicon():
  831. return send_from_directory(os.path.join(app.root_path,
  832. static_path,
  833. 'themes',
  834. get_current_theme_name(),
  835. 'img'),
  836. 'favicon.png',
  837. mimetype='image/vnd.microsoft.icon')
  838. @app.route('/clear_cookies')
  839. def clear_cookies():
  840. resp = make_response(redirect(url_for('index', _external=True)))
  841. for cookie_name in request.cookies:
  842. resp.delete_cookie(cookie_name)
  843. return resp
  844. @app.route('/config')
  845. def config():
  846. """Return configuration in JSON format."""
  847. _engines = []
  848. for name, engine in engines.items():
  849. if not request.preferences.validate_token(engine):
  850. continue
  851. supported_languages = engine.supported_languages
  852. if isinstance(engine.supported_languages, dict):
  853. supported_languages = list(engine.supported_languages.keys())
  854. _engines.append({
  855. 'name': name,
  856. 'categories': engine.categories,
  857. 'shortcut': engine.shortcut,
  858. 'enabled': not engine.disabled,
  859. 'paging': engine.paging,
  860. 'language_support': engine.language_support,
  861. 'supported_languages': supported_languages,
  862. 'safesearch': engine.safesearch,
  863. 'time_range_support': engine.time_range_support,
  864. 'timeout': engine.timeout
  865. })
  866. _plugins = []
  867. for _ in plugins:
  868. _plugins.append({'name': _.name, 'enabled': _.default_on})
  869. return jsonify({
  870. 'categories': list(categories.keys()),
  871. 'engines': _engines,
  872. 'plugins': _plugins,
  873. 'instance_name': settings['general']['instance_name'],
  874. 'locales': settings['locales'],
  875. 'default_locale': settings['ui']['default_locale'],
  876. 'autocomplete': settings['search']['autocomplete'],
  877. 'safe_search': settings['search']['safe_search'],
  878. 'default_theme': settings['ui']['default_theme'],
  879. 'version': VERSION_STRING,
  880. 'brand': {
  881. 'CONTACT_URL': brand.CONTACT_URL,
  882. 'GIT_URL': brand.GIT_URL,
  883. 'DOCS_URL': brand.DOCS_URL
  884. },
  885. 'doi_resolvers': [r for r in settings['doi_resolvers']],
  886. 'default_doi_resolver': settings['default_doi_resolver'],
  887. })
  888. @app.errorhandler(404)
  889. def page_not_found(e):
  890. return render('404.html'), 404
  891. def run():
  892. logger.debug('starting webserver on %s:%s', settings['server']['bind_address'], settings['server']['port'])
  893. app.run(
  894. debug=searx_debug,
  895. use_debugger=searx_debug,
  896. port=settings['server']['port'],
  897. host=settings['server']['bind_address'],
  898. threaded=True
  899. )
  900. class ReverseProxyPathFix:
  901. '''Wrap the application in this middleware and configure the
  902. front-end server to add these headers, to let you quietly bind
  903. this to a URL other than / and to an HTTP scheme that is
  904. different than what is used locally.
  905. http://flask.pocoo.org/snippets/35/
  906. In nginx:
  907. location /myprefix {
  908. proxy_pass http://127.0.0.1:8000;
  909. proxy_set_header Host $host;
  910. proxy_set_header X-Forwarded-For $proxy_add_x_forwarded_for;
  911. proxy_set_header X-Scheme $scheme;
  912. proxy_set_header X-Script-Name /myprefix;
  913. }
  914. :param app: the WSGI application
  915. '''
  916. def __init__(self, app):
  917. self.app = app
  918. self.script_name = None
  919. self.scheme = None
  920. self.server = None
  921. if settings['server']['base_url']:
  922. # If base_url is specified, then these values from are given
  923. # preference over any Flask's generics.
  924. base_url = urlparse(settings['server']['base_url'])
  925. self.script_name = base_url.path
  926. if self.script_name.endswith('/'):
  927. # remove trailing slash to avoid infinite redirect on the index
  928. # see https://github.com/searx/searx/issues/2729
  929. self.script_name = self.script_name[:-1]
  930. self.scheme = base_url.scheme
  931. self.server = base_url.netloc
  932. def __call__(self, environ, start_response):
  933. script_name = self.script_name or environ.get('HTTP_X_SCRIPT_NAME', '')
  934. if script_name:
  935. environ['SCRIPT_NAME'] = script_name
  936. path_info = environ['PATH_INFO']
  937. if path_info.startswith(script_name):
  938. environ['PATH_INFO'] = path_info[len(script_name):]
  939. scheme = self.scheme or environ.get('HTTP_X_SCHEME', '')
  940. if scheme:
  941. environ['wsgi.url_scheme'] = scheme
  942. server = self.server or environ.get('HTTP_X_FORWARDED_HOST', '')
  943. if server:
  944. environ['HTTP_HOST'] = server
  945. return self.app(environ, start_response)
  946. application = app
  947. # patch app to handle non root url-s behind proxy & wsgi
  948. app.wsgi_app = ReverseProxyPathFix(ProxyFix(application.wsgi_app))
  949. if __name__ == "__main__":
  950. run()