preferences.py 19 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545
  1. # SPDX-License-Identifier: AGPL-3.0-or-later
  2. # lint: pylint
  3. """Searx preferences implementation.
  4. """
  5. # pylint: disable=useless-object-inheritance
  6. from base64 import urlsafe_b64encode, urlsafe_b64decode
  7. from zlib import compress, decompress
  8. from urllib.parse import parse_qs, urlencode
  9. from searx import settings, autocomplete
  10. from searx.locales import LOCALE_NAMES
  11. from searx.webutils import VALID_LANGUAGE_CODE
  12. COOKIE_MAX_AGE = 60 * 60 * 24 * 365 * 5 # 5 years
  13. DISABLED = 0
  14. ENABLED = 1
  15. DOI_RESOLVERS = list(settings['doi_resolvers'])
  16. class MissingArgumentException(Exception):
  17. """Exption from ``cls._post_init`` when a argument is missed.
  18. """
  19. class ValidationException(Exception):
  20. """Exption from ``cls._post_init`` when configuration value is invalid.
  21. """
  22. class Setting:
  23. """Base class of user settings"""
  24. def __init__(self, default_value, locked=False, **kwargs):
  25. super().__init__()
  26. self.value = default_value
  27. self.locked = locked
  28. for key, value in kwargs.items():
  29. setattr(self, key, value)
  30. self._post_init()
  31. def _post_init(self):
  32. pass
  33. def parse(self, data):
  34. """Parse ``data`` and store the result at ``self.value``
  35. If needed, its overwritten in the inheritance.
  36. """
  37. self.value = data
  38. def get_value(self):
  39. """Returns the value of the setting
  40. If needed, its overwritten in the inheritance.
  41. """
  42. return self.value
  43. def save(self, name, resp):
  44. """Save cookie ``name`` in the HTTP reponse obect
  45. If needed, its overwritten in the inheritance."""
  46. resp.set_cookie(name, self.value, max_age=COOKIE_MAX_AGE)
  47. class StringSetting(Setting):
  48. """Setting of plain string values"""
  49. class EnumStringSetting(Setting):
  50. """Setting of a value which can only come from the given choices"""
  51. def _post_init(self):
  52. if not hasattr(self, 'choices'):
  53. raise MissingArgumentException('Missing argument: choices')
  54. self._validate_selection(self.value)
  55. def _validate_selection(self, selection):
  56. if selection not in self.choices: # pylint: disable=no-member
  57. raise ValidationException('Invalid value: "{0}"'.format(selection))
  58. def parse(self, data):
  59. """Parse and validate ``data`` and store the result at ``self.value``
  60. """
  61. self._validate_selection(data)
  62. self.value = data
  63. class MultipleChoiceSetting(EnumStringSetting):
  64. """Setting of values which can only come from the given choices"""
  65. def _validate_selections(self, selections):
  66. for item in selections:
  67. if item not in self.choices: # pylint: disable=no-member
  68. raise ValidationException('Invalid value: "{0}"'.format(selections))
  69. def _post_init(self):
  70. if not hasattr(self, 'choices'):
  71. raise MissingArgumentException('Missing argument: choices')
  72. self._validate_selections(self.value)
  73. def parse(self, data):
  74. """Parse and validate ``data`` and store the result at ``self.value``
  75. """
  76. if data == '':
  77. self.value = []
  78. return
  79. elements = data.split(',')
  80. self._validate_selections(elements)
  81. self.value = elements
  82. def parse_form(self, data):
  83. if self.locked:
  84. return
  85. self.value = []
  86. for choice in data:
  87. if choice in self.choices and choice not in self.value: # pylint: disable=no-member
  88. self.value.append(choice)
  89. def save(self, name, resp):
  90. """Save cookie ``name`` in the HTTP reponse obect
  91. """
  92. resp.set_cookie(name, ','.join(self.value), max_age=COOKIE_MAX_AGE)
  93. class SetSetting(Setting):
  94. """Setting of values of type ``set`` (comma separated string) """
  95. def _post_init(self):
  96. if not hasattr(self, 'values'):
  97. self.values = set()
  98. def get_value(self):
  99. """Returns a string with comma separated values.
  100. """
  101. return ','.join(self.values)
  102. def parse(self, data):
  103. """Parse and validate ``data`` and store the result at ``self.value``
  104. """
  105. if data == '':
  106. self.values = set() # pylint: disable=attribute-defined-outside-init
  107. return
  108. elements = data.split(',')
  109. for element in elements:
  110. self.values.add(element)
  111. def parse_form(self, data):
  112. if self.locked:
  113. return
  114. elements = data.split(',')
  115. self.values = set(elements) # pylint: disable=attribute-defined-outside-init
  116. def save(self, name, resp):
  117. """Save cookie ``name`` in the HTTP reponse obect
  118. """
  119. resp.set_cookie(name, ','.join(self.values), max_age=COOKIE_MAX_AGE)
  120. class SearchLanguageSetting(EnumStringSetting):
  121. """Available choices may change, so user's value may not be in choices anymore"""
  122. def _validate_selection(self, selection):
  123. if selection != '' and not VALID_LANGUAGE_CODE.match(selection):
  124. raise ValidationException('Invalid language code: "{0}"'.format(selection))
  125. def parse(self, data):
  126. """Parse and validate ``data`` and store the result at ``self.value``
  127. """
  128. if data not in self.choices and data != self.value: # pylint: disable=no-member
  129. # hack to give some backwards compatibility with old language cookies
  130. data = str(data).replace('_', '-')
  131. lang = data.split('-', maxsplit=1)[0]
  132. # pylint: disable=no-member
  133. if data in self.choices:
  134. pass
  135. elif lang in self.choices:
  136. data = lang
  137. else:
  138. data = self.value
  139. self._validate_selection(data)
  140. self.value = data
  141. class MapSetting(Setting):
  142. """Setting of a value that has to be translated in order to be storable"""
  143. def _post_init(self):
  144. if not hasattr(self, 'map'):
  145. raise MissingArgumentException('missing argument: map')
  146. if self.value not in self.map.values(): # pylint: disable=no-member
  147. raise ValidationException('Invalid default value')
  148. def parse(self, data):
  149. """Parse and validate ``data`` and store the result at ``self.value``
  150. """
  151. # pylint: disable=no-member
  152. if data not in self.map:
  153. raise ValidationException('Invalid choice: {0}'.format(data))
  154. self.value = self.map[data]
  155. self.key = data # pylint: disable=attribute-defined-outside-init
  156. def save(self, name, resp):
  157. """Save cookie ``name`` in the HTTP reponse obect
  158. """
  159. if hasattr(self, 'key'):
  160. resp.set_cookie(name, self.key, max_age=COOKIE_MAX_AGE)
  161. class SwitchableSetting(Setting):
  162. """ Base class for settings that can be turned on && off"""
  163. def _post_init(self):
  164. self.disabled = set()
  165. self.enabled = set()
  166. if not hasattr(self, 'choices'):
  167. raise MissingArgumentException('missing argument: choices')
  168. def transform_form_items(self, items):
  169. # pylint: disable=no-self-use
  170. return items
  171. def transform_values(self, values):
  172. # pylint: disable=no-self-use
  173. return values
  174. def parse_cookie(self, data):
  175. # pylint: disable=attribute-defined-outside-init
  176. if data[DISABLED] != '':
  177. self.disabled = set(data[DISABLED].split(','))
  178. if data[ENABLED] != '':
  179. self.enabled = set(data[ENABLED].split(','))
  180. def parse_form(self, items):
  181. if self.locked:
  182. return
  183. items = self.transform_form_items(items)
  184. self.disabled = set() # pylint: disable=attribute-defined-outside-init
  185. self.enabled = set() # pylint: disable=attribute-defined-outside-init
  186. for choice in self.choices: # pylint: disable=no-member
  187. if choice['default_on']:
  188. if choice['id'] in items:
  189. self.disabled.add(choice['id'])
  190. else:
  191. if choice['id'] not in items:
  192. self.enabled.add(choice['id'])
  193. def save(self, resp): # pylint: disable=arguments-differ
  194. """Save cookie in the HTTP reponse obect
  195. """
  196. resp.set_cookie('disabled_{0}'.format(self.value), ','.join(self.disabled), max_age=COOKIE_MAX_AGE)
  197. resp.set_cookie('enabled_{0}'.format(self.value), ','.join(self.enabled), max_age=COOKIE_MAX_AGE)
  198. def get_disabled(self):
  199. disabled = self.disabled
  200. for choice in self.choices: # pylint: disable=no-member
  201. if not choice['default_on'] and choice['id'] not in self.enabled:
  202. disabled.add(choice['id'])
  203. return self.transform_values(disabled)
  204. def get_enabled(self):
  205. enabled = self.enabled
  206. for choice in self.choices: # pylint: disable=no-member
  207. if choice['default_on'] and choice['id'] not in self.disabled:
  208. enabled.add(choice['id'])
  209. return self.transform_values(enabled)
  210. class EnginesSetting(SwitchableSetting):
  211. """Engine settings"""
  212. def _post_init(self):
  213. super()._post_init()
  214. transformed_choices = []
  215. for engine_name, engine in self.choices.items(): # pylint: disable=no-member,access-member-before-definition
  216. for category in engine.categories:
  217. transformed_choice = {}
  218. transformed_choice['default_on'] = not engine.disabled
  219. transformed_choice['id'] = '{}__{}'.format(engine_name, category)
  220. transformed_choices.append(transformed_choice)
  221. self.choices = transformed_choices
  222. def transform_form_items(self, items):
  223. return [item[len('engine_'):].replace('_', ' ').replace(' ', '__') for item in items]
  224. def transform_values(self, values):
  225. if len(values) == 1 and next(iter(values)) == '':
  226. return []
  227. transformed_values = []
  228. for value in values:
  229. engine, category = value.split('__')
  230. transformed_values.append((engine, category))
  231. return transformed_values
  232. class PluginsSetting(SwitchableSetting):
  233. """Plugin settings"""
  234. def _post_init(self):
  235. super()._post_init()
  236. transformed_choices = []
  237. for plugin in self.choices: # pylint: disable=access-member-before-definition
  238. transformed_choice = {}
  239. transformed_choice['default_on'] = plugin.default_on
  240. transformed_choice['id'] = plugin.id
  241. transformed_choices.append(transformed_choice)
  242. self.choices = transformed_choices
  243. def transform_form_items(self, items):
  244. return [item[len('plugin_'):] for item in items]
  245. class Preferences:
  246. """Validates and saves preferences to cookies"""
  247. def __init__(self, themes, categories, engines, plugins):
  248. super().__init__()
  249. self.key_value_settings = {
  250. 'categories': MultipleChoiceSetting(
  251. ['general'],
  252. is_locked('categories'),
  253. choices=categories + ['none']
  254. ),
  255. 'language': SearchLanguageSetting(
  256. settings['search']['default_lang'],
  257. is_locked('language'),
  258. choices=settings['search']['languages'] + ['']
  259. ),
  260. 'locale': EnumStringSetting(
  261. settings['ui']['default_locale'],
  262. is_locked('locale'),
  263. choices=list(LOCALE_NAMES.keys()) + ['']
  264. ),
  265. 'autocomplete': EnumStringSetting(
  266. settings['search']['autocomplete'],
  267. is_locked('autocomplete'),
  268. choices=list(autocomplete.backends.keys()) + ['']
  269. ),
  270. 'image_proxy': MapSetting(
  271. settings['server']['image_proxy'],
  272. is_locked('image_proxy'),
  273. map={
  274. '': settings['server']['image_proxy'],
  275. '0': False,
  276. '1': True,
  277. 'True': True,
  278. 'False': False
  279. }
  280. ),
  281. 'method': EnumStringSetting(
  282. settings['server']['method'],
  283. is_locked('method'),
  284. choices=('GET', 'POST')
  285. ),
  286. 'safesearch': MapSetting(
  287. settings['search']['safe_search'],
  288. is_locked('safesearch'),
  289. map={
  290. '0': 0,
  291. '1': 1,
  292. '2': 2
  293. }
  294. ),
  295. 'theme': EnumStringSetting(
  296. settings['ui']['default_theme'],
  297. is_locked('theme'),
  298. choices=themes
  299. ),
  300. 'results_on_new_tab': MapSetting(
  301. settings['ui']['results_on_new_tab'],
  302. is_locked('results_on_new_tab'),
  303. map={
  304. '0': False,
  305. '1': True,
  306. 'False': False,
  307. 'True': True
  308. }
  309. ),
  310. 'doi_resolver': MultipleChoiceSetting(
  311. [settings['default_doi_resolver'], ],
  312. is_locked('doi_resolver'),
  313. choices=DOI_RESOLVERS
  314. ),
  315. 'oscar-style': EnumStringSetting(
  316. settings['ui']['theme_args']['oscar_style'],
  317. is_locked('oscar-style'),
  318. choices=['', 'logicodev', 'logicodev-dark', 'pointhi']),
  319. 'advanced_search': MapSetting(
  320. settings['ui']['advanced_search'],
  321. is_locked('advanced_search'),
  322. map={
  323. '0': False,
  324. '1': True,
  325. 'False': False,
  326. 'True': True,
  327. 'on': True,
  328. }
  329. ),
  330. 'query_in_title': MapSetting(
  331. settings['ui']['query_in_title'],
  332. is_locked('query_in_title'),
  333. map={
  334. '': settings['ui']['query_in_title'],
  335. '0': False,
  336. '1': True,
  337. 'True': True,
  338. 'False': False
  339. }
  340. ),
  341. }
  342. self.engines = EnginesSetting('engines', choices=engines)
  343. self.plugins = PluginsSetting('plugins', choices=plugins)
  344. self.tokens = SetSetting('tokens')
  345. self.unknown_params = {}
  346. def get_as_url_params(self):
  347. """Return preferences as URL parameters"""
  348. settings_kv = {}
  349. for k, v in self.key_value_settings.items():
  350. if v.locked:
  351. continue
  352. if isinstance(v, MultipleChoiceSetting):
  353. settings_kv[k] = ','.join(v.get_value())
  354. else:
  355. settings_kv[k] = v.get_value()
  356. settings_kv['disabled_engines'] = ','.join(self.engines.disabled)
  357. settings_kv['enabled_engines'] = ','.join(self.engines.enabled)
  358. settings_kv['disabled_plugins'] = ','.join(self.plugins.disabled)
  359. settings_kv['enabled_plugins'] = ','.join(self.plugins.enabled)
  360. settings_kv['tokens'] = ','.join(self.tokens.values)
  361. return urlsafe_b64encode(compress(urlencode(settings_kv).encode())).decode()
  362. def parse_encoded_data(self, input_data):
  363. """parse (base64) preferences from request (``flask.request.form['preferences']``)"""
  364. bin_data = decompress(urlsafe_b64decode(input_data))
  365. dict_data = {}
  366. for x, y in parse_qs(bin_data.decode('ascii')).items():
  367. dict_data[x] = y[0]
  368. self.parse_dict(dict_data)
  369. def parse_dict(self, input_data):
  370. """parse preferences from request (``flask.request.form``)"""
  371. for user_setting_name, user_setting in input_data.items():
  372. if user_setting_name in self.key_value_settings:
  373. if self.key_value_settings[user_setting_name].locked:
  374. continue
  375. self.key_value_settings[user_setting_name].parse(user_setting)
  376. elif user_setting_name == 'disabled_engines':
  377. self.engines.parse_cookie((input_data.get('disabled_engines', ''),
  378. input_data.get('enabled_engines', '')))
  379. elif user_setting_name == 'disabled_plugins':
  380. self.plugins.parse_cookie((input_data.get('disabled_plugins', ''),
  381. input_data.get('enabled_plugins', '')))
  382. elif user_setting_name == 'tokens':
  383. self.tokens.parse(user_setting)
  384. elif not any(user_setting_name.startswith(x) for x in [
  385. 'enabled_',
  386. 'disabled_',
  387. 'engine_',
  388. 'category_',
  389. 'plugin_']):
  390. self.unknown_params[user_setting_name] = user_setting
  391. def parse_form(self, input_data):
  392. """Parse formular (``<input>``) data from a ``flask.request.form``"""
  393. disabled_engines = []
  394. enabled_categories = []
  395. disabled_plugins = []
  396. for user_setting_name, user_setting in input_data.items():
  397. if user_setting_name in self.key_value_settings:
  398. self.key_value_settings[user_setting_name].parse(user_setting)
  399. elif user_setting_name.startswith('engine_'):
  400. disabled_engines.append(user_setting_name)
  401. elif user_setting_name.startswith('category_'):
  402. enabled_categories.append(user_setting_name[len('category_'):])
  403. elif user_setting_name.startswith('plugin_'):
  404. disabled_plugins.append(user_setting_name)
  405. elif user_setting_name == 'tokens':
  406. self.tokens.parse_form(user_setting)
  407. else:
  408. self.unknown_params[user_setting_name] = user_setting
  409. self.key_value_settings['categories'].parse_form(enabled_categories)
  410. self.engines.parse_form(disabled_engines)
  411. self.plugins.parse_form(disabled_plugins)
  412. # cannot be used in case of engines or plugins
  413. def get_value(self, user_setting_name):
  414. """Returns the value for ``user_setting_name``
  415. """
  416. ret_val = None
  417. if user_setting_name in self.key_value_settings:
  418. ret_val = self.key_value_settings[user_setting_name].get_value()
  419. if user_setting_name in self.unknown_params:
  420. ret_val = self.unknown_params[user_setting_name]
  421. return ret_val
  422. def save(self, resp):
  423. """Save cookie in the HTTP reponse obect
  424. """
  425. for user_setting_name, user_setting in self.key_value_settings.items():
  426. # pylint: disable=unnecessary-dict-index-lookup
  427. if self.key_value_settings[user_setting_name].locked:
  428. continue
  429. user_setting.save(user_setting_name, resp)
  430. self.engines.save(resp)
  431. self.plugins.save(resp)
  432. self.tokens.save('tokens', resp)
  433. for k, v in self.unknown_params.items():
  434. resp.set_cookie(k, v, max_age=COOKIE_MAX_AGE)
  435. return resp
  436. def validate_token(self, engine):
  437. valid = True
  438. if hasattr(engine, 'tokens') and engine.tokens:
  439. valid = False
  440. for token in self.tokens.values:
  441. if token in engine.tokens:
  442. valid = True
  443. break
  444. return valid
  445. def is_locked(setting_name):
  446. """Checks if a given setting name is locked by settings.yml
  447. """
  448. if 'preferences' not in settings:
  449. return False
  450. if 'lock' not in settings['preferences']:
  451. return False
  452. return setting_name in settings['preferences']['lock']