| 123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537 | # SPDX-License-Identifier: AGPL-3.0-or-later# lint: pylint"""Searx preferences implementation."""# pylint: disable=useless-object-inheritancefrom base64 import urlsafe_b64encode, urlsafe_b64decodefrom zlib import compress, decompressfrom urllib.parse import parse_qs, urlencodefrom searx import settings, autocompletefrom searx.languages import language_codes as languagesfrom searx.locales import LOCALE_NAMESfrom searx.webutils import VALID_LANGUAGE_CODECOOKIE_MAX_AGE = 60 * 60 * 24 * 365 * 5  # 5 yearsLANGUAGE_CODES = [l[0] for l in languages]LANGUAGE_CODES.append('all')DISABLED = 0ENABLED = 1DOI_RESOLVERS = list(settings['doi_resolvers'])class MissingArgumentException(Exception):    """Exption from ``cls._post_init`` when a argument is missed.    """class ValidationException(Exception):    """Exption from ``cls._post_init`` when configuration value is invalid.    """class Setting:    """Base class of user settings"""    def __init__(self, default_value, locked=False, **kwargs):        super().__init__()        self.value = default_value        self.locked = locked        for key, value in kwargs.items():            setattr(self, key, value)        self._post_init()    def _post_init(self):        pass    def parse(self, data):        """Parse ``data`` and store the result at ``self.value``        If needed, its overwritten in the inheritance.        """        self.value = data    def get_value(self):        """Returns the value of the setting        If needed, its overwritten in the inheritance.        """        return self.value    def save(self, name, resp):        """Save cookie ``name`` in the HTTP reponse obect        If needed, its overwritten in the inheritance."""        resp.set_cookie(name, self.value, max_age=COOKIE_MAX_AGE)class StringSetting(Setting):    """Setting of plain string values"""class EnumStringSetting(Setting):    """Setting of a value which can only come from the given choices"""    def _post_init(self):        if not hasattr(self, 'choices'):            raise MissingArgumentException('Missing argument: choices')        self._validate_selection(self.value)    def _validate_selection(self, selection):        if selection not in self.choices:  # pylint: disable=no-member            raise ValidationException('Invalid value: "{0}"'.format(selection))    def parse(self, data):        """Parse and validate ``data`` and store the result at ``self.value``        """        self._validate_selection(data)        self.value = dataclass MultipleChoiceSetting(EnumStringSetting):    """Setting of values which can only come from the given choices"""    def _validate_selections(self, selections):        for item in selections:            if item not in self.choices:  # pylint: disable=no-member                raise ValidationException('Invalid value: "{0}"'.format(selections))    def _post_init(self):        if not hasattr(self, 'choices'):            raise MissingArgumentException('Missing argument: choices')        self._validate_selections(self.value)    def parse(self, data):        """Parse and validate ``data`` and store the result at ``self.value``        """        if data == '':            self.value = []            return        elements = data.split(',')        self._validate_selections(elements)        self.value = elements    def parse_form(self, data):        if self.locked:            return        self.value = []        for choice in data:            if choice in self.choices and choice not in self.value:  # pylint: disable=no-member                self.value.append(choice)    def save(self, name, resp):        """Save cookie ``name`` in the HTTP reponse obect        """        resp.set_cookie(name, ','.join(self.value), max_age=COOKIE_MAX_AGE)class SetSetting(Setting):    """Setting of values of type ``set`` (comma separated string) """    def _post_init(self):        if not hasattr(self, 'values'):            self.values = set()    def get_value(self):        """Returns a string with comma separated values.        """        return ','.join(self.values)    def parse(self, data):        """Parse and validate ``data`` and store the result at ``self.value``        """        if data == '':            self.values = set()  # pylint: disable=attribute-defined-outside-init            return        elements = data.split(',')        for element in elements:            self.values.add(element)    def parse_form(self, data):        if self.locked:            return        elements = data.split(',')        self.values = set(elements)  # pylint: disable=attribute-defined-outside-init    def save(self, name, resp):        """Save cookie ``name`` in the HTTP reponse obect        """        resp.set_cookie(name, ','.join(self.values), max_age=COOKIE_MAX_AGE)class SearchLanguageSetting(EnumStringSetting):    """Available choices may change, so user's value may not be in choices anymore"""    def _validate_selection(self, selection):        if selection != '' and not VALID_LANGUAGE_CODE.match(selection):            raise ValidationException('Invalid language code: "{0}"'.format(selection))    def parse(self, data):        """Parse and validate ``data`` and store the result at ``self.value``        """        if data not in self.choices and data != self.value:  # pylint: disable=no-member            # hack to give some backwards compatibility with old language cookies            data = str(data).replace('_', '-')            lang = data.split('-', maxsplit=1)[0]            # pylint: disable=no-member            if data in self.choices:                pass            elif lang in self.choices:                data = lang            else:                data = self.value        self._validate_selection(data)        self.value = dataclass MapSetting(Setting):    """Setting of a value that has to be translated in order to be storable"""    def _post_init(self):        if not hasattr(self, 'map'):            raise MissingArgumentException('missing argument: map')        if self.value not in self.map.values():  # pylint: disable=no-member            raise ValidationException('Invalid default value')    def parse(self, data):        """Parse and validate ``data`` and store the result at ``self.value``        """        # pylint: disable=no-member        if data not in self.map:            raise ValidationException('Invalid choice: {0}'.format(data))        self.value = self.map[data]        self.key = data  # pylint: disable=attribute-defined-outside-init    def save(self, name, resp):        """Save cookie ``name`` in the HTTP reponse obect        """        if hasattr(self, 'key'):            resp.set_cookie(name, self.key, max_age=COOKIE_MAX_AGE)class SwitchableSetting(Setting):    """ Base class for settings that can be turned on && off"""    def _post_init(self):        self.disabled = set()        self.enabled = set()        if not hasattr(self, 'choices'):            raise MissingArgumentException('missing argument: choices')    def transform_form_items(self, items):        # pylint: disable=no-self-use        return items    def transform_values(self, values):        # pylint: disable=no-self-use        return values    def parse_cookie(self, data):        # pylint: disable=attribute-defined-outside-init        if data[DISABLED] != '':            self.disabled = set(data[DISABLED].split(','))        if data[ENABLED] != '':            self.enabled = set(data[ENABLED].split(','))    def parse_form(self, items):        if self.locked:            return        items = self.transform_form_items(items)        self.disabled = set()  # pylint: disable=attribute-defined-outside-init        self.enabled = set()   # pylint: disable=attribute-defined-outside-init        for choice in self.choices:  # pylint: disable=no-member            if choice['default_on']:                if choice['id'] in items:                    self.disabled.add(choice['id'])            else:                if choice['id'] not in items:                    self.enabled.add(choice['id'])    def save(self, resp):  # pylint: disable=arguments-differ        """Save cookie in the HTTP reponse obect        """        resp.set_cookie('disabled_{0}'.format(self.value), ','.join(self.disabled), max_age=COOKIE_MAX_AGE)        resp.set_cookie('enabled_{0}'.format(self.value), ','.join(self.enabled), max_age=COOKIE_MAX_AGE)    def get_disabled(self):        disabled = self.disabled        for choice in self.choices:  # pylint: disable=no-member            if not choice['default_on'] and choice['id'] not in self.enabled:                disabled.add(choice['id'])        return self.transform_values(disabled)    def get_enabled(self):        enabled = self.enabled        for choice in self.choices:  # pylint: disable=no-member            if choice['default_on'] and choice['id'] not in self.disabled:                enabled.add(choice['id'])        return self.transform_values(enabled)class EnginesSetting(SwitchableSetting):    """Engine settings"""    def _post_init(self):        super()._post_init()        transformed_choices = []        for engine_name, engine in self.choices.items():  # pylint: disable=no-member,access-member-before-definition            for category in engine.categories:                transformed_choice = {}                transformed_choice['default_on'] = not engine.disabled                transformed_choice['id'] = '{}__{}'.format(engine_name, category)                transformed_choices.append(transformed_choice)        self.choices = transformed_choices    def transform_form_items(self, items):        return [item[len('engine_'):].replace('_', ' ').replace('  ', '__') for item in items]    def transform_values(self, values):        if len(values) == 1 and next(iter(values)) == '':            return []        transformed_values = []        for value in values:            engine, category = value.split('__')            transformed_values.append((engine, category))        return transformed_valuesclass PluginsSetting(SwitchableSetting):    """Plugin settings"""    def _post_init(self):        super()._post_init()        transformed_choices = []        for plugin in self.choices:  # pylint: disable=access-member-before-definition            transformed_choice = {}            transformed_choice['default_on'] = plugin.default_on            transformed_choice['id'] = plugin.id            transformed_choices.append(transformed_choice)        self.choices = transformed_choices    def transform_form_items(self, items):        return [item[len('plugin_'):] for item in items]class Preferences:    """Validates and saves preferences to cookies"""    def __init__(self, themes, categories, engines, plugins):        super().__init__()        self.key_value_settings = {            'categories': MultipleChoiceSetting(                ['general'],                is_locked('categories'),                choices=categories + ['none']            ),            'language': SearchLanguageSetting(                settings['search']['default_lang'],                is_locked('language'),                choices=list(LANGUAGE_CODES) + ['']            ),            'locale': EnumStringSetting(                settings['ui']['default_locale'],                is_locked('locale'),                choices=list(LOCALE_NAMES.keys()) + ['']            ),            'autocomplete': EnumStringSetting(                settings['search']['autocomplete'],                is_locked('autocomplete'),                choices=list(autocomplete.backends.keys()) + ['']            ),            'image_proxy': MapSetting(                settings['server']['image_proxy'],                is_locked('image_proxy'),                map={                    '': settings['server']['image_proxy'],                    '0': False,                    '1': True,                    'True': True,                    'False': False                }            ),            'method': EnumStringSetting(                settings['server']['method'],                is_locked('method'),                choices=('GET', 'POST')            ),            'safesearch': MapSetting(                settings['search']['safe_search'],                is_locked('safesearch'),                map={                    '0': 0,                    '1': 1,                    '2': 2                }            ),            'theme': EnumStringSetting(                settings['ui']['default_theme'],                is_locked('theme'),                choices=themes            ),            'results_on_new_tab': MapSetting(                settings['ui']['results_on_new_tab'],                is_locked('results_on_new_tab'),                map={                    '0': False,                    '1': True,                    'False': False,                    'True': True                }            ),            'doi_resolver': MultipleChoiceSetting(                [settings['default_doi_resolver'], ],                is_locked('doi_resolver'),                choices=DOI_RESOLVERS            ),            'oscar-style': EnumStringSetting(                settings['ui']['theme_args']['oscar_style'],                is_locked('oscar-style'),                choices=['', 'logicodev', 'logicodev-dark', 'pointhi']),            'advanced_search': MapSetting(                settings['ui']['advanced_search'],                is_locked('advanced_search'),                map={                    '0': False,                    '1': True,                    'False': False,                    'True': True,                    'on': True,                }            ),        }        self.engines = EnginesSetting('engines', choices=engines)        self.plugins = PluginsSetting('plugins', choices=plugins)        self.tokens = SetSetting('tokens')        self.unknown_params = {}    def get_as_url_params(self):        """Return preferences as URL parameters"""        settings_kv = {}        for k, v in self.key_value_settings.items():            if v.locked:                continue            if isinstance(v, MultipleChoiceSetting):                settings_kv[k] = ','.join(v.get_value())            else:                settings_kv[k] = v.get_value()        settings_kv['disabled_engines'] = ','.join(self.engines.disabled)        settings_kv['enabled_engines'] = ','.join(self.engines.enabled)        settings_kv['disabled_plugins'] = ','.join(self.plugins.disabled)        settings_kv['enabled_plugins'] = ','.join(self.plugins.enabled)        settings_kv['tokens'] = ','.join(self.tokens.values)        return urlsafe_b64encode(compress(urlencode(settings_kv).encode())).decode()    def parse_encoded_data(self, input_data):        """parse (base64) preferences from request (``flask.request.form['preferences']``)"""        bin_data = decompress(urlsafe_b64decode(input_data))        dict_data = {}        for x, y in parse_qs(bin_data.decode('ascii')).items():            dict_data[x] = y[0]        self.parse_dict(dict_data)    def parse_dict(self, input_data):        """parse preferences from request (``flask.request.form``)"""        for user_setting_name, user_setting in input_data.items():            if user_setting_name in self.key_value_settings:                if self.key_value_settings[user_setting_name].locked:                    continue                self.key_value_settings[user_setting_name].parse(user_setting)            elif user_setting_name == 'disabled_engines':                self.engines.parse_cookie((input_data.get('disabled_engines', ''),                                           input_data.get('enabled_engines', '')))            elif user_setting_name == 'disabled_plugins':                self.plugins.parse_cookie((input_data.get('disabled_plugins', ''),                                           input_data.get('enabled_plugins', '')))            elif user_setting_name == 'tokens':                self.tokens.parse(user_setting)            elif not any(user_setting_name.startswith(x) for x in [                    'enabled_',                    'disabled_',                    'engine_',                    'category_',                    'plugin_']):                self.unknown_params[user_setting_name] = user_setting    def parse_form(self, input_data):        """Parse formular (``<input>``) data from a ``flask.request.form``"""        disabled_engines = []        enabled_categories = []        disabled_plugins = []        for user_setting_name, user_setting in input_data.items():            if user_setting_name in self.key_value_settings:                self.key_value_settings[user_setting_name].parse(user_setting)            elif user_setting_name.startswith('engine_'):                disabled_engines.append(user_setting_name)            elif user_setting_name.startswith('category_'):                enabled_categories.append(user_setting_name[len('category_'):])            elif user_setting_name.startswith('plugin_'):                disabled_plugins.append(user_setting_name)            elif user_setting_name == 'tokens':                self.tokens.parse_form(user_setting)            else:                self.unknown_params[user_setting_name] = user_setting        self.key_value_settings['categories'].parse_form(enabled_categories)        self.engines.parse_form(disabled_engines)        self.plugins.parse_form(disabled_plugins)    # cannot be used in case of engines or plugins    def get_value(self, user_setting_name):        """Returns the value for ``user_setting_name``        """        ret_val = None        if user_setting_name in self.key_value_settings:            ret_val = self.key_value_settings[user_setting_name].get_value()        if user_setting_name in self.unknown_params:            ret_val = self.unknown_params[user_setting_name]        return ret_val    def save(self, resp):        """Save cookie in the HTTP reponse obect        """        for user_setting_name, user_setting in self.key_value_settings.items():            # pylint: disable=unnecessary-dict-index-lookup            if self.key_value_settings[user_setting_name].locked:                continue            user_setting.save(user_setting_name, resp)        self.engines.save(resp)        self.plugins.save(resp)        self.tokens.save('tokens', resp)        for k, v in self.unknown_params.items():            resp.set_cookie(k, v, max_age=COOKIE_MAX_AGE)        return resp    def validate_token(self, engine):        valid = True        if hasattr(engine, 'tokens') and engine.tokens:            valid = False            for token in self.tokens.values:                if token in engine.tokens:                    valid = True                    break        return validdef is_locked(setting_name):    """Checks if a given setting name is locked by settings.yml    """    if 'preferences' not in settings:        return False    if 'lock' not in settings['preferences']:        return False    return setting_name in settings['preferences']['lock']
 |