webapp.py 50 KB

12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273747576777879808182838485868788899091929394959697989910010110210310410510610710810911011111211311411511611711811912012112212312412512612712812913013113213313413513613713813914014114214314414514614714814915015115215315415515615715815916016116216316416516616716816917017117217317417517617717817918018118218318418518618718818919019119219319419519619719819920020120220320420520620720820921021121221321421521621721821922022122222322422522622722822923023123223323423523623723823924024124224324424524624724824925025125225325425525625725825926026126226326426526626726826927027127227327427527627727827928028128228328428528628728828929029129229329429529629729829930030130230330430530630730830931031131231331431531631731831932032132232332432532632732832933033133233333433533633733833934034134234334434534634734834935035135235335435535635735835936036136236336436536636736836937037137237337437537637737837938038138238338438538638738838939039139239339439539639739839940040140240340440540640740840941041141241341441541641741841942042142242342442542642742842943043143243343443543643743843944044144244344444544644744844945045145245345445545645745845946046146246346446546646746846947047147247347447547647747847948048148248348448548648748848949049149249349449549649749849950050150250350450550650750850951051151251351451551651751851952052152252352452552652752852953053153253353453553653753853954054154254354454554654754854955055155255355455555655755855956056156256356456556656756856957057157257357457557657757857958058158258358458558658758858959059159259359459559659759859960060160260360460560660760860961061161261361461561661761861962062162262362462562662762862963063163263363463563663763863964064164264364464564664764864965065165265365465565665765865966066166266366466566666766866967067167267367467567667767867968068168268368468568668768868969069169269369469569669769869970070170270370470570670770870971071171271371471571671771871972072172272372472572672772872973073173273373473573673773873974074174274374474574674774874975075175275375475575675775875976076176276376476576676776876977077177277377477577677777877978078178278378478578678778878979079179279379479579679779879980080180280380480580680780880981081181281381481581681781881982082182282382482582682782882983083183283383483583683783883984084184284384484584684784884985085185285385485585685785885986086186286386486586686786886987087187287387487587687787887988088188288388488588688788888989089189289389489589689789889990090190290390490590690790890991091191291391491591691791891992092192292392492592692792892993093193293393493593693793893994094194294394494594694794894995095195295395495595695795895996096196296396496596696796896997097197297397497597697797897998098198298398498598698798898999099199299399499599699799899910001001100210031004100510061007100810091010101110121013101410151016101710181019102010211022102310241025102610271028102910301031103210331034103510361037103810391040104110421043104410451046104710481049105010511052105310541055105610571058105910601061106210631064106510661067106810691070107110721073107410751076107710781079108010811082108310841085108610871088108910901091109210931094109510961097109810991100110111021103110411051106110711081109111011111112111311141115111611171118111911201121112211231124112511261127112811291130113111321133113411351136113711381139114011411142114311441145114611471148114911501151115211531154115511561157115811591160116111621163116411651166116711681169117011711172117311741175117611771178117911801181118211831184118511861187118811891190119111921193119411951196119711981199120012011202120312041205120612071208120912101211121212131214121512161217121812191220122112221223122412251226122712281229123012311232123312341235123612371238123912401241124212431244124512461247124812491250125112521253125412551256125712581259126012611262126312641265126612671268126912701271127212731274127512761277127812791280128112821283128412851286128712881289129012911292129312941295129612971298129913001301130213031304130513061307130813091310131113121313131413151316131713181319132013211322132313241325132613271328132913301331133213331334133513361337133813391340134113421343134413451346134713481349135013511352135313541355135613571358135913601361136213631364136513661367136813691370137113721373137413751376137713781379138013811382138313841385138613871388138913901391139213931394139513961397139813991400140114021403140414051406140714081409141014111412
  1. #!/usr/bin/env python
  2. # SPDX-License-Identifier: AGPL-3.0-or-later
  3. """WebbApp
  4. """
  5. # pylint: disable=use-dict-literal
  6. from __future__ import annotations
  7. import inspect
  8. import json
  9. import os
  10. import sys
  11. import base64
  12. from timeit import default_timer
  13. from html import escape
  14. from io import StringIO
  15. import typing
  16. import urllib
  17. import urllib.parse
  18. from urllib.parse import urlencode, urlparse, unquote
  19. import warnings
  20. import httpx
  21. from pygments import highlight
  22. from pygments.lexers import get_lexer_by_name
  23. from pygments.formatters import HtmlFormatter # pylint: disable=no-name-in-module
  24. from werkzeug.serving import is_running_from_reloader
  25. import flask
  26. from flask import (
  27. Flask,
  28. render_template,
  29. url_for,
  30. make_response,
  31. redirect,
  32. send_from_directory,
  33. )
  34. from flask.wrappers import Response
  35. from flask.json import jsonify
  36. from flask_babel import (
  37. Babel,
  38. gettext,
  39. format_decimal,
  40. )
  41. import searx
  42. from searx.extended_types import sxng_request
  43. from searx import (
  44. logger,
  45. get_setting,
  46. settings,
  47. )
  48. from searx import infopage
  49. from searx import limiter
  50. from searx.botdetection import link_token
  51. from searx.data import ENGINE_DESCRIPTIONS
  52. from searx.result_types import Answer
  53. from searx.settings_defaults import OUTPUT_FORMATS
  54. from searx.settings_loader import DEFAULT_SETTINGS_FILE
  55. from searx.exceptions import SearxParameterException
  56. from searx.engines import (
  57. DEFAULT_CATEGORY,
  58. categories,
  59. engines,
  60. engine_shortcuts,
  61. )
  62. from searx import webutils
  63. from searx.webutils import (
  64. highlight_content,
  65. get_static_files,
  66. get_result_templates,
  67. get_themes,
  68. exception_classname_to_text,
  69. new_hmac,
  70. is_hmac_of,
  71. group_engines_in_tab,
  72. )
  73. from searx.webadapter import (
  74. get_search_query_from_webapp,
  75. get_selected_categories,
  76. parse_lang,
  77. )
  78. from searx.utils import gen_useragent, dict_subset
  79. from searx.version import VERSION_STRING, GIT_URL, GIT_BRANCH
  80. from searx.query import RawTextQuery
  81. from searx.plugins.oa_doi_rewrite import get_doi_resolver
  82. from searx.preferences import (
  83. Preferences,
  84. ClientPref,
  85. ValidationException,
  86. )
  87. import searx.answerers
  88. import searx.plugins
  89. from searx.metrics import get_engines_stats, get_engine_errors, get_reliabilities, histogram, counter, openmetrics
  90. from searx.flaskfix import patch_application
  91. from searx.locales import (
  92. LOCALE_NAMES,
  93. RTL_LOCALES,
  94. localeselector,
  95. locales_initialize,
  96. match_locale,
  97. )
  98. # renaming names from searx imports ...
  99. from searx.autocomplete import search_autocomplete, backends as autocomplete_backends
  100. from searx import favicons
  101. from searx.redisdb import initialize as redis_initialize
  102. from searx.sxng_locales import sxng_locales
  103. import searx.search
  104. from searx.network import stream as http_stream, set_context_network_name
  105. from searx.search.checker import get_result as checker_get_result
  106. logger = logger.getChild('webapp')
  107. warnings.simplefilter("always")
  108. # about static
  109. logger.debug('static directory is %s', settings['ui']['static_path'])
  110. static_files = get_static_files(settings['ui']['static_path'])
  111. # about templates
  112. logger.debug('templates directory is %s', settings['ui']['templates_path'])
  113. default_theme = settings['ui']['default_theme']
  114. templates_path = settings['ui']['templates_path']
  115. themes = get_themes(templates_path)
  116. result_templates = get_result_templates(templates_path)
  117. STATS_SORT_PARAMETERS = {
  118. 'name': (False, 'name', ''),
  119. 'score': (True, 'score_per_result', 0),
  120. 'result_count': (True, 'result_count', 0),
  121. 'time': (False, 'total', 0),
  122. 'reliability': (False, 'reliability', 100),
  123. }
  124. # Flask app
  125. app = Flask(__name__, static_folder=settings['ui']['static_path'], template_folder=templates_path)
  126. app.jinja_env.trim_blocks = True
  127. app.jinja_env.lstrip_blocks = True
  128. app.jinja_env.add_extension('jinja2.ext.loopcontrols') # pylint: disable=no-member
  129. app.jinja_env.filters['group_engines_in_tab'] = group_engines_in_tab # pylint: disable=no-member
  130. app.secret_key = settings['server']['secret_key']
  131. def get_locale():
  132. locale = localeselector()
  133. logger.debug("%s uses locale `%s`", urllib.parse.quote(sxng_request.url), locale)
  134. return locale
  135. babel = Babel(app, locale_selector=get_locale)
  136. def _get_browser_language(req, lang_list):
  137. client = ClientPref.from_http_request(req)
  138. locale = match_locale(client.locale_tag, lang_list, fallback='en')
  139. return locale
  140. def _get_locale_rfc5646(locale):
  141. """Get locale name for <html lang="...">
  142. Chrom* browsers don't detect the language when there is a subtag (ie a territory).
  143. For example "zh-TW" is detected but not "zh-Hant-TW".
  144. This function returns a locale without the subtag.
  145. """
  146. parts = locale.split('-')
  147. return parts[0].lower() + '-' + parts[-1].upper()
  148. # code-highlighter
  149. @app.template_filter('code_highlighter')
  150. def code_highlighter(codelines, language=None):
  151. if not language:
  152. language = 'text'
  153. try:
  154. # find lexer by programming language
  155. lexer = get_lexer_by_name(language, stripall=True)
  156. except Exception as e: # pylint: disable=broad-except
  157. logger.warning("pygments lexer: %s " % e)
  158. # if lexer is not found, using default one
  159. lexer = get_lexer_by_name('text', stripall=True)
  160. html_code = ''
  161. tmp_code = ''
  162. last_line = None
  163. line_code_start = None
  164. # parse lines
  165. for line, code in codelines:
  166. if not last_line:
  167. line_code_start = line
  168. # new codeblock is detected
  169. if last_line is not None and last_line + 1 != line:
  170. # highlight last codepart
  171. formatter = HtmlFormatter(linenos='inline', linenostart=line_code_start, cssclass="code-highlight")
  172. html_code = html_code + highlight(tmp_code, lexer, formatter)
  173. # reset conditions for next codepart
  174. tmp_code = ''
  175. line_code_start = line
  176. # add codepart
  177. tmp_code += code + '\n'
  178. # update line
  179. last_line = line
  180. # highlight last codepart
  181. formatter = HtmlFormatter(linenos='inline', linenostart=line_code_start, cssclass="code-highlight")
  182. html_code = html_code + highlight(tmp_code, lexer, formatter)
  183. return html_code
  184. def get_result_template(theme_name: str, template_name: str):
  185. themed_path = theme_name + '/result_templates/' + template_name
  186. if themed_path in result_templates:
  187. return themed_path
  188. return 'result_templates/' + template_name
  189. def custom_url_for(endpoint: str, **values):
  190. suffix = ""
  191. if endpoint == 'static' and values.get('filename'):
  192. file_hash = static_files.get(values['filename'])
  193. if not file_hash:
  194. # try file in the current theme
  195. theme_name = sxng_request.preferences.get_value('theme')
  196. filename_with_theme = "themes/{}/{}".format(theme_name, values['filename'])
  197. file_hash = static_files.get(filename_with_theme)
  198. if file_hash:
  199. values['filename'] = filename_with_theme
  200. if get_setting('ui.static_use_hash') and file_hash:
  201. suffix = "?" + file_hash
  202. if endpoint == 'info' and 'locale' not in values:
  203. locale = sxng_request.preferences.get_value('locale')
  204. if infopage.INFO_PAGES.get_page(values['pagename'], locale) is None:
  205. locale = infopage.INFO_PAGES.locale_default
  206. values['locale'] = locale
  207. return url_for(endpoint, **values) + suffix
  208. def image_proxify(url: str):
  209. if not url:
  210. return url
  211. if url.startswith('//'):
  212. url = 'https:' + url
  213. if not sxng_request.preferences.get_value('image_proxy'):
  214. return url
  215. if url.startswith('data:image/'):
  216. # 50 is an arbitrary number to get only the beginning of the image.
  217. partial_base64 = url[len('data:image/') : 50].split(';')
  218. if (
  219. len(partial_base64) == 2
  220. and partial_base64[0] in ['gif', 'png', 'jpeg', 'pjpeg', 'webp', 'tiff', 'bmp']
  221. and partial_base64[1].startswith('base64,')
  222. ):
  223. return url
  224. return None
  225. h = new_hmac(settings['server']['secret_key'], url.encode())
  226. return '{0}?{1}'.format(url_for('image_proxy'), urlencode(dict(url=url.encode(), h=h)))
  227. def get_translations():
  228. return {
  229. # when there is autocompletion
  230. 'no_item_found': gettext('No item found'),
  231. # /preferences: the source of the engine description (wikipedata, wikidata, website)
  232. 'Source': gettext('Source'),
  233. # infinite scroll
  234. 'error_loading_next_page': gettext('Error loading the next page'),
  235. }
  236. def get_enabled_categories(category_names: typing.Iterable[str]):
  237. """The categories in ``category_names```for which there is no active engine
  238. are filtered out and a reduced list is returned."""
  239. enabled_engines = [item[0] for item in sxng_request.preferences.engines.get_enabled()]
  240. enabled_categories = set()
  241. for engine_name in enabled_engines:
  242. enabled_categories.update(engines[engine_name].categories)
  243. return [x for x in category_names if x in enabled_categories]
  244. def get_pretty_url(parsed_url: urllib.parse.ParseResult):
  245. url_formatting_pref = sxng_request.preferences.get_value('url_formatting')
  246. if url_formatting_pref == 'full':
  247. return [parsed_url.geturl()]
  248. if url_formatting_pref == 'host':
  249. return [parsed_url.netloc]
  250. path = parsed_url.path
  251. path = path[:-1] if len(path) > 0 and path[-1] == '/' else path
  252. path = unquote(path.replace("/", " › "))
  253. return [parsed_url.scheme + "://" + parsed_url.netloc, path]
  254. def get_client_settings():
  255. req_pref = sxng_request.preferences
  256. return {
  257. 'autocomplete': req_pref.get_value('autocomplete'),
  258. 'autocomplete_min': get_setting('search.autocomplete_min'),
  259. 'method': req_pref.get_value('method'),
  260. 'infinite_scroll': req_pref.get_value('infinite_scroll'),
  261. 'translations': get_translations(),
  262. 'search_on_category_select': req_pref.get_value('search_on_category_select'),
  263. 'hotkeys': req_pref.get_value('hotkeys'),
  264. 'url_formatting': req_pref.get_value('url_formatting'),
  265. 'theme_static_path': custom_url_for('static', filename='themes/simple'),
  266. 'results_on_new_tab': req_pref.get_value('results_on_new_tab'),
  267. 'favicon_resolver': req_pref.get_value('favicon_resolver'),
  268. 'advanced_search': req_pref.get_value('advanced_search'),
  269. 'query_in_title': req_pref.get_value('query_in_title'),
  270. 'safesearch': str(req_pref.get_value('safesearch')),
  271. 'theme': req_pref.get_value('theme'),
  272. 'doi_resolver': get_doi_resolver(),
  273. }
  274. def render(template_name: str, **kwargs):
  275. # values from the preferences
  276. # pylint: disable=too-many-statements
  277. client_settings = get_client_settings()
  278. kwargs['client_settings'] = str(
  279. base64.b64encode(
  280. bytes(
  281. json.dumps(client_settings),
  282. encoding='utf-8',
  283. )
  284. ),
  285. encoding='utf-8',
  286. )
  287. kwargs['preferences'] = sxng_request.preferences
  288. kwargs.update(client_settings)
  289. # values from the HTTP requests
  290. kwargs['endpoint'] = 'results' if 'q' in kwargs else sxng_request.endpoint
  291. kwargs['cookies'] = sxng_request.cookies
  292. kwargs['errors'] = sxng_request.errors
  293. kwargs['link_token'] = link_token.get_token()
  294. kwargs['categories_as_tabs'] = list(settings['categories_as_tabs'].keys())
  295. kwargs['categories'] = get_enabled_categories(settings['categories_as_tabs'].keys())
  296. kwargs['DEFAULT_CATEGORY'] = DEFAULT_CATEGORY
  297. # i18n
  298. kwargs['sxng_locales'] = [l for l in sxng_locales if l[0] in settings['search']['languages']]
  299. locale = sxng_request.preferences.get_value('locale')
  300. kwargs['locale_rfc5646'] = _get_locale_rfc5646(locale)
  301. if locale in RTL_LOCALES and 'rtl' not in kwargs:
  302. kwargs['rtl'] = True
  303. if 'current_language' not in kwargs:
  304. kwargs['current_language'] = parse_lang(sxng_request.preferences, {}, RawTextQuery('', []))
  305. # values from settings
  306. kwargs['search_formats'] = [x for x in settings['search']['formats'] if x != 'html']
  307. kwargs['instance_name'] = get_setting('general.instance_name')
  308. kwargs['searx_version'] = VERSION_STRING
  309. kwargs['searx_git_url'] = GIT_URL
  310. kwargs['enable_metrics'] = get_setting('general.enable_metrics')
  311. kwargs['get_setting'] = get_setting
  312. kwargs['get_pretty_url'] = get_pretty_url
  313. # values from settings: donation_url
  314. donation_url = get_setting('general.donation_url')
  315. if donation_url is True:
  316. donation_url = custom_url_for('info', pagename='donate')
  317. kwargs['donation_url'] = donation_url
  318. # helpers to create links to other pages
  319. kwargs['url_for'] = custom_url_for # override url_for function in templates
  320. kwargs['image_proxify'] = image_proxify
  321. kwargs['favicon_url'] = favicons.favicon_url
  322. kwargs['cache_url'] = settings['ui']['cache_url']
  323. kwargs['get_result_template'] = get_result_template
  324. kwargs['opensearch_url'] = (
  325. url_for('opensearch')
  326. + '?'
  327. + urlencode(
  328. {
  329. 'method': sxng_request.preferences.get_value('method'),
  330. 'autocomplete': sxng_request.preferences.get_value('autocomplete'),
  331. }
  332. )
  333. )
  334. kwargs['urlparse'] = urlparse
  335. start_time = default_timer()
  336. result = render_template('{}/{}'.format(kwargs['theme'], template_name), **kwargs)
  337. sxng_request.render_time += default_timer() - start_time # pylint: disable=assigning-non-slot
  338. return result
  339. @app.before_request
  340. def pre_request():
  341. sxng_request.start_time = default_timer() # pylint: disable=assigning-non-slot
  342. sxng_request.render_time = 0 # pylint: disable=assigning-non-slot
  343. sxng_request.timings = [] # pylint: disable=assigning-non-slot
  344. sxng_request.errors = [] # pylint: disable=assigning-non-slot
  345. client_pref = ClientPref.from_http_request(sxng_request)
  346. # pylint: disable=redefined-outer-name
  347. preferences = Preferences(themes, list(categories.keys()), engines, searx.plugins.STORAGE, client_pref)
  348. user_agent = sxng_request.headers.get('User-Agent', '').lower()
  349. if 'webkit' in user_agent and 'android' in user_agent:
  350. preferences.key_value_settings['method'].value = 'GET'
  351. sxng_request.preferences = preferences # pylint: disable=assigning-non-slot
  352. try:
  353. preferences.parse_dict(sxng_request.cookies)
  354. except Exception as e: # pylint: disable=broad-except
  355. logger.exception(e, exc_info=True)
  356. sxng_request.errors.append(gettext('Invalid settings, please edit your preferences'))
  357. # merge GET, POST vars
  358. # HINT request.form is of type werkzeug.datastructures.ImmutableMultiDict
  359. sxng_request.form = dict(sxng_request.form.items()) # type: ignore
  360. for k, v in sxng_request.args.items():
  361. if k not in sxng_request.form:
  362. sxng_request.form[k] = v
  363. if sxng_request.form.get('preferences'):
  364. preferences.parse_encoded_data(sxng_request.form['preferences'])
  365. else:
  366. try:
  367. preferences.parse_dict(sxng_request.form)
  368. except Exception as e: # pylint: disable=broad-except
  369. logger.exception(e, exc_info=True)
  370. sxng_request.errors.append(gettext('Invalid settings'))
  371. # language is defined neither in settings nor in preferences
  372. # use browser headers
  373. if not preferences.get_value("language"):
  374. language = _get_browser_language(sxng_request, settings['search']['languages'])
  375. preferences.parse_dict({"language": language})
  376. logger.debug('set language %s (from browser)', preferences.get_value("language"))
  377. # UI locale is defined neither in settings nor in preferences
  378. # use browser headers
  379. if not preferences.get_value("locale"):
  380. locale = _get_browser_language(sxng_request, LOCALE_NAMES.keys())
  381. preferences.parse_dict({"locale": locale})
  382. logger.debug('set locale %s (from browser)', preferences.get_value("locale"))
  383. # request.user_plugins
  384. sxng_request.user_plugins = [] # pylint: disable=assigning-non-slot
  385. allowed_plugins = preferences.plugins.get_enabled()
  386. disabled_plugins = preferences.plugins.get_disabled()
  387. for plugin in searx.plugins.STORAGE:
  388. if (plugin.id not in disabled_plugins) or plugin.id in allowed_plugins:
  389. sxng_request.user_plugins.append(plugin.id)
  390. @app.after_request
  391. def add_default_headers(response: flask.Response):
  392. # set default http headers
  393. for header, value in settings['server']['default_http_headers'].items():
  394. if header in response.headers:
  395. continue
  396. response.headers[header] = value
  397. return response
  398. @app.after_request
  399. def post_request(response: flask.Response):
  400. total_time = default_timer() - sxng_request.start_time
  401. timings_all = [
  402. 'total;dur=' + str(round(total_time * 1000, 3)),
  403. 'render;dur=' + str(round(sxng_request.render_time * 1000, 3)),
  404. ]
  405. if len(sxng_request.timings) > 0:
  406. timings = sorted(sxng_request.timings, key=lambda t: t.total)
  407. timings_total = [
  408. 'total_' + str(i) + '_' + t.engine + ';dur=' + str(round(t.total * 1000, 3)) for i, t in enumerate(timings)
  409. ]
  410. timings_load = [
  411. 'load_' + str(i) + '_' + t.engine + ';dur=' + str(round(t.load * 1000, 3))
  412. for i, t in enumerate(timings)
  413. if t.load
  414. ]
  415. timings_all = timings_all + timings_total + timings_load
  416. response.headers.add('Server-Timing', ', '.join(timings_all))
  417. return response
  418. def index_error(output_format: str, error_message: str):
  419. if output_format == 'json':
  420. return Response(json.dumps({'error': error_message}), mimetype='application/json')
  421. if output_format == 'csv':
  422. response = Response('', mimetype='application/csv')
  423. cont_disp = 'attachment;Filename=searx.csv'
  424. response.headers.add('Content-Disposition', cont_disp)
  425. return response
  426. if output_format == 'rss':
  427. response_rss = render(
  428. 'opensearch_response_rss.xml',
  429. results=[],
  430. q=sxng_request.form['q'] if 'q' in sxng_request.form else '',
  431. number_of_results=0,
  432. error_message=error_message,
  433. )
  434. return Response(response_rss, mimetype='text/xml')
  435. # html
  436. sxng_request.errors.append(gettext('search error'))
  437. return render(
  438. # fmt: off
  439. 'index.html',
  440. selected_categories=get_selected_categories(sxng_request.preferences, sxng_request.form),
  441. # fmt: on
  442. )
  443. @app.route('/', methods=['GET', 'POST'])
  444. def index():
  445. """Render index page."""
  446. # redirect to search if there's a query in the request
  447. if sxng_request.form.get('q'):
  448. query = ('?' + sxng_request.query_string.decode()) if sxng_request.query_string else ''
  449. return redirect(url_for('search') + query, 308)
  450. return render(
  451. # fmt: off
  452. 'index.html',
  453. selected_categories=get_selected_categories(sxng_request.preferences, sxng_request.form),
  454. current_locale = sxng_request.preferences.get_value("locale"),
  455. # fmt: on
  456. )
  457. @app.route('/healthz', methods=['GET'])
  458. def health():
  459. return Response('OK', mimetype='text/plain')
  460. @app.route('/client<token>.css', methods=['GET', 'POST'])
  461. def client_token(token=None):
  462. link_token.ping(sxng_request, token)
  463. return Response('', mimetype='text/css', headers={"Cache-Control": "no-store, max-age=0"})
  464. @app.route('/rss.xsl', methods=['GET', 'POST'])
  465. def rss_xsl():
  466. return render_template(
  467. f"{sxng_request.preferences.get_value('theme')}/rss.xsl",
  468. url_for=custom_url_for,
  469. )
  470. @app.route('/search', methods=['GET', 'POST'])
  471. def search():
  472. """Search query in q and return results.
  473. Supported outputs: html, json, csv, rss.
  474. """
  475. # pylint: disable=too-many-locals, too-many-return-statements, too-many-branches
  476. # pylint: disable=too-many-statements
  477. # output_format
  478. output_format = sxng_request.form.get('format', 'html')
  479. if output_format not in OUTPUT_FORMATS:
  480. output_format = 'html'
  481. if output_format not in settings['search']['formats']:
  482. flask.abort(403)
  483. # check if there is query (not None and not an empty string)
  484. if not sxng_request.form.get('q'):
  485. if output_format == 'html':
  486. return render(
  487. # fmt: off
  488. 'index.html',
  489. selected_categories=get_selected_categories(sxng_request.preferences, sxng_request.form),
  490. # fmt: on
  491. )
  492. return index_error(output_format, 'No query'), 400
  493. # search
  494. search_query = None
  495. raw_text_query = None
  496. result_container = None
  497. try:
  498. search_query, raw_text_query, _, _, selected_locale = get_search_query_from_webapp(
  499. sxng_request.preferences, sxng_request.form
  500. )
  501. search_obj = searx.search.SearchWithPlugins(search_query, sxng_request, sxng_request.user_plugins)
  502. result_container = search_obj.search()
  503. except SearxParameterException as e:
  504. logger.exception('search error: SearxParameterException')
  505. return index_error(output_format, e.message), 400
  506. except Exception as e: # pylint: disable=broad-except
  507. logger.exception(e, exc_info=True)
  508. return index_error(output_format, gettext('search error')), 500
  509. # 1. check if the result is a redirect for an external bang
  510. if result_container.redirect_url:
  511. return redirect(result_container.redirect_url)
  512. # 2. add Server-Timing header for measuring performance characteristics of
  513. # web applications
  514. sxng_request.timings = result_container.get_timings() # pylint: disable=assigning-non-slot
  515. # 3. formats without a template
  516. if output_format == 'json':
  517. response = webutils.get_json_response(search_query, result_container)
  518. return Response(response, mimetype='application/json')
  519. if output_format == 'csv':
  520. csv = webutils.CSVWriter(StringIO())
  521. webutils.write_csv_response(csv, result_container)
  522. csv.stream.seek(0)
  523. response = Response(csv.stream.read(), mimetype='application/csv')
  524. cont_disp = 'attachment;Filename=searx_-_{0}.csv'.format(search_query.query)
  525. response.headers.add('Content-Disposition', cont_disp)
  526. return response
  527. # 4. formats rendered by a template / RSS & HTML
  528. current_template = None
  529. previous_result = None
  530. results = result_container.get_ordered_results()
  531. if search_query.redirect_to_first_result and results:
  532. return redirect(results[0]['url'], 302)
  533. for result in results:
  534. if output_format == 'html':
  535. if 'content' in result and result['content']:
  536. result['content'] = highlight_content(escape(result['content'][:1024]), search_query.query)
  537. if 'title' in result and result['title']:
  538. result['title'] = highlight_content(escape(result['title'] or ''), search_query.query)
  539. # set result['open_group'] = True when the template changes from the previous result
  540. # set result['close_group'] = True when the template changes on the next result
  541. if current_template != result.template:
  542. result.open_group = True
  543. if previous_result:
  544. previous_result.close_group = True # pylint: disable=unsupported-assignment-operation
  545. current_template = result.template
  546. previous_result = result
  547. if previous_result:
  548. previous_result.close_group = True
  549. # 4.a RSS
  550. if output_format == 'rss':
  551. response_rss = render(
  552. 'opensearch_response_rss.xml',
  553. results=results,
  554. q=sxng_request.form['q'],
  555. number_of_results=result_container.number_of_results,
  556. )
  557. return Response(response_rss, mimetype='text/xml')
  558. # 4.b HTML
  559. # suggestions: use RawTextQuery to get the suggestion URLs with the same bang
  560. suggestion_urls = list(
  561. map(
  562. lambda suggestion: {'url': raw_text_query.changeQuery(suggestion).getFullQuery(), 'title': suggestion},
  563. result_container.suggestions,
  564. )
  565. )
  566. correction_urls = list(
  567. map(
  568. lambda correction: {'url': raw_text_query.changeQuery(correction).getFullQuery(), 'title': correction},
  569. result_container.corrections,
  570. )
  571. )
  572. # engine_timings: get engine response times sorted from slowest to fastest
  573. engine_timings = sorted(result_container.get_timings(), reverse=True, key=lambda e: e.total)
  574. max_response_time = engine_timings[0].total if engine_timings else None
  575. engine_timings_pairs = [(timing.engine, timing.total) for timing in engine_timings]
  576. # search_query.lang contains the user choice (all, auto, en, ...)
  577. # when the user choice is "auto", search.search_query.lang contains the detected language
  578. # otherwise it is equals to search_query.lang
  579. return render(
  580. # fmt: off
  581. 'results.html',
  582. results = results,
  583. q=sxng_request.form['q'],
  584. selected_categories = search_query.categories,
  585. pageno = search_query.pageno,
  586. time_range = search_query.time_range or '',
  587. number_of_results = format_decimal(result_container.number_of_results),
  588. suggestions = suggestion_urls,
  589. answers = result_container.answers,
  590. corrections = correction_urls,
  591. infoboxes = result_container.infoboxes,
  592. engine_data = result_container.engine_data,
  593. paging = result_container.paging,
  594. unresponsive_engines = webutils.get_translated_errors(
  595. result_container.unresponsive_engines
  596. ),
  597. current_locale = sxng_request.preferences.get_value("locale"),
  598. current_language = selected_locale,
  599. search_language = match_locale(
  600. search_obj.search_query.lang,
  601. settings['search']['languages'],
  602. fallback=sxng_request.preferences.get_value("language")
  603. ),
  604. timeout_limit = sxng_request.form.get('timeout_limit', None),
  605. timings = engine_timings_pairs,
  606. max_response_time = max_response_time
  607. # fmt: on
  608. )
  609. @app.route('/about', methods=['GET'])
  610. def about():
  611. """Redirect to about page"""
  612. # custom_url_for is going to add the locale
  613. return redirect(custom_url_for('info', pagename='about'))
  614. @app.route('/info/<locale>/<pagename>', methods=['GET'])
  615. def info(pagename, locale):
  616. """Render page of online user documentation"""
  617. page = infopage.INFO_PAGES.get_page(pagename, locale)
  618. if page is None:
  619. flask.abort(404)
  620. user_locale = sxng_request.preferences.get_value('locale')
  621. return render(
  622. 'info.html',
  623. all_pages=infopage.INFO_PAGES.iter_pages(user_locale, fallback_to_default=True),
  624. active_page=page,
  625. active_pagename=pagename,
  626. )
  627. @app.route('/autocompleter', methods=['GET', 'POST'])
  628. def autocompleter():
  629. """Return autocompleter results"""
  630. # run autocompleter
  631. results = []
  632. # set blocked engines
  633. disabled_engines = sxng_request.preferences.engines.get_disabled()
  634. # parse query
  635. raw_text_query = RawTextQuery(sxng_request.form.get('q', ''), disabled_engines)
  636. sug_prefix = raw_text_query.getQuery()
  637. for obj in searx.answerers.STORAGE.ask(sug_prefix):
  638. if isinstance(obj, Answer):
  639. results.append(obj.answer)
  640. # normal autocompletion results only appear if no inner results returned
  641. # and there is a query part
  642. if len(raw_text_query.autocomplete_list) == 0 and len(sug_prefix) > 0:
  643. # get SearXNG's locale and autocomplete backend from cookie
  644. sxng_locale = sxng_request.preferences.get_value('language')
  645. backend_name = sxng_request.preferences.get_value('autocomplete')
  646. for result in search_autocomplete(backend_name, sug_prefix, sxng_locale):
  647. # attention: this loop will change raw_text_query object and this is
  648. # the reason why the sug_prefix was stored before (see above)
  649. if result != sug_prefix:
  650. results.append(raw_text_query.changeQuery(result).getFullQuery())
  651. if len(raw_text_query.autocomplete_list) > 0:
  652. for autocomplete_text in raw_text_query.autocomplete_list:
  653. results.append(raw_text_query.get_autocomplete_full_query(autocomplete_text))
  654. if sxng_request.headers.get('X-Requested-With') == 'XMLHttpRequest':
  655. # the suggestion request comes from the searx search form
  656. suggestions = json.dumps(results)
  657. mimetype = 'application/json'
  658. else:
  659. # the suggestion request comes from browser's URL bar
  660. suggestions = json.dumps([sug_prefix, results])
  661. mimetype = 'application/x-suggestions+json'
  662. suggestions = escape(suggestions, False)
  663. return Response(suggestions, mimetype=mimetype)
  664. @app.route('/preferences', methods=['GET', 'POST'])
  665. def preferences():
  666. """Render preferences page && save user preferences"""
  667. # pylint: disable=too-many-locals, too-many-return-statements, too-many-branches
  668. # pylint: disable=too-many-statements
  669. # save preferences using the link the /preferences?preferences=...
  670. if sxng_request.args.get('preferences') or sxng_request.form.get('preferences'):
  671. resp = make_response(redirect(url_for('index', _external=True)))
  672. return sxng_request.preferences.save(resp)
  673. # save preferences
  674. if sxng_request.method == 'POST':
  675. resp = make_response(redirect(url_for('index', _external=True)))
  676. try:
  677. sxng_request.preferences.parse_form(sxng_request.form)
  678. except ValidationException:
  679. sxng_request.errors.append(gettext('Invalid settings, please edit your preferences'))
  680. return resp
  681. return sxng_request.preferences.save(resp)
  682. # render preferences
  683. image_proxy = sxng_request.preferences.get_value('image_proxy') # pylint: disable=redefined-outer-name
  684. disabled_engines = sxng_request.preferences.engines.get_disabled()
  685. allowed_plugins = sxng_request.preferences.plugins.get_enabled()
  686. # stats for preferences page
  687. filtered_engines = dict(filter(lambda kv: sxng_request.preferences.validate_token(kv[1]), engines.items()))
  688. engines_by_category = {}
  689. for c in categories: # pylint: disable=consider-using-dict-items
  690. engines_by_category[c] = [e for e in categories[c] if e.name in filtered_engines]
  691. # sort the engines alphabetically since the order in settings.yml is meaningless.
  692. list.sort(engines_by_category[c], key=lambda e: e.name)
  693. # get first element [0], the engine time,
  694. # and then the second element [1] : the time (the first one is the label)
  695. stats = {} # pylint: disable=redefined-outer-name
  696. max_rate95 = 0
  697. for _, e in filtered_engines.items():
  698. h = histogram('engine', e.name, 'time', 'total')
  699. median = round(h.percentage(50), 1) if h.count > 0 else None
  700. rate80 = round(h.percentage(80), 1) if h.count > 0 else None
  701. rate95 = round(h.percentage(95), 1) if h.count > 0 else None
  702. max_rate95 = max(max_rate95, rate95 or 0)
  703. result_count_sum = histogram('engine', e.name, 'result', 'count').sum
  704. successful_count = counter('engine', e.name, 'search', 'count', 'successful')
  705. result_count = int(result_count_sum / float(successful_count)) if successful_count else 0
  706. stats[e.name] = {
  707. 'time': median,
  708. 'rate80': rate80,
  709. 'rate95': rate95,
  710. 'warn_timeout': e.timeout > settings['outgoing']['request_timeout'],
  711. 'supports_selected_language': e.traits.is_locale_supported(
  712. str(sxng_request.preferences.get_value('language') or 'all')
  713. ),
  714. 'result_count': result_count,
  715. }
  716. # end of stats
  717. # reliabilities
  718. reliabilities = {}
  719. engine_errors = get_engine_errors(filtered_engines)
  720. checker_results = checker_get_result()
  721. checker_results = (
  722. checker_results['engines'] if checker_results['status'] == 'ok' and 'engines' in checker_results else {}
  723. )
  724. for _, e in filtered_engines.items():
  725. checker_result = checker_results.get(e.name, {})
  726. checker_success = checker_result.get('success', True)
  727. errors = engine_errors.get(e.name) or []
  728. if counter('engine', e.name, 'search', 'count', 'sent') == 0:
  729. # no request
  730. reliability = None
  731. elif checker_success and not errors:
  732. reliability = 100
  733. elif 'simple' in checker_result.get('errors', {}):
  734. # the basic (simple) test doesn't work: the engine is broken according to the checker
  735. # even if there is no exception
  736. reliability = 0
  737. else:
  738. # pylint: disable=consider-using-generator
  739. reliability = 100 - sum([error['percentage'] for error in errors if not error.get('secondary')])
  740. reliabilities[e.name] = {
  741. 'reliability': reliability,
  742. 'errors': [],
  743. 'checker': checker_results.get(e.name, {}).get('errors', {}).keys(),
  744. }
  745. # keep the order of the list checker_results[e.name]['errors'] and deduplicate.
  746. # the first element has the highest percentage rate.
  747. reliabilities_errors = []
  748. for error in errors:
  749. error_user_text = None
  750. if error.get('secondary') or 'exception_classname' not in error:
  751. continue
  752. error_user_text = exception_classname_to_text.get(error.get('exception_classname'))
  753. if not error:
  754. error_user_text = exception_classname_to_text[None]
  755. if error_user_text not in reliabilities_errors:
  756. reliabilities_errors.append(error_user_text)
  757. reliabilities[e.name]['errors'] = reliabilities_errors
  758. # supports
  759. supports = {}
  760. for _, e in filtered_engines.items():
  761. supports_selected_language = e.traits.is_locale_supported(
  762. str(sxng_request.preferences.get_value('language') or 'all')
  763. )
  764. safesearch = e.safesearch
  765. time_range_support = e.time_range_support
  766. for checker_test_name in checker_results.get(e.name, {}).get('errors', {}):
  767. if supports_selected_language and checker_test_name.startswith('lang_'):
  768. supports_selected_language = '?'
  769. elif safesearch and checker_test_name == 'safesearch':
  770. safesearch = '?'
  771. elif time_range_support and checker_test_name == 'time_range':
  772. time_range_support = '?'
  773. supports[e.name] = {
  774. 'supports_selected_language': supports_selected_language,
  775. 'safesearch': safesearch,
  776. 'time_range_support': time_range_support,
  777. }
  778. return render(
  779. # fmt: off
  780. 'preferences.html',
  781. preferences = True,
  782. selected_categories = get_selected_categories(sxng_request.preferences, sxng_request.form),
  783. locales = LOCALE_NAMES,
  784. current_locale = sxng_request.preferences.get_value("locale"),
  785. image_proxy = image_proxy,
  786. engines_by_category = engines_by_category,
  787. stats = stats,
  788. max_rate95 = max_rate95,
  789. reliabilities = reliabilities,
  790. supports = supports,
  791. answer_storage = searx.answerers.STORAGE.info,
  792. disabled_engines = disabled_engines,
  793. autocomplete_backends = autocomplete_backends,
  794. favicon_resolver_names = favicons.proxy.CFG.resolver_map.keys(),
  795. shortcuts = {y: x for x, y in engine_shortcuts.items()},
  796. themes = themes,
  797. plugins_storage = searx.plugins.STORAGE.info,
  798. current_doi_resolver = get_doi_resolver(),
  799. allowed_plugins = allowed_plugins,
  800. preferences_url_params = sxng_request.preferences.get_as_url_params(),
  801. locked_preferences = get_setting("preferences.lock", []),
  802. doi_resolvers = get_setting("doi_resolvers", {}),
  803. # fmt: on
  804. )
  805. app.add_url_rule('/favicon_proxy', methods=['GET'], endpoint="favicon_proxy", view_func=favicons.favicon_proxy)
  806. @app.route('/image_proxy', methods=['GET'])
  807. def image_proxy():
  808. # pylint: disable=too-many-return-statements, too-many-branches
  809. url = sxng_request.args.get('url')
  810. if not url:
  811. return '', 400
  812. if not is_hmac_of(settings['server']['secret_key'], url.encode(), sxng_request.args.get('h', '')):
  813. return '', 400
  814. maximum_size = 5 * 1024 * 1024
  815. forward_resp = False
  816. resp = None
  817. try:
  818. request_headers = {
  819. 'User-Agent': gen_useragent(),
  820. 'Accept': 'image/webp,*/*',
  821. 'Accept-Encoding': 'gzip, deflate',
  822. 'Sec-GPC': '1',
  823. 'DNT': '1',
  824. }
  825. set_context_network_name('image_proxy')
  826. resp, stream = http_stream(method='GET', url=url, headers=request_headers, allow_redirects=True)
  827. content_length = resp.headers.get('Content-Length')
  828. if content_length and content_length.isdigit() and int(content_length) > maximum_size:
  829. return 'Max size', 400
  830. if resp.status_code != 200:
  831. logger.debug('image-proxy: wrong response code: %i', resp.status_code)
  832. if resp.status_code >= 400:
  833. return '', resp.status_code
  834. return '', 400
  835. if not resp.headers.get('Content-Type', '').startswith('image/') and not resp.headers.get(
  836. 'Content-Type', ''
  837. ).startswith('binary/octet-stream'):
  838. logger.debug('image-proxy: wrong content-type: %s', resp.headers.get('Content-Type', ''))
  839. return '', 400
  840. forward_resp = True
  841. except httpx.HTTPError:
  842. logger.exception('HTTP error')
  843. return '', 400
  844. finally:
  845. if resp and not forward_resp:
  846. # the code is about to return an HTTP 400 error to the browser
  847. # we make sure to close the response between searxng and the HTTP server
  848. try:
  849. resp.close()
  850. except httpx.HTTPError:
  851. logger.exception('HTTP error on closing')
  852. def close_stream():
  853. nonlocal resp, stream
  854. try:
  855. if resp:
  856. resp.close()
  857. del resp
  858. del stream
  859. except httpx.HTTPError as e:
  860. logger.debug('Exception while closing response', e)
  861. try:
  862. headers = dict_subset(resp.headers, {'Content-Type', 'Content-Encoding', 'Content-Length', 'Length'})
  863. response = Response(stream, mimetype=resp.headers['Content-Type'], headers=headers, direct_passthrough=True)
  864. response.call_on_close(close_stream)
  865. return response
  866. except httpx.HTTPError:
  867. close_stream()
  868. return '', 400
  869. @app.route('/engine_descriptions.json', methods=['GET'])
  870. def engine_descriptions():
  871. locale = get_locale().split('_')[0]
  872. result = ENGINE_DESCRIPTIONS['en'].copy()
  873. if locale != 'en':
  874. for engine, description in ENGINE_DESCRIPTIONS.get(locale, {}).items():
  875. result[engine] = description
  876. for engine, description in result.items():
  877. if len(description) == 2 and description[1] == 'ref':
  878. ref_engine, ref_lang = description[0].split(':')
  879. description = ENGINE_DESCRIPTIONS[ref_lang][ref_engine]
  880. if isinstance(description, str):
  881. description = [description, 'wikipedia']
  882. result[engine] = description
  883. # overwrite by about:description (from settings)
  884. for engine_name, engine_mod in engines.items():
  885. descr = getattr(engine_mod, 'about', {}).get('description', None)
  886. if descr is not None:
  887. result[engine_name] = [descr, "SearXNG config"]
  888. return jsonify(result)
  889. @app.route('/stats', methods=['GET'])
  890. def stats():
  891. """Render engine statistics page."""
  892. sort_order = sxng_request.args.get('sort', default='name', type=str)
  893. selected_engine_name = sxng_request.args.get('engine', default=None, type=str)
  894. filtered_engines = dict(filter(lambda kv: sxng_request.preferences.validate_token(kv[1]), engines.items()))
  895. if selected_engine_name:
  896. if selected_engine_name not in filtered_engines:
  897. selected_engine_name = None
  898. else:
  899. filtered_engines = [selected_engine_name]
  900. checker_results = checker_get_result()
  901. checker_results = (
  902. checker_results['engines'] if checker_results['status'] == 'ok' and 'engines' in checker_results else {}
  903. )
  904. engine_stats = get_engines_stats(filtered_engines)
  905. engine_reliabilities = get_reliabilities(filtered_engines, checker_results)
  906. if sort_order not in STATS_SORT_PARAMETERS:
  907. sort_order = 'name'
  908. reverse, key_name, default_value = STATS_SORT_PARAMETERS[sort_order]
  909. def get_key(engine_stat):
  910. reliability = engine_reliabilities.get(engine_stat['name'], {}).get('reliability', 0)
  911. reliability_order = 0 if reliability else 1
  912. if key_name == 'reliability':
  913. key = reliability
  914. reliability_order = 0
  915. else:
  916. key = engine_stat.get(key_name) or default_value
  917. if reverse:
  918. reliability_order = 1 - reliability_order
  919. return (reliability_order, key, engine_stat['name'])
  920. technical_report = []
  921. for error in engine_reliabilities.get(selected_engine_name, {}).get('errors', []):
  922. technical_report.append(
  923. f"\
  924. Error: {error['exception_classname'] or error['log_message']} \
  925. Parameters: {error['log_parameters']} \
  926. File name: {error['filename'] }:{ error['line_no'] } \
  927. Error Function: {error['function']} \
  928. Code: {error['code']} \
  929. ".replace(
  930. ' ' * 12, ''
  931. ).strip()
  932. )
  933. technical_report = ' '.join(technical_report)
  934. engine_stats['time'] = sorted(engine_stats['time'], reverse=reverse, key=get_key)
  935. return render(
  936. # fmt: off
  937. 'stats.html',
  938. sort_order = sort_order,
  939. engine_stats = engine_stats,
  940. engine_reliabilities = engine_reliabilities,
  941. selected_engine_name = selected_engine_name,
  942. searx_git_branch = GIT_BRANCH,
  943. technical_report = technical_report,
  944. # fmt: on
  945. )
  946. @app.route('/stats/errors', methods=['GET'])
  947. def stats_errors():
  948. filtered_engines = dict(filter(lambda kv: sxng_request.preferences.validate_token(kv[1]), engines.items()))
  949. result = get_engine_errors(filtered_engines)
  950. return jsonify(result)
  951. @app.route('/stats/checker', methods=['GET'])
  952. def stats_checker():
  953. result = checker_get_result()
  954. return jsonify(result)
  955. @app.route('/metrics')
  956. def stats_open_metrics():
  957. password = settings['general'].get("open_metrics")
  958. if not (settings['general'].get("enable_metrics") and password):
  959. return Response('open metrics is disabled', status=404, mimetype='text/plain')
  960. if not sxng_request.authorization or sxng_request.authorization.password != password:
  961. return Response('access forbidden', status=401, mimetype='text/plain')
  962. filtered_engines = dict(filter(lambda kv: sxng_request.preferences.validate_token(kv[1]), engines.items()))
  963. checker_results = checker_get_result()
  964. checker_results = (
  965. checker_results['engines'] if checker_results['status'] == 'ok' and 'engines' in checker_results else {}
  966. )
  967. engine_stats = get_engines_stats(filtered_engines)
  968. engine_reliabilities = get_reliabilities(filtered_engines, checker_results)
  969. metrics_text = openmetrics(engine_stats, engine_reliabilities)
  970. return Response(metrics_text, mimetype='text/plain')
  971. @app.route('/robots.txt', methods=['GET'])
  972. def robots():
  973. return Response(
  974. """User-agent: *
  975. Allow: /info/en/about
  976. Disallow: /stats
  977. Disallow: /image_proxy
  978. Disallow: /preferences
  979. Disallow: /*?*q=*
  980. """,
  981. mimetype='text/plain',
  982. )
  983. @app.route('/opensearch.xml', methods=['GET'])
  984. def opensearch():
  985. method = sxng_request.preferences.get_value('method')
  986. autocomplete = sxng_request.preferences.get_value('autocomplete')
  987. # chrome/chromium only supports HTTP GET....
  988. if sxng_request.headers.get('User-Agent', '').lower().find('webkit') >= 0:
  989. method = 'GET'
  990. if method not in ('POST', 'GET'):
  991. method = 'POST'
  992. ret = render('opensearch.xml', opensearch_method=method, autocomplete=autocomplete)
  993. resp = Response(response=ret, status=200, mimetype="application/opensearchdescription+xml")
  994. return resp
  995. @app.route('/favicon.ico')
  996. def favicon():
  997. theme = sxng_request.preferences.get_value("theme")
  998. return send_from_directory(
  999. os.path.join(app.root_path, settings['ui']['static_path'], 'themes', theme, 'img'), # type: ignore
  1000. 'favicon.png',
  1001. mimetype='image/vnd.microsoft.icon',
  1002. )
  1003. @app.route('/clear_cookies')
  1004. def clear_cookies():
  1005. resp = make_response(redirect(url_for('index', _external=True)))
  1006. for cookie_name in sxng_request.cookies:
  1007. resp.delete_cookie(cookie_name)
  1008. return resp
  1009. @app.route('/config')
  1010. def config():
  1011. """Return configuration in JSON format."""
  1012. _engines = []
  1013. for name, engine in engines.items():
  1014. if not sxng_request.preferences.validate_token(engine):
  1015. continue
  1016. _languages = engine.traits.languages.keys()
  1017. _engines.append(
  1018. {
  1019. 'name': name,
  1020. 'categories': engine.categories,
  1021. 'shortcut': engine.shortcut,
  1022. 'enabled': not engine.disabled,
  1023. 'paging': engine.paging,
  1024. 'language_support': engine.language_support,
  1025. 'languages': list(_languages),
  1026. 'regions': list(engine.traits.regions.keys()),
  1027. 'safesearch': engine.safesearch,
  1028. 'time_range_support': engine.time_range_support,
  1029. 'timeout': engine.timeout,
  1030. }
  1031. )
  1032. _plugins = []
  1033. for _ in searx.plugins.STORAGE:
  1034. _plugins.append({'name': _.id, 'enabled': _.active})
  1035. _limiter_cfg = limiter.get_cfg()
  1036. return jsonify(
  1037. {
  1038. 'categories': list(categories.keys()),
  1039. 'engines': _engines,
  1040. 'plugins': _plugins,
  1041. 'instance_name': settings['general']['instance_name'],
  1042. 'locales': LOCALE_NAMES,
  1043. 'default_locale': settings['ui']['default_locale'],
  1044. 'autocomplete': settings['search']['autocomplete'],
  1045. 'safe_search': settings['search']['safe_search'],
  1046. 'default_theme': settings['ui']['default_theme'],
  1047. 'version': VERSION_STRING,
  1048. 'brand': {
  1049. 'PRIVACYPOLICY_URL': get_setting('general.privacypolicy_url'),
  1050. 'CONTACT_URL': get_setting('general.contact_url'),
  1051. 'GIT_URL': GIT_URL,
  1052. 'GIT_BRANCH': GIT_BRANCH,
  1053. 'DOCS_URL': get_setting('brand.docs_url'),
  1054. },
  1055. 'limiter': {
  1056. 'enabled': limiter.is_installed(),
  1057. 'botdetection.ip_limit.link_token': _limiter_cfg.get('botdetection.ip_limit.link_token'),
  1058. 'botdetection.ip_lists.pass_searxng_org': _limiter_cfg.get('botdetection.ip_lists.pass_searxng_org'),
  1059. },
  1060. 'doi_resolvers': list(settings['doi_resolvers'].keys()),
  1061. 'default_doi_resolver': settings['default_doi_resolver'],
  1062. 'public_instance': settings['server']['public_instance'],
  1063. }
  1064. )
  1065. @app.errorhandler(404)
  1066. def page_not_found(_e):
  1067. return render('404.html'), 404
  1068. def run():
  1069. """Runs the application on a local development server.
  1070. This run method is only called when SearXNG is started via ``__main__``::
  1071. python -m searx.webapp
  1072. Do not use :ref:`run() <flask.Flask.run>` in a production setting. It is
  1073. not intended to meet security and performance requirements for a production
  1074. server.
  1075. It is not recommended to use this function for development with automatic
  1076. reloading as this is badly supported. Instead you should be using the flask
  1077. command line script’s run support::
  1078. flask --app searx.webapp run --debug --reload --host 127.0.0.1 --port 8888
  1079. .. _Flask.run: https://flask.palletsprojects.com/en/stable/api/#flask.Flask.run
  1080. """
  1081. host: str = get_setting("server.bind_address") # type: ignore
  1082. port: int = get_setting("server.port") # type: ignore
  1083. if searx.sxng_debug:
  1084. logger.debug("run local development server (DEBUG) on %s:%s", host, port)
  1085. app.run(
  1086. debug=True,
  1087. port=port,
  1088. host=host,
  1089. threaded=True,
  1090. extra_files=[DEFAULT_SETTINGS_FILE],
  1091. )
  1092. else:
  1093. logger.debug("run local development server on %s:%s", host, port)
  1094. app.run(port=port, host=host, threaded=True)
  1095. def is_werkzeug_reload_active() -> bool:
  1096. """Returns ``True`` if server is is launched by :ref:`werkzeug.serving` and
  1097. the ``use_reload`` argument was set to ``True``. If this is the case, it
  1098. should be avoided that the server is initialized twice (:py:obj:`init`,
  1099. :py:obj:`run`).
  1100. .. _werkzeug.serving:
  1101. https://werkzeug.palletsprojects.com/en/stable/serving/#werkzeug.serving.run_simple
  1102. """
  1103. if "uwsgi" in sys.argv:
  1104. # server was launched by uWSGI
  1105. return False
  1106. # https://github.com/searxng/searxng/pull/1656#issuecomment-1214198941
  1107. # https://github.com/searxng/searxng/pull/1616#issuecomment-1206137468
  1108. frames = inspect.stack()
  1109. if len(frames) > 1 and frames[-2].filename.endswith('flask/cli.py'):
  1110. # server was launched by "flask run", is argument "--reload" set?
  1111. if "--reload" in sys.argv or "--debug" in sys.argv:
  1112. return True
  1113. elif frames[0].filename.endswith('searx/webapp.py'):
  1114. # server was launched by "python -m searx.webapp" / see run()
  1115. if searx.sxng_debug:
  1116. return True
  1117. return False
  1118. def init():
  1119. if searx.sxng_debug or app.debug:
  1120. app.debug = True
  1121. searx.sxng_debug = True
  1122. # check secret_key in production
  1123. if not app.debug and get_setting("server.secret_key") == 'ultrasecretkey':
  1124. logger.error("server.secret_key is not changed. Please use something else instead of ultrasecretkey.")
  1125. sys.exit(1)
  1126. # When automatic reloading is activated stop Flask from initialising twice.
  1127. # - https://github.com/pallets/flask/issues/5307#issuecomment-1774646119
  1128. # - https://stackoverflow.com/a/25504196
  1129. reloader_active = is_werkzeug_reload_active()
  1130. werkzeug_run_main = is_running_from_reloader()
  1131. if reloader_active and not werkzeug_run_main:
  1132. logger.info("in reloading mode and not in main loop, cancel the initialization")
  1133. return
  1134. locales_initialize()
  1135. redis_initialize()
  1136. searx.plugins.initialize(app)
  1137. metrics: bool = get_setting("general.enable_metrics") # type: ignore
  1138. searx.search.initialize(enable_checker=True, check_network=True, enable_metrics=metrics)
  1139. limiter.initialize(app, settings)
  1140. favicons.init()
  1141. application = app
  1142. patch_application(app)
  1143. init()
  1144. if __name__ == "__main__":
  1145. run()