| 12345678910111213141516171819202122232425262728293031323334353637383940414243444546474849505152535455565758596061626364656667686970717273747576777879808182838485868788899091929394959697989910010110210310410510610710810911011111211311411511611711811912012112212312412512612712812913013113213313413513613713813914014114214314414514614714814915015115215315415515615715815916016116216316416516616716816917017117217317417517617717817918018118218318418518618718818919019119219319419519619719819920020120220320420520620720820921021121221321421521621721821922022122222322422522622722822923023123223323423523623723823924024124224324424524624724824925025125225325425525625725825926026126226326426526626726826927027127227327427527627727827928028128228328428528628728828929029129229329429529629729829930030130230330430530630730830931031131231331431531631731831932032132232332432532632732832933033133233333433533633733833934034134234334434534634734834935035135235335435535635735835936036136236336436536636736836937037137237337437537637737837938038138238338438538638738838939039139239339439539639739839940040140240340440540640740840941041141241341441541641741841942042142242342442542642742842943043143243343443543643743843944044144244344444544644744844945045145245345445545645745845946046146246346446546646746846947047147247347447547647747847948048148248348448548648748848949049149249349449549649749849950050150250350450550650750850951051151251351451551651751851952052152252352452552652752852953053153253353453553653753853954054154254354454554654754854955055155255355455555655755855956056156256356456556656756856957057157257357457557657757857958058158258358458558658758858959059159259359459559659759859960060160260360460560660760860961061161261361461561661761861962062162262362462562662762862963063163263363463563663763863964064164264364464564664764864965065165265365465565665765865966066166266366466566666766866967067167267367467567667767867968068168268368468568668768868969069169269369469569669769869970070170270370470570670770870971071171271371471571671771871972072172272372472572672772872973073173273373473573673773873974074174274374474574674774874975075175275375475575675775875976076176276376476576676776876977077177277377477577677777877978078178278378478578678778878979079179279379479579679779879980080180280380480580680780880981081181281381481581681781881982082182282382482582682782882983083183283383483583683783883984084184284384484584684784884985085185285385485585685785885986086186286386486586686786886987087187287387487587687787887988088188288388488588688788888989089189289389489589689789889990090190290390490590690790890991091191291391491591691791891992092192292392492592692792892993093193293393493593693793893994094194294394494594694794894995095195295395495595695795895996096196296396496596696796896997097197297397497597697797897998098198298398498598698798898999099199299399499599699799899910001001100210031004100510061007100810091010101110121013101410151016101710181019102010211022102310241025102610271028102910301031103210331034103510361037103810391040104110421043104410451046104710481049105010511052105310541055105610571058105910601061106210631064106510661067106810691070107110721073107410751076107710781079108010811082108310841085108610871088108910901091109210931094109510961097109810991100110111021103110411051106110711081109111011111112111311141115111611171118111911201121112211231124112511261127112811291130113111321133113411351136113711381139114011411142114311441145114611471148114911501151115211531154115511561157115811591160116111621163116411651166116711681169117011711172117311741175117611771178117911801181118211831184118511861187118811891190119111921193119411951196119711981199120012011202120312041205120612071208120912101211121212131214121512161217121812191220122112221223122412251226122712281229123012311232123312341235123612371238123912401241124212431244124512461247124812491250125112521253125412551256125712581259126012611262126312641265126612671268126912701271127212731274127512761277127812791280128112821283128412851286128712881289129012911292129312941295129612971298129913001301130213031304130513061307130813091310131113121313131413151316131713181319132013211322132313241325132613271328132913301331133213331334133513361337133813391340134113421343134413451346134713481349135013511352135313541355135613571358135913601361136213631364136513661367136813691370137113721373137413751376137713781379138013811382138313841385138613871388138913901391139213931394139513961397139813991400140114021403140414051406140714081409141014111412141314141415141614171418141914201421142214231424142514261427142814291430143114321433143414351436143714381439144014411442144314441445144614471448144914501451145214531454145514561457145814591460146114621463146414651466146714681469147014711472147314741475147614771478147914801481148214831484148514861487148814891490149114921493149414951496149714981499150015011502150315041505150615071508150915101511151215131514151515161517151815191520152115221523152415251526152715281529153015311532153315341535153615371538153915401541154215431544154515461547154815491550155115521553155415551556155715581559156015611562156315641565156615671568156915701571157215731574157515761577157815791580158115821583158415851586158715881589159015911592159315941595159615971598159916001601160216031604160516061607160816091610161116121613161416151616161716181619162016211622162316241625162616271628162916301631163216331634163516361637163816391640164116421643164416451646164716481649165016511652165316541655165616571658165916601661166216631664166516661667166816691670167116721673167416751676167716781679168016811682168316841685168616871688168916901691169216931694169516961697169816991700170117021703170417051706170717081709171017111712171317141715171617171718171917201721172217231724172517261727172817291730173117321733173417351736173717381739174017411742174317441745174617471748174917501751175217531754175517561757175817591760176117621763176417651766176717681769177017711772177317741775177617771778177917801781178217831784178517861787178817891790179117921793179417951796179717981799180018011802180318041805180618071808180918101811181218131814181518161817181818191820182118221823182418251826182718281829183018311832183318341835183618371838183918401841184218431844184518461847184818491850185118521853185418551856185718581859186018611862186318641865186618671868186918701871187218731874187518761877187818791880188118821883188418851886188718881889189018911892189318941895189618971898189919001901190219031904190519061907190819091910191119121913191419151916191719181919192019211922192319241925192619271928192919301931193219331934193519361937193819391940194119421943194419451946194719481949195019511952195319541955195619571958195919601961196219631964196519661967196819691970197119721973197419751976197719781979198019811982198319841985198619871988198919901991199219931994199519961997199819992000200120022003200420052006200720082009201020112012201320142015201620172018201920202021202220232024202520262027202820292030203120322033203420352036203720382039204020412042204320442045204620472048204920502051205220532054205520562057205820592060206120622063206420652066206720682069207020712072207320742075207620772078207920802081208220832084208520862087208820892090209120922093209420952096209720982099210021012102210321042105210621072108210921102111211221132114211521162117211821192120212121222123212421252126212721282129213021312132213321342135213621372138213921402141214221432144214521462147214821492150215121522153215421552156215721582159216021612162216321642165216621672168216921702171217221732174217521762177217821792180218121822183218421852186218721882189219021912192219321942195219621972198 |
- /**
- * PrivateBin
- *
- * a zero-knowledge paste bin
- *
- * @see {@link https://github.com/PrivateBin/PrivateBin}
- * @copyright 2012 Sébastien SAUVAGE ({@link http://sebsauvage.net})
- * @license {@link https://www.opensource.org/licenses/zlib-license.php The zlib/libpng License}
- * @version 1.1
- * @name PrivateBin
- * @namespace
- */
- /** global: Base64 */
- /** global: FileReader */
- /** global: RawDeflate */
- /** global: history */
- /** global: navigator */
- /** global: prettyPrint */
- /** global: prettyPrintOne */
- /** global: showdown */
- /** global: sjcl */
- // Immediately start random number generator collector.
- sjcl.random.startCollectors();
- jQuery.PrivateBin = function($, sjcl, Base64, RawDeflate) {
- 'use strict';
- /**
- * static helper methods
- *
- * @param {object} window
- * @param {object} document
- * @class
- */
- var helper = (function (window, document) {
- var me = {};
- /**
- * character to HTML entity lookup table
- *
- * @see {@link https://github.com/janl/mustache.js/blob/master/mustache.js#L60}
- * @private
- * @enum {Object}
- * @readonly
- */
- var entityMap = {
- '&': '&',
- '<': '<',
- '>': '>',
- '"': '"',
- "'": ''',
- '/': '/',
- '`': '`',
- '=': '='
- };
- /**
- * cache for script location
- *
- * @private
- * @enum {string|null}
- */
- var scriptLocation = null;
- /**
- * converts a duration (in seconds) into human friendly approximation
- *
- * @name helper.secondsToHuman
- * @function
- * @param {number} seconds
- * @return {Array}
- */
- me.secondsToHuman = function(seconds)
- {
- var v;
- if (seconds < 60)
- {
- v = Math.floor(seconds);
- return [v, 'second'];
- }
- if (seconds < 60 * 60)
- {
- v = Math.floor(seconds / 60);
- return [v, 'minute'];
- }
- if (seconds < 60 * 60 * 24)
- {
- v = Math.floor(seconds / (60 * 60));
- return [v, 'hour'];
- }
- // If less than 2 months, display in days:
- if (seconds < 60 * 60 * 24 * 60)
- {
- v = Math.floor(seconds / (60 * 60 * 24));
- return [v, 'day'];
- }
- v = Math.floor(seconds / (60 * 60 * 24 * 30));
- return [v, 'month'];
- };
- /**
- * text range selection
- *
- * @see {@link https://stackoverflow.com/questions/985272/jquery-selecting-text-in-an-element-akin-to-highlighting-with-your-mouse}
- * @name helper.selectText
- * @function
- * @param {HTMLElement} element
- */
- me.selectText = function(element)
- {
- var range, selection;
- // MS
- if (document.body.createTextRange)
- {
- range = document.body.createTextRange();
- range.moveToElementText(element);
- range.select();
- }
- // all others
- else if (window.getSelection)
- {
- selection = window.getSelection();
- range = document.createRange();
- range.selectNodeContents(element);
- selection.removeAllRanges();
- selection.addRange(range);
- }
- };
- /**
- * set text of a jQuery element (required for IE),
- *
- * @name helper.setElementText
- * @function
- * @param {jQuery} $element - a jQuery element
- * @param {string} text - the text to enter
- * @TODO check for XSS attacks, usually no CSS can prevent them so this looks weird on the first look
- */
- me.setElementText = function($element, text)
- {
- // For IE<10: Doesn't support white-space:pre-wrap; so we have to do this...
- if ($('#oldienotice').is(':visible')) {
- var html = me.htmlEntities(text).replace(/\n/ig, '\r\n<br>');
- $element.html('<pre>' + html + '</pre>');
- }
- // for other (sane) browsers:
- else
- {
- $element.text(text);
- }
- };
- /**
- * convert URLs to clickable links.
- * URLs to handle:
- * <pre>
- * magnet:?xt.1=urn:sha1:YNCKHTQCWBTRNJIV4WNAE52SJUQCZO5C&xt.2=urn:sha1:TXGCZQTH26NL6OUQAJJPFALHG2LTGBC7
- * http://example.com:8800/zero/?6f09182b8ea51997#WtLEUO5Epj9UHAV9JFs+6pUQZp13TuspAUjnF+iM+dM=
- * http://user:example.com@localhost:8800/zero/?6f09182b8ea51997#WtLEUO5Epj9UHAV9JFs+6pUQZp13TuspAUjnF+iM+dM=
- * </pre>
- *
- * @name helper.urls2links
- * @function
- * @param {Object} element - a jQuery DOM element
- */
- me.urls2links = function(element)
- {
- var markup = '<a href="$1" rel="nofollow">$1</a>';
- element.html(
- element.html().replace(
- /((http|https|ftp):\/\/[\w?=&.\/-;#@~%+-]+(?![\w\s?&.\/;#~%"=-]*>))/ig,
- markup
- )
- );
- element.html(
- element.html().replace(
- /((magnet):[\w?=&.\/-;#@~%+-]+)/ig,
- markup
- )
- );
- };
- /**
- * minimal sprintf emulation for %s and %d formats
- *
- * @see {@link https://stackoverflow.com/questions/610406/javascript-equivalent-to-printf-string-format#4795914}
- * @name helper.sprintf
- * @function
- * @param {string} format
- * @param {...*} args - one or multiple parameters injected into format string
- * @return {string}
- */
- me.sprintf = function()
- {
- var args = arguments;
- if (typeof arguments[0] === 'object')
- {
- args = arguments[0];
- }
- var format = args[0],
- i = 1;
- return format.replace(/%((%)|s|d)/g, function (m) {
- // m is the matched format, e.g. %s, %d
- var val;
- if (m[2]) {
- val = m[2];
- } else {
- val = args[i];
- // A switch statement so that the formatter can be extended.
- switch (m)
- {
- case '%d':
- val = parseFloat(val);
- if (isNaN(val)) {
- val = 0;
- }
- break;
- default:
- // Default is %s
- }
- ++i;
- }
- return val;
- });
- };
- /**
- * get value of cookie, if it was set, empty string otherwise
- *
- * @see {@link http://www.w3schools.com/js/js_cookies.asp}
- * @name helper.getCookie
- * @function
- * @param {string} cname
- * @return {string}
- */
- me.getCookie = function(cname) {
- var name = cname + '=',
- ca = document.cookie.split(';');
- for (var i = 0; i < ca.length; ++i) {
- var c = ca[i];
- while (c.charAt(0) === ' ')
- {
- c = c.substring(1);
- }
- if (c.indexOf(name) === 0)
- {
- return c.substring(name.length, c.length);
- }
- }
- return '';
- };
- /**
- * get the current script location (without search or hash part of the URL),
- * eg. http://example.com/path/?aaaa#bbbb --> http://example.com/path/
- *
- * @name helper.scriptLocation
- * @function
- * @return {string} current script location
- */
- me.scriptLocation = function()
- {
- // check for cached version
- if (scriptLocation !== null) {
- return scriptLocation;
- }
- scriptLocation = window.location.href.substring(
- 0,
- window.location.href.length - window.location.search.length - window.location.hash.length
- );
- var hashIndex = scriptLocation.indexOf('?');
- if (hashIndex !== -1)
- {
- scriptLocation = scriptLocation.substring(0, hashIndex);
- }
- return scriptLocation;
- };
- /**
- * get the pastes unique identifier from the URL,
- * eg. http://example.com/path/?c05354954c49a487#c05354954c49a487 returns c05354954c49a487
- *
- * @name helper.pasteId
- * @function
- * @return {string} unique identifier
- */
- me.pasteId = function()
- {
- return window.location.search.substring(1);
- };
- /**
- * return the deciphering key stored in anchor part of the URL
- *
- * @name helper.pageKey
- * @function
- * @return {string} key
- */
- me.pageKey = function()
- {
- var key = window.location.hash.substring(1),
- i = key.indexOf('&');
- // Some web 2.0 services and redirectors add data AFTER the anchor
- // (such as &utm_source=...). We will strip any additional data.
- if (i > -1)
- {
- key = key.substring(0, i);
- }
- return key;
- };
- /**
- * convert all applicable characters to HTML entities
- *
- * @see {@link https://www.owasp.org/index.php/XSS_(Cross_Site_Scripting)_Prevention_Cheat_Sheet#RULE_.231_-_HTML_Escape_Before_Inserting_Untrusted_Data_into_HTML_Element_Content}
- * @name helper.htmlEntities
- * @function
- * @param {string} str
- * @return {string} escaped HTML
- */
- me.htmlEntities = function(str) {
- return String(str).replace(
- /[&<>"'`=\/]/g, function(s) {
- return entityMap[s];
- });
- };
- return me;
- })(window, document);
- /**
- * internationalization methods
- *
- * @param {object} window
- * @param {object} document
- * @class
- */
- var i18n = (function (window, document) {
- var me = {};
- /**
- * supported languages, minus the built in 'en'
- *
- * @private
- * @prop {string[]}
- * @readonly
- */
- var supportedLanguages = ['de', 'es', 'fr', 'it', 'no', 'pl', 'oc', 'ru', 'sl', 'zh'];
- /**
- * built in language
- *
- * @private
- * @prop {string}
- */
- var language = 'en';
- /**
- * translation cache
- *
- * @private
- * @enum {Object}
- */
- var translations = {};
- /**
- * translate a string, alias for i18n.translate()
- *
- * @name i18n._
- * @function
- * @param {string} messageId
- * @param {...*} args - one or multiple parameters injected into placeholders
- * @return {string}
- */
- me._ = function()
- {
- return me.translate(arguments);
- };
- /**
- * translate a string
- *
- * @name i18n.translate
- * @function
- * @param {string} messageId
- * @param {...*} args - one or multiple parameters injected into placeholders
- * @return {string}
- */
- me.translate = function()
- {
- var args = arguments, messageId;
- if (typeof arguments[0] === 'object')
- {
- args = arguments[0];
- }
- var usesPlurals = $.isArray(args[0]);
- if (usesPlurals)
- {
- // use the first plural form as messageId, otherwise the singular
- messageId = (args[0].length > 1 ? args[0][1] : args[0][0]);
- }
- else
- {
- messageId = args[0];
- }
- if (messageId.length === 0)
- {
- return messageId;
- }
- if (!translations.hasOwnProperty(messageId))
- {
- if (language !== 'en')
- {
- console.error(
- 'Missing ' + language + ' translation for: ' + messageId
- );
- }
- translations[messageId] = args[0];
- }
- if (usesPlurals && $.isArray(translations[messageId]))
- {
- var n = parseInt(args[1] || 1, 10),
- key = me.getPluralForm(n),
- maxKey = translations[messageId].length - 1;
- if (key > maxKey)
- {
- key = maxKey;
- }
- args[0] = translations[messageId][key];
- args[1] = n;
- }
- else
- {
- args[0] = translations[messageId];
- }
- return helper.sprintf(args);
- };
- /**
- * per language functions to use to determine the plural form
- *
- * @see {@link http://localization-guide.readthedocs.org/en/latest/l10n/pluralforms.html}
- * @name i18n.getPluralForm
- * @function
- * @param {number} n
- * @return {number} array key
- */
- me.getPluralForm = function(n) {
- switch (language)
- {
- case 'fr':
- case 'oc':
- case 'zh':
- return (n > 1 ? 1 : 0);
- case 'pl':
- return (n === 1 ? 0 : (n % 10 >= 2 && n %10 <=4 && (n % 100 < 10 || n % 100 >= 20) ? 1 : 2));
- case 'ru':
- return (n % 10 === 1 && n % 100 !== 11 ? 0 : (n % 10 >= 2 && n % 10 <= 4 && (n % 100 < 10 || n % 100 >= 20) ? 1 : 2));
- case 'sl':
- return (n % 100 === 1 ? 1 : (n % 100 === 2 ? 2 : (n % 100 === 3 || n % 100 === 4 ? 3 : 0)));
- // de, en, es, it, no
- default:
- return (n !== 1 ? 1 : 0);
- }
- };
- /**
- * load translations into cache, then trigger controller initialization
- *
- * @name i18n.loadTranslations
- * @function
- */
- me.loadTranslations = function()
- {
- var newLanguage = helper.getCookie('lang');
- // auto-select language based on browser settings
- if (newLanguage.length === 0)
- {
- newLanguage = (navigator.language || navigator.userLanguage).substring(0, 2);
- }
- // if language is already used (e.g, default 'en'), skip update
- if (newLanguage === language) {
- return;
- }
- // if language is not supported, show error
- if (supportedLanguages.indexOf(newLanguage) === -1) {
- console.error('Language \'%s\' is not supported. Translation failed, fallback to English.', newLanguage);
- }
- // load strongs from JSON
- $.getJSON('i18n/' + newLanguage + '.json', function(data) {
- language = newLanguage;
- translations = data;
- }).fail(function (data, textStatus, errorMsg) {
- console.error('Language \'%s\' could not be loaded (%s: %s). Translation failed, fallback to English.', newLanguage, textStatus, errorMsg);
- });
- };
- return me;
- })(window, document);
- /**
- * cryptTool methods
- *
- * @param {object} window
- * @param {object} document
- * @class
- */
- var cryptTool = (function () {
- var me = {};
- /**
- * compress a message (deflate compression), returns base64 encoded data
- *
- * @name cryptToolcompress
- * @function
- * @private
- * @param {string} message
- * @return {string} base64 data
- */
- function compress(message)
- {
- return Base64.toBase64( RawDeflate.deflate( Base64.utob(message) ) );
- }
- /**
- * decompress a message compressed with cryptToolcompress()
- *
- * @name cryptTooldecompress
- * @function
- * @private
- * @param {string} data - base64 data
- * @return {string} message
- */
- function decompress(data)
- {
- return Base64.btou( RawDeflate.inflate( Base64.fromBase64(data) ) );
- }
- /**
- * compress, then encrypt message with given key and password
- *
- * @name cryptToolcipher
- * @function
- * @param {string} key
- * @param {string} password
- * @param {string} message
- * @return {string} data - JSON with encrypted data
- */
- me.cipher = function(key, password, message)
- {
- // Galois Counter Mode, keysize 256 bit, authentication tag 128 bit
- var options = {mode: 'gcm', ks: 256, ts: 128};
- if ((password || '').trim().length === 0)
- {
- return sjcl.encrypt(key, compress(message), options);
- }
- return sjcl.encrypt(key + sjcl.codec.hex.fromBits(sjcl.hash.sha256.hash(password)), me.compress(message), options);
- };
- /**
- * decrypt message with key, then decompress
- *
- * @name cryptTooldecipher
- * @function
- * @param {string} key
- * @param {string} password
- * @param {string} data - JSON with encrypted data
- * @return {string} decrypted message
- */
- me.decipher = function(key, password, data)
- {
- if (data !== undefined)
- {
- try
- {
- return decompress(sjcl.decrypt(key, data));
- }
- catch(err)
- {
- try
- {
- return decompress(sjcl.decrypt(key + sjcl.codec.hex.fromBits(sjcl.hash.sha256.hash(password)), data));
- }
- catch(e)
- {
- // ignore error, because ????? @TODO
- }
- }
- }
- return '';
- };
- return me;
- })();
- /**
- * User interface manager
- *
- * @param {object} window
- * @param {object} document
- * @class
- */
- var uiMan = (function (window, document) {
- var me = {};
- // jQuery pre-loaded objects
- var $cipherData,
- $clearText,
- $clonedFile,
- $comments,
- $discussion,
- $image,
- $pasteResult,
- $pasteUrl,
- $prettyMessage,
- $prettyPrint,
- $preview,
- $remainingTime,
- $replyStatus;
- /**
- * use given format on paste, defaults to plain text
- *
- * @name controller.formatPaste
- * @function
- * @param {string} format
- * @param {string} text
- */
- me.formatPaste = function(format, text)
- {
- helper.setElementText($clearText, text);
- helper.setElementText($prettyPrint, text);
- switch (format || 'plaintext') {
- case 'markdown':
- // silently fail if showdown is not available
- // @TODO: maybe better show an error message? At least a warning?
- if (typeof showdown === 'object')
- {
- var converter = new showdown.Converter({
- strikethrough: true,
- tables: true,
- tablesHeaderId: true
- });
- $clearText.html(
- converter.makeHtml(text)
- );
- // add table classes from bootstrap css
- $clearText.find('table').addClass('table-condensed table-bordered');
- $clearText.removeClass('hidden');
- } else {
- console.error('showdown is not loaded, could not parse Markdown');
- }
- $prettyMessage.addClass('hidden');
- break;
- case 'syntaxhighlighting':
- // silently fail if prettyprint is not available
- // @TODO: maybe better show an error message? At least a warning?
- if (typeof prettyPrintOne === 'function')
- {
- if (typeof prettyPrint === 'function')
- {
- prettyPrint();
- }
- $prettyPrint.html(
- prettyPrintOne(
- helper.htmlEntities(text), null, true
- )
- );
- } else {
- console.error('pretty print is not loaded, could not link ');
- }
- // fall through, as the rest is the same
- default: // = 'plaintext'
- // convert URLs to clickable links
- helper.urls2links($clearText);
- helper.urls2links($prettyPrint);
- $clearText.addClass('hidden');
- $prettyPrint.css('white-space', 'pre-wrap');
- $prettyPrint.css('word-break', 'normal');
- $prettyPrint.removeClass('prettyprint');
- $prettyMessage.removeClass('hidden');
- }
- };
- /**
- * show decrypted text in the display area, including discussion (if open)
- *
- * @name controller.displayMessages
- * @function
- * @param {Object} [paste] - (optional) object including comments to display (items = array with keys ('data','meta'))
- */
- me.displayMessages = function(paste)
- {
- paste = paste || $.parseJSON($cipherData.text());
- var key = helper.pageKey(),
- password = $passwordInput.val();
- if (!$prettyPrint.hasClass('prettyprinted')) {
- // Try to decrypt the paste.
- try
- {
- if (paste.attachment)
- {
- var attachment = cryptTooldecipher(key, password, paste.attachment);
- if (attachment.length === 0)
- {
- if (password.length === 0)
- {
- me.requestPassword();
- return;
- }
- attachment = cryptTooldecipher(key, password, paste.attachment);
- }
- if (attachment.length === 0)
- {
- throw 'failed to decipher attachment';
- }
- if (paste.attachmentname)
- {
- var attachmentname = cryptTooldecipher(key, password, paste.attachmentname);
- if (attachmentname.length > 0)
- {
- $attachmentLink.attr('download', attachmentname);
- }
- }
- $attachmentLink.attr('href', attachment);
- $attachment.removeClass('hidden');
- // if the attachment is an image, display it
- var imagePrefix = 'data:image/';
- if (attachment.substring(0, imagePrefix.length) === imagePrefix)
- {
- $image.html(
- $(document.createElement('img'))
- .attr('src', attachment)
- .attr('class', 'img-thumbnail')
- );
- $image.removeClass('hidden');
- }
- }
- var cleartext = cryptTooldecipher(key, password, paste.data);
- if (cleartext.length === 0 && password.length === 0 && !paste.attachment)
- {
- me.requestPassword();
- return;
- }
- if (cleartext.length === 0 && !paste.attachment)
- {
- throw 'failed to decipher message';
- }
- $passwordInput.val(password);
- if (cleartext.length > 0)
- {
- $('#pasteFormatter').val(paste.meta.formatter);
- me.formatPaste(paste.meta.formatter, cleartext);
- }
- }
- catch(err)
- {
- me.stateOnlyNewPaste();
- me.showError(i18n._('Could not decrypt data (Wrong key?)'));
- return;
- }
- }
- // display paste expiration / for your eyes only
- if (paste.meta.expire_date)
- {
- var expiration = helper.secondsToHuman(paste.meta.remaining_time),
- expirationLabel = [
- 'This document will expire in %d ' + expiration[1] + '.',
- 'This document will expire in %d ' + expiration[1] + 's.'
- ];
- me.appendMessage($remainingTime, i18n._(expirationLabel, expiration[0]));
- $remainingTime.removeClass('foryoureyesonly')
- .removeClass('hidden');
- }
- if (paste.meta.burnafterreading)
- {
- // unfortunately many web servers don't support DELETE (and PUT) out of the box
- $.ajax({
- type: 'POST',
- url: helper.scriptLocation() + '?' + helper.pasteId(),
- data: {deletetoken: 'burnafterreading'},
- dataType: 'json',
- headers: headers
- })
- .fail(function() {
- controller.showError(i18n._('Could not delete the paste, it was not stored in burn after reading mode.'));
- });
- me.appendMessage($remainingTime, i18n._(
- 'FOR YOUR EYES ONLY. Don\'t close this window, this message can\'t be displayed again.'
- ));
- $remainingTime.addClass('foryoureyesonly')
- .removeClass('hidden');
- // discourage cloning (as it can't really be prevented)
- $cloneButton.addClass('hidden');
- }
- // if the discussion is opened on this paste, display it
- if (paste.meta.opendiscussion)
- {
- $comments.html('');
- var $divComment;
- // iterate over comments
- for (var i = 0; i < paste.comments.length; ++i)
- {
- var $place = $comments,
- comment = paste.comments[i],
- commentText = cryptTooldecipher(key, password, comment.data),
- $parentComment = $('#comment_' + comment.parentid);
- $divComment = $('<article><div class="comment" id="comment_' + comment.id
- + '"><div class="commentmeta"><span class="nickname"></span>'
- + '<span class="commentdate"></span></div>'
- + '<div class="commentdata"></div>'
- + '<button class="btn btn-default btn-sm">'
- + i18n._('Reply') + '</button></div></article>');
- var $divCommentData = $divComment.find('div.commentdata');
- // if parent comment exists
- if ($parentComment.length)
- {
- // shift comment to the right
- $place = $parentComment;
- }
- $divComment.find('button').click({commentid: comment.id}, me.openReply);
- helper.setElementText($divCommentData, commentText);
- helper.urls2links($divCommentData);
- // try to get optional nickname
- var nick = cryptTooldecipher(key, password, comment.meta.nickname);
- if (nick.length > 0)
- {
- $divComment.find('span.nickname').text(nick);
- }
- else
- {
- divComment.find('span.nickname').html('<i>' + i18n._('Anonymous') + '</i>');
- }
- $divComment.find('span.commentdate')
- .text(' (' + (new Date(comment.meta.postdate * 1000).toLocaleString()) + ')')
- .attr('title', 'CommentID: ' + comment.id);
- // if an avatar is available, display it
- if (comment.meta.vizhash)
- {
- $divComment.find('span.nickname')
- .before(
- '<img src="' + comment.meta.vizhash + '" class="vizhash" title="' +
- i18n._('Anonymous avatar (Vizhash of the IP address)') + '" /> '
- );
- }
- $place.append($divComment);
- }
- // add 'add new comment' area
- $divComment = $(
- '<div class="comment"><button class="btn btn-default btn-sm">' +
- i18n._('Add comment') + '</button></div>'
- );
- $divComment.find('button').click({commentid: helper.pasteId()}, me.openReply);
- $comments.append($divComment);
- $discussion.removeClass('hidden');
- }
- };
- /**
- * open the comment entry when clicking the "Reply" button of a comment
- *
- * @name controller.openReply
- * @function
- * @param {Event} event
- */
- me.openReply = function(event)
- {
- event.preventDefault();
- // remove any other reply area
- $('div.reply').remove();
- var source = $(event.target),
- commentid = event.data.commentid,
- hint = i18n._('Optional nickname...'),
- $reply = $('#replytemplate');
- $reply.find('button').click(
- {parentid: commentid},
- me.sendComment
- );
- source.after($reply);
- $replyStatus = $('#replystatus'); // when ID --> put into HTML
- $('#replymessage').focus();
- };
- /**
- * replace last child of element with message
- *
- * @name me.appendMessage
- * @function
- * @param {jQuery} $element - a jQuery wrapped DOM element
- * @param {string} message - the message to append
- * @TODO: make private if possible
- */
- me.appendMessage = function($element, message)
- {
- var content = $element.contents();
- if (content.length > 0)
- {
- content[content.length - 1].nodeValue = ' ' + message;
- }
- else
- {
- me.setElementText($element, message);
- }
- };
- /**
- * handle history (pop) state changes
- *
- * currently this does only handle redirects to the home page.
- *
- * @name controller.historyChange
- * @function
- * @param {Event} event
- */
- me.historyChange = function(event)
- {
- var currentLocation = helper.scriptLocation();
- if (event.originalEvent.state === null && // no state object passed
- event.originalEvent.target.location.href === currentLocation && // target location is home page
- window.location.href === currentLocation // and we are not already on the home page
- ) {
- // redirect to home page
- window.location.href = currentLocation;
- }
- };
- /**
- * Forces opening the paste if the link does not do this automatically.
- *
- * This is necessary as browsers will not reload the page when it is
- * already loaded (which is fake as it is set via history.pushState()).
- *
- * @name controller.pasteLinkClick
- * @function
- * @param {Event} event
- */
- me.pasteLinkClick = function(event)
- {
- // check if location is (already) shown in URL bar
- if (window.location.href === $pasteUrl.attr('href')) {
- // if so we need to load link by reloading the current site
- window.location.reload(true);
- }
- };
- /**
- * reload the page
- *
- * This takes the user to the PrivateBin home page.
- *
- * @name controller.reloadPage
- * @function
- * @param {Event} event
- */
- me.reloadPage = function(event)
- {
- window.location.href = helper.scriptLocation();
- event.preventDefault();
- };
- /**
- * main UI manager
- *
- * @name controller.init
- * @function
- */
- me.init = function()
- {
- // hide "no javascript" message
- $('#noscript').hide();
- // preload jQuery elements
- $cipherData = $('#cipherdata');
- $clearText = $('#cleartext');
- $clonedFile = $('#clonedfile');
- $comments = $('#comments');
- $discussion = $('#discussion');
- $errorMessage = $('#errormessage');
- $image = $('#image');
- $pasteResult = $('#pasteresult');
- // $pasteUrl is saved in sendDataContinue() if/after it is
- // actually created
- $prettyMessage = $('#prettymessage');
- $prettyPrint = $('#prettyprint');
- $preview = $('#preview');
- $remainingTime = $('#remainingtime');
- // bind events
- $('.reloadlink').click(me.reloadPage);
- // bootstrap template drop downs
- $('ul.dropdown-menu li a', $('#expiration').parent()).click(me.setExpiration);
- $('ul.dropdown-menu li a', $('#formatter').parent()).click(me.setFormat);
- $(window).on('popstate', me.historyChange);
- };
- return me;
- })(window, document);
- /**
- * UI state manager
- *
- * @param {object} window
- * @param {object} document
- * @class
- */
- var state = (function (window, document) {
- var me = {};
- /**
- * put the screen in "New paste" mode
- *
- * @name controller.stateNewPaste
- * @function
- */
- me.stateNewPaste = function()
- {
- $remainingTime.removeClass('hidden');
- $loadingIndicator.addClass('hidden');
- console.error('stateNewPaste is depreciated');
- };
- /**
- * put the screen in mode after submitting a paste
- *
- * @name controller.stateSubmittingPaste
- * @function
- */
- me.stateSubmittingPaste = function()
- {
- console.error('stateSubmittingPaste is depreciated');
- };
- /**
- * put the screen in a state where the only option is to submit a
- * new paste
- *
- * @name controller.stateOnlyNewPaste
- * @function
- */
- me.stateOnlyNewPaste = function()
- {
- console.error('stateOnlyNewPaste is depreciated');
- };
- /**
- * put the screen in "Existing paste" mode
- *
- * @name controller.stateExistingPaste
- * @function
- * @param {boolean} [preview=false] - (optional) tell if the preview tabs should be displayed, defaults to false
- */
- me.stateExistingPaste = function(preview)
- {
- preview = preview || false;
- console.error('stateExistingPaste is depreciated');
- if (!preview)
- {
- // no "clone" for IE<10.
- if ($('#oldienotice').is(":visible"))
- {
- $cloneButton.addClass('hidden');
- }
- else
- {
- $cloneButton.removeClass('hidden');
- }
- console.log('show no preview');
- }
- };
- return me;
- })(window, document);
- /**
- * UI status/error manager
- *
- * @param {object} window
- * @param {object} document
- * @class
- */
- var status = (function (window, document) {
- var me = {};
- var $errorMessage,
- $status,
- $loadingIndicator;
- /**
- * display a status message
- *
- * @name controller.showStatus
- * @function
- * @param {string} message - text to display
- * @param {boolean} [spin=false] - (optional) tell if the "spinning" animation should be displayed, defaults to false
- */
- me.showStatus = function(message, spin)
- {
- // spin is ignored for now
- $status.text(message);
- };
- // @TODO: add showLoading()
- /**
- * display a status message for replying to comments
- *
- * @name controller.showStatus
- * @function
- * @param {string} message - text to display
- * @param {boolean} [spin=false] - (optional) tell if the "spinning" animation should be displayed, defaults to false
- */
- me.showReplyStatus = function(message, spin)
- {
- if (spin || false) {
- $replyStatus.find('.spinner').removeClass('hidden')
- }
- $replyStatus.text(message);
- };
- /**
- * hides any status messages
- *
- * @name controller.hideSTatus
- * @function
- */
- me.hideStatus = function()
- {
- $status.html(' ');
- };
- /**
- * display an error message
- *
- * @name controller.showError
- * @function
- * @param {string} message - text to display
- */
- me.showError = function(message)
- {
- $errorMessage.removeClass('hidden');
- me.appendMessage($errorMessage, message);
- };
- /**
- * display an error message
- *
- * @name controller.showError
- * @function
- * @param {string} message - text to display
- */
- me.showReplyError = function(message)
- {
- $replyStatus.addClass('alert-danger');
- $replyStatus.addClass($errorMessage.attr('class')); // @TODO ????
- $replyStatus.text(message);
- };
- /**
- * init status manager
- *
- * preloads jQuery elements
- *
- * @name controller.init
- * @function
- */
- me.init = function()
- {
- // hide "no javascript" message
- $('#noscript').hide();
- $loadingIndicator = $('#loadingindicator'); // TODO: integrate $loadingIndicator into this module or leave it in state and remove it here
- $errorMessage = $('#errormessage');
- $status = $('#status');
- // @TODO $replyStatus …
- // display status returned by php code, if any (eg. paste was properly deleted)
- // @TODO remove this by handling errors in a different way
- if ($status.text().length > 0)
- {
- me.showStatus($status.text());
- return;
- }
- // keep line height even if content empty
- $status.html(' '); // @TODO what? remove?
- };
- return me;
- })(window, document);
- /**
- * Passwort modal manager
- *
- * @param {object} window
- * @param {object} document
- * @name modal
- * @class
- */
- var modal = (function (window, document) {
- var me = {};
- var $password,
- $passwordInput,
- $passwordModal,
- $passwordForm,
- $passwordDecrypt;
- /**
- * ask the user for the password and set it
- *
- * @name controller.requestPassword
- * @function
- */
- me.requestPassword = function()
- {
- if ($passwordModal.length === 0) {
- var password = prompt(i18n._('Please enter the password for this paste:'), '');
- if (password === null)
- {
- throw 'password prompt canceled';
- }
- if (password.length === 0)
- {
- // recursive…
- me.requestPassword();
- } else {
- $passwordInput.val(password);
- me.displayMessages();
- }
- } else {
- $passwordModal.modal();
- }
- };
- /**
- * decrypt using the password from the modal dialog
- *
- * @name controller.decryptPasswordModal
- * @function
- */
- me.decryptPasswordModal = function()
- {
- $passwordInput.val($passwordDecrypt.val());
- me.displayMessages();
- };
- /**
- * submit a password in the modal dialog
- *
- * @name controller.submitPasswordModal
- * @function
- * @param {Event} event
- */
- me.submitPasswordModal = function(event)
- {
- event.preventDefault();
- $passwordModal.modal('hide');
- };
- /**
- * init status manager
- *
- * preloads jQuery elements
- *
- * @name controller.init
- * @function
- */
- me.init = function()
- {
- $password = $('#password');
- $passwordInput = $('#passwordinput');
- $passwordModal = $('#passwordmodal');
- $passwordForm = $('#passwordform');
- $passwordDecrypt = $('#passworddecrypt');
- // bind events
- // focus password input when it is shown
- $passwordModal.on('shown.bs.modal', function () {
- $passwordDecrypt.focus();
- });
- // handle modal password request on decryption
- $passwordModal.on('hidden.bs.modal', me.decryptPasswordModal);
- $passwordForm.submit(me.submitPasswordModal);
- };
- return me;
- })(window, document);
- /**
- * Manage paste/message input
- *
- * @param {object} window
- * @param {object} document
- * @class
- */
- var editor = (function (window, document) {
- var me = {};
- var $message,
- $messageEdit,
- $messagePreview;
- /**
- * support input of tab character
- *
- * @name editor.supportTabs
- * @function
- * @param {Event} event
- * @TODO doc what is @this here?
- * @TODO replace this with $message ??
- */
- function supportTabs(event)
- {
- var keyCode = event.keyCode || event.which;
- // tab was pressed
- if (keyCode === 9)
- {
- // prevent the textarea to lose focus
- event.preventDefault();
- // get caret position & selection
- var val = this.value,
- start = this.selectionStart,
- end = this.selectionEnd;
- // set textarea value to: text before caret + tab + text after caret
- this.value = val.substring(0, start) + '\t' + val.substring(end);
- // put caret at right position again
- this.selectionStart = this.selectionEnd = start + 1;
- }
- }
- /**
- * view the editor tab
- *
- * @name editor.viewEditor
- * @function
- * @param {Event} event
- */
- function viewEditor(event)
- {
- $messagePreview.parent().removeClass('active');
- $messageEdit.parent().addClass('active');
- $message.focus();
- me.stateNewPaste();
- event.preventDefault();
- }
- /**
- * view the preview tab
- *
- * @name editor.viewPreview
- * @function
- * @param {Event} event
- */
- function viewPreview(event)
- {
- $messageEdit.parent().removeClass('active');
- $messagePreview.parent().addClass('active');
- $message.focus();
- me.stateExistingPaste(true);
- me.formatPaste($('#pasteFormatter').val(), $message.val());
- event.preventDefault();
- }
- /**
- * reset the editor view
- *
- * @name editor.reset
- * @function
- */
- me.reset = function()
- {
- // clear content
- $message.text('');
- };
- /**
- * shows the editor
- *
- * @name editor.show
- * @function
- */
- me.show = function()
- {
- $attachment.removeClass('hidden');
- $clearText.removeClass('hidden');
- $discussion.removeClass('hidden');
- $pasteResult.removeClass('hidden'); //??
- // $prettyMessage.removeClass('hidden');
- $remainingTime.removeClass('hidden');
- };
- /**
- * hides the editor
- *
- * @name editor.reset
- * @function
- */
- me.hide = function()
- {
- $attachment.addClass('hidden');
- $clearText.addClass('hidden');
- $discussion.addClass('hidden');
- $pasteResult.addClass('hidden');
- $prettyMessage.addClass('hidden');
- $remainingTime.addClass('hidden');
- };
- /**
- * focuses the message input
- *
- * @name editor.focus
- * @function
- */
- me.focus = function()
- {
- $message.focus();
- };
- /**
- * init status manager
- *
- * preloads jQuery elements
- *
- * @name editor.init
- * @function
- */
- me.init = function()
- {
- $message = $('#message');
- $messageEdit = $('#messageedit');
- $messagePreview = $('#messagepreview');
- // bind events
- $message.keydown(supportTabs);
- $messageEdit.click(viewEditor);
- $messagePreview.click(viewPreview);
- };
- return me;
- })(window, document);
- /**
- * Manage top (navigation) bar
- *
- * @param {object} window
- * @param {object} document
- * @name state
- * @class
- */
- var topNav = (function (window, document) {
- var me = {};
- var $attach,
- $attachment,
- $attachmentLink,
- $burnAfterReading,
- $burnAfterReadingOption,
- $cloneButton,
- $expiration,
- $fileRemoveButton,
- $fileWrap,
- $formatter,
- $newButton,
- $openDisc, // @TODO: rename - too similar to openDiscussion, difference unclear
- $openDiscussion,
- $rawTextButton,
- $sendButton;
- /**
- * set the expiration on bootstrap templates
- *
- * @name topNav.setExpiration
- * @function
- * @param {Event} event
- */
- function setExpiration(event)
- {
- event.preventDefault();
- var target = $(event.target);
- $('#pasteExpiration').val(target.data('expiration'));
- $('#pasteExpirationDisplay').text(target.text());
- }
- /**
- * set the format on bootstrap templates
- *
- * @name topNav.setFormat
- * @function
- * @param {Event} event
- */
- me.setFormat = function(event)
- {
- var target = $(event.target);
- $('#pasteFormatter').val(target.data('format'));
- $('#pasteFormatterDisplay').text(target.text());
- if ($messagePreview.parent().hasClass('active')) {
- me.viewPreview(event);
- }
- event.preventDefault();
- };
- /**
- * when "burn after reading" is checked, disable discussion
- *
- * @name topNav.changeBurnAfterReading
- * @function
- */
- function changeBurnAfterReading()
- {
- if ($burnAfterReading.is(':checked') )
- {
- $openDisc.addClass('buttondisabled');
- $openDiscussion.attr({checked: false, disabled: true});
- }
- else
- {
- $openDisc.removeClass('buttondisabled');
- $openDiscussion.removeAttr('disabled');
- }
- }
- /**
- * when discussion is checked, disable "burn after reading"
- *
- * @name topNav.changeOpenDisc
- * @function
- */
- function changeOpenDisc()
- {
- if ($openDiscussion.is(':checked') )
- {
- $burnAfterReadingOption.addClass('buttondisabled');
- $burnAfterReading.attr({checked: false, disabled: true});
- }
- else
- {
- $burnAfterReadingOption.removeClass('buttondisabled');
- $burnAfterReading.removeAttr('disabled');
- }
- }
- /**
- * return raw text
- *
- * @name topNav.rawText
- * @function
- * @param {Event} event
- */
- function rawText(event)
- {
- var paste = $('#pasteFormatter').val() === 'markdown' ?
- $prettyPrint.text() : $clearText.text();
- history.pushState(
- null, document.title, helper.scriptLocation() + '?' +
- helper.pasteId() + '#' + helper.pageKey()
- );
- // we use text/html instead of text/plain to avoid a bug when
- // reloading the raw text view (it reverts to type text/html)
- var newDoc = document.open('text/html', 'replace');
- newDoc.write('<pre>' + helper.htmlEntities(paste) + '</pre>');
- newDoc.close();
- event.preventDefault();
- }
- /**
- * set the language in a cookie and reload the page
- *
- * @name topNav.setLanguage
- * @function
- * @param {Event} event
- */
- function setLanguage(event)
- {
- document.cookie = 'lang=' + $(event.target).data('lang');
- me.reloadPage(event);
- }
- /**
- * removes an attachment
- *
- * @name controller.removeAttachment
- * @function
- */
- me.removeAttachment = function()
- {
- $clonedFile.addClass('hidden');
- // removes the saved decrypted file data
- $attachmentLink.attr('href', '');
- // the only way to deselect the file is to recreate the input // @TODO really?
- $fileWrap.html($fileWrap.html());
- $fileWrap.removeClass('hidden');
- };
- /**
- * Shows all elements belonging to viwing an existing pastes
- *
- * @name topNav.hideAllElem
- * @function
- */
- me.showViewButtons = function()
- {
- $cloneButton.removeClass('hidden');
- $rawTextButton.removeClass('hidden');
- };
- /**
- * Hides all elements belonging to existing pastes
- *
- * @name topNav.hideAllElem
- * @function
- */
- me.hideViewButtons = function()
- {
- $cloneButton.addClass('hidden');
- $rawTextButton.addClass('hidden');
- };
- /**
- * shows all elements needed when creating a new paste
- *
- * @name topNav.setLanguage
- * @function
- */
- me.showCreateButtons = function()
- {
- $sendButton.removeClass('hidden');
- $expiration.removeClass('hidden');
- $formatter.removeClass('hidden');
- $burnAfterReadingOption.removeClass('hidden');
- $openDisc.removeClass('hidden');
- $newButton.removeClass('hidden');
- $password.removeClass('hidden');
- $attach.removeClass('hidden');
- $message.removeClass('hidden');
- $preview.removeClass('hidden');
- };
- /**
- * shows all elements needed when creating a new paste
- *
- * @name topNav.setLanguage
- * @function
- */
- me.hideCreateButtons = function()
- {
- $sendButton.addClass('hidden');
- $expiration.addClass('hidden');
- $formatter.addClass('hidden');
- $burnAfterReadingOption.addClass('hidden');
- $openDisc.addClass('hidden');
- $newButton.addClass('hidden');
- $password.addClass('hidden');
- $attach.addClass('hidden');
- $message.addClass('hidden');
- $preview.addClass('hidden');
- };
- /**
- * only shows the "new paste" button
- *
- * @name topNav.setLanguage
- * @function
- */
- me.showNewPasteButton = function()
- {
- $newButton.addClass('hidden');
- };
- /**
- * shows a loading message, optionally with a percentage
- *
- * @name topNav.showLoading
- * @function
- * @param {string} message
- * @param {int} percentage
- */
- me.showLoading = function(message, percentage)
- {
- // currently parameters are ignored
- $loadingIndicator.removeClass('hidden');
- };
- /**
- * hides the loading message
- *
- * @name topNav.hideLoading
- * @function
- */
- me.hideLoading = function()
- {
- $loadingIndicator.removeClass('hidden');
- };
- /**
- * init navigation manager
- *
- * preloads jQuery elements
- *
- * @name topNav.init
- * @function
- */
- me.init = function()
- {
- $attach = $('#attach');
- $attachment = $('#attachment');
- $attachmentLink = $('#attachment a');
- $burnAfterReading = $('#burnafterreading');
- $burnAfterReadingOption = $('#burnafterreadingoption');
- $cloneButton = $('#clonebutton');
- $expiration = $('#expiration');
- $fileRemoveButton = $('#fileremovebutton');
- $fileWrap = $('#filewrap');
- $formatter = $('#formatter');
- $newButton = $('#newbutton');
- $openDisc = $('#opendisc');
- $openDiscussion = $('#opendiscussion');
- $rawTextButton = $('#rawtextbutton');
- $sendButton = $('#sendbutton');
- // bootstrap template drop down
- $('#language ul.dropdown-menu li a').click(me.setLanguage);
- // page template drop down
- $('#language select option').click(me.setLanguage);
- // bind events
- $burnAfterReading.change(changeBurnAfterReading);
- $openDisc.change(changeOpenDisc);
- $sendButton.click(controller.sendData);
- $cloneButton.click(controller.clonePaste);
- $rawTextButton.click(me.rawText);
- $fileRemoveButton.click(me.removeAttachment);
- // initiate default state of checkboxes
- changeBurnAfterReading();
- changeOpenDisc();
- };
- return me;
- })(window, document);
- /**
- * PrivateBin logic
- *
- * @param {object} window
- * @param {object} document
- * @name controller
- * @class
- */
- var controller = (function (window, document) {
- var me = {};
- /**
- * headers to send in AJAX requests
- *
- * @private
- * @enum {Object}
- */
- var headers = {'X-Requested-With': 'JSONHttpRequest'};
- /**
- * URL shortners create address
- *
- * @private
- * @prop {string}
- */
- var shortenerUrl = '';
- /**
- * URL of newly created paste
- *
- * @private
- * @prop {string}
- */
- var createdPasteUrl = '';
- /**
- * send a reply in a discussion
- *
- * @name controller.sendComment
- * @function
- * @param {Event} event
- */
- me.sendComment = function(event)
- {
- event.preventDefault();
- $errorMessage.addClass('hidden');
- // do not send if no data
- var replyMessage = $('#replymessage');
- if (replyMessage.val().length === 0)
- {
- return;
- }
- me.showStatus(i18n._('Sending comment...'), true);
- var parentid = event.data.parentid,
- key = helper.pageKey(),
- cipherdata = cryptToolcipher(key, $passwordInput.val(), replyMessage.val()),
- ciphernickname = '',
- nick = $('#nickname').val();
- if (nick.length > 0)
- {
- ciphernickname = cryptToolcipher(key, $passwordInput.val(), nick);
- }
- var data_to_send = {
- data: cipherdata,
- parentid: parentid,
- pasteid: helper.pasteId(),
- nickname: ciphernickname
- };
- $.ajax({
- type: 'POST',
- url: helper.scriptLocation(),
- data: data_to_send,
- dataType: 'json',
- headers: headers,
- success: function(data)
- {
- if (data.status === 0)
- {
- controller.showStatus(i18n._('Comment posted.'));
- $.ajax({
- type: 'GET',
- url: helper.scriptLocation() + '?' + helper.pasteId(),
- dataType: 'json',
- headers: headers,
- success: function(data)
- {
- if (data.status === 0)
- {
- controller.displayMessages(data);
- }
- else if (data.status === 1)
- {
- controller.showError(i18n._('Could not refresh display: %s', data.message));
- }
- else
- {
- controller.showError(i18n._('Could not refresh display: %s', i18n._('unknown status')));
- }
- }
- })
- .fail(function() {
- controller.showError(i18n._('Could not refresh display: %s', i18n._('server error or not responding')));
- });
- }
- else if (data.status === 1)
- {
- controller.showError(i18n._('Could not post comment: %s', data.message));
- }
- else
- {
- controller.showError(i18n._('Could not post comment: %s', i18n._('unknown status')));
- }
- }
- })
- .fail(function() {
- controller.showError(i18n._('Could not post comment: %s', i18n._('server error or not responding')));
- });
- };
- /**
- * send a new paste to server
- *
- * @name controller.sendData
- * @function
- * @param {Event} event
- */
- me.sendData = function(event)
- {
- event.preventDefault();
- var file = document.getElementById('file'),
- files = (file && file.files) ? file.files : null; // FileList object
- // do not send if no data.
- if ($message.val().length === 0 && !(files && files[0]))
- {
- return;
- }
- // if sjcl has not collected enough entropy yet, display a message
- if (!sjcl.random.isReady())
- {
- me.showStatus(i18n._('Sending paste (Please move your mouse for more entropy)...'), true);
- sjcl.random.addEventListener('seeded', function() {
- me.sendData(event);
- });
- return;
- }
- $('.navbar-toggle').click();
- $password.addClass('hidden');
- me.showStatus(i18n._('Sending paste...'), true);
- me.stateSubmittingPaste();
- var randomkey = sjcl.codec.base64.fromBits(sjcl.random.randomWords(8, 0), 0),
- password = $passwordInput.val();
- if(files && files[0])
- {
- if(typeof FileReader === undefined)
- {
- // revert loading status…
- me.stateNewPaste();
- me.showError(i18n._('Your browser does not support uploading encrypted files. Please use a newer browser.'));
- return;
- }
- var reader = new FileReader();
- // closure to capture the file information
- reader.onload = (function(theFile)
- {
- return function(e) {
- controller.sendDataContinue(
- randomkey,
- cryptToolcipher(randomkey, password, e.target.result),
- cryptToolcipher(randomkey, password, theFile.name)
- );
- };
- })(files[0]);
- reader.readAsDataURL(files[0]);
- }
- else if($attachmentLink.attr('href'))
- {
- me.sendDataContinue(
- randomkey,
- cryptToolcipher(randomkey, password, $attachmentLink.attr('href')),
- $attachmentLink.attr('download')
- );
- }
- else
- {
- me.sendDataContinue(randomkey, '', '');
- }
- };
- /**
- * send a new paste to server, step 2
- *
- * @name controller.sendDataContinue
- * @function
- * @param {string} randomkey
- * @param {string} cipherdata_attachment
- * @param {string} cipherdata_attachment_name
- */
- me.sendDataContinue = function(randomkey, cipherdata_attachment, cipherdata_attachment_name)
- {
- var cipherdata = cryptToolcipher(randomkey, $passwordInput.val(), $message.val()),
- data_to_send = {
- data: cipherdata,
- expire: $('#pasteExpiration').val(),
- formatter: $('#pasteFormatter').val(),
- burnafterreading: $burnAfterReading.is(':checked') ? 1 : 0,
- opendiscussion: $openDiscussion.is(':checked') ? 1 : 0
- };
- if (cipherdata_attachment.length > 0)
- {
- data_to_send.attachment = cipherdata_attachment;
- if (cipherdata_attachment_name.length > 0)
- {
- data_to_send.attachmentname = cipherdata_attachment_name;
- }
- }
- $.ajax({
- type: 'POST',
- url: helper.scriptLocation(),
- data: data_to_send,
- dataType: 'json',
- headers: headers,
- success: function(data)
- {
- if (data.status === 0) {
- me.stateExistingPaste();
- var url = helper.scriptLocation() + '?' + data.id + '#' + randomkey,
- deleteUrl = helper.scriptLocation() + '?pasteid=' + data.id + '&deletetoken=' + data.deletetoken;
- me.hideStatus();
- $errorMessage.addClass('hidden');
- // show new URL in browser bar
- history.pushState({type: 'newpaste'}, document.title, url);
- $('#pastelink').html(
- i18n._(
- 'Your paste is <a id="pasteurl" href="%s">%s</a> <span id="copyhint">(Hit [Ctrl]+[c] to copy)</span>',
- url, url
- ) + me.shortenUrl(url)
- );
- // save newly created element
- $pasteUrl = $('#pasteurl');
- // and add click event
- $pasteUrl.click(me.pasteLinkClick);
- var shortenButton = $('#shortenbutton');
- if (shortenButton) {
- shortenButton.click(me.sendToShortener);
- }
- $('#deletelink').html('<a href="' + deleteUrl + '">' + i18n._('Delete data') + '</a>');
- $pasteResult.removeClass('hidden');
- // we pre-select the link so that the user only has to [Ctrl]+[c] the link
- helper.selectText($pasteUrl[0]);
- me.hideStatus();
- me.formatPaste(data_to_send.formatter, $message.val());
- }
- else if (data.status === 1)
- {
- // revert loading status…
- controller.stateNewPaste();
- controller.showError(i18n._('Could not create paste: %s', data.message));
- }
- else
- {
- // revert loading status…
- controller.stateNewPaste();
- controller.showError(i18n._('Could not create paste: %s', i18n._('unknown status')));
- }
- }
- })
- .fail(function()
- {
- // revert loading status…
- me.stateNewPaste();
- controller.showError(i18n._('Could not create paste: %s', i18n._('server error or not responding')));
- });
- };
- /**
- * check if a URL shortener was defined and create HTML containing a link to it
- *
- * @name controller.shortenUrl
- * @function
- * @param {string} url
- * @return {string} html
- */
- me.shortenUrl = function(url)
- {
- var shortenerHtml = $('#shortenbutton');
- if (shortenerHtml) {
- shortenerUrl = shortenerHtml.data('shortener');
- createdPasteUrl = url;
- return ' ' + $('<div />').append(shortenerHtml.clone()).html();
- }
- return '';
- };
- /**
- * forward to URL shortener
- *
- * @name controller.sendToShortener
- * @function
- * @param {Event} event
- */
- me.sendToShortener = function(event)
- {
- window.location.href = shortenerUrl + encodeURIComponent(createdPasteUrl);
- event.preventDefault();
- };
- /**
- * clone the current paste
- *
- * @name controller.clonePaste
- * @function
- * @param {Event} event
- */
- me.clonePaste = function(event)
- {
- me.stateNewPaste();
- // erase the id and the key in url
- history.replaceState(null, document.title, helper.scriptLocation());
- status.hideStatus();
- if ($attachmentLink.attr('href'))
- {
- $clonedFile.removeClass('hidden');
- $fileWrap.addClass('hidden');
- }
- $message.text(
- $('#pasteFormatter').val() === 'markdown' ?
- $prettyPrint.text() : $clearText.text()
- );
- $('.navbar-toggle').click();
- event.preventDefault();
- };
- /**
- * create a new paste
- *
- * @name controller.newPaste
- * @function
- */
- me.newPaste = function()
- {
- me.stateNewPaste();
- me.hideStatus();
- $message.text('');
- };
- /**
- * application start
- *
- * @name controller.init
- * @function
- */
- me.init = function()
- {
- // first load translations
- i18n.loadTranslations();
- // init UI @TODO show loading
- uiMan.init();
- // display an existing paste
- if ($cipherData.text().length > 1)
- {
- // missing decryption key in URL?
- if (window.location.hash.length === 0)
- {
- me.showError(i18n._('Cannot decrypt paste: Decryption key missing in URL (Did you use a redirector or an URL shortener which strips part of the URL?)'));
- return;
- }
- // show proper elements on screen
- me.stateExistingPaste();
- me.displayMessages();
- }
- // display error message from php code
- else if ($errorMessage.text().length > 1)
- {
- me.showError($errorMessage.text());
- }
- // create a new paste
- else
- {
- me.newPaste();
- }
- };
- return me;
- })(window, document);
- /**
- * main application start, called when DOM is fully loaded and
- * runs controller initalization
- */
- $(controller.init);
- return {
- helper: helper,
- i18n: i18n,
- filter: filter,
- controller: controller
- };
- }(jQuery, sjcl, Base64, RawDeflate);
|