@@ -12,267 +12,267 @@ |
||
| 12 | 12 | */ |
| 13 | 13 | class GetPaid_Metaboxes { |
| 14 | 14 | |
| 15 | - /** |
|
| 16 | - * Only save metaboxes once. |
|
| 17 | - * |
|
| 18 | - * @var boolean |
|
| 19 | - */ |
|
| 20 | - private static $saved_meta_boxes = false; |
|
| 21 | - |
|
| 22 | 15 | /** |
| 23 | - * Hook in methods. |
|
| 24 | - */ |
|
| 25 | - public static function init() { |
|
| 26 | - |
|
| 27 | - // Register metaboxes. |
|
| 28 | - add_action( 'add_meta_boxes', 'GetPaid_Metaboxes::add_meta_boxes', 5, 2 ); |
|
| 29 | - |
|
| 30 | - // Remove metaboxes. |
|
| 31 | - add_action( 'add_meta_boxes', 'GetPaid_Metaboxes::remove_meta_boxes', 30 ); |
|
| 32 | - |
|
| 33 | - // Rename metaboxes. |
|
| 34 | - add_action( 'add_meta_boxes', 'GetPaid_Metaboxes::rename_meta_boxes', 45 ); |
|
| 35 | - |
|
| 36 | - // Save metaboxes. |
|
| 37 | - add_action( 'save_post', 'GetPaid_Metaboxes::save_meta_boxes', 1, 2 ); |
|
| 38 | - } |
|
| 16 | + * Only save metaboxes once. |
|
| 17 | + * |
|
| 18 | + * @var boolean |
|
| 19 | + */ |
|
| 20 | + private static $saved_meta_boxes = false; |
|
| 39 | 21 | |
| 40 | - /** |
|
| 41 | - * Register core metaboxes. |
|
| 42 | - */ |
|
| 43 | - public static function add_meta_boxes( $post_type, $post ) { |
|
| 44 | - |
|
| 45 | - // For invoices... |
|
| 46 | - self::add_invoice_meta_boxes( $post_type, $post ); |
|
| 22 | + /** |
|
| 23 | + * Hook in methods. |
|
| 24 | + */ |
|
| 25 | + public static function init() { |
|
| 47 | 26 | |
| 48 | - // For payment forms. |
|
| 49 | - self::add_payment_form_meta_boxes( $post_type ); |
|
| 27 | + // Register metaboxes. |
|
| 28 | + add_action( 'add_meta_boxes', 'GetPaid_Metaboxes::add_meta_boxes', 5, 2 ); |
|
| 50 | 29 | |
| 51 | - // For invoice items. |
|
| 52 | - self::add_item_meta_boxes( $post_type ); |
|
| 30 | + // Remove metaboxes. |
|
| 31 | + add_action( 'add_meta_boxes', 'GetPaid_Metaboxes::remove_meta_boxes', 30 ); |
|
| 53 | 32 | |
| 54 | - // For invoice discounts. |
|
| 55 | - if ( $post_type == 'wpi_discount' ) { |
|
| 56 | - add_meta_box( 'wpinv_discount_details', __( 'Discount Details', 'invoicing' ), 'GetPaid_Meta_Box_Discount_Details::output', 'wpi_discount', 'normal', 'high' ); |
|
| 57 | - } |
|
| 33 | + // Rename metaboxes. |
|
| 34 | + add_action( 'add_meta_boxes', 'GetPaid_Metaboxes::rename_meta_boxes', 45 ); |
|
| 58 | 35 | |
| 59 | - } |
|
| 36 | + // Save metaboxes. |
|
| 37 | + add_action( 'save_post', 'GetPaid_Metaboxes::save_meta_boxes', 1, 2 ); |
|
| 38 | + } |
|
| 60 | 39 | |
| 61 | - /** |
|
| 62 | - * Register core metaboxes. |
|
| 63 | - */ |
|
| 64 | - protected static function add_payment_form_meta_boxes( $post_type ) { |
|
| 40 | + /** |
|
| 41 | + * Register core metaboxes. |
|
| 42 | + */ |
|
| 43 | + public static function add_meta_boxes( $post_type, $post ) { |
|
| 65 | 44 | |
| 66 | - // For payment forms. |
|
| 67 | - if ( $post_type == 'wpi_payment_form' ) { |
|
| 45 | + // For invoices... |
|
| 46 | + self::add_invoice_meta_boxes( $post_type, $post ); |
|
| 68 | 47 | |
| 69 | - // Design payment form. |
|
| 70 | - add_meta_box( 'wpinv-payment-form-design', __( 'Payment Form', 'invoicing' ), 'GetPaid_Meta_Box_Payment_Form::output', 'wpi_payment_form', 'normal' ); |
|
| 48 | + // For payment forms. |
|
| 49 | + self::add_payment_form_meta_boxes( $post_type ); |
|
| 71 | 50 | |
| 72 | - // Payment form information. |
|
| 73 | - add_meta_box( 'wpinv-payment-form-info', __( 'Details', 'invoicing' ), 'GetPaid_Meta_Box_Payment_Form_Info::output', 'wpi_payment_form', 'side' ); |
|
| 51 | + // For invoice items. |
|
| 52 | + self::add_item_meta_boxes( $post_type ); |
|
| 74 | 53 | |
| 75 | - } |
|
| 54 | + // For invoice discounts. |
|
| 55 | + if ( $post_type == 'wpi_discount' ) { |
|
| 56 | + add_meta_box( 'wpinv_discount_details', __( 'Discount Details', 'invoicing' ), 'GetPaid_Meta_Box_Discount_Details::output', 'wpi_discount', 'normal', 'high' ); |
|
| 57 | + } |
|
| 76 | 58 | |
| 77 | - } |
|
| 59 | + } |
|
| 78 | 60 | |
| 79 | - /** |
|
| 80 | - * Register core metaboxes. |
|
| 81 | - */ |
|
| 82 | - protected static function add_item_meta_boxes( $post_type ) { |
|
| 61 | + /** |
|
| 62 | + * Register core metaboxes. |
|
| 63 | + */ |
|
| 64 | + protected static function add_payment_form_meta_boxes( $post_type ) { |
|
| 83 | 65 | |
| 84 | - if ( $post_type == 'wpi_item' ) { |
|
| 66 | + // For payment forms. |
|
| 67 | + if ( $post_type == 'wpi_payment_form' ) { |
|
| 85 | 68 | |
| 86 | - // Item details. |
|
| 87 | - add_meta_box( 'wpinv_item_details', __( 'Item Details', 'invoicing' ), 'GetPaid_Meta_Box_Item_Details::output', 'wpi_item', 'normal', 'high' ); |
|
| 69 | + // Design payment form. |
|
| 70 | + add_meta_box( 'wpinv-payment-form-design', __( 'Payment Form', 'invoicing' ), 'GetPaid_Meta_Box_Payment_Form::output', 'wpi_payment_form', 'normal' ); |
|
| 88 | 71 | |
| 89 | - // If taxes are enabled, register the tax metabox. |
|
| 90 | - if ( wpinv_use_taxes() ) { |
|
| 91 | - add_meta_box( 'wpinv_item_vat', __( 'Tax', 'invoicing' ), 'GetPaid_Meta_Box_Item_VAT::output', 'wpi_item', 'normal', 'high' ); |
|
| 92 | - } |
|
| 72 | + // Payment form information. |
|
| 73 | + add_meta_box( 'wpinv-payment-form-info', __( 'Details', 'invoicing' ), 'GetPaid_Meta_Box_Payment_Form_Info::output', 'wpi_payment_form', 'side' ); |
|
| 93 | 74 | |
| 94 | - // Item info. |
|
| 95 | - add_meta_box( 'wpinv_field_item_info', __( 'Item info', 'invoicing' ), 'GetPaid_Meta_Box_Item_Info::output', 'wpi_item', 'side', 'core' ); |
|
| 75 | + } |
|
| 96 | 76 | |
| 97 | - } |
|
| 77 | + } |
|
| 98 | 78 | |
| 99 | - } |
|
| 79 | + /** |
|
| 80 | + * Register core metaboxes. |
|
| 81 | + */ |
|
| 82 | + protected static function add_item_meta_boxes( $post_type ) { |
|
| 100 | 83 | |
| 101 | - /** |
|
| 102 | - * Register invoice metaboxes. |
|
| 103 | - */ |
|
| 104 | - protected static function add_invoice_meta_boxes( $post_type, $post ) { |
|
| 84 | + if ( $post_type == 'wpi_item' ) { |
|
| 105 | 85 | |
| 106 | - // For invoices... |
|
| 107 | - if ( getpaid_is_invoice_post_type( $post_type ) ) { |
|
| 108 | - $invoice = new WPInv_Invoice( $post ); |
|
| 86 | + // Item details. |
|
| 87 | + add_meta_box( 'wpinv_item_details', __( 'Item Details', 'invoicing' ), 'GetPaid_Meta_Box_Item_Details::output', 'wpi_item', 'normal', 'high' ); |
|
| 109 | 88 | |
| 110 | - // Resend invoice. |
|
| 111 | - if ( ! $invoice->is_draft() ) { |
|
| 89 | + // If taxes are enabled, register the tax metabox. |
|
| 90 | + if ( wpinv_use_taxes() ) { |
|
| 91 | + add_meta_box( 'wpinv_item_vat', __( 'Tax', 'invoicing' ), 'GetPaid_Meta_Box_Item_VAT::output', 'wpi_item', 'normal', 'high' ); |
|
| 92 | + } |
|
| 112 | 93 | |
| 113 | - add_meta_box( |
|
| 114 | - 'wpinv-mb-resend-invoice', |
|
| 115 | - sprintf( |
|
| 116 | - __( 'Resend %s', 'invoicing' ), |
|
| 117 | - ucfirst( $invoice->get_invoice_quote_type() ) |
|
| 118 | - ), |
|
| 119 | - 'GetPaid_Meta_Box_Resend_Invoice::output', |
|
| 120 | - $post_type, |
|
| 121 | - 'side', |
|
| 122 | - 'low' |
|
| 123 | - ); |
|
| 94 | + // Item info. |
|
| 95 | + add_meta_box( 'wpinv_field_item_info', __( 'Item info', 'invoicing' ), 'GetPaid_Meta_Box_Item_Info::output', 'wpi_item', 'side', 'core' ); |
|
| 124 | 96 | |
| 125 | - } |
|
| 97 | + } |
|
| 126 | 98 | |
| 127 | - // Subscriptions. |
|
| 128 | - $subscription = getpaid_get_invoice_subscription( $invoice ); |
|
| 129 | - if ( ! empty( $subscription ) ) { |
|
| 130 | - add_meta_box( 'wpinv-mb-subscriptions', __( 'Subscription Details', 'invoicing' ), 'GetPaid_Meta_Box_Invoice_Subscription::output', $post_type, 'advanced' ); |
|
| 131 | - add_meta_box( 'wpinv-mb-subscription-invoices', __( 'Related Payments', 'invoicing' ), 'GetPaid_Meta_Box_Invoice_Subscription::output_invoices', $post_type, 'advanced' ); |
|
| 132 | - } |
|
| 133 | - |
|
| 134 | - // Invoice details. |
|
| 135 | - add_meta_box( |
|
| 136 | - 'wpinv-details', |
|
| 137 | - sprintf( |
|
| 138 | - __( '%s Details', 'invoicing' ), |
|
| 139 | - ucfirst( $invoice->get_invoice_quote_type() ) |
|
| 140 | - ), |
|
| 141 | - 'GetPaid_Meta_Box_Invoice_Details::output', |
|
| 142 | - $post_type, |
|
| 143 | - 'side' |
|
| 144 | - ); |
|
| 145 | - |
|
| 146 | - // Payment details. |
|
| 147 | - if ( ! $invoice->is_draft() ) { |
|
| 148 | - add_meta_box( 'wpinv-payment-meta', __( 'Payment Meta', 'invoicing' ), 'GetPaid_Meta_Box_Invoice_Payment_Meta::output', $post_type, 'side', 'default' ); |
|
| 149 | - } |
|
| 99 | + } |
|
| 150 | 100 | |
| 151 | - // Billing details. |
|
| 152 | - add_meta_box( 'wpinv-address', __( 'Billing Details', 'invoicing' ), 'GetPaid_Meta_Box_Invoice_Address::output', $post_type, 'normal', 'high' ); |
|
| 101 | + /** |
|
| 102 | + * Register invoice metaboxes. |
|
| 103 | + */ |
|
| 104 | + protected static function add_invoice_meta_boxes( $post_type, $post ) { |
|
| 105 | + |
|
| 106 | + // For invoices... |
|
| 107 | + if ( getpaid_is_invoice_post_type( $post_type ) ) { |
|
| 108 | + $invoice = new WPInv_Invoice( $post ); |
|
| 109 | + |
|
| 110 | + // Resend invoice. |
|
| 111 | + if ( ! $invoice->is_draft() ) { |
|
| 112 | + |
|
| 113 | + add_meta_box( |
|
| 114 | + 'wpinv-mb-resend-invoice', |
|
| 115 | + sprintf( |
|
| 116 | + __( 'Resend %s', 'invoicing' ), |
|
| 117 | + ucfirst( $invoice->get_invoice_quote_type() ) |
|
| 118 | + ), |
|
| 119 | + 'GetPaid_Meta_Box_Resend_Invoice::output', |
|
| 120 | + $post_type, |
|
| 121 | + 'side', |
|
| 122 | + 'low' |
|
| 123 | + ); |
|
| 124 | + |
|
| 125 | + } |
|
| 126 | + |
|
| 127 | + // Subscriptions. |
|
| 128 | + $subscription = getpaid_get_invoice_subscription( $invoice ); |
|
| 129 | + if ( ! empty( $subscription ) ) { |
|
| 130 | + add_meta_box( 'wpinv-mb-subscriptions', __( 'Subscription Details', 'invoicing' ), 'GetPaid_Meta_Box_Invoice_Subscription::output', $post_type, 'advanced' ); |
|
| 131 | + add_meta_box( 'wpinv-mb-subscription-invoices', __( 'Related Payments', 'invoicing' ), 'GetPaid_Meta_Box_Invoice_Subscription::output_invoices', $post_type, 'advanced' ); |
|
| 132 | + } |
|
| 133 | + |
|
| 134 | + // Invoice details. |
|
| 135 | + add_meta_box( |
|
| 136 | + 'wpinv-details', |
|
| 137 | + sprintf( |
|
| 138 | + __( '%s Details', 'invoicing' ), |
|
| 139 | + ucfirst( $invoice->get_invoice_quote_type() ) |
|
| 140 | + ), |
|
| 141 | + 'GetPaid_Meta_Box_Invoice_Details::output', |
|
| 142 | + $post_type, |
|
| 143 | + 'side' |
|
| 144 | + ); |
|
| 145 | + |
|
| 146 | + // Payment details. |
|
| 147 | + if ( ! $invoice->is_draft() ) { |
|
| 148 | + add_meta_box( 'wpinv-payment-meta', __( 'Payment Meta', 'invoicing' ), 'GetPaid_Meta_Box_Invoice_Payment_Meta::output', $post_type, 'side', 'default' ); |
|
| 149 | + } |
|
| 150 | + |
|
| 151 | + // Billing details. |
|
| 152 | + add_meta_box( 'wpinv-address', __( 'Billing Details', 'invoicing' ), 'GetPaid_Meta_Box_Invoice_Address::output', $post_type, 'normal', 'high' ); |
|
| 153 | 153 | |
| 154 | - // Invoice items. |
|
| 155 | - add_meta_box( |
|
| 156 | - 'wpinv-items', |
|
| 157 | - sprintf( |
|
| 158 | - __( '%s Items', 'invoicing' ), |
|
| 159 | - ucfirst( $invoice->get_invoice_quote_type() ) |
|
| 160 | - ), |
|
| 161 | - 'GetPaid_Meta_Box_Invoice_Items::output', |
|
| 162 | - $post_type, |
|
| 163 | - 'normal', |
|
| 164 | - 'high' |
|
| 165 | - ); |
|
| 154 | + // Invoice items. |
|
| 155 | + add_meta_box( |
|
| 156 | + 'wpinv-items', |
|
| 157 | + sprintf( |
|
| 158 | + __( '%s Items', 'invoicing' ), |
|
| 159 | + ucfirst( $invoice->get_invoice_quote_type() ) |
|
| 160 | + ), |
|
| 161 | + 'GetPaid_Meta_Box_Invoice_Items::output', |
|
| 162 | + $post_type, |
|
| 163 | + 'normal', |
|
| 164 | + 'high' |
|
| 165 | + ); |
|
| 166 | 166 | |
| 167 | - // Invoice notes. |
|
| 168 | - add_meta_box( |
|
| 169 | - 'wpinv-notes', |
|
| 170 | - sprintf( |
|
| 171 | - __( '%s Notes', 'invoicing' ), |
|
| 172 | - ucfirst( $invoice->get_invoice_quote_type() ) |
|
| 173 | - ), |
|
| 174 | - 'WPInv_Meta_Box_Notes::output', |
|
| 175 | - $post_type, |
|
| 176 | - 'side', |
|
| 177 | - 'low' |
|
| 178 | - ); |
|
| 179 | - |
|
| 180 | - // Shipping Address. |
|
| 181 | - if ( get_post_meta( $invoice->get_id(), 'shipping_address', true ) ) { |
|
| 182 | - add_meta_box( 'wpinv-invoice-shipping-details', __( 'Shipping Address', 'invoicing' ), 'GetPaid_Meta_Box_Invoice_Shipping_Address::output', $post_type, 'side', 'high' ); |
|
| 183 | - } |
|
| 184 | - |
|
| 185 | - // Payment form information. |
|
| 186 | - if ( get_post_meta( $invoice->get_id(), 'payment_form_data', true ) ) { |
|
| 187 | - add_meta_box( 'wpinv-invoice-payment-form-details', __( 'Payment Form Details', 'invoicing' ), 'WPInv_Meta_Box_Payment_Form::output_details', $post_type, 'side', 'high' ); |
|
| 188 | - } |
|
| 189 | - |
|
| 190 | - } |
|
| 191 | - |
|
| 192 | - } |
|
| 193 | - |
|
| 194 | - /** |
|
| 195 | - * Remove some metaboxes. |
|
| 196 | - */ |
|
| 197 | - public static function remove_meta_boxes() { |
|
| 198 | - remove_meta_box( 'wpseo_meta', 'wpi_invoice', 'normal' ); |
|
| 199 | - } |
|
| 200 | - |
|
| 201 | - /** |
|
| 202 | - * Rename other metaboxes. |
|
| 203 | - */ |
|
| 204 | - public static function rename_meta_boxes() { |
|
| 167 | + // Invoice notes. |
|
| 168 | + add_meta_box( |
|
| 169 | + 'wpinv-notes', |
|
| 170 | + sprintf( |
|
| 171 | + __( '%s Notes', 'invoicing' ), |
|
| 172 | + ucfirst( $invoice->get_invoice_quote_type() ) |
|
| 173 | + ), |
|
| 174 | + 'WPInv_Meta_Box_Notes::output', |
|
| 175 | + $post_type, |
|
| 176 | + 'side', |
|
| 177 | + 'low' |
|
| 178 | + ); |
|
| 179 | + |
|
| 180 | + // Shipping Address. |
|
| 181 | + if ( get_post_meta( $invoice->get_id(), 'shipping_address', true ) ) { |
|
| 182 | + add_meta_box( 'wpinv-invoice-shipping-details', __( 'Shipping Address', 'invoicing' ), 'GetPaid_Meta_Box_Invoice_Shipping_Address::output', $post_type, 'side', 'high' ); |
|
| 183 | + } |
|
| 184 | + |
|
| 185 | + // Payment form information. |
|
| 186 | + if ( get_post_meta( $invoice->get_id(), 'payment_form_data', true ) ) { |
|
| 187 | + add_meta_box( 'wpinv-invoice-payment-form-details', __( 'Payment Form Details', 'invoicing' ), 'WPInv_Meta_Box_Payment_Form::output_details', $post_type, 'side', 'high' ); |
|
| 188 | + } |
|
| 189 | + |
|
| 190 | + } |
|
| 191 | + |
|
| 192 | + } |
|
| 193 | + |
|
| 194 | + /** |
|
| 195 | + * Remove some metaboxes. |
|
| 196 | + */ |
|
| 197 | + public static function remove_meta_boxes() { |
|
| 198 | + remove_meta_box( 'wpseo_meta', 'wpi_invoice', 'normal' ); |
|
| 199 | + } |
|
| 200 | + |
|
| 201 | + /** |
|
| 202 | + * Rename other metaboxes. |
|
| 203 | + */ |
|
| 204 | + public static function rename_meta_boxes() { |
|
| 205 | 205 | |
| 206 | - } |
|
| 207 | - |
|
| 208 | - /** |
|
| 209 | - * Check if we're saving, then trigger an action based on the post type. |
|
| 210 | - * |
|
| 211 | - * @param int $post_id Post ID. |
|
| 212 | - * @param object $post Post object. |
|
| 213 | - */ |
|
| 214 | - public static function save_meta_boxes( $post_id, $post ) { |
|
| 215 | - $post_id = absint( $post_id ); |
|
| 216 | - $data = wp_unslash( $_POST ); |
|
| 217 | - |
|
| 218 | - // Do not save for ajax requests. |
|
| 219 | - if ( ( defined( 'DOING_AJAX') && DOING_AJAX ) || isset( $_REQUEST['bulk_edit'] ) ) { |
|
| 220 | - return; |
|
| 221 | - } |
|
| 222 | - |
|
| 223 | - // $post_id and $post are required |
|
| 224 | - if ( empty( $post_id ) || empty( $post ) || self::$saved_meta_boxes ) { |
|
| 225 | - return; |
|
| 226 | - } |
|
| 227 | - |
|
| 228 | - // Dont' save meta boxes for revisions or autosaves. |
|
| 229 | - if ( ( defined( 'DOING_AUTOSAVE' ) && DOING_AUTOSAVE ) || is_int( wp_is_post_revision( $post ) ) || is_int( wp_is_post_autosave( $post ) ) ) { |
|
| 230 | - return; |
|
| 231 | - } |
|
| 232 | - |
|
| 233 | - // Check the nonce. |
|
| 234 | - if ( empty( $data['getpaid_meta_nonce'] ) || ! wp_verify_nonce( $data['getpaid_meta_nonce'], 'getpaid_meta_nonce' ) ) { |
|
| 235 | - return; |
|
| 236 | - } |
|
| 237 | - |
|
| 238 | - // Check the post being saved == the $post_id to prevent triggering this call for other save_post events. |
|
| 239 | - if ( empty( $data['post_ID'] ) || absint( $data['post_ID'] ) !== $post_id ) { |
|
| 240 | - return; |
|
| 241 | - } |
|
| 242 | - |
|
| 243 | - // Check user has permission to edit. |
|
| 244 | - if ( ! current_user_can( 'edit_post', $post_id ) ) { |
|
| 245 | - return; |
|
| 246 | - } |
|
| 247 | - |
|
| 248 | - if ( getpaid_is_invoice_post_type( $post->post_type ) ) { |
|
| 249 | - |
|
| 250 | - // We need this save event to run once to avoid potential endless loops. |
|
| 251 | - self::$saved_meta_boxes = true; |
|
| 252 | - |
|
| 253 | - return GetPaid_Meta_Box_Invoice_Address::save( $post_id ); |
|
| 254 | - |
|
| 255 | - } |
|
| 256 | - |
|
| 257 | - // Ensure this is our post type. |
|
| 258 | - $post_types_map = array( |
|
| 259 | - 'wpi_item' => 'GetPaid_Meta_Box_Item_Details', |
|
| 260 | - 'wpi_payment_form' => 'GetPaid_Meta_Box_Payment_Form', |
|
| 261 | - 'wpi_discount' => 'GetPaid_Meta_Box_Discount_Details', |
|
| 262 | - ); |
|
| 263 | - |
|
| 264 | - // Is this our post type? |
|
| 265 | - if ( ! isset( $post_types_map[ $post->post_type ] ) ) { |
|
| 266 | - return; |
|
| 267 | - } |
|
| 268 | - |
|
| 269 | - // We need this save event to run once to avoid potential endless loops. |
|
| 270 | - self::$saved_meta_boxes = true; |
|
| 206 | + } |
|
| 207 | + |
|
| 208 | + /** |
|
| 209 | + * Check if we're saving, then trigger an action based on the post type. |
|
| 210 | + * |
|
| 211 | + * @param int $post_id Post ID. |
|
| 212 | + * @param object $post Post object. |
|
| 213 | + */ |
|
| 214 | + public static function save_meta_boxes( $post_id, $post ) { |
|
| 215 | + $post_id = absint( $post_id ); |
|
| 216 | + $data = wp_unslash( $_POST ); |
|
| 217 | + |
|
| 218 | + // Do not save for ajax requests. |
|
| 219 | + if ( ( defined( 'DOING_AJAX') && DOING_AJAX ) || isset( $_REQUEST['bulk_edit'] ) ) { |
|
| 220 | + return; |
|
| 221 | + } |
|
| 222 | + |
|
| 223 | + // $post_id and $post are required |
|
| 224 | + if ( empty( $post_id ) || empty( $post ) || self::$saved_meta_boxes ) { |
|
| 225 | + return; |
|
| 226 | + } |
|
| 227 | + |
|
| 228 | + // Dont' save meta boxes for revisions or autosaves. |
|
| 229 | + if ( ( defined( 'DOING_AUTOSAVE' ) && DOING_AUTOSAVE ) || is_int( wp_is_post_revision( $post ) ) || is_int( wp_is_post_autosave( $post ) ) ) { |
|
| 230 | + return; |
|
| 231 | + } |
|
| 232 | + |
|
| 233 | + // Check the nonce. |
|
| 234 | + if ( empty( $data['getpaid_meta_nonce'] ) || ! wp_verify_nonce( $data['getpaid_meta_nonce'], 'getpaid_meta_nonce' ) ) { |
|
| 235 | + return; |
|
| 236 | + } |
|
| 237 | + |
|
| 238 | + // Check the post being saved == the $post_id to prevent triggering this call for other save_post events. |
|
| 239 | + if ( empty( $data['post_ID'] ) || absint( $data['post_ID'] ) !== $post_id ) { |
|
| 240 | + return; |
|
| 241 | + } |
|
| 242 | + |
|
| 243 | + // Check user has permission to edit. |
|
| 244 | + if ( ! current_user_can( 'edit_post', $post_id ) ) { |
|
| 245 | + return; |
|
| 246 | + } |
|
| 247 | + |
|
| 248 | + if ( getpaid_is_invoice_post_type( $post->post_type ) ) { |
|
| 249 | + |
|
| 250 | + // We need this save event to run once to avoid potential endless loops. |
|
| 251 | + self::$saved_meta_boxes = true; |
|
| 252 | + |
|
| 253 | + return GetPaid_Meta_Box_Invoice_Address::save( $post_id ); |
|
| 254 | + |
|
| 255 | + } |
|
| 256 | + |
|
| 257 | + // Ensure this is our post type. |
|
| 258 | + $post_types_map = array( |
|
| 259 | + 'wpi_item' => 'GetPaid_Meta_Box_Item_Details', |
|
| 260 | + 'wpi_payment_form' => 'GetPaid_Meta_Box_Payment_Form', |
|
| 261 | + 'wpi_discount' => 'GetPaid_Meta_Box_Discount_Details', |
|
| 262 | + ); |
|
| 263 | + |
|
| 264 | + // Is this our post type? |
|
| 265 | + if ( ! isset( $post_types_map[ $post->post_type ] ) ) { |
|
| 266 | + return; |
|
| 267 | + } |
|
| 268 | + |
|
| 269 | + // We need this save event to run once to avoid potential endless loops. |
|
| 270 | + self::$saved_meta_boxes = true; |
|
| 271 | 271 | |
| 272 | - // Save the post. |
|
| 273 | - $class = $post_types_map[ $post->post_type ]; |
|
| 274 | - $class::save( $post_id, $_POST, $post ); |
|
| 272 | + // Save the post. |
|
| 273 | + $class = $post_types_map[ $post->post_type ]; |
|
| 274 | + $class::save( $post_id, $_POST, $post ); |
|
| 275 | 275 | |
| 276 | - } |
|
| 276 | + } |
|
| 277 | 277 | |
| 278 | 278 | } |
@@ -13,30 +13,30 @@ discard block |
||
| 13 | 13 | class GetPaid_Manual_Gateway extends GetPaid_Payment_Gateway { |
| 14 | 14 | |
| 15 | 15 | /** |
| 16 | - * Payment method id. |
|
| 17 | - * |
|
| 18 | - * @var string |
|
| 19 | - */ |
|
| 16 | + * Payment method id. |
|
| 17 | + * |
|
| 18 | + * @var string |
|
| 19 | + */ |
|
| 20 | 20 | public $id = 'manual'; |
| 21 | 21 | |
| 22 | 22 | /** |
| 23 | - * An array of features that this gateway supports. |
|
| 24 | - * |
|
| 25 | - * @var array |
|
| 26 | - */ |
|
| 23 | + * An array of features that this gateway supports. |
|
| 24 | + * |
|
| 25 | + * @var array |
|
| 26 | + */ |
|
| 27 | 27 | protected $supports = array( 'subscription', 'addons' ); |
| 28 | 28 | |
| 29 | 29 | /** |
| 30 | - * Payment method order. |
|
| 31 | - * |
|
| 32 | - * @var int |
|
| 33 | - */ |
|
| 34 | - public $order = 11; |
|
| 30 | + * Payment method order. |
|
| 31 | + * |
|
| 32 | + * @var int |
|
| 33 | + */ |
|
| 34 | + public $order = 11; |
|
| 35 | 35 | |
| 36 | 36 | /** |
| 37 | - * Class constructor. |
|
| 38 | - */ |
|
| 39 | - public function __construct() { |
|
| 37 | + * Class constructor. |
|
| 38 | + */ |
|
| 39 | + public function __construct() { |
|
| 40 | 40 | parent::__construct(); |
| 41 | 41 | |
| 42 | 42 | $this->title = __( 'Test Gateway', 'invoicing' ); |
@@ -46,15 +46,15 @@ discard block |
||
| 46 | 46 | } |
| 47 | 47 | |
| 48 | 48 | /** |
| 49 | - * Process Payment. |
|
| 50 | - * |
|
| 51 | - * |
|
| 52 | - * @param WPInv_Invoice $invoice Invoice. |
|
| 53 | - * @param array $submission_data Posted checkout fields. |
|
| 54 | - * @param GetPaid_Payment_Form_Submission $submission Checkout submission. |
|
| 55 | - * @return array |
|
| 56 | - */ |
|
| 57 | - public function process_payment( $invoice, $submission_data, $submission ) { |
|
| 49 | + * Process Payment. |
|
| 50 | + * |
|
| 51 | + * |
|
| 52 | + * @param WPInv_Invoice $invoice Invoice. |
|
| 53 | + * @param array $submission_data Posted checkout fields. |
|
| 54 | + * @param GetPaid_Payment_Form_Submission $submission Checkout submission. |
|
| 55 | + * @return array |
|
| 56 | + */ |
|
| 57 | + public function process_payment( $invoice, $submission_data, $submission ) { |
|
| 58 | 58 | |
| 59 | 59 | // Mark it as paid. |
| 60 | 60 | $invoice->mark_paid(); |
@@ -68,13 +68,13 @@ discard block |
||
| 68 | 68 | } |
| 69 | 69 | |
| 70 | 70 | /** |
| 71 | - * (Maybe) renews a manual subscription profile. |
|
| 72 | - * |
|
| 73 | - * |
|
| 74 | - * @param bool $should_expire |
|
| 71 | + * (Maybe) renews a manual subscription profile. |
|
| 72 | + * |
|
| 73 | + * |
|
| 74 | + * @param bool $should_expire |
|
| 75 | 75 | * @param WPInv_Subscription $subscription |
| 76 | - */ |
|
| 77 | - public function maybe_renew_subscription( $should_expire, $subscription ) { |
|
| 76 | + */ |
|
| 77 | + public function maybe_renew_subscription( $should_expire, $subscription ) { |
|
| 78 | 78 | |
| 79 | 79 | // Ensure its our subscription && it's active. |
| 80 | 80 | if ( 'manual' != $subscription->get_gateway() || ! $subscription->has_status( 'active trialling' ) ) { |
@@ -102,13 +102,13 @@ discard block |
||
| 102 | 102 | } |
| 103 | 103 | |
| 104 | 104 | /** |
| 105 | - * Processes invoice addons. |
|
| 106 | - * |
|
| 107 | - * @param WPInv_Invoice $invoice |
|
| 108 | - * @param GetPaid_Form_Item[] $items |
|
| 109 | - * @return WPInv_Invoice |
|
| 110 | - */ |
|
| 111 | - public function process_addons( $invoice, $items ) { |
|
| 105 | + * Processes invoice addons. |
|
| 106 | + * |
|
| 107 | + * @param WPInv_Invoice $invoice |
|
| 108 | + * @param GetPaid_Form_Item[] $items |
|
| 109 | + * @return WPInv_Invoice |
|
| 110 | + */ |
|
| 111 | + public function process_addons( $invoice, $items ) { |
|
| 112 | 112 | |
| 113 | 113 | foreach ( $items as $item ) { |
| 114 | 114 | $invoice->add_item( $item ); |
@@ -10,7 +10,7 @@ discard block |
||
| 10 | 10 | defined( 'ABSPATH' ) || exit; |
| 11 | 11 | |
| 12 | 12 | if ( empty( $fields ) ) { |
| 13 | - return; |
|
| 13 | + return; |
|
| 14 | 14 | } |
| 15 | 15 | |
| 16 | 16 | // A prefix for all ids (so that a form can be included in the same page multiple times). |
@@ -18,12 +18,12 @@ discard block |
||
| 18 | 18 | |
| 19 | 19 | // Prepare the user's country. |
| 20 | 20 | if ( ! empty( $form->invoice ) ) { |
| 21 | - $country = $form->invoice->get_country(); |
|
| 21 | + $country = $form->invoice->get_country(); |
|
| 22 | 22 | } |
| 23 | 23 | |
| 24 | 24 | if ( empty( $country ) ) { |
| 25 | - $country = empty( $country ) ? getpaid_get_ip_country() : $country; |
|
| 26 | - $country = empty( $country ) ? wpinv_get_default_country() : $country; |
|
| 25 | + $country = empty( $country ) ? getpaid_get_ip_country() : $country; |
|
| 26 | + $country = empty( $country ) ? wpinv_get_default_country() : $country; |
|
| 27 | 27 | } |
| 28 | 28 | |
| 29 | 29 | // A prefix for all ids (so that a form can be included in the same page multiple times). |
@@ -55,10 +55,10 @@ discard block |
||
| 55 | 55 | <!-- Start Billing Address --> |
| 56 | 56 | <div class="getpaid-billing-address-wrapper"> |
| 57 | 57 | <?php |
| 58 | - $field_type = 'billing'; |
|
| 59 | - include plugin_dir_path( __FILE__ ) . 'address-fields.php'; |
|
| 60 | - do_action( 'getpaid_after_payment_form_billing_fields', $form ); |
|
| 61 | - ?> |
|
| 58 | + $field_type = 'billing'; |
|
| 59 | + include plugin_dir_path( __FILE__ ) . 'address-fields.php'; |
|
| 60 | + do_action( 'getpaid_after_payment_form_billing_fields', $form ); |
|
| 61 | + ?> |
|
| 62 | 62 | </div> |
| 63 | 63 | <!-- End Billing Address --> |
| 64 | 64 | |
@@ -70,19 +70,19 @@ discard block |
||
| 70 | 70 | |
| 71 | 71 | <?php |
| 72 | 72 | |
| 73 | - echo aui()->input( |
|
| 74 | - array( |
|
| 75 | - 'type' => 'checkbox', |
|
| 76 | - 'name' => 'same-shipping-address', |
|
| 77 | - 'id' => "shipping-toggle$uniqid", |
|
| 78 | - 'required' => false, |
|
| 79 | - 'label' => wp_kses_post( $shipping_address_toggle ), |
|
| 80 | - 'value' => 1, |
|
| 81 | - 'checked' => true, |
|
| 82 | - ) |
|
| 83 | - ); |
|
| 73 | + echo aui()->input( |
|
| 74 | + array( |
|
| 75 | + 'type' => 'checkbox', |
|
| 76 | + 'name' => 'same-shipping-address', |
|
| 77 | + 'id' => "shipping-toggle$uniqid", |
|
| 78 | + 'required' => false, |
|
| 79 | + 'label' => wp_kses_post( $shipping_address_toggle ), |
|
| 80 | + 'value' => 1, |
|
| 81 | + 'checked' => true, |
|
| 82 | + ) |
|
| 83 | + ); |
|
| 84 | 84 | |
| 85 | - ?> |
|
| 85 | + ?> |
|
| 86 | 86 | |
| 87 | 87 | |
| 88 | 88 | <!-- Start Shipping Address Title --> |
@@ -101,10 +101,10 @@ discard block |
||
| 101 | 101 | <!-- Start Shipping Address --> |
| 102 | 102 | <div class="getpaid-shipping-address-wrapper"> |
| 103 | 103 | <?php |
| 104 | - $field_type = 'shipping'; |
|
| 105 | - include plugin_dir_path( __FILE__ ) . 'address-fields.php'; |
|
| 106 | - do_action( 'getpaid_after_payment_form_shipping_fields', $form ); |
|
| 107 | - ?> |
|
| 104 | + $field_type = 'shipping'; |
|
| 105 | + include plugin_dir_path( __FILE__ ) . 'address-fields.php'; |
|
| 106 | + do_action( 'getpaid_after_payment_form_shipping_fields', $form ); |
|
| 107 | + ?> |
|
| 108 | 108 | </div> |
| 109 | 109 | <!-- End Shipping Address --> |
| 110 | 110 | |
@@ -13,264 +13,264 @@ |
||
| 13 | 13 | */ |
| 14 | 14 | class GetPaid_Geolocation { |
| 15 | 15 | |
| 16 | - /** |
|
| 17 | - * Holds the current user's IP Address. |
|
| 18 | - * |
|
| 19 | - * @var string |
|
| 20 | - */ |
|
| 21 | - public static $current_user_ip; |
|
| 22 | - |
|
| 23 | - /** |
|
| 24 | - * API endpoints for looking up a user IP address. |
|
| 25 | - * |
|
| 26 | - * For example, in case a user is on localhost. |
|
| 27 | - * |
|
| 28 | - * @var array |
|
| 29 | - */ |
|
| 30 | - protected static $ip_lookup_apis = array( |
|
| 31 | - 'ipify' => 'http://api.ipify.org/', |
|
| 32 | - 'ipecho' => 'http://ipecho.net/plain', |
|
| 33 | - 'ident' => 'http://ident.me', |
|
| 34 | - 'whatismyipaddress' => 'http://bot.whatismyipaddress.com', |
|
| 35 | - ); |
|
| 36 | - |
|
| 37 | - /** |
|
| 38 | - * API endpoints for geolocating an IP address |
|
| 39 | - * |
|
| 40 | - * @var array |
|
| 41 | - */ |
|
| 42 | - protected static $geoip_apis = array( |
|
| 43 | - 'ip-api.com' => 'http://ip-api.com/json/%s', |
|
| 44 | - 'ipinfo.io' => 'https://ipinfo.io/%s/json', |
|
| 45 | - ); |
|
| 46 | - |
|
| 47 | - /** |
|
| 48 | - * Get current user IP Address. |
|
| 49 | - * |
|
| 50 | - * @return string |
|
| 51 | - */ |
|
| 52 | - public static function get_ip_address() { |
|
| 53 | - return wpinv_get_ip(); |
|
| 54 | - } |
|
| 55 | - |
|
| 56 | - /** |
|
| 57 | - * Get user IP Address using an external service. |
|
| 58 | - * This can be used as a fallback for users on localhost where |
|
| 59 | - * get_ip_address() will be a local IP and non-geolocatable. |
|
| 60 | - * |
|
| 61 | - * @return string |
|
| 62 | - */ |
|
| 63 | - public static function get_external_ip_address() { |
|
| 64 | - |
|
| 65 | - $transient_name = 'external_ip_address_0.0.0.0'; |
|
| 66 | - |
|
| 67 | - if ( '' !== self::get_ip_address() ) { |
|
| 68 | - $transient_name = 'external_ip_address_' . self::get_ip_address(); |
|
| 69 | - } |
|
| 70 | - |
|
| 71 | - // Try retrieving from cache. |
|
| 72 | - $external_ip_address = get_transient( $transient_name ); |
|
| 73 | - |
|
| 74 | - if ( false === $external_ip_address ) { |
|
| 75 | - $external_ip_address = '0.0.0.0'; |
|
| 76 | - $ip_lookup_services = apply_filters( 'getpaid_geolocation_ip_lookup_apis', self::$ip_lookup_apis ); |
|
| 77 | - $ip_lookup_services_keys = array_keys( $ip_lookup_services ); |
|
| 78 | - shuffle( $ip_lookup_services_keys ); |
|
| 79 | - |
|
| 80 | - foreach ( $ip_lookup_services_keys as $service_name ) { |
|
| 81 | - $service_endpoint = $ip_lookup_services[ $service_name ]; |
|
| 82 | - $response = wp_safe_remote_get( $service_endpoint, array( 'timeout' => 2 ) ); |
|
| 83 | - |
|
| 84 | - if ( ! is_wp_error( $response ) && rest_is_ip_address( $response['body'] ) ) { |
|
| 85 | - $external_ip_address = apply_filters( 'getpaid_geolocation_ip_lookup_api_response', wpinv_clean( $response['body'] ), $service_name ); |
|
| 86 | - break; |
|
| 87 | - } |
|
| 88 | - |
|
| 89 | - } |
|
| 90 | - |
|
| 91 | - set_transient( $transient_name, $external_ip_address, WEEK_IN_SECONDS ); |
|
| 92 | - } |
|
| 93 | - |
|
| 94 | - return $external_ip_address; |
|
| 95 | - } |
|
| 96 | - |
|
| 97 | - /** |
|
| 98 | - * Geolocate an IP address. |
|
| 99 | - * |
|
| 100 | - * @param string $ip_address IP Address. |
|
| 101 | - * @param bool $fallback If true, fallbacks to alternative IP detection (can be slower). |
|
| 102 | - * @param bool $api_fallback If true, uses geolocation APIs if the database file doesn't exist (can be slower). |
|
| 103 | - * @return array |
|
| 104 | - */ |
|
| 105 | - public static function geolocate_ip( $ip_address = '', $fallback = false, $api_fallback = true ) { |
|
| 106 | - |
|
| 107 | - if ( empty( $ip_address ) ) { |
|
| 108 | - $ip_address = self::get_ip_address(); |
|
| 109 | - } |
|
| 110 | - |
|
| 111 | - // Update the current user's IP Address. |
|
| 112 | - self::$current_user_ip = $ip_address; |
|
| 113 | - |
|
| 114 | - // Filter to allow custom geolocation of the IP address. |
|
| 115 | - $country_code = apply_filters( 'getpaid_geolocate_ip', false, $ip_address, $fallback, $api_fallback ); |
|
| 116 | - |
|
| 117 | - if ( false !== $country_code ) { |
|
| 118 | - |
|
| 119 | - return array( |
|
| 120 | - 'country' => $country_code, |
|
| 121 | - 'state' => '', |
|
| 122 | - 'city' => '', |
|
| 123 | - 'postcode' => '', |
|
| 124 | - ); |
|
| 125 | - |
|
| 126 | - } |
|
| 127 | - |
|
| 128 | - $country_code = self::get_country_code_from_headers(); |
|
| 129 | - |
|
| 130 | - /** |
|
| 131 | - * Get geolocation filter. |
|
| 132 | - * |
|
| 133 | - * @since 1.0.19 |
|
| 134 | - * @param array $geolocation Geolocation data, including country, state, city, and postcode. |
|
| 135 | - * @param string $ip_address IP Address. |
|
| 136 | - */ |
|
| 137 | - $geolocation = apply_filters( |
|
| 138 | - 'getpaid_get_geolocation', |
|
| 139 | - array( |
|
| 140 | - 'country' => $country_code, |
|
| 141 | - 'state' => '', |
|
| 142 | - 'city' => '', |
|
| 143 | - 'postcode' => '', |
|
| 144 | - ), |
|
| 145 | - $ip_address |
|
| 146 | - ); |
|
| 147 | - |
|
| 148 | - // If we still haven't found a country code, let's consider doing an API lookup. |
|
| 149 | - if ( '' === $geolocation['country'] && $api_fallback ) { |
|
| 150 | - $geolocation['country'] = self::geolocate_via_api( $ip_address ); |
|
| 151 | - } |
|
| 152 | - |
|
| 153 | - // It's possible that we're in a local environment, in which case the geolocation needs to be done from the |
|
| 154 | - // external address. |
|
| 155 | - if ( '' === $geolocation['country'] && $fallback ) { |
|
| 156 | - $external_ip_address = self::get_external_ip_address(); |
|
| 157 | - |
|
| 158 | - // Only bother with this if the external IP differs. |
|
| 159 | - if ( '0.0.0.0' !== $external_ip_address && $external_ip_address !== $ip_address ) { |
|
| 160 | - return self::geolocate_ip( $external_ip_address, false, $api_fallback ); |
|
| 161 | - } |
|
| 162 | - |
|
| 163 | - } |
|
| 164 | - |
|
| 165 | - return array( |
|
| 166 | - 'country' => $geolocation['country'], |
|
| 167 | - 'state' => $geolocation['state'], |
|
| 168 | - 'city' => $geolocation['city'], |
|
| 169 | - 'postcode' => $geolocation['postcode'], |
|
| 170 | - ); |
|
| 171 | - |
|
| 172 | - } |
|
| 173 | - |
|
| 174 | - /** |
|
| 175 | - * Fetches the country code from the request headers, if one is available. |
|
| 176 | - * |
|
| 177 | - * @since 1.0.19 |
|
| 178 | - * @return string The country code pulled from the headers, or empty string if one was not found. |
|
| 179 | - */ |
|
| 180 | - protected static function get_country_code_from_headers() { |
|
| 181 | - $country_code = ''; |
|
| 182 | - |
|
| 183 | - $headers = array( |
|
| 184 | - 'MM_COUNTRY_CODE', |
|
| 185 | - 'GEOIP_COUNTRY_CODE', |
|
| 186 | - 'HTTP_CF_IPCOUNTRY', |
|
| 187 | - 'HTTP_X_COUNTRY_CODE', |
|
| 188 | - ); |
|
| 189 | - |
|
| 190 | - foreach ( $headers as $header ) { |
|
| 191 | - if ( empty( $_SERVER[ $header ] ) ) { |
|
| 192 | - continue; |
|
| 193 | - } |
|
| 194 | - |
|
| 195 | - $country_code = strtoupper( sanitize_text_field( wp_unslash( $_SERVER[ $header ] ) ) ); |
|
| 196 | - break; |
|
| 197 | - } |
|
| 198 | - |
|
| 199 | - return $country_code; |
|
| 200 | - } |
|
| 201 | - |
|
| 202 | - /** |
|
| 203 | - * Use APIs to Geolocate the user. |
|
| 204 | - * |
|
| 205 | - * Geolocation APIs can be added through the use of the getpaid_geolocation_geoip_apis filter. |
|
| 206 | - * Provide a name=>value pair for service-slug=>endpoint. |
|
| 207 | - * |
|
| 208 | - * If APIs are defined, one will be chosen at random to fulfil the request. After completing, the result |
|
| 209 | - * will be cached in a transient. |
|
| 210 | - * |
|
| 211 | - * @param string $ip_address IP address. |
|
| 212 | - * @return string |
|
| 213 | - */ |
|
| 214 | - protected static function geolocate_via_api( $ip_address ) { |
|
| 215 | - |
|
| 216 | - // Retrieve from cache... |
|
| 217 | - $country_code = get_transient( 'geoip_' . $ip_address ); |
|
| 218 | - |
|
| 219 | - // If missing, retrieve from the API. |
|
| 220 | - if ( false === $country_code ) { |
|
| 221 | - $geoip_services = apply_filters( 'getpaid_geolocation_geoip_apis', self::$geoip_apis ); |
|
| 222 | - |
|
| 223 | - if ( empty( $geoip_services ) ) { |
|
| 224 | - return ''; |
|
| 225 | - } |
|
| 226 | - |
|
| 227 | - $geoip_services_keys = array_keys( $geoip_services ); |
|
| 228 | - |
|
| 229 | - shuffle( $geoip_services_keys ); |
|
| 230 | - |
|
| 231 | - foreach ( $geoip_services_keys as $service_name ) { |
|
| 232 | - |
|
| 233 | - $service_endpoint = $geoip_services[ $service_name ]; |
|
| 234 | - $response = wp_safe_remote_get( sprintf( $service_endpoint, $ip_address ), array( 'timeout' => 2 ) ); |
|
| 235 | - $country_code = sanitize_text_field( strtoupper( self::handle_geolocation_response( $response, $service_name ) ) ); |
|
| 236 | - |
|
| 237 | - if ( ! empty( $country_code ) ) { |
|
| 238 | - break; |
|
| 239 | - } |
|
| 240 | - |
|
| 241 | - } |
|
| 242 | - |
|
| 243 | - set_transient( 'geoip_' . $ip_address, $country_code, WEEK_IN_SECONDS ); |
|
| 244 | - } |
|
| 245 | - |
|
| 246 | - return $country_code; |
|
| 247 | - } |
|
| 248 | - |
|
| 249 | - /** |
|
| 250 | - * Handles geolocation response |
|
| 251 | - * |
|
| 252 | - * @param WP_Error|String $geolocation_response |
|
| 253 | - * @param String $geolocation_service |
|
| 254 | - * @return string Country code |
|
| 255 | - */ |
|
| 256 | - protected static function handle_geolocation_response( $geolocation_response, $geolocation_service ) { |
|
| 257 | - |
|
| 258 | - if ( is_wp_error( $geolocation_response ) || empty( $geolocation_response['body'] ) ) { |
|
| 259 | - return ''; |
|
| 260 | - } |
|
| 261 | - |
|
| 262 | - if ( $geolocation_service === 'ipinfo.io' ) { |
|
| 263 | - $data = json_decode( $geolocation_response['body'] ); |
|
| 264 | - return empty( $data ) || empty( $data->country ) ? '' : $data->country; |
|
| 265 | - } |
|
| 266 | - |
|
| 267 | - if ( $geolocation_service === 'ip-api.com' ) { |
|
| 268 | - $data = json_decode( $geolocation_response['body'] ); |
|
| 269 | - return empty( $data ) || empty( $data->countryCode ) ? '' : $data->countryCode; |
|
| 270 | - } |
|
| 271 | - |
|
| 272 | - return apply_filters( 'getpaid_geolocation_geoip_response_' . $geolocation_service, '', $geolocation_response['body'] ); |
|
| 273 | - |
|
| 274 | - } |
|
| 16 | + /** |
|
| 17 | + * Holds the current user's IP Address. |
|
| 18 | + * |
|
| 19 | + * @var string |
|
| 20 | + */ |
|
| 21 | + public static $current_user_ip; |
|
| 22 | + |
|
| 23 | + /** |
|
| 24 | + * API endpoints for looking up a user IP address. |
|
| 25 | + * |
|
| 26 | + * For example, in case a user is on localhost. |
|
| 27 | + * |
|
| 28 | + * @var array |
|
| 29 | + */ |
|
| 30 | + protected static $ip_lookup_apis = array( |
|
| 31 | + 'ipify' => 'http://api.ipify.org/', |
|
| 32 | + 'ipecho' => 'http://ipecho.net/plain', |
|
| 33 | + 'ident' => 'http://ident.me', |
|
| 34 | + 'whatismyipaddress' => 'http://bot.whatismyipaddress.com', |
|
| 35 | + ); |
|
| 36 | + |
|
| 37 | + /** |
|
| 38 | + * API endpoints for geolocating an IP address |
|
| 39 | + * |
|
| 40 | + * @var array |
|
| 41 | + */ |
|
| 42 | + protected static $geoip_apis = array( |
|
| 43 | + 'ip-api.com' => 'http://ip-api.com/json/%s', |
|
| 44 | + 'ipinfo.io' => 'https://ipinfo.io/%s/json', |
|
| 45 | + ); |
|
| 46 | + |
|
| 47 | + /** |
|
| 48 | + * Get current user IP Address. |
|
| 49 | + * |
|
| 50 | + * @return string |
|
| 51 | + */ |
|
| 52 | + public static function get_ip_address() { |
|
| 53 | + return wpinv_get_ip(); |
|
| 54 | + } |
|
| 55 | + |
|
| 56 | + /** |
|
| 57 | + * Get user IP Address using an external service. |
|
| 58 | + * This can be used as a fallback for users on localhost where |
|
| 59 | + * get_ip_address() will be a local IP and non-geolocatable. |
|
| 60 | + * |
|
| 61 | + * @return string |
|
| 62 | + */ |
|
| 63 | + public static function get_external_ip_address() { |
|
| 64 | + |
|
| 65 | + $transient_name = 'external_ip_address_0.0.0.0'; |
|
| 66 | + |
|
| 67 | + if ( '' !== self::get_ip_address() ) { |
|
| 68 | + $transient_name = 'external_ip_address_' . self::get_ip_address(); |
|
| 69 | + } |
|
| 70 | + |
|
| 71 | + // Try retrieving from cache. |
|
| 72 | + $external_ip_address = get_transient( $transient_name ); |
|
| 73 | + |
|
| 74 | + if ( false === $external_ip_address ) { |
|
| 75 | + $external_ip_address = '0.0.0.0'; |
|
| 76 | + $ip_lookup_services = apply_filters( 'getpaid_geolocation_ip_lookup_apis', self::$ip_lookup_apis ); |
|
| 77 | + $ip_lookup_services_keys = array_keys( $ip_lookup_services ); |
|
| 78 | + shuffle( $ip_lookup_services_keys ); |
|
| 79 | + |
|
| 80 | + foreach ( $ip_lookup_services_keys as $service_name ) { |
|
| 81 | + $service_endpoint = $ip_lookup_services[ $service_name ]; |
|
| 82 | + $response = wp_safe_remote_get( $service_endpoint, array( 'timeout' => 2 ) ); |
|
| 83 | + |
|
| 84 | + if ( ! is_wp_error( $response ) && rest_is_ip_address( $response['body'] ) ) { |
|
| 85 | + $external_ip_address = apply_filters( 'getpaid_geolocation_ip_lookup_api_response', wpinv_clean( $response['body'] ), $service_name ); |
|
| 86 | + break; |
|
| 87 | + } |
|
| 88 | + |
|
| 89 | + } |
|
| 90 | + |
|
| 91 | + set_transient( $transient_name, $external_ip_address, WEEK_IN_SECONDS ); |
|
| 92 | + } |
|
| 93 | + |
|
| 94 | + return $external_ip_address; |
|
| 95 | + } |
|
| 96 | + |
|
| 97 | + /** |
|
| 98 | + * Geolocate an IP address. |
|
| 99 | + * |
|
| 100 | + * @param string $ip_address IP Address. |
|
| 101 | + * @param bool $fallback If true, fallbacks to alternative IP detection (can be slower). |
|
| 102 | + * @param bool $api_fallback If true, uses geolocation APIs if the database file doesn't exist (can be slower). |
|
| 103 | + * @return array |
|
| 104 | + */ |
|
| 105 | + public static function geolocate_ip( $ip_address = '', $fallback = false, $api_fallback = true ) { |
|
| 106 | + |
|
| 107 | + if ( empty( $ip_address ) ) { |
|
| 108 | + $ip_address = self::get_ip_address(); |
|
| 109 | + } |
|
| 110 | + |
|
| 111 | + // Update the current user's IP Address. |
|
| 112 | + self::$current_user_ip = $ip_address; |
|
| 113 | + |
|
| 114 | + // Filter to allow custom geolocation of the IP address. |
|
| 115 | + $country_code = apply_filters( 'getpaid_geolocate_ip', false, $ip_address, $fallback, $api_fallback ); |
|
| 116 | + |
|
| 117 | + if ( false !== $country_code ) { |
|
| 118 | + |
|
| 119 | + return array( |
|
| 120 | + 'country' => $country_code, |
|
| 121 | + 'state' => '', |
|
| 122 | + 'city' => '', |
|
| 123 | + 'postcode' => '', |
|
| 124 | + ); |
|
| 125 | + |
|
| 126 | + } |
|
| 127 | + |
|
| 128 | + $country_code = self::get_country_code_from_headers(); |
|
| 129 | + |
|
| 130 | + /** |
|
| 131 | + * Get geolocation filter. |
|
| 132 | + * |
|
| 133 | + * @since 1.0.19 |
|
| 134 | + * @param array $geolocation Geolocation data, including country, state, city, and postcode. |
|
| 135 | + * @param string $ip_address IP Address. |
|
| 136 | + */ |
|
| 137 | + $geolocation = apply_filters( |
|
| 138 | + 'getpaid_get_geolocation', |
|
| 139 | + array( |
|
| 140 | + 'country' => $country_code, |
|
| 141 | + 'state' => '', |
|
| 142 | + 'city' => '', |
|
| 143 | + 'postcode' => '', |
|
| 144 | + ), |
|
| 145 | + $ip_address |
|
| 146 | + ); |
|
| 147 | + |
|
| 148 | + // If we still haven't found a country code, let's consider doing an API lookup. |
|
| 149 | + if ( '' === $geolocation['country'] && $api_fallback ) { |
|
| 150 | + $geolocation['country'] = self::geolocate_via_api( $ip_address ); |
|
| 151 | + } |
|
| 152 | + |
|
| 153 | + // It's possible that we're in a local environment, in which case the geolocation needs to be done from the |
|
| 154 | + // external address. |
|
| 155 | + if ( '' === $geolocation['country'] && $fallback ) { |
|
| 156 | + $external_ip_address = self::get_external_ip_address(); |
|
| 157 | + |
|
| 158 | + // Only bother with this if the external IP differs. |
|
| 159 | + if ( '0.0.0.0' !== $external_ip_address && $external_ip_address !== $ip_address ) { |
|
| 160 | + return self::geolocate_ip( $external_ip_address, false, $api_fallback ); |
|
| 161 | + } |
|
| 162 | + |
|
| 163 | + } |
|
| 164 | + |
|
| 165 | + return array( |
|
| 166 | + 'country' => $geolocation['country'], |
|
| 167 | + 'state' => $geolocation['state'], |
|
| 168 | + 'city' => $geolocation['city'], |
|
| 169 | + 'postcode' => $geolocation['postcode'], |
|
| 170 | + ); |
|
| 171 | + |
|
| 172 | + } |
|
| 173 | + |
|
| 174 | + /** |
|
| 175 | + * Fetches the country code from the request headers, if one is available. |
|
| 176 | + * |
|
| 177 | + * @since 1.0.19 |
|
| 178 | + * @return string The country code pulled from the headers, or empty string if one was not found. |
|
| 179 | + */ |
|
| 180 | + protected static function get_country_code_from_headers() { |
|
| 181 | + $country_code = ''; |
|
| 182 | + |
|
| 183 | + $headers = array( |
|
| 184 | + 'MM_COUNTRY_CODE', |
|
| 185 | + 'GEOIP_COUNTRY_CODE', |
|
| 186 | + 'HTTP_CF_IPCOUNTRY', |
|
| 187 | + 'HTTP_X_COUNTRY_CODE', |
|
| 188 | + ); |
|
| 189 | + |
|
| 190 | + foreach ( $headers as $header ) { |
|
| 191 | + if ( empty( $_SERVER[ $header ] ) ) { |
|
| 192 | + continue; |
|
| 193 | + } |
|
| 194 | + |
|
| 195 | + $country_code = strtoupper( sanitize_text_field( wp_unslash( $_SERVER[ $header ] ) ) ); |
|
| 196 | + break; |
|
| 197 | + } |
|
| 198 | + |
|
| 199 | + return $country_code; |
|
| 200 | + } |
|
| 201 | + |
|
| 202 | + /** |
|
| 203 | + * Use APIs to Geolocate the user. |
|
| 204 | + * |
|
| 205 | + * Geolocation APIs can be added through the use of the getpaid_geolocation_geoip_apis filter. |
|
| 206 | + * Provide a name=>value pair for service-slug=>endpoint. |
|
| 207 | + * |
|
| 208 | + * If APIs are defined, one will be chosen at random to fulfil the request. After completing, the result |
|
| 209 | + * will be cached in a transient. |
|
| 210 | + * |
|
| 211 | + * @param string $ip_address IP address. |
|
| 212 | + * @return string |
|
| 213 | + */ |
|
| 214 | + protected static function geolocate_via_api( $ip_address ) { |
|
| 215 | + |
|
| 216 | + // Retrieve from cache... |
|
| 217 | + $country_code = get_transient( 'geoip_' . $ip_address ); |
|
| 218 | + |
|
| 219 | + // If missing, retrieve from the API. |
|
| 220 | + if ( false === $country_code ) { |
|
| 221 | + $geoip_services = apply_filters( 'getpaid_geolocation_geoip_apis', self::$geoip_apis ); |
|
| 222 | + |
|
| 223 | + if ( empty( $geoip_services ) ) { |
|
| 224 | + return ''; |
|
| 225 | + } |
|
| 226 | + |
|
| 227 | + $geoip_services_keys = array_keys( $geoip_services ); |
|
| 228 | + |
|
| 229 | + shuffle( $geoip_services_keys ); |
|
| 230 | + |
|
| 231 | + foreach ( $geoip_services_keys as $service_name ) { |
|
| 232 | + |
|
| 233 | + $service_endpoint = $geoip_services[ $service_name ]; |
|
| 234 | + $response = wp_safe_remote_get( sprintf( $service_endpoint, $ip_address ), array( 'timeout' => 2 ) ); |
|
| 235 | + $country_code = sanitize_text_field( strtoupper( self::handle_geolocation_response( $response, $service_name ) ) ); |
|
| 236 | + |
|
| 237 | + if ( ! empty( $country_code ) ) { |
|
| 238 | + break; |
|
| 239 | + } |
|
| 240 | + |
|
| 241 | + } |
|
| 242 | + |
|
| 243 | + set_transient( 'geoip_' . $ip_address, $country_code, WEEK_IN_SECONDS ); |
|
| 244 | + } |
|
| 245 | + |
|
| 246 | + return $country_code; |
|
| 247 | + } |
|
| 248 | + |
|
| 249 | + /** |
|
| 250 | + * Handles geolocation response |
|
| 251 | + * |
|
| 252 | + * @param WP_Error|String $geolocation_response |
|
| 253 | + * @param String $geolocation_service |
|
| 254 | + * @return string Country code |
|
| 255 | + */ |
|
| 256 | + protected static function handle_geolocation_response( $geolocation_response, $geolocation_service ) { |
|
| 257 | + |
|
| 258 | + if ( is_wp_error( $geolocation_response ) || empty( $geolocation_response['body'] ) ) { |
|
| 259 | + return ''; |
|
| 260 | + } |
|
| 261 | + |
|
| 262 | + if ( $geolocation_service === 'ipinfo.io' ) { |
|
| 263 | + $data = json_decode( $geolocation_response['body'] ); |
|
| 264 | + return empty( $data ) || empty( $data->country ) ? '' : $data->country; |
|
| 265 | + } |
|
| 266 | + |
|
| 267 | + if ( $geolocation_service === 'ip-api.com' ) { |
|
| 268 | + $data = json_decode( $geolocation_response['body'] ); |
|
| 269 | + return empty( $data ) || empty( $data->countryCode ) ? '' : $data->countryCode; |
|
| 270 | + } |
|
| 271 | + |
|
| 272 | + return apply_filters( 'getpaid_geolocation_geoip_response_' . $geolocation_service, '', $geolocation_response['body'] ); |
|
| 273 | + |
|
| 274 | + } |
|
| 275 | 275 | |
| 276 | 276 | } |
@@ -12,125 +12,125 @@ discard block |
||
| 12 | 12 | */ |
| 13 | 13 | class WPInv_Session_Handler extends WPInv_Session { |
| 14 | 14 | |
| 15 | - /** |
|
| 16 | - * Cookie name used for the session. |
|
| 17 | - * |
|
| 18 | - * @var string cookie name |
|
| 19 | - */ |
|
| 20 | - protected $_cookie; |
|
| 21 | - |
|
| 22 | - /** |
|
| 23 | - * Stores session expiry. |
|
| 24 | - * |
|
| 25 | - * @var int session due to expire timestamp |
|
| 26 | - */ |
|
| 27 | - protected $_session_expiring; |
|
| 28 | - |
|
| 29 | - /** |
|
| 30 | - * Stores session due to expire timestamp. |
|
| 31 | - * |
|
| 32 | - * @var string session expiration timestamp |
|
| 33 | - */ |
|
| 34 | - protected $_session_expiration; |
|
| 35 | - |
|
| 36 | - /** |
|
| 37 | - * True when the cookie exists. |
|
| 38 | - * |
|
| 39 | - * @var bool Based on whether a cookie exists. |
|
| 40 | - */ |
|
| 41 | - protected $_has_cookie = false; |
|
| 42 | - |
|
| 43 | - /** |
|
| 44 | - * Table name for session data. |
|
| 45 | - * |
|
| 46 | - * @var string Custom session table name |
|
| 47 | - */ |
|
| 48 | - protected $_table; |
|
| 49 | - |
|
| 50 | - /** |
|
| 51 | - * Constructor for the session class. |
|
| 52 | - */ |
|
| 53 | - public function __construct() { |
|
| 54 | - |
|
| 55 | - $this->_cookie = apply_filters( 'wpinv_cookie', 'wpinv_session_' . COOKIEHASH ); |
|
| 15 | + /** |
|
| 16 | + * Cookie name used for the session. |
|
| 17 | + * |
|
| 18 | + * @var string cookie name |
|
| 19 | + */ |
|
| 20 | + protected $_cookie; |
|
| 21 | + |
|
| 22 | + /** |
|
| 23 | + * Stores session expiry. |
|
| 24 | + * |
|
| 25 | + * @var int session due to expire timestamp |
|
| 26 | + */ |
|
| 27 | + protected $_session_expiring; |
|
| 28 | + |
|
| 29 | + /** |
|
| 30 | + * Stores session due to expire timestamp. |
|
| 31 | + * |
|
| 32 | + * @var string session expiration timestamp |
|
| 33 | + */ |
|
| 34 | + protected $_session_expiration; |
|
| 35 | + |
|
| 36 | + /** |
|
| 37 | + * True when the cookie exists. |
|
| 38 | + * |
|
| 39 | + * @var bool Based on whether a cookie exists. |
|
| 40 | + */ |
|
| 41 | + protected $_has_cookie = false; |
|
| 42 | + |
|
| 43 | + /** |
|
| 44 | + * Table name for session data. |
|
| 45 | + * |
|
| 46 | + * @var string Custom session table name |
|
| 47 | + */ |
|
| 48 | + protected $_table; |
|
| 49 | + |
|
| 50 | + /** |
|
| 51 | + * Constructor for the session class. |
|
| 52 | + */ |
|
| 53 | + public function __construct() { |
|
| 54 | + |
|
| 55 | + $this->_cookie = apply_filters( 'wpinv_cookie', 'wpinv_session_' . COOKIEHASH ); |
|
| 56 | 56 | add_action( 'init', array( $this, 'init' ), -1 ); |
| 57 | - add_action( 'wp_logout', array( $this, 'destroy_session' ) ); |
|
| 58 | - add_action( 'wp', array( $this, 'set_customer_session_cookie' ), 10 ); |
|
| 59 | - add_action( 'shutdown', array( $this, 'save_data' ), 20 ); |
|
| 60 | - |
|
| 61 | - } |
|
| 62 | - |
|
| 63 | - /** |
|
| 64 | - * Init hooks and session data. |
|
| 65 | - * |
|
| 66 | - * @since 3.3.0 |
|
| 67 | - */ |
|
| 68 | - public function init() { |
|
| 69 | - $this->init_session_cookie(); |
|
| 70 | - |
|
| 71 | - if ( ! is_user_logged_in() ) { |
|
| 72 | - add_filter( 'nonce_user_logged_out', array( $this, 'nonce_user_logged_out' ), 10, 2 ); |
|
| 73 | - } |
|
| 74 | - } |
|
| 75 | - |
|
| 76 | - /** |
|
| 77 | - * Setup cookie and customer ID. |
|
| 78 | - * |
|
| 79 | - * @since 3.6.0 |
|
| 80 | - */ |
|
| 81 | - public function init_session_cookie() { |
|
| 82 | - $cookie = $this->get_session_cookie(); |
|
| 83 | - |
|
| 84 | - if ( $cookie ) { |
|
| 85 | - $this->_customer_id = $cookie[0]; |
|
| 86 | - $this->_session_expiration = $cookie[1]; |
|
| 87 | - $this->_session_expiring = $cookie[2]; |
|
| 88 | - $this->_has_cookie = true; |
|
| 89 | - $this->_data = $this->get_session_data(); |
|
| 90 | - |
|
| 91 | - // If the user logs in, update session. |
|
| 92 | - if ( is_user_logged_in() && get_current_user_id() != $this->_customer_id ) { |
|
| 93 | - $this->_customer_id = get_current_user_id(); |
|
| 94 | - $this->_dirty = true; |
|
| 95 | - $this->save_data(); |
|
| 96 | - $this->set_customer_session_cookie( true ); |
|
| 97 | - } |
|
| 98 | - |
|
| 99 | - // Update session if its close to expiring. |
|
| 100 | - if ( time() > $this->_session_expiring ) { |
|
| 101 | - $this->set_session_expiration(); |
|
| 102 | - $this->update_session_timestamp( $this->_customer_id, $this->_session_expiration ); |
|
| 103 | - } |
|
| 104 | - } else { |
|
| 105 | - $this->set_session_expiration(); |
|
| 106 | - $this->_customer_id = $this->generate_customer_id(); |
|
| 107 | - $this->_data = $this->get_session_data(); |
|
| 108 | - } |
|
| 109 | - } |
|
| 110 | - |
|
| 111 | - /** |
|
| 112 | - * Sets the session cookie on-demand (usually after adding an item to the cart). |
|
| 113 | - * |
|
| 114 | - * Since the cookie name (as of 2.1) is prepended with wp, cache systems like batcache will not cache pages when set. |
|
| 115 | - * |
|
| 116 | - * Warning: Cookies will only be set if this is called before the headers are sent. |
|
| 117 | - * |
|
| 118 | - * @param bool $set Should the session cookie be set. |
|
| 119 | - */ |
|
| 120 | - public function set_customer_session_cookie( $set ) { |
|
| 121 | - if ( $set ) { |
|
| 122 | - $to_hash = $this->_customer_id . '|' . $this->_session_expiration; |
|
| 123 | - $cookie_hash = hash_hmac( 'md5', $to_hash, wp_hash( $to_hash ) ); |
|
| 124 | - $cookie_value = $this->_customer_id . '||' . $this->_session_expiration . '||' . $this->_session_expiring . '||' . $cookie_hash; |
|
| 125 | - $this->_has_cookie = true; |
|
| 126 | - |
|
| 127 | - if ( ! isset( $_COOKIE[ $this->_cookie ] ) || $_COOKIE[ $this->_cookie ] !== $cookie_value ) { |
|
| 128 | - $this->setcookie( $this->_cookie, $cookie_value, $this->_session_expiration, $this->use_secure_cookie(), true ); |
|
| 129 | - } |
|
| 130 | - } |
|
| 131 | - } |
|
| 132 | - |
|
| 133 | - public function setcookie($name, $value, $expire = 0, $secure = false, $httponly = false){ |
|
| 57 | + add_action( 'wp_logout', array( $this, 'destroy_session' ) ); |
|
| 58 | + add_action( 'wp', array( $this, 'set_customer_session_cookie' ), 10 ); |
|
| 59 | + add_action( 'shutdown', array( $this, 'save_data' ), 20 ); |
|
| 60 | + |
|
| 61 | + } |
|
| 62 | + |
|
| 63 | + /** |
|
| 64 | + * Init hooks and session data. |
|
| 65 | + * |
|
| 66 | + * @since 3.3.0 |
|
| 67 | + */ |
|
| 68 | + public function init() { |
|
| 69 | + $this->init_session_cookie(); |
|
| 70 | + |
|
| 71 | + if ( ! is_user_logged_in() ) { |
|
| 72 | + add_filter( 'nonce_user_logged_out', array( $this, 'nonce_user_logged_out' ), 10, 2 ); |
|
| 73 | + } |
|
| 74 | + } |
|
| 75 | + |
|
| 76 | + /** |
|
| 77 | + * Setup cookie and customer ID. |
|
| 78 | + * |
|
| 79 | + * @since 3.6.0 |
|
| 80 | + */ |
|
| 81 | + public function init_session_cookie() { |
|
| 82 | + $cookie = $this->get_session_cookie(); |
|
| 83 | + |
|
| 84 | + if ( $cookie ) { |
|
| 85 | + $this->_customer_id = $cookie[0]; |
|
| 86 | + $this->_session_expiration = $cookie[1]; |
|
| 87 | + $this->_session_expiring = $cookie[2]; |
|
| 88 | + $this->_has_cookie = true; |
|
| 89 | + $this->_data = $this->get_session_data(); |
|
| 90 | + |
|
| 91 | + // If the user logs in, update session. |
|
| 92 | + if ( is_user_logged_in() && get_current_user_id() != $this->_customer_id ) { |
|
| 93 | + $this->_customer_id = get_current_user_id(); |
|
| 94 | + $this->_dirty = true; |
|
| 95 | + $this->save_data(); |
|
| 96 | + $this->set_customer_session_cookie( true ); |
|
| 97 | + } |
|
| 98 | + |
|
| 99 | + // Update session if its close to expiring. |
|
| 100 | + if ( time() > $this->_session_expiring ) { |
|
| 101 | + $this->set_session_expiration(); |
|
| 102 | + $this->update_session_timestamp( $this->_customer_id, $this->_session_expiration ); |
|
| 103 | + } |
|
| 104 | + } else { |
|
| 105 | + $this->set_session_expiration(); |
|
| 106 | + $this->_customer_id = $this->generate_customer_id(); |
|
| 107 | + $this->_data = $this->get_session_data(); |
|
| 108 | + } |
|
| 109 | + } |
|
| 110 | + |
|
| 111 | + /** |
|
| 112 | + * Sets the session cookie on-demand (usually after adding an item to the cart). |
|
| 113 | + * |
|
| 114 | + * Since the cookie name (as of 2.1) is prepended with wp, cache systems like batcache will not cache pages when set. |
|
| 115 | + * |
|
| 116 | + * Warning: Cookies will only be set if this is called before the headers are sent. |
|
| 117 | + * |
|
| 118 | + * @param bool $set Should the session cookie be set. |
|
| 119 | + */ |
|
| 120 | + public function set_customer_session_cookie( $set ) { |
|
| 121 | + if ( $set ) { |
|
| 122 | + $to_hash = $this->_customer_id . '|' . $this->_session_expiration; |
|
| 123 | + $cookie_hash = hash_hmac( 'md5', $to_hash, wp_hash( $to_hash ) ); |
|
| 124 | + $cookie_value = $this->_customer_id . '||' . $this->_session_expiration . '||' . $this->_session_expiring . '||' . $cookie_hash; |
|
| 125 | + $this->_has_cookie = true; |
|
| 126 | + |
|
| 127 | + if ( ! isset( $_COOKIE[ $this->_cookie ] ) || $_COOKIE[ $this->_cookie ] !== $cookie_value ) { |
|
| 128 | + $this->setcookie( $this->_cookie, $cookie_value, $this->_session_expiration, $this->use_secure_cookie(), true ); |
|
| 129 | + } |
|
| 130 | + } |
|
| 131 | + } |
|
| 132 | + |
|
| 133 | + public function setcookie($name, $value, $expire = 0, $secure = false, $httponly = false){ |
|
| 134 | 134 | if ( ! headers_sent() ) { |
| 135 | 135 | setcookie( $name, $value, $expire, COOKIEPATH ? COOKIEPATH : '/', COOKIE_DOMAIN, $secure, apply_filters( 'wpinv_cookie_httponly', $httponly, $name, $value, $expire, $secure ) ); |
| 136 | 136 | } elseif ( defined( 'WP_DEBUG' ) && WP_DEBUG ) { |
@@ -139,86 +139,86 @@ discard block |
||
| 139 | 139 | } |
| 140 | 140 | } |
| 141 | 141 | |
| 142 | - /** |
|
| 143 | - * Should the session cookie be secure? |
|
| 144 | - * |
|
| 145 | - * @since 3.6.0 |
|
| 146 | - * @return bool |
|
| 147 | - */ |
|
| 148 | - protected function use_secure_cookie() { |
|
| 142 | + /** |
|
| 143 | + * Should the session cookie be secure? |
|
| 144 | + * |
|
| 145 | + * @since 3.6.0 |
|
| 146 | + * @return bool |
|
| 147 | + */ |
|
| 148 | + protected function use_secure_cookie() { |
|
| 149 | 149 | $is_https = false !== strstr( get_option( 'home' ), 'https:' ); |
| 150 | - return apply_filters( 'wpinv_session_use_secure_cookie', $is_https && is_ssl() ); |
|
| 151 | - } |
|
| 152 | - |
|
| 153 | - /** |
|
| 154 | - * Return true if the current user has an active session, i.e. a cookie to retrieve values. |
|
| 155 | - * |
|
| 156 | - * @return bool |
|
| 157 | - */ |
|
| 158 | - public function has_session() { |
|
| 159 | - return isset( $_COOKIE[ $this->_cookie ] ) || $this->_has_cookie || is_user_logged_in(); // @codingStandardsIgnoreLine. |
|
| 160 | - } |
|
| 161 | - |
|
| 162 | - /** |
|
| 163 | - * Set session expiration. |
|
| 164 | - */ |
|
| 165 | - public function set_session_expiration() { |
|
| 166 | - $this->_session_expiring = time() + intval( apply_filters( 'wpinv_session_expiring', 60 * 60 * 47 ) ); // 47 Hours. |
|
| 167 | - $this->_session_expiration = time() + intval( apply_filters( 'wpinv_session_expiration', 60 * 60 * 48 ) ); // 48 Hours. |
|
| 168 | - } |
|
| 169 | - |
|
| 170 | - /** |
|
| 171 | - * Generates session ids. |
|
| 172 | - * |
|
| 173 | - * @return string |
|
| 174 | - */ |
|
| 175 | - public function generate_customer_id() { |
|
| 176 | - require_once ABSPATH . 'wp-includes/class-phpass.php'; |
|
| 177 | - $hasher = new PasswordHash( 8, false ); |
|
| 178 | - return md5( $hasher->get_random_bytes( 32 ) ); |
|
| 179 | - } |
|
| 180 | - |
|
| 181 | - /** |
|
| 182 | - * Get the session cookie, if set. Otherwise return false. |
|
| 183 | - * |
|
| 184 | - * Session cookies without a customer ID are invalid. |
|
| 185 | - * |
|
| 186 | - * @return bool|array |
|
| 187 | - */ |
|
| 188 | - public function get_session_cookie() { |
|
| 189 | - $cookie_value = isset( $_COOKIE[ $this->_cookie ] ) ? wp_unslash( $_COOKIE[ $this->_cookie ] ) : false; // @codingStandardsIgnoreLine. |
|
| 190 | - |
|
| 191 | - if ( empty( $cookie_value ) || ! is_string( $cookie_value ) ) { |
|
| 192 | - return false; |
|
| 193 | - } |
|
| 194 | - |
|
| 195 | - list( $customer_id, $session_expiration, $session_expiring, $cookie_hash ) = explode( '||', $cookie_value ); |
|
| 196 | - |
|
| 197 | - if ( empty( $customer_id ) ) { |
|
| 198 | - return false; |
|
| 199 | - } |
|
| 200 | - |
|
| 201 | - // Validate hash. |
|
| 202 | - $to_hash = $customer_id . '|' . $session_expiration; |
|
| 203 | - $hash = hash_hmac( 'md5', $to_hash, wp_hash( $to_hash ) ); |
|
| 204 | - |
|
| 205 | - if ( empty( $cookie_hash ) || ! hash_equals( $hash, $cookie_hash ) ) { |
|
| 206 | - return false; |
|
| 207 | - } |
|
| 208 | - |
|
| 209 | - return array( $customer_id, $session_expiration, $session_expiring, $cookie_hash ); |
|
| 210 | - } |
|
| 211 | - |
|
| 212 | - /** |
|
| 213 | - * Get session data. |
|
| 214 | - * |
|
| 215 | - * @return array |
|
| 216 | - */ |
|
| 217 | - public function get_session_data() { |
|
| 218 | - return $this->has_session() ? (array) $this->get_session( $this->_customer_id ) : array(); |
|
| 219 | - } |
|
| 220 | - |
|
| 221 | - public function generate_key($customer_id){ |
|
| 150 | + return apply_filters( 'wpinv_session_use_secure_cookie', $is_https && is_ssl() ); |
|
| 151 | + } |
|
| 152 | + |
|
| 153 | + /** |
|
| 154 | + * Return true if the current user has an active session, i.e. a cookie to retrieve values. |
|
| 155 | + * |
|
| 156 | + * @return bool |
|
| 157 | + */ |
|
| 158 | + public function has_session() { |
|
| 159 | + return isset( $_COOKIE[ $this->_cookie ] ) || $this->_has_cookie || is_user_logged_in(); // @codingStandardsIgnoreLine. |
|
| 160 | + } |
|
| 161 | + |
|
| 162 | + /** |
|
| 163 | + * Set session expiration. |
|
| 164 | + */ |
|
| 165 | + public function set_session_expiration() { |
|
| 166 | + $this->_session_expiring = time() + intval( apply_filters( 'wpinv_session_expiring', 60 * 60 * 47 ) ); // 47 Hours. |
|
| 167 | + $this->_session_expiration = time() + intval( apply_filters( 'wpinv_session_expiration', 60 * 60 * 48 ) ); // 48 Hours. |
|
| 168 | + } |
|
| 169 | + |
|
| 170 | + /** |
|
| 171 | + * Generates session ids. |
|
| 172 | + * |
|
| 173 | + * @return string |
|
| 174 | + */ |
|
| 175 | + public function generate_customer_id() { |
|
| 176 | + require_once ABSPATH . 'wp-includes/class-phpass.php'; |
|
| 177 | + $hasher = new PasswordHash( 8, false ); |
|
| 178 | + return md5( $hasher->get_random_bytes( 32 ) ); |
|
| 179 | + } |
|
| 180 | + |
|
| 181 | + /** |
|
| 182 | + * Get the session cookie, if set. Otherwise return false. |
|
| 183 | + * |
|
| 184 | + * Session cookies without a customer ID are invalid. |
|
| 185 | + * |
|
| 186 | + * @return bool|array |
|
| 187 | + */ |
|
| 188 | + public function get_session_cookie() { |
|
| 189 | + $cookie_value = isset( $_COOKIE[ $this->_cookie ] ) ? wp_unslash( $_COOKIE[ $this->_cookie ] ) : false; // @codingStandardsIgnoreLine. |
|
| 190 | + |
|
| 191 | + if ( empty( $cookie_value ) || ! is_string( $cookie_value ) ) { |
|
| 192 | + return false; |
|
| 193 | + } |
|
| 194 | + |
|
| 195 | + list( $customer_id, $session_expiration, $session_expiring, $cookie_hash ) = explode( '||', $cookie_value ); |
|
| 196 | + |
|
| 197 | + if ( empty( $customer_id ) ) { |
|
| 198 | + return false; |
|
| 199 | + } |
|
| 200 | + |
|
| 201 | + // Validate hash. |
|
| 202 | + $to_hash = $customer_id . '|' . $session_expiration; |
|
| 203 | + $hash = hash_hmac( 'md5', $to_hash, wp_hash( $to_hash ) ); |
|
| 204 | + |
|
| 205 | + if ( empty( $cookie_hash ) || ! hash_equals( $hash, $cookie_hash ) ) { |
|
| 206 | + return false; |
|
| 207 | + } |
|
| 208 | + |
|
| 209 | + return array( $customer_id, $session_expiration, $session_expiring, $cookie_hash ); |
|
| 210 | + } |
|
| 211 | + |
|
| 212 | + /** |
|
| 213 | + * Get session data. |
|
| 214 | + * |
|
| 215 | + * @return array |
|
| 216 | + */ |
|
| 217 | + public function get_session_data() { |
|
| 218 | + return $this->has_session() ? (array) $this->get_session( $this->_customer_id ) : array(); |
|
| 219 | + } |
|
| 220 | + |
|
| 221 | + public function generate_key($customer_id){ |
|
| 222 | 222 | if(!$customer_id){ |
| 223 | 223 | return; |
| 224 | 224 | } |
@@ -226,68 +226,68 @@ discard block |
||
| 226 | 226 | return 'wpi_trans_'.$customer_id; |
| 227 | 227 | } |
| 228 | 228 | |
| 229 | - /** |
|
| 230 | - * Save data. |
|
| 231 | - */ |
|
| 232 | - public function save_data() { |
|
| 233 | - // Dirty if something changed - prevents saving nothing new. |
|
| 234 | - if ( $this->_dirty && $this->has_session() ) { |
|
| 229 | + /** |
|
| 230 | + * Save data. |
|
| 231 | + */ |
|
| 232 | + public function save_data() { |
|
| 233 | + // Dirty if something changed - prevents saving nothing new. |
|
| 234 | + if ( $this->_dirty && $this->has_session() ) { |
|
| 235 | 235 | |
| 236 | 236 | set_transient( $this->generate_key($this->_customer_id), $this->_data, $this->_session_expiration); |
| 237 | 237 | |
| 238 | - $this->_dirty = false; |
|
| 239 | - } |
|
| 240 | - } |
|
| 241 | - |
|
| 242 | - /** |
|
| 243 | - * Destroy all session data. |
|
| 244 | - */ |
|
| 245 | - public function destroy_session() { |
|
| 246 | - $this->delete_session( $this->_customer_id ); |
|
| 247 | - $this->forget_session(); |
|
| 248 | - } |
|
| 249 | - |
|
| 250 | - /** |
|
| 251 | - * Forget all session data without destroying it. |
|
| 252 | - */ |
|
| 253 | - public function forget_session() { |
|
| 254 | - $this->setcookie( $this->_cookie, '', time() - YEAR_IN_SECONDS, $this->use_secure_cookie(), true ); |
|
| 255 | - |
|
| 256 | - wpinv_empty_cart(); |
|
| 257 | - |
|
| 258 | - $this->_data = array(); |
|
| 259 | - $this->_dirty = false; |
|
| 260 | - $this->_customer_id = $this->generate_customer_id(); |
|
| 261 | - } |
|
| 262 | - |
|
| 263 | - /** |
|
| 264 | - * When a user is logged out, ensure they have a unique nonce by using the customer/session ID. |
|
| 265 | - * |
|
| 266 | - * @param int $uid User ID. |
|
| 267 | - * @return string |
|
| 268 | - */ |
|
| 269 | - public function nonce_user_logged_out( $uid ) { |
|
| 270 | - |
|
| 271 | - // Check if one of our nonces. |
|
| 272 | - if ( substr( $uid, 0, 5 ) === 'wpinv' || substr( $uid, 0, 7 ) === 'getpaid' ) { |
|
| 273 | - return $this->has_session() && $this->_customer_id ? $this->_customer_id : $uid; |
|
| 274 | - } |
|
| 275 | - |
|
| 276 | - return $uid; |
|
| 277 | - } |
|
| 278 | - |
|
| 279 | - /** |
|
| 280 | - * Returns the session. |
|
| 281 | - * |
|
| 282 | - * @param string $customer_id Customer ID. |
|
| 283 | - * @param mixed $default Default session value. |
|
| 284 | - * @return string|array |
|
| 285 | - */ |
|
| 286 | - public function get_session( $customer_id, $default = false ) { |
|
| 287 | - |
|
| 288 | - if ( defined( 'WP_SETUP_CONFIG' ) ) { |
|
| 289 | - return array(); |
|
| 290 | - } |
|
| 238 | + $this->_dirty = false; |
|
| 239 | + } |
|
| 240 | + } |
|
| 241 | + |
|
| 242 | + /** |
|
| 243 | + * Destroy all session data. |
|
| 244 | + */ |
|
| 245 | + public function destroy_session() { |
|
| 246 | + $this->delete_session( $this->_customer_id ); |
|
| 247 | + $this->forget_session(); |
|
| 248 | + } |
|
| 249 | + |
|
| 250 | + /** |
|
| 251 | + * Forget all session data without destroying it. |
|
| 252 | + */ |
|
| 253 | + public function forget_session() { |
|
| 254 | + $this->setcookie( $this->_cookie, '', time() - YEAR_IN_SECONDS, $this->use_secure_cookie(), true ); |
|
| 255 | + |
|
| 256 | + wpinv_empty_cart(); |
|
| 257 | + |
|
| 258 | + $this->_data = array(); |
|
| 259 | + $this->_dirty = false; |
|
| 260 | + $this->_customer_id = $this->generate_customer_id(); |
|
| 261 | + } |
|
| 262 | + |
|
| 263 | + /** |
|
| 264 | + * When a user is logged out, ensure they have a unique nonce by using the customer/session ID. |
|
| 265 | + * |
|
| 266 | + * @param int $uid User ID. |
|
| 267 | + * @return string |
|
| 268 | + */ |
|
| 269 | + public function nonce_user_logged_out( $uid ) { |
|
| 270 | + |
|
| 271 | + // Check if one of our nonces. |
|
| 272 | + if ( substr( $uid, 0, 5 ) === 'wpinv' || substr( $uid, 0, 7 ) === 'getpaid' ) { |
|
| 273 | + return $this->has_session() && $this->_customer_id ? $this->_customer_id : $uid; |
|
| 274 | + } |
|
| 275 | + |
|
| 276 | + return $uid; |
|
| 277 | + } |
|
| 278 | + |
|
| 279 | + /** |
|
| 280 | + * Returns the session. |
|
| 281 | + * |
|
| 282 | + * @param string $customer_id Customer ID. |
|
| 283 | + * @param mixed $default Default session value. |
|
| 284 | + * @return string|array |
|
| 285 | + */ |
|
| 286 | + public function get_session( $customer_id, $default = false ) { |
|
| 287 | + |
|
| 288 | + if ( defined( 'WP_SETUP_CONFIG' ) ) { |
|
| 289 | + return array(); |
|
| 290 | + } |
|
| 291 | 291 | |
| 292 | 292 | $key = $this->generate_key($customer_id); |
| 293 | 293 | $value = get_transient($key); |
@@ -296,30 +296,30 @@ discard block |
||
| 296 | 296 | $value = $default; |
| 297 | 297 | } |
| 298 | 298 | |
| 299 | - return maybe_unserialize( $value ); |
|
| 300 | - } |
|
| 299 | + return maybe_unserialize( $value ); |
|
| 300 | + } |
|
| 301 | 301 | |
| 302 | - /** |
|
| 303 | - * Delete the session from the cache and database. |
|
| 304 | - * |
|
| 305 | - * @param int $customer_id Customer ID. |
|
| 306 | - */ |
|
| 307 | - public function delete_session( $customer_id ) { |
|
| 302 | + /** |
|
| 303 | + * Delete the session from the cache and database. |
|
| 304 | + * |
|
| 305 | + * @param int $customer_id Customer ID. |
|
| 306 | + */ |
|
| 307 | + public function delete_session( $customer_id ) { |
|
| 308 | 308 | |
| 309 | 309 | $key = $this->generate_key($customer_id); |
| 310 | 310 | |
| 311 | - delete_transient($key); |
|
| 312 | - } |
|
| 311 | + delete_transient($key); |
|
| 312 | + } |
|
| 313 | 313 | |
| 314 | - /** |
|
| 315 | - * Update the session expiry timestamp. |
|
| 316 | - * |
|
| 317 | - * @param string $customer_id Customer ID. |
|
| 318 | - * @param int $timestamp Timestamp to expire the cookie. |
|
| 319 | - */ |
|
| 320 | - public function update_session_timestamp( $customer_id, $timestamp ) { |
|
| 314 | + /** |
|
| 315 | + * Update the session expiry timestamp. |
|
| 316 | + * |
|
| 317 | + * @param string $customer_id Customer ID. |
|
| 318 | + * @param int $timestamp Timestamp to expire the cookie. |
|
| 319 | + */ |
|
| 320 | + public function update_session_timestamp( $customer_id, $timestamp ) { |
|
| 321 | 321 | |
| 322 | 322 | set_transient( $this->generate_key($customer_id), maybe_serialize( $this->_data ), $timestamp); |
| 323 | 323 | |
| 324 | - } |
|
| 324 | + } |
|
| 325 | 325 | } |
@@ -43,64 +43,64 @@ discard block |
||
| 43 | 43 | <td class="w-75"> |
| 44 | 44 | <?php |
| 45 | 45 | |
| 46 | - switch ( $key ) { |
|
| 46 | + switch ( $key ) { |
|
| 47 | 47 | |
| 48 | - case 'status': |
|
| 49 | - echo sanitize_text_field( $subscription->get_status_label() ); |
|
| 50 | - break; |
|
| 48 | + case 'status': |
|
| 49 | + echo sanitize_text_field( $subscription->get_status_label() ); |
|
| 50 | + break; |
|
| 51 | 51 | |
| 52 | - case 'start_date': |
|
| 53 | - echo sanitize_text_field( getpaid_format_date_value( $subscription->get_date_created() ) ); |
|
| 54 | - break; |
|
| 52 | + case 'start_date': |
|
| 53 | + echo sanitize_text_field( getpaid_format_date_value( $subscription->get_date_created() ) ); |
|
| 54 | + break; |
|
| 55 | 55 | |
| 56 | - case 'expiry_date': |
|
| 57 | - echo sanitize_text_field( getpaid_format_date_value( $subscription->get_next_renewal_date() ) ); |
|
| 58 | - break; |
|
| 56 | + case 'expiry_date': |
|
| 57 | + echo sanitize_text_field( getpaid_format_date_value( $subscription->get_next_renewal_date() ) ); |
|
| 58 | + break; |
|
| 59 | 59 | |
| 60 | - case 'initial_amount': |
|
| 61 | - echo wpinv_price( $subscription->get_initial_amount(), $subscription->get_parent_payment()->get_currency() ); |
|
| 60 | + case 'initial_amount': |
|
| 61 | + echo wpinv_price( $subscription->get_initial_amount(), $subscription->get_parent_payment()->get_currency() ); |
|
| 62 | 62 | |
| 63 | - if ( $subscription->has_trial_period() ) { |
|
| 63 | + if ( $subscription->has_trial_period() ) { |
|
| 64 | 64 | |
| 65 | - echo "<small class='text-muted'> "; |
|
| 66 | - printf( |
|
| 67 | - _x( '( %1$s trial )', 'Subscription trial period. (e.g.: 1 month trial)', 'invoicing' ), |
|
| 68 | - sanitize_text_field( $subscription->get_trial_period() ) |
|
| 69 | - ); |
|
| 70 | - echo '</small>'; |
|
| 65 | + echo "<small class='text-muted'> "; |
|
| 66 | + printf( |
|
| 67 | + _x( '( %1$s trial )', 'Subscription trial period. (e.g.: 1 month trial)', 'invoicing' ), |
|
| 68 | + sanitize_text_field( $subscription->get_trial_period() ) |
|
| 69 | + ); |
|
| 70 | + echo '</small>'; |
|
| 71 | 71 | |
| 72 | - } |
|
| 72 | + } |
|
| 73 | 73 | |
| 74 | - break; |
|
| 74 | + break; |
|
| 75 | 75 | |
| 76 | - case 'recurring_amount': |
|
| 77 | - $frequency = getpaid_get_subscription_period_label( $subscription->get_period(), $subscription->get_frequency(), '' ); |
|
| 78 | - $amount = wpinv_price( $subscription->get_recurring_amount(), $subscription->get_parent_payment()->get_currency() ); |
|
| 79 | - echo strtolower( "<strong style='font-weight: 500;'>$amount</strong> / <span class='getpaid-item-recurring-period'>$frequency</span>" ); |
|
| 80 | - break; |
|
| 76 | + case 'recurring_amount': |
|
| 77 | + $frequency = getpaid_get_subscription_period_label( $subscription->get_period(), $subscription->get_frequency(), '' ); |
|
| 78 | + $amount = wpinv_price( $subscription->get_recurring_amount(), $subscription->get_parent_payment()->get_currency() ); |
|
| 79 | + echo strtolower( "<strong style='font-weight: 500;'>$amount</strong> / <span class='getpaid-item-recurring-period'>$frequency</span>" ); |
|
| 80 | + break; |
|
| 81 | 81 | |
| 82 | - case 'item': |
|
| 83 | - $item = get_post( $subscription->get_product_id() ); |
|
| 82 | + case 'item': |
|
| 83 | + $item = get_post( $subscription->get_product_id() ); |
|
| 84 | 84 | |
| 85 | - if ( ! empty( $item ) ) { |
|
| 86 | - echo esc_html( get_the_title( $item ) ); |
|
| 87 | - } else { |
|
| 88 | - echo sprintf( __( 'Item #%s', 'invoicing' ), $subscription->get_product_id() ); |
|
| 89 | - } |
|
| 85 | + if ( ! empty( $item ) ) { |
|
| 86 | + echo esc_html( get_the_title( $item ) ); |
|
| 87 | + } else { |
|
| 88 | + echo sprintf( __( 'Item #%s', 'invoicing' ), $subscription->get_product_id() ); |
|
| 89 | + } |
|
| 90 | 90 | |
| 91 | - break; |
|
| 91 | + break; |
|
| 92 | 92 | |
| 93 | - case 'payments': |
|
| 93 | + case 'payments': |
|
| 94 | 94 | |
| 95 | - $max_activations = (int) $subscription->get_bill_times(); |
|
| 96 | - echo (int) $subscription->get_times_billed() . ' / ' . ( empty( $max_activations ) ? "∞" : $max_activations ); |
|
| 95 | + $max_activations = (int) $subscription->get_bill_times(); |
|
| 96 | + echo (int) $subscription->get_times_billed() . ' / ' . ( empty( $max_activations ) ? "∞" : $max_activations ); |
|
| 97 | 97 | |
| 98 | - break; |
|
| 98 | + break; |
|
| 99 | 99 | |
| 100 | - } |
|
| 101 | - do_action( "getpaid_render_single_subscription_column_$key", $subscription ); |
|
| 100 | + } |
|
| 101 | + do_action( "getpaid_render_single_subscription_column_$key", $subscription ); |
|
| 102 | 102 | |
| 103 | - ?> |
|
| 103 | + ?> |
|
| 104 | 104 | </td> |
| 105 | 105 | |
| 106 | 106 | </tr> |
@@ -117,17 +117,17 @@ discard block |
||
| 117 | 117 | <span class="form-text"> |
| 118 | 118 | |
| 119 | 119 | <?php |
| 120 | - if ( $subscription->can_cancel() ) { |
|
| 121 | - printf( |
|
| 122 | - '<a href="%s" class="btn btn-danger btn-sm" onclick="return confirm(\'%s\')">%s</a> ', |
|
| 123 | - esc_url( $subscription->get_cancel_url() ), |
|
| 124 | - esc_attr__( 'Are you sure you want to cancel this subscription?', 'invoicing' ), |
|
| 125 | - __( 'Cancel Subscription', 'invoicing' ) |
|
| 126 | - ); |
|
| 127 | - } |
|
| 128 | - |
|
| 129 | - do_action( 'getpaid-single-subscription-page-actions', $subscription ); |
|
| 130 | - ?> |
|
| 120 | + if ( $subscription->can_cancel() ) { |
|
| 121 | + printf( |
|
| 122 | + '<a href="%s" class="btn btn-danger btn-sm" onclick="return confirm(\'%s\')">%s</a> ', |
|
| 123 | + esc_url( $subscription->get_cancel_url() ), |
|
| 124 | + esc_attr__( 'Are you sure you want to cancel this subscription?', 'invoicing' ), |
|
| 125 | + __( 'Cancel Subscription', 'invoicing' ) |
|
| 126 | + ); |
|
| 127 | + } |
|
| 128 | + |
|
| 129 | + do_action( 'getpaid-single-subscription-page-actions', $subscription ); |
|
| 130 | + ?> |
|
| 131 | 131 | |
| 132 | 132 | <a href="<?php echo esc_url( getpaid_get_tab_url( 'gp-subscriptions', get_permalink( (int) wpinv_get_option( 'invoice_subscription_page' ) ) ) ); ?>" class="btn btn-secondary btn-sm"><?php _e( 'Go Back', 'invoicing' ); ?></a> |
| 133 | 133 | </span> |
| 134 | 134 | \ No newline at end of file |
@@ -13,42 +13,42 @@ |
||
| 13 | 13 | |
| 14 | 14 | foreach ( array_keys( $widget->get_subscriptions_table_columns() ) as $column ) : |
| 15 | 15 | |
| 16 | - $class = sanitize_html_class( $column ); |
|
| 17 | - echo "<td class='getpaid-subscriptions-table-column-$class'>"; |
|
| 16 | + $class = sanitize_html_class( $column ); |
|
| 17 | + echo "<td class='getpaid-subscriptions-table-column-$class'>"; |
|
| 18 | 18 | |
| 19 | - do_action( "getpaid_subscriptions_before_frontend_subscription_table_$column", $subscription ); |
|
| 19 | + do_action( "getpaid_subscriptions_before_frontend_subscription_table_$column", $subscription ); |
|
| 20 | 20 | |
| 21 | - switch( $column ) : |
|
| 21 | + switch( $column ) : |
|
| 22 | 22 | |
| 23 | - case 'subscription': |
|
| 24 | - $subscription_id = (int) $subscription->get_id(); |
|
| 25 | - $url = esc_url( $subscription->get_view_url() ); |
|
| 26 | - $id_label = sprintf( |
|
| 27 | - esc_attr_x( '#%s', 'subscription id', 'invoicing' ), |
|
| 28 | - $subscription->get_id() |
|
| 29 | - ); |
|
| 30 | - echo $widget->add_row_actions( "<a href='$url' class='font-weight-bold text-decoration-none'>$id_label</a>", $subscription ); |
|
| 31 | - break; |
|
| 23 | + case 'subscription': |
|
| 24 | + $subscription_id = (int) $subscription->get_id(); |
|
| 25 | + $url = esc_url( $subscription->get_view_url() ); |
|
| 26 | + $id_label = sprintf( |
|
| 27 | + esc_attr_x( '#%s', 'subscription id', 'invoicing' ), |
|
| 28 | + $subscription->get_id() |
|
| 29 | + ); |
|
| 30 | + echo $widget->add_row_actions( "<a href='$url' class='font-weight-bold text-decoration-none'>$id_label</a>", $subscription ); |
|
| 31 | + break; |
|
| 32 | 32 | |
| 33 | - case 'status': |
|
| 34 | - echo sanitize_text_field( $subscription->get_status_label() ); |
|
| 35 | - break; |
|
| 33 | + case 'status': |
|
| 34 | + echo sanitize_text_field( $subscription->get_status_label() ); |
|
| 35 | + break; |
|
| 36 | 36 | |
| 37 | - case 'renewal-date': |
|
| 38 | - $renewal = getpaid_format_date_value( $subscription->get_next_renewal_date() ); |
|
| 39 | - echo $subscription->is_active() ? sanitize_text_field( $renewal ) : "—"; |
|
| 40 | - break; |
|
| 37 | + case 'renewal-date': |
|
| 38 | + $renewal = getpaid_format_date_value( $subscription->get_next_renewal_date() ); |
|
| 39 | + echo $subscription->is_active() ? sanitize_text_field( $renewal ) : "—"; |
|
| 40 | + break; |
|
| 41 | 41 | |
| 42 | - case 'amount': |
|
| 43 | - $frequency = getpaid_get_subscription_period_label( $subscription->get_period(), $subscription->get_frequency(), '' ); |
|
| 44 | - $amount = wpinv_price( $subscription->get_recurring_amount(), $subscription->get_parent_payment()->get_currency() ); |
|
| 45 | - echo wp_kses_post( "<span>$amount</span> / <span class='getpaid-item-recurring-period'>$frequency</span>" ); |
|
| 46 | - break; |
|
| 42 | + case 'amount': |
|
| 43 | + $frequency = getpaid_get_subscription_period_label( $subscription->get_period(), $subscription->get_frequency(), '' ); |
|
| 44 | + $amount = wpinv_price( $subscription->get_recurring_amount(), $subscription->get_parent_payment()->get_currency() ); |
|
| 45 | + echo wp_kses_post( "<span>$amount</span> / <span class='getpaid-item-recurring-period'>$frequency</span>" ); |
|
| 46 | + break; |
|
| 47 | 47 | |
| 48 | - endswitch; |
|
| 48 | + endswitch; |
|
| 49 | 49 | |
| 50 | - do_action( "getpaid_subscriptions_frontend_subscription_table_$column", $subscription ); |
|
| 50 | + do_action( "getpaid_subscriptions_frontend_subscription_table_$column", $subscription ); |
|
| 51 | 51 | |
| 52 | - echo '</td>'; |
|
| 52 | + echo '</td>'; |
|
| 53 | 53 | |
| 54 | 54 | endforeach; |
@@ -1,6 +1,6 @@ discard block |
||
| 1 | 1 | <?php |
| 2 | 2 | if ( ! defined( 'ABSPATH' ) ) { |
| 3 | - exit; |
|
| 3 | + exit; |
|
| 4 | 4 | } |
| 5 | 5 | |
| 6 | 6 | /** |
@@ -20,23 +20,23 @@ discard block |
||
| 20 | 20 | public $templates_url; |
| 21 | 21 | |
| 22 | 22 | /** |
| 23 | - * Class constructor. |
|
| 24 | - * |
|
| 25 | - * @since 1.0.19 |
|
| 26 | - */ |
|
| 27 | - public function __construct() { |
|
| 23 | + * Class constructor. |
|
| 24 | + * |
|
| 25 | + * @since 1.0.19 |
|
| 26 | + */ |
|
| 27 | + public function __construct() { |
|
| 28 | 28 | |
| 29 | 29 | $this->templates_dir = apply_filters( 'getpaid_default_templates_dir', WPINV_PLUGIN_DIR . 'templates' ); |
| 30 | 30 | $this->templates_url = apply_filters( 'getpaid_default_templates_url', WPINV_PLUGIN_URL . 'templates' ); |
| 31 | 31 | } |
| 32 | 32 | |
| 33 | 33 | /** |
| 34 | - * Checks if this is a preview page |
|
| 35 | - * |
|
| 36 | - * @since 1.0.19 |
|
| 37 | - * @return bool |
|
| 38 | - */ |
|
| 39 | - public function is_preview() { |
|
| 34 | + * Checks if this is a preview page |
|
| 35 | + * |
|
| 36 | + * @since 1.0.19 |
|
| 37 | + * @return bool |
|
| 38 | + */ |
|
| 39 | + public function is_preview() { |
|
| 40 | 40 | return |
| 41 | 41 | $this->is_divi_preview() || |
| 42 | 42 | $this->is_elementor_preview() || |
@@ -48,73 +48,73 @@ discard block |
||
| 48 | 48 | } |
| 49 | 49 | |
| 50 | 50 | /** |
| 51 | - * Checks if this is an elementor preview page |
|
| 52 | - * |
|
| 53 | - * @since 1.0.19 |
|
| 54 | - * @return bool |
|
| 55 | - */ |
|
| 56 | - public function is_elementor_preview() { |
|
| 57 | - return isset( $_REQUEST['elementor-preview'] ) || ( is_admin() && isset( $_REQUEST['action'] ) && $_REQUEST['action'] == 'elementor' ) || ( isset( $_REQUEST['action'] ) && $_REQUEST['action'] == 'elementor_ajax' ); |
|
| 58 | - } |
|
| 59 | - |
|
| 60 | - /** |
|
| 61 | - * Checks if this is a DIVI preview page |
|
| 62 | - * |
|
| 63 | - * @since 1.0.19 |
|
| 64 | - * @return bool |
|
| 65 | - */ |
|
| 66 | - public function is_divi_preview() { |
|
| 67 | - return isset( $_REQUEST['et_fb'] ) || isset( $_REQUEST['et_pb_preview'] ) || ( is_admin() && isset( $_REQUEST['action'] ) && $_REQUEST['action'] == 'et_pb' ); |
|
| 68 | - } |
|
| 69 | - |
|
| 70 | - /** |
|
| 71 | - * Checks if this is a beaver builder preview page |
|
| 72 | - * |
|
| 73 | - * @since 1.0.19 |
|
| 74 | - * @return bool |
|
| 75 | - */ |
|
| 76 | - public function is_beaver_preview() { |
|
| 77 | - return isset( $_REQUEST['fl_builder'] ); |
|
| 78 | - } |
|
| 79 | - |
|
| 80 | - /** |
|
| 81 | - * Checks if this is a siteorigin builder preview page |
|
| 82 | - * |
|
| 83 | - * @since 1.0.19 |
|
| 84 | - * @return bool |
|
| 85 | - */ |
|
| 86 | - public function is_siteorigin_preview() { |
|
| 87 | - return ! empty( $_REQUEST['siteorigin_panels_live_editor'] ); |
|
| 88 | - } |
|
| 89 | - |
|
| 90 | - /** |
|
| 91 | - * Checks if this is a cornerstone builder preview page |
|
| 92 | - * |
|
| 93 | - * @since 1.0.19 |
|
| 94 | - * @return bool |
|
| 95 | - */ |
|
| 96 | - public function is_cornerstone_preview() { |
|
| 97 | - return ! empty( $_REQUEST['cornerstone_preview'] ) || basename( $_SERVER['REQUEST_URI'] ) == 'cornerstone-endpoint'; |
|
| 98 | - } |
|
| 99 | - |
|
| 100 | - /** |
|
| 101 | - * Checks if this is a fusion builder preview page |
|
| 102 | - * |
|
| 103 | - * @since 1.0.19 |
|
| 104 | - * @return bool |
|
| 105 | - */ |
|
| 106 | - public function is_fusion_preview() { |
|
| 107 | - return ! empty( $_REQUEST['fb-edit'] ) || ! empty( $_REQUEST['fusion_load_nonce'] ); |
|
| 108 | - } |
|
| 109 | - |
|
| 110 | - /** |
|
| 111 | - * Checks if this is an oxygen builder preview page |
|
| 112 | - * |
|
| 113 | - * @since 1.0.19 |
|
| 114 | - * @return bool |
|
| 115 | - */ |
|
| 116 | - public function is_oxygen_preview() { |
|
| 117 | - return ! empty( $_REQUEST['ct_builder'] ) || ( ! empty( $_REQUEST['action'] ) && ( substr( $_REQUEST['action'], 0, 11 ) === "oxy_render_" || substr( $_REQUEST['action'], 0, 10 ) === "ct_render_" ) ); |
|
| 51 | + * Checks if this is an elementor preview page |
|
| 52 | + * |
|
| 53 | + * @since 1.0.19 |
|
| 54 | + * @return bool |
|
| 55 | + */ |
|
| 56 | + public function is_elementor_preview() { |
|
| 57 | + return isset( $_REQUEST['elementor-preview'] ) || ( is_admin() && isset( $_REQUEST['action'] ) && $_REQUEST['action'] == 'elementor' ) || ( isset( $_REQUEST['action'] ) && $_REQUEST['action'] == 'elementor_ajax' ); |
|
| 58 | + } |
|
| 59 | + |
|
| 60 | + /** |
|
| 61 | + * Checks if this is a DIVI preview page |
|
| 62 | + * |
|
| 63 | + * @since 1.0.19 |
|
| 64 | + * @return bool |
|
| 65 | + */ |
|
| 66 | + public function is_divi_preview() { |
|
| 67 | + return isset( $_REQUEST['et_fb'] ) || isset( $_REQUEST['et_pb_preview'] ) || ( is_admin() && isset( $_REQUEST['action'] ) && $_REQUEST['action'] == 'et_pb' ); |
|
| 68 | + } |
|
| 69 | + |
|
| 70 | + /** |
|
| 71 | + * Checks if this is a beaver builder preview page |
|
| 72 | + * |
|
| 73 | + * @since 1.0.19 |
|
| 74 | + * @return bool |
|
| 75 | + */ |
|
| 76 | + public function is_beaver_preview() { |
|
| 77 | + return isset( $_REQUEST['fl_builder'] ); |
|
| 78 | + } |
|
| 79 | + |
|
| 80 | + /** |
|
| 81 | + * Checks if this is a siteorigin builder preview page |
|
| 82 | + * |
|
| 83 | + * @since 1.0.19 |
|
| 84 | + * @return bool |
|
| 85 | + */ |
|
| 86 | + public function is_siteorigin_preview() { |
|
| 87 | + return ! empty( $_REQUEST['siteorigin_panels_live_editor'] ); |
|
| 88 | + } |
|
| 89 | + |
|
| 90 | + /** |
|
| 91 | + * Checks if this is a cornerstone builder preview page |
|
| 92 | + * |
|
| 93 | + * @since 1.0.19 |
|
| 94 | + * @return bool |
|
| 95 | + */ |
|
| 96 | + public function is_cornerstone_preview() { |
|
| 97 | + return ! empty( $_REQUEST['cornerstone_preview'] ) || basename( $_SERVER['REQUEST_URI'] ) == 'cornerstone-endpoint'; |
|
| 98 | + } |
|
| 99 | + |
|
| 100 | + /** |
|
| 101 | + * Checks if this is a fusion builder preview page |
|
| 102 | + * |
|
| 103 | + * @since 1.0.19 |
|
| 104 | + * @return bool |
|
| 105 | + */ |
|
| 106 | + public function is_fusion_preview() { |
|
| 107 | + return ! empty( $_REQUEST['fb-edit'] ) || ! empty( $_REQUEST['fusion_load_nonce'] ); |
|
| 108 | + } |
|
| 109 | + |
|
| 110 | + /** |
|
| 111 | + * Checks if this is an oxygen builder preview page |
|
| 112 | + * |
|
| 113 | + * @since 1.0.19 |
|
| 114 | + * @return bool |
|
| 115 | + */ |
|
| 116 | + public function is_oxygen_preview() { |
|
| 117 | + return ! empty( $_REQUEST['ct_builder'] ) || ( ! empty( $_REQUEST['action'] ) && ( substr( $_REQUEST['action'], 0, 11 ) === "oxy_render_" || substr( $_REQUEST['action'], 0, 10 ) === "ct_render_" ) ); |
|
| 118 | 118 | } |
| 119 | 119 | |
| 120 | 120 | /** |
@@ -124,7 +124,7 @@ discard block |
||
| 124 | 124 | * @param string $template_path The template path relative to the theme's root dir. Defaults to 'invoicing'. |
| 125 | 125 | * @param string $default_path The root path to the default template. Defaults to invoicing/templates |
| 126 | 126 | */ |
| 127 | - public function locate_template( $template_name, $template_path = '', $default_path = '' ) { |
|
| 127 | + public function locate_template( $template_name, $template_path = '', $default_path = '' ) { |
|
| 128 | 128 | |
| 129 | 129 | // Load the defaults for the template path and default path. |
| 130 | 130 | $template_path = empty( $template_path ) ? 'invoicing' : $template_path; |
@@ -145,22 +145,22 @@ discard block |
||
| 145 | 145 | } |
| 146 | 146 | |
| 147 | 147 | /** |
| 148 | - * Loads a template |
|
| 149 | - * |
|
| 150 | - * @since 1.0.19 |
|
| 151 | - * @return bool |
|
| 152 | - */ |
|
| 153 | - protected function load_template( $template_name, $template_path, $args ) { |
|
| 148 | + * Loads a template |
|
| 149 | + * |
|
| 150 | + * @since 1.0.19 |
|
| 151 | + * @return bool |
|
| 152 | + */ |
|
| 153 | + protected function load_template( $template_name, $template_path, $args ) { |
|
| 154 | 154 | |
| 155 | 155 | if ( is_array( $args ) ){ |
| 156 | 156 | extract( $args ); |
| 157 | 157 | } |
| 158 | 158 | |
| 159 | 159 | // Fires before loading a template. |
| 160 | - do_action( 'wpinv_before_template_part', $template_name, $template_path, $args ); |
|
| 160 | + do_action( 'wpinv_before_template_part', $template_name, $template_path, $args ); |
|
| 161 | 161 | |
| 162 | 162 | // Load the template. |
| 163 | - include( $template_path ); |
|
| 163 | + include( $template_path ); |
|
| 164 | 164 | |
| 165 | 165 | // Fires after loading a template. |
| 166 | 166 | do_action( 'wpinv_after_template_part', $template_name, $template_path, $args ); |
@@ -177,7 +177,7 @@ discard block |
||
| 177 | 177 | * @param string $template_path The templates directory relative to the theme's root dir. Defaults to 'invoicing'. |
| 178 | 178 | * @param string $default_path The root path to the default template. Defaults to invoicing/templates |
| 179 | 179 | */ |
| 180 | - public function display_template( $template_name, $args = array(), $template_path = '', $default_path = '' ) { |
|
| 180 | + public function display_template( $template_name, $args = array(), $template_path = '', $default_path = '' ) { |
|
| 181 | 181 | |
| 182 | 182 | // Locate the template. |
| 183 | 183 | $located = $this->locate_template( $template_name, $template_path, $default_path ); |
@@ -202,7 +202,7 @@ discard block |
||
| 202 | 202 | * @param string $template_path The templates directory relative to the theme's root dir. Defaults to 'invoicing'. |
| 203 | 203 | * @param string $default_path The root path to the default template. Defaults to invoicing/templates |
| 204 | 204 | */ |
| 205 | - public function get_template( $template_name, $args = array(), $template_path = '', $default_path = '' ) { |
|
| 205 | + public function get_template( $template_name, $args = array(), $template_path = '', $default_path = '' ) { |
|
| 206 | 206 | ob_start(); |
| 207 | 207 | $this->display_template( $template_name, $args, $template_path, $default_path ); |
| 208 | 208 | return ob_get_clean(); |
@@ -12,436 +12,436 @@ |
||
| 12 | 12 | */ |
| 13 | 13 | class GetPaid_Paypal_Gateway_IPN_Handler { |
| 14 | 14 | |
| 15 | - /** |
|
| 16 | - * Payment method id. |
|
| 17 | - * |
|
| 18 | - * @var string |
|
| 19 | - */ |
|
| 20 | - protected $id = 'paypal'; |
|
| 21 | - |
|
| 22 | - /** |
|
| 23 | - * Payment method object. |
|
| 24 | - * |
|
| 25 | - * @var GetPaid_Paypal_Gateway |
|
| 26 | - */ |
|
| 27 | - protected $gateway; |
|
| 28 | - |
|
| 29 | - /** |
|
| 30 | - * Class constructor. |
|
| 31 | - * |
|
| 32 | - * @param GetPaid_Paypal_Gateway $gateway |
|
| 33 | - */ |
|
| 34 | - public function __construct( $gateway ) { |
|
| 35 | - $this->gateway = $gateway; |
|
| 36 | - $this->verify_ipn(); |
|
| 37 | - } |
|
| 38 | - |
|
| 39 | - /** |
|
| 40 | - * Processes ipns and marks payments as complete. |
|
| 41 | - * |
|
| 42 | - * @return void |
|
| 43 | - */ |
|
| 44 | - public function verify_ipn() { |
|
| 45 | - |
|
| 46 | - wpinv_error_log( 'GetPaid PayPal IPN Handler', false ); |
|
| 47 | - |
|
| 48 | - // Validate the IPN. |
|
| 49 | - if ( empty( $_POST ) || ! $this->validate_ipn() ) { |
|
| 50 | - wp_die( 'PayPal IPN Request Failure', 500 ); |
|
| 51 | - } |
|
| 52 | - |
|
| 53 | - // Process the IPN. |
|
| 54 | - $posted = wp_unslash( $_POST ); |
|
| 55 | - $invoice = $this->get_ipn_invoice( $posted ); |
|
| 56 | - |
|
| 57 | - // Abort if it was not paid by our gateway. |
|
| 58 | - if ( $this->id != $invoice->get_gateway() ) { |
|
| 59 | - wpinv_error_log( 'Aborting, Invoice was not paid via PayPal', false ); |
|
| 60 | - wp_die( 'Invoice not paid via PayPal', 500 ); |
|
| 61 | - } |
|
| 62 | - |
|
| 63 | - $posted['payment_status'] = isset( $posted['payment_status'] ) ? sanitize_key( strtolower( $posted['payment_status'] ) ) : ''; |
|
| 64 | - $posted['txn_type'] = sanitize_key( strtolower( $posted['txn_type'] ) ); |
|
| 65 | - |
|
| 66 | - wpinv_error_log( 'Payment status:' . $posted['payment_status'], false ); |
|
| 67 | - wpinv_error_log( 'IPN Type:' . $posted['txn_type'], false ); |
|
| 68 | - |
|
| 69 | - if ( method_exists( $this, 'ipn_txn_' . $posted['txn_type'] ) ) { |
|
| 70 | - call_user_func( array( $this, 'ipn_txn_' . $posted['txn_type'] ), $invoice, $posted ); |
|
| 71 | - wpinv_error_log( 'Done processing IPN', false ); |
|
| 72 | - wp_die( 'Processed', 200 ); |
|
| 73 | - } |
|
| 74 | - |
|
| 75 | - wpinv_error_log( 'Aborting, Unsupported IPN type:' . $posted['txn_type'], false ); |
|
| 76 | - wp_die( 'Unsupported IPN type', 200 ); |
|
| 77 | - |
|
| 78 | - } |
|
| 79 | - |
|
| 80 | - /** |
|
| 81 | - * Retrieves IPN Invoice. |
|
| 82 | - * |
|
| 83 | - * @param array $posted |
|
| 84 | - * @return WPInv_Invoice |
|
| 85 | - */ |
|
| 86 | - protected function get_ipn_invoice( $posted ) { |
|
| 87 | - |
|
| 88 | - wpinv_error_log( 'Retrieving PayPal IPN Response Invoice', false ); |
|
| 89 | - |
|
| 90 | - if ( ! empty( $posted['custom'] ) ) { |
|
| 91 | - $invoice = new WPInv_Invoice( $posted['custom'] ); |
|
| 92 | - |
|
| 93 | - if ( $invoice->exists() ) { |
|
| 94 | - wpinv_error_log( 'Found invoice #' . $invoice->get_number(), false ); |
|
| 95 | - return $invoice; |
|
| 96 | - } |
|
| 97 | - |
|
| 98 | - } |
|
| 99 | - |
|
| 100 | - wpinv_error_log( 'Could not retrieve the associated invoice.', false ); |
|
| 101 | - wp_die( 'Could not retrieve the associated invoice.', 500 ); |
|
| 102 | - } |
|
| 103 | - |
|
| 104 | - /** |
|
| 105 | - * Check PayPal IPN validity. |
|
| 106 | - */ |
|
| 107 | - protected function validate_ipn() { |
|
| 108 | - |
|
| 109 | - wpinv_error_log( 'Validating PayPal IPN response', false ); |
|
| 110 | - |
|
| 111 | - // Retrieve the associated invoice. |
|
| 112 | - $posted = wp_unslash( $_POST ); |
|
| 113 | - $invoice = $this->get_ipn_invoice( $posted ); |
|
| 114 | - |
|
| 115 | - if ( $this->gateway->is_sandbox( $invoice ) ) { |
|
| 116 | - wpinv_error_log( $posted, 'Invoice was processed in sandbox hence logging the posted data' ); |
|
| 117 | - } |
|
| 118 | - |
|
| 119 | - // Validate the IPN. |
|
| 120 | - $posted['cmd'] = '_notify-validate'; |
|
| 121 | - |
|
| 122 | - // Send back post vars to paypal. |
|
| 123 | - $params = array( |
|
| 124 | - 'body' => $posted, |
|
| 125 | - 'timeout' => 60, |
|
| 126 | - 'httpversion' => '1.1', |
|
| 127 | - 'compress' => false, |
|
| 128 | - 'decompress' => false, |
|
| 129 | - 'user-agent' => 'GetPaid/' . WPINV_VERSION, |
|
| 130 | - ); |
|
| 131 | - |
|
| 132 | - // Post back to get a response. |
|
| 133 | - $response = wp_safe_remote_post( $this->gateway->is_sandbox( $invoice ) ? 'https://www.sandbox.paypal.com/cgi-bin/webscr' : 'https://www.paypal.com/cgi-bin/webscr', $params ); |
|
| 134 | - |
|
| 135 | - // Check to see if the request was valid. |
|
| 136 | - if ( ! is_wp_error( $response ) && $response['response']['code'] < 300 && strstr( $response['body'], 'VERIFIED' ) ) { |
|
| 137 | - wpinv_error_log( $response['body'], 'Received valid response from PayPal IPN' ); |
|
| 138 | - return true; |
|
| 139 | - } |
|
| 140 | - |
|
| 141 | - if ( is_wp_error( $response ) ) { |
|
| 142 | - wpinv_error_log( $response->get_error_message(), 'Received invalid response from PayPal IPN' ); |
|
| 143 | - return false; |
|
| 144 | - } |
|
| 15 | + /** |
|
| 16 | + * Payment method id. |
|
| 17 | + * |
|
| 18 | + * @var string |
|
| 19 | + */ |
|
| 20 | + protected $id = 'paypal'; |
|
| 21 | + |
|
| 22 | + /** |
|
| 23 | + * Payment method object. |
|
| 24 | + * |
|
| 25 | + * @var GetPaid_Paypal_Gateway |
|
| 26 | + */ |
|
| 27 | + protected $gateway; |
|
| 28 | + |
|
| 29 | + /** |
|
| 30 | + * Class constructor. |
|
| 31 | + * |
|
| 32 | + * @param GetPaid_Paypal_Gateway $gateway |
|
| 33 | + */ |
|
| 34 | + public function __construct( $gateway ) { |
|
| 35 | + $this->gateway = $gateway; |
|
| 36 | + $this->verify_ipn(); |
|
| 37 | + } |
|
| 38 | + |
|
| 39 | + /** |
|
| 40 | + * Processes ipns and marks payments as complete. |
|
| 41 | + * |
|
| 42 | + * @return void |
|
| 43 | + */ |
|
| 44 | + public function verify_ipn() { |
|
| 45 | + |
|
| 46 | + wpinv_error_log( 'GetPaid PayPal IPN Handler', false ); |
|
| 47 | + |
|
| 48 | + // Validate the IPN. |
|
| 49 | + if ( empty( $_POST ) || ! $this->validate_ipn() ) { |
|
| 50 | + wp_die( 'PayPal IPN Request Failure', 500 ); |
|
| 51 | + } |
|
| 52 | + |
|
| 53 | + // Process the IPN. |
|
| 54 | + $posted = wp_unslash( $_POST ); |
|
| 55 | + $invoice = $this->get_ipn_invoice( $posted ); |
|
| 56 | + |
|
| 57 | + // Abort if it was not paid by our gateway. |
|
| 58 | + if ( $this->id != $invoice->get_gateway() ) { |
|
| 59 | + wpinv_error_log( 'Aborting, Invoice was not paid via PayPal', false ); |
|
| 60 | + wp_die( 'Invoice not paid via PayPal', 500 ); |
|
| 61 | + } |
|
| 62 | + |
|
| 63 | + $posted['payment_status'] = isset( $posted['payment_status'] ) ? sanitize_key( strtolower( $posted['payment_status'] ) ) : ''; |
|
| 64 | + $posted['txn_type'] = sanitize_key( strtolower( $posted['txn_type'] ) ); |
|
| 65 | + |
|
| 66 | + wpinv_error_log( 'Payment status:' . $posted['payment_status'], false ); |
|
| 67 | + wpinv_error_log( 'IPN Type:' . $posted['txn_type'], false ); |
|
| 68 | + |
|
| 69 | + if ( method_exists( $this, 'ipn_txn_' . $posted['txn_type'] ) ) { |
|
| 70 | + call_user_func( array( $this, 'ipn_txn_' . $posted['txn_type'] ), $invoice, $posted ); |
|
| 71 | + wpinv_error_log( 'Done processing IPN', false ); |
|
| 72 | + wp_die( 'Processed', 200 ); |
|
| 73 | + } |
|
| 74 | + |
|
| 75 | + wpinv_error_log( 'Aborting, Unsupported IPN type:' . $posted['txn_type'], false ); |
|
| 76 | + wp_die( 'Unsupported IPN type', 200 ); |
|
| 77 | + |
|
| 78 | + } |
|
| 79 | + |
|
| 80 | + /** |
|
| 81 | + * Retrieves IPN Invoice. |
|
| 82 | + * |
|
| 83 | + * @param array $posted |
|
| 84 | + * @return WPInv_Invoice |
|
| 85 | + */ |
|
| 86 | + protected function get_ipn_invoice( $posted ) { |
|
| 87 | + |
|
| 88 | + wpinv_error_log( 'Retrieving PayPal IPN Response Invoice', false ); |
|
| 89 | + |
|
| 90 | + if ( ! empty( $posted['custom'] ) ) { |
|
| 91 | + $invoice = new WPInv_Invoice( $posted['custom'] ); |
|
| 92 | + |
|
| 93 | + if ( $invoice->exists() ) { |
|
| 94 | + wpinv_error_log( 'Found invoice #' . $invoice->get_number(), false ); |
|
| 95 | + return $invoice; |
|
| 96 | + } |
|
| 97 | + |
|
| 98 | + } |
|
| 99 | + |
|
| 100 | + wpinv_error_log( 'Could not retrieve the associated invoice.', false ); |
|
| 101 | + wp_die( 'Could not retrieve the associated invoice.', 500 ); |
|
| 102 | + } |
|
| 103 | + |
|
| 104 | + /** |
|
| 105 | + * Check PayPal IPN validity. |
|
| 106 | + */ |
|
| 107 | + protected function validate_ipn() { |
|
| 108 | + |
|
| 109 | + wpinv_error_log( 'Validating PayPal IPN response', false ); |
|
| 110 | + |
|
| 111 | + // Retrieve the associated invoice. |
|
| 112 | + $posted = wp_unslash( $_POST ); |
|
| 113 | + $invoice = $this->get_ipn_invoice( $posted ); |
|
| 114 | + |
|
| 115 | + if ( $this->gateway->is_sandbox( $invoice ) ) { |
|
| 116 | + wpinv_error_log( $posted, 'Invoice was processed in sandbox hence logging the posted data' ); |
|
| 117 | + } |
|
| 118 | + |
|
| 119 | + // Validate the IPN. |
|
| 120 | + $posted['cmd'] = '_notify-validate'; |
|
| 121 | + |
|
| 122 | + // Send back post vars to paypal. |
|
| 123 | + $params = array( |
|
| 124 | + 'body' => $posted, |
|
| 125 | + 'timeout' => 60, |
|
| 126 | + 'httpversion' => '1.1', |
|
| 127 | + 'compress' => false, |
|
| 128 | + 'decompress' => false, |
|
| 129 | + 'user-agent' => 'GetPaid/' . WPINV_VERSION, |
|
| 130 | + ); |
|
| 131 | + |
|
| 132 | + // Post back to get a response. |
|
| 133 | + $response = wp_safe_remote_post( $this->gateway->is_sandbox( $invoice ) ? 'https://www.sandbox.paypal.com/cgi-bin/webscr' : 'https://www.paypal.com/cgi-bin/webscr', $params ); |
|
| 134 | + |
|
| 135 | + // Check to see if the request was valid. |
|
| 136 | + if ( ! is_wp_error( $response ) && $response['response']['code'] < 300 && strstr( $response['body'], 'VERIFIED' ) ) { |
|
| 137 | + wpinv_error_log( $response['body'], 'Received valid response from PayPal IPN' ); |
|
| 138 | + return true; |
|
| 139 | + } |
|
| 140 | + |
|
| 141 | + if ( is_wp_error( $response ) ) { |
|
| 142 | + wpinv_error_log( $response->get_error_message(), 'Received invalid response from PayPal IPN' ); |
|
| 143 | + return false; |
|
| 144 | + } |
|
| 145 | 145 | |
| 146 | - wpinv_error_log( $response['body'], 'Received invalid response from PayPal IPN' ); |
|
| 147 | - return false; |
|
| 148 | - |
|
| 149 | - } |
|
| 146 | + wpinv_error_log( $response['body'], 'Received invalid response from PayPal IPN' ); |
|
| 147 | + return false; |
|
| 148 | + |
|
| 149 | + } |
|
| 150 | 150 | |
| 151 | - /** |
|
| 152 | - * Check currency from IPN matches the invoice. |
|
| 153 | - * |
|
| 154 | - * @param WPInv_Invoice $invoice Invoice object. |
|
| 155 | - * @param string $currency currency to validate. |
|
| 156 | - */ |
|
| 157 | - protected function validate_ipn_currency( $invoice, $currency ) { |
|
| 151 | + /** |
|
| 152 | + * Check currency from IPN matches the invoice. |
|
| 153 | + * |
|
| 154 | + * @param WPInv_Invoice $invoice Invoice object. |
|
| 155 | + * @param string $currency currency to validate. |
|
| 156 | + */ |
|
| 157 | + protected function validate_ipn_currency( $invoice, $currency ) { |
|
| 158 | 158 | |
| 159 | - if ( strtolower( $invoice->get_currency() ) !== strtolower( $currency ) ) { |
|
| 159 | + if ( strtolower( $invoice->get_currency() ) !== strtolower( $currency ) ) { |
|
| 160 | 160 | |
| 161 | - /* translators: %s: currency code. */ |
|
| 162 | - $invoice->update_status( 'wpi-processing', sprintf( __( 'Validation error: PayPal currencies do not match (code %s).', 'invoicing' ), $currency ) ); |
|
| 161 | + /* translators: %s: currency code. */ |
|
| 162 | + $invoice->update_status( 'wpi-processing', sprintf( __( 'Validation error: PayPal currencies do not match (code %s).', 'invoicing' ), $currency ) ); |
|
| 163 | 163 | |
| 164 | - wpinv_error_log( "Currencies do not match: {$currency} instead of {$invoice->get_currency()}", 'IPN Error', __FILE__, __LINE__, true ); |
|
| 165 | - } |
|
| 164 | + wpinv_error_log( "Currencies do not match: {$currency} instead of {$invoice->get_currency()}", 'IPN Error', __FILE__, __LINE__, true ); |
|
| 165 | + } |
|
| 166 | 166 | |
| 167 | - wpinv_error_log( $currency, 'Validated IPN Currency' ); |
|
| 168 | - } |
|
| 167 | + wpinv_error_log( $currency, 'Validated IPN Currency' ); |
|
| 168 | + } |
|
| 169 | 169 | |
| 170 | - /** |
|
| 171 | - * Check payment amount from IPN matches the invoice. |
|
| 172 | - * |
|
| 173 | - * @param WPInv_Invoice $invoice Invoice object. |
|
| 174 | - * @param float $amount amount to validate. |
|
| 175 | - */ |
|
| 176 | - protected function validate_ipn_amount( $invoice, $amount ) { |
|
| 177 | - if ( number_format( $invoice->get_total(), 2, '.', '' ) !== number_format( $amount, 2, '.', '' ) ) { |
|
| 170 | + /** |
|
| 171 | + * Check payment amount from IPN matches the invoice. |
|
| 172 | + * |
|
| 173 | + * @param WPInv_Invoice $invoice Invoice object. |
|
| 174 | + * @param float $amount amount to validate. |
|
| 175 | + */ |
|
| 176 | + protected function validate_ipn_amount( $invoice, $amount ) { |
|
| 177 | + if ( number_format( $invoice->get_total(), 2, '.', '' ) !== number_format( $amount, 2, '.', '' ) ) { |
|
| 178 | 178 | |
| 179 | - /* translators: %s: Amount. */ |
|
| 180 | - $invoice->update_status( 'wpi-processing', sprintf( __( 'Validation error: PayPal amounts do not match (gross %s).', 'invoicing' ), $amount ) ); |
|
| 179 | + /* translators: %s: Amount. */ |
|
| 180 | + $invoice->update_status( 'wpi-processing', sprintf( __( 'Validation error: PayPal amounts do not match (gross %s).', 'invoicing' ), $amount ) ); |
|
| 181 | 181 | |
| 182 | - wpinv_error_log( "Amounts do not match: {$amount} instead of {$invoice->get_total()}", 'IPN Error', __FILE__, __LINE__, true ); |
|
| 183 | - } |
|
| 182 | + wpinv_error_log( "Amounts do not match: {$amount} instead of {$invoice->get_total()}", 'IPN Error', __FILE__, __LINE__, true ); |
|
| 183 | + } |
|
| 184 | 184 | |
| 185 | - wpinv_error_log( $amount, 'Validated IPN Amount' ); |
|
| 186 | - } |
|
| 185 | + wpinv_error_log( $amount, 'Validated IPN Amount' ); |
|
| 186 | + } |
|
| 187 | 187 | |
| 188 | - /** |
|
| 189 | - * Verify receiver email from PayPal. |
|
| 190 | - * |
|
| 191 | - * @param WPInv_Invoice $invoice Invoice object. |
|
| 192 | - * @param string $receiver_email Email to validate. |
|
| 193 | - */ |
|
| 194 | - protected function validate_ipn_receiver_email( $invoice, $receiver_email ) { |
|
| 195 | - $paypal_email = wpinv_get_option( 'paypal_email' ); |
|
| 188 | + /** |
|
| 189 | + * Verify receiver email from PayPal. |
|
| 190 | + * |
|
| 191 | + * @param WPInv_Invoice $invoice Invoice object. |
|
| 192 | + * @param string $receiver_email Email to validate. |
|
| 193 | + */ |
|
| 194 | + protected function validate_ipn_receiver_email( $invoice, $receiver_email ) { |
|
| 195 | + $paypal_email = wpinv_get_option( 'paypal_email' ); |
|
| 196 | 196 | |
| 197 | - if ( strcasecmp( trim( $receiver_email ), trim( $paypal_email ) ) !== 0 ) { |
|
| 198 | - wpinv_record_gateway_error( 'IPN Error', "IPN Response is for another account: {$receiver_email}. Your email is {$paypal_email}" ); |
|
| 197 | + if ( strcasecmp( trim( $receiver_email ), trim( $paypal_email ) ) !== 0 ) { |
|
| 198 | + wpinv_record_gateway_error( 'IPN Error', "IPN Response is for another account: {$receiver_email}. Your email is {$paypal_email}" ); |
|
| 199 | 199 | |
| 200 | - /* translators: %s: email address . */ |
|
| 201 | - $invoice->update_status( 'wpi-processing', sprintf( __( 'Validation error: PayPal IPN response from a different email address (%s).', 'invoicing' ), $receiver_email ) ); |
|
| 200 | + /* translators: %s: email address . */ |
|
| 201 | + $invoice->update_status( 'wpi-processing', sprintf( __( 'Validation error: PayPal IPN response from a different email address (%s).', 'invoicing' ), $receiver_email ) ); |
|
| 202 | 202 | |
| 203 | - return wpinv_error_log( "IPN Response is for another account: {$receiver_email}. Your email is {$paypal_email}", 'IPN Error', __FILE__, __LINE__, true ); |
|
| 204 | - } |
|
| 203 | + return wpinv_error_log( "IPN Response is for another account: {$receiver_email}. Your email is {$paypal_email}", 'IPN Error', __FILE__, __LINE__, true ); |
|
| 204 | + } |
|
| 205 | 205 | |
| 206 | - wpinv_error_log( 'Validated PayPal Email', false ); |
|
| 207 | - } |
|
| 206 | + wpinv_error_log( 'Validated PayPal Email', false ); |
|
| 207 | + } |
|
| 208 | 208 | |
| 209 | - /** |
|
| 210 | - * Handles one time payments. |
|
| 211 | - * |
|
| 212 | - * @param WPInv_Invoice $invoice Invoice object. |
|
| 213 | - * @param array $posted Posted data. |
|
| 214 | - */ |
|
| 215 | - protected function ipn_txn_web_accept( $invoice, $posted ) { |
|
| 216 | - |
|
| 217 | - // Collect payment details |
|
| 218 | - $payment_status = strtolower( $posted['payment_status'] ); |
|
| 219 | - $business_email = isset( $posted['business'] ) && is_email( $posted['business'] ) ? trim( $posted['business'] ) : trim( $posted['receiver_email'] ); |
|
| 220 | - |
|
| 221 | - $this->validate_ipn_receiver_email( $invoice, $business_email ); |
|
| 222 | - $this->validate_ipn_currency( $invoice, $posted['mc_currency'] ); |
|
| 223 | - |
|
| 224 | - // Update the transaction id. |
|
| 225 | - if ( ! empty( $posted['txn_id'] ) ) { |
|
| 226 | - $invoice->set_transaction_id( wpinv_clean( $posted['txn_id'] ) ); |
|
| 227 | - $invoice->save(); |
|
| 228 | - } |
|
| 209 | + /** |
|
| 210 | + * Handles one time payments. |
|
| 211 | + * |
|
| 212 | + * @param WPInv_Invoice $invoice Invoice object. |
|
| 213 | + * @param array $posted Posted data. |
|
| 214 | + */ |
|
| 215 | + protected function ipn_txn_web_accept( $invoice, $posted ) { |
|
| 216 | + |
|
| 217 | + // Collect payment details |
|
| 218 | + $payment_status = strtolower( $posted['payment_status'] ); |
|
| 219 | + $business_email = isset( $posted['business'] ) && is_email( $posted['business'] ) ? trim( $posted['business'] ) : trim( $posted['receiver_email'] ); |
|
| 220 | + |
|
| 221 | + $this->validate_ipn_receiver_email( $invoice, $business_email ); |
|
| 222 | + $this->validate_ipn_currency( $invoice, $posted['mc_currency'] ); |
|
| 223 | + |
|
| 224 | + // Update the transaction id. |
|
| 225 | + if ( ! empty( $posted['txn_id'] ) ) { |
|
| 226 | + $invoice->set_transaction_id( wpinv_clean( $posted['txn_id'] ) ); |
|
| 227 | + $invoice->save(); |
|
| 228 | + } |
|
| 229 | 229 | |
| 230 | - // Process a refund. |
|
| 231 | - if ( $payment_status == 'refunded' || $payment_status == 'reversed' ) { |
|
| 230 | + // Process a refund. |
|
| 231 | + if ( $payment_status == 'refunded' || $payment_status == 'reversed' ) { |
|
| 232 | 232 | |
| 233 | - update_post_meta( $invoice->get_id(), 'refunded_remotely', 1 ); |
|
| 233 | + update_post_meta( $invoice->get_id(), 'refunded_remotely', 1 ); |
|
| 234 | 234 | |
| 235 | - if ( ! $invoice->is_refunded() ) { |
|
| 236 | - $invoice->update_status( 'wpi-refunded', $posted['reason_code'] ); |
|
| 237 | - } |
|
| 235 | + if ( ! $invoice->is_refunded() ) { |
|
| 236 | + $invoice->update_status( 'wpi-refunded', $posted['reason_code'] ); |
|
| 237 | + } |
|
| 238 | 238 | |
| 239 | - return wpinv_error_log( $posted['reason_code'], false ); |
|
| 240 | - } |
|
| 239 | + return wpinv_error_log( $posted['reason_code'], false ); |
|
| 240 | + } |
|
| 241 | 241 | |
| 242 | - // Process payments. |
|
| 243 | - if ( $payment_status == 'completed' ) { |
|
| 242 | + // Process payments. |
|
| 243 | + if ( $payment_status == 'completed' ) { |
|
| 244 | 244 | |
| 245 | - if ( $invoice->is_paid() && 'wpi_processing' != $invoice->get_status() ) { |
|
| 246 | - return wpinv_error_log( 'Aborting, Invoice #' . $invoice->get_number() . ' is already paid.', false ); |
|
| 247 | - } |
|
| 245 | + if ( $invoice->is_paid() && 'wpi_processing' != $invoice->get_status() ) { |
|
| 246 | + return wpinv_error_log( 'Aborting, Invoice #' . $invoice->get_number() . ' is already paid.', false ); |
|
| 247 | + } |
|
| 248 | 248 | |
| 249 | - $this->validate_ipn_amount( $invoice, $posted['mc_gross'] ); |
|
| 249 | + $this->validate_ipn_amount( $invoice, $posted['mc_gross'] ); |
|
| 250 | 250 | |
| 251 | - $note = ''; |
|
| 251 | + $note = ''; |
|
| 252 | 252 | |
| 253 | - if ( ! empty( $posted['mc_fee'] ) ) { |
|
| 254 | - $note = sprintf( __( 'PayPal Transaction Fee %.', 'invoicing' ), sanitize_text_field( $posted['mc_fee'] ) ); |
|
| 255 | - } |
|
| 253 | + if ( ! empty( $posted['mc_fee'] ) ) { |
|
| 254 | + $note = sprintf( __( 'PayPal Transaction Fee %.', 'invoicing' ), sanitize_text_field( $posted['mc_fee'] ) ); |
|
| 255 | + } |
|
| 256 | 256 | |
| 257 | - if ( ! empty( $posted['payer_status'] ) ) { |
|
| 258 | - $note = ' ' . sprintf( __( 'Buyer status %.', 'invoicing' ), sanitize_text_field( $posted['payer_status'] ) ); |
|
| 259 | - } |
|
| 257 | + if ( ! empty( $posted['payer_status'] ) ) { |
|
| 258 | + $note = ' ' . sprintf( __( 'Buyer status %.', 'invoicing' ), sanitize_text_field( $posted['payer_status'] ) ); |
|
| 259 | + } |
|
| 260 | 260 | |
| 261 | - $invoice->mark_paid( ( ! empty( $posted['txn_id'] ) ? sanitize_text_field( $posted['txn_id'] ) : '' ), trim( $note ) ); |
|
| 262 | - return wpinv_error_log( 'Invoice marked as paid.', false ); |
|
| 261 | + $invoice->mark_paid( ( ! empty( $posted['txn_id'] ) ? sanitize_text_field( $posted['txn_id'] ) : '' ), trim( $note ) ); |
|
| 262 | + return wpinv_error_log( 'Invoice marked as paid.', false ); |
|
| 263 | 263 | |
| 264 | - } |
|
| 264 | + } |
|
| 265 | 265 | |
| 266 | - // Pending payments. |
|
| 267 | - if ( $payment_status == 'pending' ) { |
|
| 266 | + // Pending payments. |
|
| 267 | + if ( $payment_status == 'pending' ) { |
|
| 268 | 268 | |
| 269 | - /* translators: %s: pending reason. */ |
|
| 270 | - $invoice->update_status( 'wpi-onhold', sprintf( __( 'Payment pending (%s).', 'invoicing' ), $posted['pending_reason'] ) ); |
|
| 269 | + /* translators: %s: pending reason. */ |
|
| 270 | + $invoice->update_status( 'wpi-onhold', sprintf( __( 'Payment pending (%s).', 'invoicing' ), $posted['pending_reason'] ) ); |
|
| 271 | 271 | |
| 272 | - return wpinv_error_log( 'Invoice marked as "payment held".', false ); |
|
| 273 | - } |
|
| 272 | + return wpinv_error_log( 'Invoice marked as "payment held".', false ); |
|
| 273 | + } |
|
| 274 | 274 | |
| 275 | - /* translators: %s: payment status. */ |
|
| 276 | - $invoice->update_status( 'wpi-failed', sprintf( __( 'Payment %s via IPN.', 'invoicing' ), sanitize_text_field( $posted['payment_status'] ) ) ); |
|
| 275 | + /* translators: %s: payment status. */ |
|
| 276 | + $invoice->update_status( 'wpi-failed', sprintf( __( 'Payment %s via IPN.', 'invoicing' ), sanitize_text_field( $posted['payment_status'] ) ) ); |
|
| 277 | 277 | |
| 278 | - } |
|
| 278 | + } |
|
| 279 | 279 | |
| 280 | - /** |
|
| 281 | - * Handles one time payments. |
|
| 282 | - * |
|
| 283 | - * @param WPInv_Invoice $invoice Invoice object. |
|
| 284 | - * @param array $posted Posted data. |
|
| 285 | - */ |
|
| 286 | - protected function ipn_txn_cart( $invoice, $posted ) { |
|
| 287 | - $this->ipn_txn_web_accept( $invoice, $posted ); |
|
| 288 | - } |
|
| 280 | + /** |
|
| 281 | + * Handles one time payments. |
|
| 282 | + * |
|
| 283 | + * @param WPInv_Invoice $invoice Invoice object. |
|
| 284 | + * @param array $posted Posted data. |
|
| 285 | + */ |
|
| 286 | + protected function ipn_txn_cart( $invoice, $posted ) { |
|
| 287 | + $this->ipn_txn_web_accept( $invoice, $posted ); |
|
| 288 | + } |
|
| 289 | 289 | |
| 290 | - /** |
|
| 291 | - * Handles subscription sign ups. |
|
| 292 | - * |
|
| 293 | - * @param WPInv_Invoice $invoice Invoice object. |
|
| 294 | - * @param array $posted Posted data. |
|
| 295 | - */ |
|
| 296 | - protected function ipn_txn_subscr_signup( $invoice, $posted ) { |
|
| 290 | + /** |
|
| 291 | + * Handles subscription sign ups. |
|
| 292 | + * |
|
| 293 | + * @param WPInv_Invoice $invoice Invoice object. |
|
| 294 | + * @param array $posted Posted data. |
|
| 295 | + */ |
|
| 296 | + protected function ipn_txn_subscr_signup( $invoice, $posted ) { |
|
| 297 | 297 | |
| 298 | - wpinv_error_log( 'Processing subscription signup', false ); |
|
| 298 | + wpinv_error_log( 'Processing subscription signup', false ); |
|
| 299 | 299 | |
| 300 | - // Make sure the invoice has a subscription. |
|
| 301 | - $subscription = getpaid_get_invoice_subscription( $invoice ); |
|
| 300 | + // Make sure the invoice has a subscription. |
|
| 301 | + $subscription = getpaid_get_invoice_subscription( $invoice ); |
|
| 302 | 302 | |
| 303 | - if ( empty( $subscription ) ) { |
|
| 304 | - return wpinv_error_log( 'Aborting, Subscription for the invoice ' . $invoice->get_id() . ' not found', false ); |
|
| 305 | - } |
|
| 303 | + if ( empty( $subscription ) ) { |
|
| 304 | + return wpinv_error_log( 'Aborting, Subscription for the invoice ' . $invoice->get_id() . ' not found', false ); |
|
| 305 | + } |
|
| 306 | 306 | |
| 307 | - // Validate the IPN. |
|
| 308 | - $business_email = isset( $posted['business'] ) && is_email( $posted['business'] ) ? trim( $posted['business'] ) : trim( $posted['receiver_email'] ); |
|
| 309 | - $this->validate_ipn_receiver_email( $invoice, $business_email ); |
|
| 310 | - $this->validate_ipn_currency( $invoice, $posted['mc_currency'] ); |
|
| 307 | + // Validate the IPN. |
|
| 308 | + $business_email = isset( $posted['business'] ) && is_email( $posted['business'] ) ? trim( $posted['business'] ) : trim( $posted['receiver_email'] ); |
|
| 309 | + $this->validate_ipn_receiver_email( $invoice, $business_email ); |
|
| 310 | + $this->validate_ipn_currency( $invoice, $posted['mc_currency'] ); |
|
| 311 | 311 | |
| 312 | - // Activate the subscription. |
|
| 313 | - $duration = strtotime( $subscription->get_expiration() ) - strtotime( $subscription->get_date_created() ); |
|
| 314 | - $subscription->set_date_created( current_time( 'mysql' ) ); |
|
| 315 | - $subscription->set_expiration( date( 'Y-m-d H:i:s', ( current_time( 'timestamp' ) + $duration ) ) ); |
|
| 316 | - $subscription->set_profile_id( sanitize_text_field( $posted['subscr_id'] ) ); |
|
| 317 | - $subscription->activate(); |
|
| 312 | + // Activate the subscription. |
|
| 313 | + $duration = strtotime( $subscription->get_expiration() ) - strtotime( $subscription->get_date_created() ); |
|
| 314 | + $subscription->set_date_created( current_time( 'mysql' ) ); |
|
| 315 | + $subscription->set_expiration( date( 'Y-m-d H:i:s', ( current_time( 'timestamp' ) + $duration ) ) ); |
|
| 316 | + $subscription->set_profile_id( sanitize_text_field( $posted['subscr_id'] ) ); |
|
| 317 | + $subscription->activate(); |
|
| 318 | 318 | |
| 319 | - // Set the transaction id. |
|
| 320 | - if ( ! empty( $posted['txn_id'] ) ) { |
|
| 321 | - $invoice->set_transaction_id( $posted['txn_id'] ); |
|
| 322 | - } |
|
| 319 | + // Set the transaction id. |
|
| 320 | + if ( ! empty( $posted['txn_id'] ) ) { |
|
| 321 | + $invoice->set_transaction_id( $posted['txn_id'] ); |
|
| 322 | + } |
|
| 323 | 323 | |
| 324 | - // Update the payment status. |
|
| 325 | - $invoice->mark_paid(); |
|
| 324 | + // Update the payment status. |
|
| 325 | + $invoice->mark_paid(); |
|
| 326 | 326 | |
| 327 | - $invoice->add_note( sprintf( __( 'PayPal Subscription ID: %s', 'invoicing' ) , $posted['subscr_id'] ), false, false, true ); |
|
| 327 | + $invoice->add_note( sprintf( __( 'PayPal Subscription ID: %s', 'invoicing' ) , $posted['subscr_id'] ), false, false, true ); |
|
| 328 | 328 | |
| 329 | - wpinv_error_log( 'Subscription started.', false ); |
|
| 330 | - } |
|
| 329 | + wpinv_error_log( 'Subscription started.', false ); |
|
| 330 | + } |
|
| 331 | 331 | |
| 332 | - /** |
|
| 333 | - * Handles subscription renewals. |
|
| 334 | - * |
|
| 335 | - * @param WPInv_Invoice $invoice Invoice object. |
|
| 336 | - * @param array $posted Posted data. |
|
| 337 | - */ |
|
| 338 | - protected function ipn_txn_subscr_payment( $invoice, $posted ) { |
|
| 332 | + /** |
|
| 333 | + * Handles subscription renewals. |
|
| 334 | + * |
|
| 335 | + * @param WPInv_Invoice $invoice Invoice object. |
|
| 336 | + * @param array $posted Posted data. |
|
| 337 | + */ |
|
| 338 | + protected function ipn_txn_subscr_payment( $invoice, $posted ) { |
|
| 339 | 339 | |
| 340 | - // Make sure the invoice has a subscription. |
|
| 341 | - $subscription = wpinv_get_subscription( $invoice ); |
|
| 340 | + // Make sure the invoice has a subscription. |
|
| 341 | + $subscription = wpinv_get_subscription( $invoice ); |
|
| 342 | 342 | |
| 343 | - if ( empty( $subscription ) ) { |
|
| 344 | - return wpinv_error_log( 'Aborting, Subscription for the invoice ' . $invoice->get_id() . ' not found', false ); |
|
| 345 | - } |
|
| 343 | + if ( empty( $subscription ) ) { |
|
| 344 | + return wpinv_error_log( 'Aborting, Subscription for the invoice ' . $invoice->get_id() . ' not found', false ); |
|
| 345 | + } |
|
| 346 | 346 | |
| 347 | - // Abort if this is the first payment. |
|
| 348 | - if ( ( $invoice->is_paid() && date( 'Ynd', strtotime( $invoice->get_date_completed() ) ) == date( 'Ynd', strtotime( $posted['payment_date'] ) ) ) || date( 'Ynd', $subscription->get_time_created() ) == date( 'Ynd', strtotime( $posted['payment_date'] ) ) ) { |
|
| 347 | + // Abort if this is the first payment. |
|
| 348 | + if ( ( $invoice->is_paid() && date( 'Ynd', strtotime( $invoice->get_date_completed() ) ) == date( 'Ynd', strtotime( $posted['payment_date'] ) ) ) || date( 'Ynd', $subscription->get_time_created() ) == date( 'Ynd', strtotime( $posted['payment_date'] ) ) ) { |
|
| 349 | 349 | |
| 350 | - if ( ! empty( $posted['txn_id'] ) ) { |
|
| 351 | - $invoice->set_transaction_id( sanitize_text_field( $posted['txn_id'] ) ); |
|
| 352 | - $invoice->mark_paid(); |
|
| 353 | - $invoice->save(); |
|
| 354 | - } |
|
| 350 | + if ( ! empty( $posted['txn_id'] ) ) { |
|
| 351 | + $invoice->set_transaction_id( sanitize_text_field( $posted['txn_id'] ) ); |
|
| 352 | + $invoice->mark_paid(); |
|
| 353 | + $invoice->save(); |
|
| 354 | + } |
|
| 355 | 355 | |
| 356 | - return; |
|
| 357 | - } |
|
| 356 | + return; |
|
| 357 | + } |
|
| 358 | 358 | |
| 359 | - wpinv_error_log( 'Processing subscription renewal payment for the invoice ' . $invoice->get_id(), false ); |
|
| 359 | + wpinv_error_log( 'Processing subscription renewal payment for the invoice ' . $invoice->get_id(), false ); |
|
| 360 | 360 | |
| 361 | - // Abort if the payment is already recorded. |
|
| 362 | - if ( wpinv_get_id_by_transaction_id( $posted['txn_id'] ) ) { |
|
| 363 | - return wpinv_error_log( 'Aborting, Transaction ' . $posted['txn_id'] .' has already been processed', false ); |
|
| 364 | - } |
|
| 361 | + // Abort if the payment is already recorded. |
|
| 362 | + if ( wpinv_get_id_by_transaction_id( $posted['txn_id'] ) ) { |
|
| 363 | + return wpinv_error_log( 'Aborting, Transaction ' . $posted['txn_id'] .' has already been processed', false ); |
|
| 364 | + } |
|
| 365 | 365 | |
| 366 | - $args = array( |
|
| 367 | - 'transaction_id' => $posted['txn_id'], |
|
| 368 | - 'gateway' => $this->id, |
|
| 369 | - ); |
|
| 370 | - |
|
| 371 | - $invoice = wpinv_get_invoice( $subscription->add_payment( $args ) ); |
|
| 372 | - |
|
| 373 | - if ( empty( $invoice ) ) { |
|
| 374 | - return; |
|
| 375 | - } |
|
| 376 | - |
|
| 377 | - $invoice->add_note( wp_sprintf( __( 'PayPal Transaction ID: %s', 'invoicing' ) , $posted['txn_id'] ), false, false, true ); |
|
| 378 | - $invoice->add_note( wp_sprintf( __( 'PayPal Subscription ID: %s', 'invoicing' ) , $posted['subscr_id'] ), false, false, true ); |
|
| 379 | - |
|
| 380 | - $subscription->renew(); |
|
| 381 | - wpinv_error_log( 'Subscription renewed.', false ); |
|
| 382 | - |
|
| 383 | - } |
|
| 384 | - |
|
| 385 | - /** |
|
| 386 | - * Handles subscription cancelations. |
|
| 387 | - * |
|
| 388 | - * @param WPInv_Invoice $invoice Invoice object. |
|
| 389 | - */ |
|
| 390 | - protected function ipn_txn_subscr_cancel( $invoice ) { |
|
| 366 | + $args = array( |
|
| 367 | + 'transaction_id' => $posted['txn_id'], |
|
| 368 | + 'gateway' => $this->id, |
|
| 369 | + ); |
|
| 370 | + |
|
| 371 | + $invoice = wpinv_get_invoice( $subscription->add_payment( $args ) ); |
|
| 372 | + |
|
| 373 | + if ( empty( $invoice ) ) { |
|
| 374 | + return; |
|
| 375 | + } |
|
| 376 | + |
|
| 377 | + $invoice->add_note( wp_sprintf( __( 'PayPal Transaction ID: %s', 'invoicing' ) , $posted['txn_id'] ), false, false, true ); |
|
| 378 | + $invoice->add_note( wp_sprintf( __( 'PayPal Subscription ID: %s', 'invoicing' ) , $posted['subscr_id'] ), false, false, true ); |
|
| 379 | + |
|
| 380 | + $subscription->renew(); |
|
| 381 | + wpinv_error_log( 'Subscription renewed.', false ); |
|
| 382 | + |
|
| 383 | + } |
|
| 384 | + |
|
| 385 | + /** |
|
| 386 | + * Handles subscription cancelations. |
|
| 387 | + * |
|
| 388 | + * @param WPInv_Invoice $invoice Invoice object. |
|
| 389 | + */ |
|
| 390 | + protected function ipn_txn_subscr_cancel( $invoice ) { |
|
| 391 | 391 | |
| 392 | - // Make sure the invoice has a subscription. |
|
| 393 | - $subscription = wpinv_get_subscription( $invoice ); |
|
| 392 | + // Make sure the invoice has a subscription. |
|
| 393 | + $subscription = wpinv_get_subscription( $invoice ); |
|
| 394 | 394 | |
| 395 | - if ( empty( $subscription ) ) { |
|
| 396 | - return wpinv_error_log( 'Aborting, Subscription for the invoice ' . $invoice->get_id() . ' not found', false); |
|
| 397 | - } |
|
| 395 | + if ( empty( $subscription ) ) { |
|
| 396 | + return wpinv_error_log( 'Aborting, Subscription for the invoice ' . $invoice->get_id() . ' not found', false); |
|
| 397 | + } |
|
| 398 | 398 | |
| 399 | - wpinv_error_log( 'Processing subscription cancellation for the invoice ' . $invoice->get_id(), false ); |
|
| 400 | - $subscription->cancel(); |
|
| 401 | - wpinv_error_log( 'Subscription cancelled.', false ); |
|
| 399 | + wpinv_error_log( 'Processing subscription cancellation for the invoice ' . $invoice->get_id(), false ); |
|
| 400 | + $subscription->cancel(); |
|
| 401 | + wpinv_error_log( 'Subscription cancelled.', false ); |
|
| 402 | 402 | |
| 403 | - } |
|
| 403 | + } |
|
| 404 | 404 | |
| 405 | - /** |
|
| 406 | - * Handles subscription completions. |
|
| 407 | - * |
|
| 408 | - * @param WPInv_Invoice $invoice Invoice object. |
|
| 409 | - * @param array $posted Posted data. |
|
| 410 | - */ |
|
| 411 | - protected function ipn_txn_subscr_eot( $invoice ) { |
|
| 405 | + /** |
|
| 406 | + * Handles subscription completions. |
|
| 407 | + * |
|
| 408 | + * @param WPInv_Invoice $invoice Invoice object. |
|
| 409 | + * @param array $posted Posted data. |
|
| 410 | + */ |
|
| 411 | + protected function ipn_txn_subscr_eot( $invoice ) { |
|
| 412 | 412 | |
| 413 | - // Make sure the invoice has a subscription. |
|
| 414 | - $subscription = wpinv_get_subscription( $invoice ); |
|
| 413 | + // Make sure the invoice has a subscription. |
|
| 414 | + $subscription = wpinv_get_subscription( $invoice ); |
|
| 415 | 415 | |
| 416 | - if ( empty( $subscription ) ) { |
|
| 417 | - return wpinv_error_log( 'Aborting, Subscription for the invoice ' . $invoice->get_id() . ' not found', false ); |
|
| 418 | - } |
|
| 416 | + if ( empty( $subscription ) ) { |
|
| 417 | + return wpinv_error_log( 'Aborting, Subscription for the invoice ' . $invoice->get_id() . ' not found', false ); |
|
| 418 | + } |
|
| 419 | 419 | |
| 420 | - wpinv_error_log( 'Processing subscription end of life for the invoice ' . $invoice->get_id(), false ); |
|
| 421 | - $subscription->complete(); |
|
| 422 | - wpinv_error_log( 'Subscription completed.', false ); |
|
| 420 | + wpinv_error_log( 'Processing subscription end of life for the invoice ' . $invoice->get_id(), false ); |
|
| 421 | + $subscription->complete(); |
|
| 422 | + wpinv_error_log( 'Subscription completed.', false ); |
|
| 423 | 423 | |
| 424 | - } |
|
| 424 | + } |
|
| 425 | 425 | |
| 426 | - /** |
|
| 427 | - * Handles subscription fails. |
|
| 428 | - * |
|
| 429 | - * @param WPInv_Invoice $invoice Invoice object. |
|
| 430 | - * @param array $posted Posted data. |
|
| 431 | - */ |
|
| 432 | - protected function ipn_txn_subscr_failed( $invoice ) { |
|
| 426 | + /** |
|
| 427 | + * Handles subscription fails. |
|
| 428 | + * |
|
| 429 | + * @param WPInv_Invoice $invoice Invoice object. |
|
| 430 | + * @param array $posted Posted data. |
|
| 431 | + */ |
|
| 432 | + protected function ipn_txn_subscr_failed( $invoice ) { |
|
| 433 | 433 | |
| 434 | - // Make sure the invoice has a subscription. |
|
| 435 | - $subscription = wpinv_get_subscription( $invoice ); |
|
| 434 | + // Make sure the invoice has a subscription. |
|
| 435 | + $subscription = wpinv_get_subscription( $invoice ); |
|
| 436 | 436 | |
| 437 | - if ( empty( $subscription ) ) { |
|
| 438 | - return wpinv_error_log( 'Aborting, Subscription for the invoice ' . $invoice->get_id() . ' not found', false ); |
|
| 439 | - } |
|
| 437 | + if ( empty( $subscription ) ) { |
|
| 438 | + return wpinv_error_log( 'Aborting, Subscription for the invoice ' . $invoice->get_id() . ' not found', false ); |
|
| 439 | + } |
|
| 440 | 440 | |
| 441 | - wpinv_error_log( 'Processing subscription payment failure for the invoice ' . $invoice->get_id(), false ); |
|
| 442 | - $subscription->failing(); |
|
| 443 | - wpinv_error_log( 'Subscription marked as failing.', false ); |
|
| 441 | + wpinv_error_log( 'Processing subscription payment failure for the invoice ' . $invoice->get_id(), false ); |
|
| 442 | + $subscription->failing(); |
|
| 443 | + wpinv_error_log( 'Subscription marked as failing.', false ); |
|
| 444 | 444 | |
| 445 | - } |
|
| 445 | + } |
|
| 446 | 446 | |
| 447 | 447 | } |