Passed
Push — master ( 84aa6b...e33f3a )
by Brian
05:06
created

wpinv_text_callback()   A

Complexity

Conditions 2
Paths 2

Size

Total Lines 11
Code Lines 9

Duplication

Lines 0
Ratio 0 %

Importance

Changes 0
Metric Value
cc 2
eloc 9
c 0
b 0
f 0
nc 2
nop 1
dl 0
loc 11
rs 9.9666
1
<?php
2
/**
3
 * Contains settings related functions
4
 *
5
 * @package Invoicing
6
 * @since   1.0.0
7
 */
8
9
defined( 'ABSPATH' ) || exit;
10
11
/**
12
 * Retrieves all default settings.
13
 * 
14
 * @return array
15
 */
16
function wpinv_get_settings() {
17
    $defaults = array();
18
19
    foreach ( array_values( wpinv_get_registered_settings() ) as $tab_settings ) {
20
21
        foreach ( array_values( $tab_settings ) as $section_settings ) {
22
23
            foreach ( $section_settings as $key => $setting ) {
24
                if ( isset( $setting['std'] ) ) {
25
                    $defaults[ $key ] = $setting['std'];
26
                }
27
            }
28
29
        }
30
31
    }
32
33
    return $defaults;
34
35
}
36
37
/**
38
 * Retrieves all settings.
39
 * 
40
 * @return array
41
 */
42
function wpinv_get_options() {
43
    global $wpinv_options;
44
45
    // Try fetching the saved options.
46
    if ( ! is_array( $wpinv_options ) ) {
47
        $wpinv_options = get_option( 'wpinv_settings' );
48
    }
49
50
    // If that fails, don't fetch the default settings to prevent a loop.
51
    if ( ! is_array( $wpinv_options ) ) {
52
        $wpinv_options = array();
53
    }
54
55
    return $wpinv_options;
56
}
57
58
/**
59
 * Retrieves a single setting.
60
 * 
61
 * @param string $key the setting key.
62
 * @param mixed $default The default value to use if the setting has not been set.
63
 * @return mixed
64
 */
65
function wpinv_get_option( $key = '', $default = false ) {
66
67
    $options = wpinv_get_options();
68
    $value   = isset( $options[ $key ] ) ? $options[ $key ] : $default;
69
    $value   = apply_filters( 'wpinv_get_option', $value, $key, $default );
70
71
    return apply_filters( 'wpinv_get_option_' . $key, $value, $key, $default );
72
}
73
74
/**
75
 * Updates all settings.
76
 * 
77
 * @param array $options the new options.
78
 * @return bool
79
 */
80
function wpinv_update_options( $options ) {
81
    global $wpinv_options;
82
83
    // update the option.
84
    if ( is_array( $options ) && update_option( 'wpinv_settings', $options ) ) {
85
        $wpinv_options = $options;
86
        return true;
87
    }
88
89
    return false;
90
}
91
92
/**
93
 * Updates a single setting.
94
 * 
95
 * @param string $key the setting key.
96
 * @param mixed $value The setting value.
97
 * @return bool
98
 */
99
function wpinv_update_option( $key = '', $value = false ) {
100
101
    // If no key, exit.
102
    if ( empty( $key ) ) {
103
        return false;
104
    }
105
106
    // Maybe delete the option instead.
107
    if ( is_null( $value ) ) {
108
        return wpinv_delete_option( $key );
109
    }
110
111
    // Prepare the new options.
112
    $options         = wpinv_get_options();
113
    $options[ $key ] = apply_filters( 'wpinv_update_option', $value, $key );
114
115
    // Save the new options.
116
    return wpinv_update_options( $options );
117
118
}
119
120
/**
121
 * Deletes a single setting.
122
 * 
123
 * @param string $key the setting key.
124
 * @return bool
125
 */
126
function wpinv_delete_option( $key = '' ) {
127
128
    // If no key, exit
129
    if ( empty( $key ) ) {
130
        return false;
131
    }
132
133
    $options = wpinv_get_options();
134
135
    if ( isset( $options[ $key ] ) ) {
136
        unset( $options[ $key ] );
137
        return wpinv_update_options( $options );
138
    }
139
140
    return true;
141
142
}
143
144
/**
145
 * Register settings after admin inits.
146
 * 
147
 */
148
function wpinv_register_settings() {
149
150
    // Loop through all tabs.
151
    foreach ( wpinv_get_registered_settings() as $tab => $sections ) {
152
153
        // In each tab, loop through sections.
154
        foreach ( $sections as $section => $settings ) {
155
156
            // Check for backwards compatibility
157
            $section_tabs = wpinv_get_settings_tab_sections( $tab );
158
            if ( ! is_array( $section_tabs ) || ! array_key_exists( $section, $section_tabs ) ) {
159
                $section = 'main';
160
                $settings = $sections;
161
            }
162
163
            // Register the setting section.
164
            add_settings_section(
165
                'wpinv_settings_' . $tab . '_' . $section,
166
                __return_null(),
0 ignored issues
show
Bug introduced by
Are you sure the usage of __return_null() is correct as it seems to always return null.

This check looks for function or method calls that always return null and whose return value is used.

class A
{
    function getObject()
    {
        return null;
    }

}

$a = new A();
if ($a->getObject()) {

The method getObject() can return nothing but null, so it makes no sense to use the return value.

The reason is most likely that a function or method is imcomplete or has been reduced for debug purposes.

Loading history...
167
                '__return_false',
168
                'wpinv_settings_' . $tab . '_' . $section
169
            );
170
171
            foreach ( $settings as $option ) {
172
                if ( ! empty( $option['id'] ) ) {
173
                    wpinv_register_settings_option( $tab, $section, $option );
174
                }
175
            }
176
177
        }
178
    }
179
180
    // Creates our settings in the options table.
181
    register_setting( 'wpinv_settings', 'wpinv_settings', 'wpinv_settings_sanitize' );
0 ignored issues
show
Bug introduced by
'wpinv_settings_sanitize' of type string is incompatible with the type array expected by parameter $args of register_setting(). ( Ignorable by Annotation )

If this is a false-positive, you can also ignore this issue in your code via the ignore-type  annotation

181
    register_setting( 'wpinv_settings', 'wpinv_settings', /** @scrutinizer ignore-type */ 'wpinv_settings_sanitize' );
Loading history...
182
}
183
add_action( 'admin_init', 'wpinv_register_settings' );
184
185
/**
186
 * Register a single settings option.
187
 * 
188
 * @param string $tab
189
 * @param string $section
190
 * @param string $option
191
 * 
192
 */
193
function wpinv_register_settings_option( $tab, $section, $option ) {
194
195
    $name    = isset( $option['name'] ) ? $option['name'] : '';
196
    $cb      = "wpinv_{$option['type']}_callback";
197
    $section = "wpinv_settings_{$tab}_$section";
198
199
	if ( isset( $option['desc'] ) && ! empty( $option['help-tip'] ) ) {
200
		$tip   = esc_attr( $option['desc'] );
201
		$name .= "<span class='dashicons dashicons-editor-help wpi-help-tip' title='$tip'></span>";
202
		unset( $option['desc'] );
203
	}
204
205
    // Loop through all tabs.
206
    add_settings_field(
207
        'wpinv_settings[' . $option['id'] . ']',
208
        $name,
209
        function_exists( $cb ) ? $cb : 'wpinv_missing_callback',
210
        $section,
211
        $section,
212
        array(
213
            'section'     => $section,
214
            'id'          => isset( $option['id'] )          ? $option['id']          : uniqid( 'wpinv-' ),
215
            'desc'        => isset( $option['desc'] )        ? $option['desc']        : '',
216
            'name'        => $name,
217
            'size'        => isset( $option['size'] )        ? $option['size']        : null,
218
            'options'     => isset( $option['options'] )     ? $option['options']     : '',
219
            'selected'    => isset( $option['selected'] )    ? $option['selected']    : null,
220
            'std'         => isset( $option['std'] )         ? $option['std']         : '',
221
            'min'         => isset( $option['min'] )         ? $option['min']         : 0,
222
            'max'         => isset( $option['max'] )         ? $option['max']         : 999999,
223
            'step'        => isset( $option['step'] )        ? $option['step']        : 1,
224
            'placeholder' => isset( $option['placeholder'] ) ? $option['placeholder'] : null,
225
            'allow_blank' => isset( $option['allow_blank'] ) ? $option['allow_blank'] : true,
226
            'readonly'    => isset( $option['readonly'] )    ? $option['readonly']    : false,
227
            'faux'        => isset( $option['faux'] )        ? $option['faux']        : false,
228
            'onchange'    => isset( $option['onchange'] )   ? $option['onchange']     : '',
229
            'custom'      => isset( $option['custom'] )     ? $option['custom']       : '',
230
			'class'       => isset( $option['class'] )     ? $option['class']         : '',
231
			'style'       => isset( $option['style'] )     ? $option['style']         : '',
232
            'cols'        => isset( $option['cols'] ) && (int) $option['cols'] > 0 ? (int) $option['cols'] : 50,
233
            'rows'        => isset( $option['rows'] ) && (int) $option['rows'] > 0 ? (int) $option['rows'] : 5,
234
        )
235
    );
236
237
}
238
239
/**
240
 * Returns an array of all registered settings.
241
 * 
242
 * @return array
243
 */
244
function wpinv_get_registered_settings() {
245
	return array_filter( apply_filters( 'wpinv_registered_settings', wpinv_get_data( 'admin-settings' ) ) );
246
}
247
248
/**
249
 * Returns an array of all integration settings.
250
 * 
251
 * @return array
252
 */
253
function getpaid_get_integration_settings() {
254
    return apply_filters( 'getpaid_integration_settings', array() );
255
}
256
257
/**
258
 * Sanitizes settings before they are saved.
259
 * 
260
 * @return array
261
 */
262
function wpinv_settings_sanitize( $input = array() ) {
263
264
    $wpinv_options = wpinv_get_options();
265
266
    if ( empty( wp_get_raw_referer() ) ) {
267
        return $input;
268
    }
269
270
    wp_parse_str( wp_get_raw_referer(), $referrer );
0 ignored issues
show
Bug introduced by
It seems like wp_get_raw_referer() can also be of type false; however, parameter $string of wp_parse_str() does only seem to accept string, maybe add an additional type check? ( Ignorable by Annotation )

If this is a false-positive, you can also ignore this issue in your code via the ignore-type  annotation

270
    wp_parse_str( /** @scrutinizer ignore-type */ wp_get_raw_referer(), $referrer );
Loading history...
271
272
    $settings = wpinv_get_registered_settings();
273
    $tab      = isset( $referrer['tab'] ) ? $referrer['tab'] : 'general';
274
    $section  = isset( $referrer['section'] ) ? $referrer['section'] : 'main';
275
276
    $input = $input ? $input : array();
277
    $input = apply_filters( 'wpinv_settings_tab_' . $tab . '_sanitize', $input );
278
    $input = apply_filters( 'wpinv_settings_' . $tab . '-' . $section . '_sanitize', $input );
279
280
    // Loop through each setting being saved and pass it through a sanitization filter
281
    foreach ( $input as $key => $value ) {
282
283
        // Get the setting type (checkbox, select, etc)
284
        $type = isset( $settings[ $tab ][$section][ $key ]['type'] ) ? $settings[ $tab ][$section][ $key ]['type'] : false;
285
286
        if ( $type ) {
287
            // Field type specific filter
288
            $input[$key] = apply_filters( 'wpinv_settings_sanitize_' . $type, $value, $key );
289
        }
290
291
        // General filter
292
		$input[ $key ] = apply_filters( 'wpinv_settings_sanitize', $input[ $key ], $key );
293
294
		// Key specific filter.
295
		$input[ $key ] = apply_filters( "wpinv_settings_sanitize_$key", $input[ $key ] );
296
    }
297
298
    // Loop through the whitelist and unset any that are empty for the tab being saved
299
    $main_settings    = $section == 'main' ? $settings[ $tab ] : array(); // Check for extensions that aren't using new sections
300
    $section_settings = ! empty( $settings[ $tab ][ $section ] ) ? $settings[ $tab ][ $section ] : array();
301
302
    $found_settings = array_merge( $main_settings, $section_settings );
303
304
    if ( ! empty( $found_settings ) ) {
305
        foreach ( $found_settings as $key => $value ) {
306
307
            // settings used to have numeric keys, now they have keys that match the option ID. This ensures both methods work
308
            if ( is_numeric( $key ) ) {
309
                $key = $value['id'];
310
            }
311
312
            if ( ! isset( $input[ $key ] ) && isset( $wpinv_options[ $key ] ) ) {
313
                unset( $wpinv_options[ $key ] );
314
            }
315
        }
316
    }
317
318
    // Merge our new settings with the existing
319
    $output = array_merge( $wpinv_options, $input );
320
321
    add_settings_error( 'wpinv-notices', '', __( 'Settings updated.', 'invoicing' ), 'updated' );
322
323
    return $output;
324
}
325
326
function wpinv_settings_sanitize_misc_accounting( $input ) {
327
328
    if ( ! wpinv_current_user_can_manage_invoicing() ) {
329
        return $input;
330
    }
331
332
    if( ! empty( $input['enable_sequential'] ) && !wpinv_get_option( 'enable_sequential' ) ) {
333
        // Shows an admin notice about upgrading previous order numbers
334
        getpaid_session()->set( 'upgrade_sequential', '1' );
335
    }
336
337
    return $input;
338
}
339
add_filter( 'wpinv_settings_misc-accounting_sanitize', 'wpinv_settings_sanitize_misc_accounting' );
340
341
function wpinv_settings_sanitize_tax_rates( $input ) {
342
    if( ! wpinv_current_user_can_manage_invoicing() ) {
343
        return $input;
344
    }
345
346
    $new_rates = ! empty( $_POST['tax_rates'] ) ? array_values( $_POST['tax_rates'] ) : array();
347
    $tax_rates = array();
348
349
    foreach ( $new_rates as $rate ) {
350
351
		$rate['rate']    = wpinv_sanitize_amount( $rate['rate'] );
352
		$rate['name']    = sanitize_text_field( $rate['name'] );
353
		$rate['state']   = sanitize_text_field( $rate['state'] );
354
		$rate['country'] = sanitize_text_field( $rate['country'] );
355
		$rate['global']  = empty( $rate['state'] );
356
		$tax_rates[]     = $rate;
357
358
	}
359
360
    update_option( 'wpinv_tax_rates', $tax_rates );
361
362
    return $input;
363
}
364
add_filter( 'wpinv_settings_taxes-rates_sanitize', 'wpinv_settings_sanitize_tax_rates' );
365
366
function wpinv_sanitize_text_field( $input ) {
367
    return trim( $input );
368
}
369
add_filter( 'wpinv_settings_sanitize_text', 'wpinv_sanitize_text_field' );
370
371
function wpinv_get_settings_tabs() {
372
    $tabs             = array();
373
    $tabs['general']  = __( 'General', 'invoicing' );
374
    $tabs['gateways'] = __( 'Payment Gateways', 'invoicing' );
375
    $tabs['taxes']    = __( 'Taxes', 'invoicing' );
376
	$tabs['emails']   = __( 'Emails', 'invoicing' );
377
378
	if ( count( getpaid_get_integration_settings() ) > 0 ) {
379
		$tabs['integrations'] = __( 'Integrations', 'invoicing' );
380
	}
381
382
    $tabs['privacy']  = __( 'Privacy', 'invoicing' );
383
    $tabs['misc']     = __( 'Misc', 'invoicing' );
384
    $tabs['tools']    = __( 'Tools', 'invoicing' );
385
386
    return apply_filters( 'wpinv_settings_tabs', $tabs );
387
}
388
389
function wpinv_get_settings_tab_sections( $tab = false ) {
390
    $tabs     = false;
391
    $sections = wpinv_get_registered_settings_sections();
392
393
    if( $tab && ! empty( $sections[ $tab ] ) ) {
394
        $tabs = $sections[ $tab ];
395
    } else if ( $tab ) {
396
        $tabs = false;
397
    }
398
399
    return $tabs;
400
}
401
402
function wpinv_get_registered_settings_sections() {
403
    static $sections = false;
404
405
    if ( false !== $sections ) {
406
        return $sections;
407
    }
408
409
    $sections = array(
410
        'general' => apply_filters( 'wpinv_settings_sections_general', array(
411
            'main' => __( 'General Settings', 'invoicing' ),
412
            'currency_section' => __( 'Currency Settings', 'invoicing' ),
413
            'labels' => __( 'Label Texts', 'invoicing' ),
414
        ) ),
415
        'gateways' => apply_filters( 'wpinv_settings_sections_gateways', array(
416
            'main' => __( 'Gateway Settings', 'invoicing' ),
417
        ) ),
418
        'taxes' => apply_filters( 'wpinv_settings_sections_taxes', array(
419
            'main'  => __( 'Tax Settings', 'invoicing' ),
420
			'rates' => __( 'Tax Rates', 'invoicing' ),
421
			'vat'   => __( 'EU VAT Settings', 'invoicing' )
422
        ) ),
423
        'emails' => apply_filters( 'wpinv_settings_sections_emails', array(
424
            'main' => __( 'Email Settings', 'invoicing' ),
425
		) ),
426
427
		'integrations' => wp_list_pluck( getpaid_get_integration_settings(), 'label', 'id' ),
428
429
        'privacy' => apply_filters( 'wpinv_settings_sections_privacy', array(
430
            'main' => __( 'Privacy policy', 'invoicing' ),
431
        ) ),
432
        'misc' => apply_filters( 'wpinv_settings_sections_misc', array(
433
            'main' => __( 'Miscellaneous', 'invoicing' ),
434
            'custom-css' => __( 'Custom CSS', 'invoicing' ),
435
        ) ),
436
        'tools' => apply_filters( 'wpinv_settings_sections_tools', array(
437
            'main' => __( 'Diagnostic Tools', 'invoicing' ),
438
        ) ),
439
    );
440
441
    $sections = apply_filters( 'wpinv_settings_sections', $sections );
442
443
    return $sections;
444
}
445
446
function wpinv_get_pages( $with_slug = false, $default_label = NULL ) {
447
	$pages_options = array();
448
449
	if( $default_label !== NULL && $default_label !== false ) {
450
		$pages_options = array( '' => $default_label ); // Blank option
451
	}
452
453
	$pages = get_pages();
454
	if ( $pages ) {
455
		foreach ( $pages as $page ) {
456
			$title = $with_slug ? $page->post_title . ' (' . $page->post_name . ')' : $page->post_title;
457
            $pages_options[ $page->ID ] = $title;
458
		}
459
	}
460
461
	return $pages_options;
462
}
463
464
function wpinv_header_callback( $args ) {
465
	if ( !empty( $args['desc'] ) ) {
466
        echo $args['desc'];
467
    }
468
}
469
470
function wpinv_hidden_callback( $args ) {
471
	global $wpinv_options;
472
473
	if ( isset( $args['set_value'] ) ) {
474
		$value = $args['set_value'];
475
	} elseif ( isset( $wpinv_options[ $args['id'] ] ) ) {
476
		$value = $wpinv_options[ $args['id'] ];
477
	} else {
478
		$value = isset( $args['std'] ) ? $args['std'] : '';
479
	}
480
481
	if ( isset( $args['faux'] ) && true === $args['faux'] ) {
482
		$args['readonly'] = true;
483
		$value = isset( $args['std'] ) ? $args['std'] : '';
484
		$name  = '';
485
	} else {
486
		$name = 'name="wpinv_settings[' . esc_attr( $args['id'] ) . ']"';
487
	}
488
489
	$html = '<input type="hidden" id="wpinv_settings[' . wpinv_sanitize_key( $args['id'] ) . ']" ' . $name . ' value="' . esc_attr( stripslashes( $value ) ) . '" />';
490
    
491
	echo $html;
492
}
493
494
/**
495
 * Displays a checkbox settings callback.
496
 */
497
function wpinv_checkbox_callback( $args ) {
498
499
	$std = isset( $args['std'] ) ? $args['std'] : '';
500
	$std = wpinv_get_option( $args['id'], $std );
501
	$id  = esc_attr( $args['id'] );
502
503
	getpaid_hidden_field( "wpinv_settings[$id]", '0' );
504
	?>
505
		<fieldset>
506
			<label>
507
				<input id="wpinv-settings-<?php echo $id; ?>" name="wpinv_settings[<?php echo $id; ?>]" <?php checked( empty( $std ), false ); ?> value="1" type="checkbox">
508
				<?php echo wp_kses_post( $args['desc'] ); ?>
509
			</label>
510
		</fieldset>
511
	<?php
512
}
513
514
function wpinv_multicheck_callback( $args ) {
515
	
516
	global $wpinv_options;
517
518
	$sanitize_id = wpinv_sanitize_key( $args['id'] );
519
	$class = !empty( $args['class'] ) ? ' ' . esc_attr( $args['class'] ) : '';
520
521
	if ( ! empty( $args['options'] ) ) {
522
523
		$std     = isset( $args['std'] ) ? $args['std'] : array();
524
		$value   = isset( $wpinv_options[ $args['id'] ] ) ? $wpinv_options[ $args['id'] ] : $std;
525
526
		echo '<div class="wpi-mcheck-rows wpi-mcheck-' . $sanitize_id . $class . '">';
527
        foreach( $args['options'] as $key => $option ):
528
			$sanitize_key = wpinv_sanitize_key( $key );
529
			if ( in_array( $sanitize_key, $value ) ) { 
530
				$enabled = $sanitize_key;
531
			} else { 
532
				$enabled = NULL; 
533
			}
534
			echo '<div class="wpi-mcheck-row"><input name="wpinv_settings[' . $sanitize_id . '][' . $sanitize_key . ']" id="wpinv_settings[' . $sanitize_id . '][' . $sanitize_key . ']" type="checkbox" value="' . esc_attr( $sanitize_key ) . '" ' . checked( $sanitize_key, $enabled, false ) . '/>&nbsp;';
535
			echo '<label for="wpinv_settings[' . $sanitize_id . '][' . $sanitize_key . ']">' . wp_kses_post( $option ) . '</label></div>';
536
		endforeach;
537
		echo '</div>';
538
		echo '<p class="description">' . $args['desc'] . '</p>';
539
	}
540
}
541
542
function wpinv_payment_icons_callback( $args ) {
543
	global $wpinv_options;
544
    
545
    $sanitize_id = wpinv_sanitize_key( $args['id'] );
546
547
	if ( ! empty( $args['options'] ) ) {
548
		foreach( $args['options'] as $key => $option ) {
549
            $sanitize_key = wpinv_sanitize_key( $key );
550
            
551
			if( isset( $wpinv_options[$args['id']][$key] ) ) {
552
				$enabled = $option;
553
			} else {
554
				$enabled = NULL;
555
			}
556
557
			echo '<label for="wpinv_settings[' . $sanitize_id . '][' . $sanitize_key . ']" style="margin-right:10px;line-height:16px;height:16px;display:inline-block;">';
558
559
				echo '<input name="wpinv_settings[' . $sanitize_id . '][' . $sanitize_key . ']" id="wpinv_settings[' . $sanitize_id . '][' . $sanitize_key . ']" type="checkbox" value="' . esc_attr( $option ) . '" ' . checked( $option, $enabled, false ) . '/>&nbsp;';
560
561
				if ( wpinv_string_is_image_url( $key ) ) {
562
					echo '<img class="payment-icon" src="' . esc_url( $key ) . '" style="width:32px;height:24px;position:relative;top:6px;margin-right:5px;"/>';
563
				} else {
564
					$card = strtolower( str_replace( ' ', '', $option ) );
565
566
					if ( has_filter( 'wpinv_accepted_payment_' . $card . '_image' ) ) {
567
						$image = apply_filters( 'wpinv_accepted_payment_' . $card . '_image', '' );
568
					} else {
569
						$image       = wpinv_locate_template( 'images' . DIRECTORY_SEPARATOR . 'icons' . DIRECTORY_SEPARATOR . $card . '.gif', false );
0 ignored issues
show
Bug introduced by
false of type false is incompatible with the type string expected by parameter $template_path of wpinv_locate_template(). ( Ignorable by Annotation )

If this is a false-positive, you can also ignore this issue in your code via the ignore-type  annotation

569
						$image       = wpinv_locate_template( 'images' . DIRECTORY_SEPARATOR . 'icons' . DIRECTORY_SEPARATOR . $card . '.gif', /** @scrutinizer ignore-type */ false );
Loading history...
570
						$content_dir = WP_CONTENT_DIR;
571
572
						if ( function_exists( 'wp_normalize_path' ) ) {
573
							// Replaces backslashes with forward slashes for Windows systems
574
							$image = wp_normalize_path( $image );
575
							$content_dir = wp_normalize_path( $content_dir );
576
						}
577
578
						$image = str_replace( $content_dir, content_url(), $image );
579
					}
580
581
					echo '<img class="payment-icon" src="' . esc_url( $image ) . '" style="width:32px;height:24px;position:relative;top:6px;margin-right:5px;"/>';
582
				}
583
			echo $option . '</label>';
584
		}
585
		echo '<p class="description" style="margin-top:16px;">' . wp_kses_post( $args['desc'] ) . '</p>';
586
	}
587
}
588
589
/**
590
 * Displays a radio settings field.
591
 */
592
function wpinv_radio_callback( $args ) {
593
594
	$std = isset( $args['std'] ) ? $args['std'] : '';
595
	$std = wpinv_get_option( $args['id'], $std );
596
	?>
597
		<fieldset>
598
			<ul id="wpinv-settings-<?php echo esc_attr( $args['id'] ); ?>" style="margin-top: 0;">
599
				<?php foreach( $args['options'] as $key => $option ) : ?>
600
					<li>
601
						<label>
602
							<input name="wpinv_settings[<?php echo esc_attr( $args['id'] ); ?>]" <?php checked( $std, $key ); ?> value="<?php echo esc_attr( $key ); ?>" type="radio">
603
							<?php echo wp_kses_post( $option ); ?>
604
						</label>
605
					</li>
606
				<?php endforeach; ?>
607
			</ul>
608
		</fieldset>
609
	<?php
610
	getpaid_settings_description_callback( $args );
611
}
612
613
/**
614
 * Displays a description if available.
615
 */
616
function getpaid_settings_description_callback( $args ) {
617
618
	if ( ! empty( $args['desc'] ) ) {
619
		$description = wp_kses_post( $args['desc'] );
620
		echo "<p class='description'>$description</p>";
621
	}
622
623
}
624
625
function wpinv_gateways_callback( $args ) {
626
	global $wpinv_options;
627
    
628
    $sanitize_id = wpinv_sanitize_key( $args['id'] );
629
630
	foreach ( $args['options'] as $key => $option ) :
631
		$sanitize_key = wpinv_sanitize_key( $key );
632
        
633
        if ( isset( $wpinv_options['gateways'][ $key ] ) )
634
			$enabled = '1';
635
		else
636
			$enabled = null;
637
638
		echo '<input name="wpinv_settings[' . esc_attr( $args['id'] ) . '][' . $sanitize_key . ']" id="wpinv_settings[' . $sanitize_id . '][' . $sanitize_key . ']" type="checkbox" value="1" ' . checked('1', $enabled, false) . '/>&nbsp;';
639
		echo '<label for="wpinv_settings[' . $sanitize_id . '][' . $sanitize_key . ']">' . esc_html( $option['admin_label'] ) . '</label><br/>';
640
	endforeach;
641
}
642
643
function wpinv_gateway_select_callback($args) {
644
	global $wpinv_options;
645
    
646
    $sanitize_id = wpinv_sanitize_key( $args['id'] );
647
    $class = !empty( $args['class'] ) ? ' ' . esc_attr( $args['class'] ) : '';
648
649
	echo '<select name="wpinv_settings[' . $sanitize_id . ']"" id="wpinv_settings[' . $sanitize_id . ']" class="'.$class.'" >';
650
651
	foreach ( $args['options'] as $key => $option ) :
652
		if ( isset( $args['selected'] ) && $args['selected'] !== null && $args['selected'] !== false ) {
653
            $selected = selected( $key, $args['selected'], false );
654
        } else {
655
            $selected = isset( $wpinv_options[ $args['id'] ] ) ? selected( $key, $wpinv_options[$args['id']], false ) : '';
656
        }
657
		echo '<option value="' . wpinv_sanitize_key( $key ) . '"' . $selected . '>' . esc_html( $option['admin_label'] ) . '</option>';
658
	endforeach;
659
660
	echo '</select>';
661
	echo '<label for="wpinv_settings[' . $sanitize_id . ']"> '  . wp_kses_post( $args['desc'] ) . '</label>';
662
}
663
664
/**
665
 * Generates attributes.
666
 * 
667
 * @param array $args
668
 * @return string
669
 */
670
function wpinv_settings_attrs_helper( $args ) {
671
672
	$value        = isset( $args['std'] ) ? $args['std'] : '';
673
	$id           = esc_attr( $args['id'] );
674
	$placeholder  = esc_attr( $args['placeholder'] );
675
676
	if ( ! empty( $args['faux'] ) ) {
677
		$args['readonly'] = true;
678
		$name             = '';
679
	} else {
680
		$value  = wpinv_get_option( $args['id'], $value );
681
		$name   = "wpinv_settings[$id]";
682
	}
683
684
	$value    = is_scalar( $value ) ? esc_attr( $value ) : '';
685
	$class    = esc_attr( $args['class'] );
686
	$style    = esc_attr( $args['style'] );
687
	$readonly = empty( $args['readonly'] ) ? '' : 'readonly onclick="this.select()"';
688
689
	$onchange = '';
690
    if ( ! empty( $args['onchange'] ) ) {
691
        $onchange = ' onchange="' . esc_attr( $args['onchange'] ) . '"';
692
	}
693
694
	return "name='$name' id='wpinv-settings-$id' style='$style' value='$value' class='$class' placeholder='$placeholder' data-placeholder='$placeholder' $onchange $readonly";
695
}
696
697
/**
698
 * Displays a text input settings callback.
699
 */
700
function wpinv_text_callback( $args ) {
701
702
	$desc = wp_kses_post( $args['desc'] );
703
	$desc = empty( $desc ) ? '' : "<p class='description'>$desc</p>";
704
	$attr = wpinv_settings_attrs_helper( $args );
705
706
	?>
707
		<label style="width: 100%;">
708
			<input type="text" <?php echo $attr; ?>>
709
			<?php echo $desc; ?>
710
		</label>
711
	<?php
712
713
}
714
715
/**
716
 * Displays a number input settings callback.
717
 */
718
function wpinv_number_callback( $args ) {
719
720
	$desc = wp_kses_post( $args['desc'] );
721
	$desc = empty( $desc ) ? '' : "<p class='description'>$desc</p>";
722
	$attr = wpinv_settings_attrs_helper( $args );
723
	$max  = absint( $args['max'] );
724
	$min  = absint( $args['min'] );
725
	$step = floatval( $args['step'] );
726
727
	?>
728
		<label style="width: 100%;">
729
			<input type="number" step="<?php echo $step; ?>" max="<?php echo $max; ?>" min="<?php echo $min; ?>" <?php echo $attr; ?>>
730
			<?php echo $desc; ?>
731
		</label>
732
	<?php
733
734
}
735
736
function wpinv_textarea_callback( $args ) {
737
	global $wpinv_options;
738
    
739
    $sanitize_id = wpinv_sanitize_key( $args['id'] );
740
741
	if ( isset( $wpinv_options[ $args['id'] ] ) ) {
742
		$value = $wpinv_options[ $args['id'] ];
743
	} else {
744
		$value = isset( $args['std'] ) ? $args['std'] : '';
745
	}
746
    
747
    $size = ( isset( $args['size'] ) && ! is_null( $args['size'] ) ) ? $args['size'] : 'regular';
748
    $class = ( isset( $args['class'] ) && ! is_null( $args['class'] ) ) ? $args['class'] : 'large-text';
749
750
	$html = '<textarea class="' . sanitize_html_class( $class ) . ' txtarea-' . sanitize_html_class( $size ) . ' wpi-' . esc_attr( sanitize_html_class( $sanitize_id ) ) . ' " cols="' . $args['cols'] . '" rows="' . $args['rows'] . '" id="wpinv_settings[' . $sanitize_id . ']" name="wpinv_settings[' . esc_attr( $args['id'] ) . ']">' . esc_textarea( stripslashes( $value ) ) . '</textarea>';
751
	$html .= '<br /><label for="wpinv_settings[' . $sanitize_id . ']"> '  . wp_kses_post( $args['desc'] ) . '</label>';
752
753
	echo $html;
754
}
755
756
function wpinv_password_callback( $args ) {
757
	global $wpinv_options;
758
    
759
    $sanitize_id = wpinv_sanitize_key( $args['id'] );
760
761
	if ( isset( $wpinv_options[ $args['id'] ] ) ) {
762
		$value = $wpinv_options[ $args['id'] ];
763
	} else {
764
		$value = isset( $args['std'] ) ? $args['std'] : '';
765
	}
766
767
	$size = ( isset( $args['size'] ) && ! is_null( $args['size'] ) ) ? $args['size'] : 'regular';
768
	$html = '<input type="password" class="' . sanitize_html_class( $size ) . '-text" id="wpinv_settings[' . $sanitize_id . ']" name="wpinv_settings[' . esc_attr( $args['id'] ) . ']" value="' . esc_attr( $value ) . '"/>';
769
	$html .= '<label for="wpinv_settings[' . $sanitize_id . ']"> ' . wp_kses_post( $args['desc'] ) . '</label>';
770
771
	echo $html;
772
}
773
774
function wpinv_missing_callback($args) {
775
	printf(
776
		__( 'The callback function used for the %s setting is missing.', 'invoicing' ),
777
		'<strong>' . $args['id'] . '</strong>'
778
	);
779
}
780
781
/**
782
 * Displays a number input settings callback.
783
 */
784
function wpinv_select_callback( $args ) {
785
786
	$desc   = wp_kses_post( $args['desc'] );
787
	$desc   = empty( $desc ) ? '' : "<p class='description'>$desc</p>";
788
	$attr   = wpinv_settings_attrs_helper( $args );
789
	$value  = isset( $args['std'] ) ? $args['std'] : '';
790
	$value  = wpinv_get_option( $args['id'], $value );
791
792
	?>
793
		<label style="width: 100%;">
794
			<select <?php echo $attr; ?>>
795
				<?php foreach ( $args['options'] as $option => $name ) : ?>
796
					<option value="<?php echo esc_attr( $option ); ?>" <?php echo selected( is_array( $value ) ? in_array( $option, $value, true ) : $option === $value ); ?>><?php echo wpinv_clean( $name ); ?></option>
0 ignored issues
show
Bug introduced by
Are you sure wpinv_clean($name) of type array|string can be used in echo? ( Ignorable by Annotation )

If this is a false-positive, you can also ignore this issue in your code via the ignore-type  annotation

796
					<option value="<?php echo esc_attr( $option ); ?>" <?php echo selected( is_array( $value ) ? in_array( $option, $value, true ) : $option === $value ); ?>><?php echo /** @scrutinizer ignore-type */ wpinv_clean( $name ); ?></option>
Loading history...
797
				<?php endforeach;?>
798
			</select>
799
			<?php echo $desc; ?>
800
		</label>
801
	<?php
802
803
}
804
805
function wpinv_color_select_callback( $args ) {
806
	global $wpinv_options;
807
    
808
    $sanitize_id = wpinv_sanitize_key( $args['id'] );
809
810
	if ( isset( $wpinv_options[ $args['id'] ] ) ) {
811
		$value = $wpinv_options[ $args['id'] ];
812
	} else {
813
		$value = isset( $args['std'] ) ? $args['std'] : '';
814
	}
815
816
	$html = '<select id="wpinv_settings[' . $sanitize_id . ']" name="wpinv_settings[' . esc_attr( $args['id'] ) . ']"/>';
817
818
	foreach ( $args['options'] as $option => $color ) {
819
		$selected = selected( $option, $value, false );
820
		$html .= '<option value="' . esc_attr( $option ) . '" ' . $selected . '>' . esc_html( $color['label'] ) . '</option>';
821
	}
822
823
	$html .= '</select>';
824
	$html .= '<label for="wpinv_settings[' . $sanitize_id . ']"> '  . wp_kses_post( $args['desc'] ) . '</label>';
825
826
	echo $html;
827
}
828
829
function wpinv_rich_editor_callback( $args ) {
830
	global $wpinv_options, $wp_version;
831
    
832
    $sanitize_id = wpinv_sanitize_key( $args['id'] );
833
834
	if ( isset( $wpinv_options[ $args['id'] ] ) ) {
835
		$value = $wpinv_options[ $args['id'] ];
836
837
		if( empty( $args['allow_blank'] ) && empty( $value ) ) {
838
			$value = isset( $args['std'] ) ? $args['std'] : '';
839
		}
840
	} else {
841
		$value = isset( $args['std'] ) ? $args['std'] : '';
842
	}
843
844
	$rows = isset( $args['size'] ) ? $args['size'] : 20;
845
846
	$html = '<div class="getpaid-settings-editor-input">';
847
	if ( $wp_version >= 3.3 && function_exists( 'wp_editor' ) ) {
848
		ob_start();
849
		wp_editor( stripslashes( $value ), 'wpinv_settings_' . esc_attr( $args['id'] ), array( 'textarea_name' => 'wpinv_settings[' . esc_attr( $args['id'] ) . ']', 'textarea_rows' => absint( $rows ), 'media_buttons' => false ) );
850
		$html .= ob_get_clean();
851
	} else {
852
		$html .= '<textarea class="large-text" rows="10" id="wpinv_settings[' . $sanitize_id . ']" name="wpinv_settings[' . esc_attr( $args['id'] ) . ']" class="wpi-' . esc_attr( sanitize_html_class( $args['id'] ) ) . '">' . esc_textarea( stripslashes( $value ) ) . '</textarea>';
853
	}
854
855
	$html .= '</div><br/><label for="wpinv_settings[' . $sanitize_id . ']"> ' . wp_kses_post( $args['desc'] ) . '</label>';
856
857
	echo $html;
858
}
859
860
function wpinv_upload_callback( $args ) {
861
	global $wpinv_options;
862
    
863
    $sanitize_id = wpinv_sanitize_key( $args['id'] );
864
865
	if ( isset( $wpinv_options[ $args['id'] ] ) ) {
866
		$value = $wpinv_options[$args['id']];
867
	} else {
868
		$value = isset($args['std']) ? $args['std'] : '';
869
	}
870
871
	$size = ( isset( $args['size'] ) && ! is_null( $args['size'] ) ) ? $args['size'] : 'regular';
872
	$html = '<input type="text" class="' . sanitize_html_class( $size ) . '-text" id="wpinv_settings[' . $sanitize_id . ']" name="wpinv_settings[' . esc_attr( $args['id'] ) . ']" value="' . esc_attr( stripslashes( $value ) ) . '"/>';
873
	$html .= '<span>&nbsp;<input type="button" class="wpinv_settings_upload_button button-secondary" value="' . __( 'Upload File', 'invoicing' ) . '"/></span>';
874
	$html .= '<label for="wpinv_settings[' . $sanitize_id . ']"> ' . wp_kses_post( $args['desc'] ) . '</label>';
875
876
	echo $html;
877
}
878
879
function wpinv_color_callback( $args ) {
880
	global $wpinv_options;
881
    
882
    $sanitize_id = wpinv_sanitize_key( $args['id'] );
883
884
	if ( isset( $wpinv_options[ $args['id'] ] ) ) {
885
		$value = $wpinv_options[ $args['id'] ];
886
	} else {
887
		$value = isset( $args['std'] ) ? $args['std'] : '';
888
	}
889
890
	$default = isset( $args['std'] ) ? $args['std'] : '';
891
892
	$html = '<input type="text" class="wpinv-color-picker" id="wpinv_settings[' . $sanitize_id . ']" name="wpinv_settings[' . esc_attr( $args['id'] ) . ']" value="' . esc_attr( $value ) . '" data-default-color="' . esc_attr( $default ) . '" />';
893
	$html .= '<label for="wpinv_settings[' . $sanitize_id . ']"> '  . wp_kses_post( $args['desc'] ) . '</label>';
894
895
	echo $html;
896
}
897
898
function wpinv_country_states_callback($args) {
899
	global $wpinv_options;
900
    
901
    $sanitize_id = wpinv_sanitize_key( $args['id'] );
902
903
	if ( isset( $args['placeholder'] ) ) {
904
		$placeholder = $args['placeholder'];
905
	} else {
906
		$placeholder = '';
907
	}
908
909
	$states = wpinv_get_country_states();
910
911
	$class = empty( $states ) ? ' class="wpinv-no-states"' : ' class="wpi_select2"';
912
	$html = '<select id="wpinv_settings[' . $sanitize_id . ']" name="wpinv_settings[' . esc_attr( $args['id'] ) . ']"' . $class . 'data-placeholder="' . esc_html( $placeholder ) . '"/>';
913
914
	foreach ( $states as $option => $name ) {
915
		$selected = isset( $wpinv_options[ $args['id'] ] ) ? selected( $option, $wpinv_options[$args['id']], false ) : '';
916
		$html .= '<option value="' . esc_attr( $option ) . '" ' . $selected . '>' . esc_html( $name ) . '</option>';
917
	}
918
919
	$html .= '</select>';
920
	$html .= '<label for="wpinv_settings[' . $sanitize_id . ']"> '  . wp_kses_post( $args['desc'] ) . '</label>';
921
922
	echo $html;
923
}
924
925
/**
926
 * Displays the tax rates edit table.
927
 */
928
function wpinv_tax_rates_callback() {
929
	
930
	?>
931
		</td>
932
	</tr>
933
	<tr class="bsui">
934
    	<td colspan="2" class="p-0">
935
			<?php include plugin_dir_path( __FILE__ ) . 'views/html-tax-rates-edit.php'; ?>
936
937
	<?php
938
939
}
940
941
/**
942
 * Displays a tax rate' edit row.
943
 */
944
function wpinv_tax_rate_callback( $tax_rate, $key, $echo = true ) {
945
	ob_start();
946
947
	$key                      = sanitize_key( $key );
948
	$tax_rate['reduced_rate'] = empty( $tax_rate['reduced_rate'] ) ? 0 : $tax_rate['reduced_rate'];
949
	include plugin_dir_path( __FILE__ ) . 'views/html-tax-rate-edit.php';
950
951
	if ( $echo ) {
952
		echo ob_get_clean();
953
	} else {
954
		return ob_get_clean(); 
955
	}
956
957
}
958
959
function wpinv_tools_callback($args) {
960
    ob_start(); ?>
961
    </td><tr>
962
    <td colspan="2" class="wpinv_tools_tdbox">
963
    <?php if ( $args['desc'] ) { ?><p><?php echo $args['desc']; ?></p><?php } ?>
964
    <?php do_action( 'wpinv_tools_before' ); ?>
965
    <table id="wpinv_tools_table" class="wp-list-table widefat fixed posts">
966
        <thead>
967
            <tr>
968
                <th scope="col" class="wpinv-th-tool"><?php _e( 'Tool', 'invoicing' ); ?></th>
969
                <th scope="col" class="wpinv-th-desc"><?php _e( 'Description', 'invoicing' ); ?></th>
970
                <th scope="col" class="wpinv-th-action"><?php _e( 'Action', 'invoicing' ); ?></th>
971
            </tr>
972
        </thead>
973
            <?php do_action( 'wpinv_tools_row' ); ?>
974
        <tbody>
975
        </tbody>
976
    </table>
977
    <?php do_action( 'wpinv_tools_after' ); ?>
978
    <?php
979
    echo ob_get_clean();
980
}
981
982
function wpinv_descriptive_text_callback( $args ) {
983
	echo wp_kses_post( $args['desc'] );
984
}
985
986
function wpinv_raw_html_callback( $args ) {
987
	echo $args['desc'];
988
}
989
990
function wpinv_hook_callback( $args ) {
991
	do_action( 'wpinv_' . $args['id'], $args );
992
}
993
994
function wpinv_set_settings_cap() {
995
	return wpinv_get_capability();
996
}
997
add_filter( 'option_page_capability_wpinv_settings', 'wpinv_set_settings_cap' );
998
999
function wpinv_settings_sanitize_input( $value, $key ) {
1000
1001
    if ( $key == 'tax_rate' ) {
1002
        $value = wpinv_sanitize_amount( $value );
1003
        $value = $value >= 100 ? 99 : $value;
1004
    }
1005
1006
    return $value;
1007
}
1008
add_filter( 'wpinv_settings_sanitize', 'wpinv_settings_sanitize_input', 10, 2 );
1009
1010
function wpinv_on_update_settings( $old_value, $value, $option ) {
1011
    $old = !empty( $old_value['remove_data_on_unistall'] ) ? 1 : '';
1012
    $new = !empty( $value['remove_data_on_unistall'] ) ? 1 : '';
1013
    
1014
    if ( $old != $new ) {
1015
        update_option( 'wpinv_remove_data_on_invoice_unistall', $new );
1016
    }
1017
}
1018
add_action( 'update_option_wpinv_settings', 'wpinv_on_update_settings', 10, 3 );
1019
add_action( 'wpinv_settings_tab_bottom_emails_new_invoice', 'wpinv_settings_tab_bottom_emails', 10, 2 );
1020
add_action( 'wpinv_settings_tab_bottom_emails_cancelled_invoice', 'wpinv_settings_tab_bottom_emails', 10, 2 );
1021
add_action( 'wpinv_settings_tab_bottom_emails_failed_invoice', 'wpinv_settings_tab_bottom_emails', 10, 2 );
1022
add_action( 'wpinv_settings_tab_bottom_emails_onhold_invoice', 'wpinv_settings_tab_bottom_emails', 10, 2 );
1023
add_action( 'wpinv_settings_tab_bottom_emails_processing_invoice', 'wpinv_settings_tab_bottom_emails', 10, 2 );
1024
add_action( 'wpinv_settings_tab_bottom_emails_completed_invoice', 'wpinv_settings_tab_bottom_emails', 10, 2 );
1025
add_action( 'wpinv_settings_tab_bottom_emails_refunded_invoice', 'wpinv_settings_tab_bottom_emails', 10, 2 );
1026
add_action( 'wpinv_settings_tab_bottom_emails_user_invoice', 'wpinv_settings_tab_bottom_emails', 10, 2 );
1027
add_action( 'wpinv_settings_tab_bottom_emails_user_note', 'wpinv_settings_tab_bottom_emails', 10, 2 );
1028
add_action( 'wpinv_settings_tab_bottom_emails_overdue', 'wpinv_settings_tab_bottom_emails', 10, 2 );
1029
1030
function wpinv_settings_tab_bottom_emails( $active_tab, $section ) {
1031
    ?>
1032
    <div class="wpinv-email-wc-row ">
1033
        <div class="wpinv-email-wc-td">
1034
            <h3 class="wpinv-email-wc-title"><?php echo apply_filters( 'wpinv_settings_email_wildcards_title', __( 'Wildcards For Emails', 'invoicing' ) ); ?></h3>
1035
            <p class="wpinv-email-wc-description">
1036
                <?php
1037
                $description = __( 'The following wildcards can be used in email subjects, heading and content:<br>
1038
                    <strong>{site_title} :</strong> Site Title<br>
1039
                    <strong>{name} :</strong> Customer\'s full name<br>
1040
                    <strong>{first_name} :</strong> Customer\'s first name<br>
1041
                    <strong>{last_name} :</strong> Customer\'s last name<br>
1042
                    <strong>{email} :</strong> Customer\'s email address<br>
1043
                    <strong>{invoice_number} :</strong> The invoice number<br>
1044
                    <strong>{invoice_total} :</strong> The invoice total<br>
1045
                    <strong>{invoice_link} :</strong> The invoice link<br>
1046
                    <strong>{invoice_pay_link} :</strong> The payment link<br>
1047
                    <strong>{invoice_date} :</strong> The date the invoice was created<br>
1048
                    <strong>{invoice_due_date} :</strong> The date the invoice is due<br>
1049
                    <strong>{date} :</strong> Today\'s date.<br>
1050
                    <strong>{is_was} :</strong> If due date of invoice is past, displays "was" otherwise displays "is"<br>
1051
                    <strong>{invoice_label} :</strong> Invoices/quotes singular name. Ex: Invoice/Quote<br>', 'invoicing' );
1052
                echo apply_filters('wpinv_settings_email_wildcards_description', $description, $active_tab, $section);
1053
                ?>
1054
            </p>
1055
        </div>
1056
    </div>
1057
    <?php
1058
}