Completed
Push — develop ( 744f01...bc21cb )
by Zack
17:24
created

gravityview::parse_and_sanitize_atts()   C

Complexity

Conditions 11
Paths 15

Size

Total Lines 59

Duplication

Lines 0
Ratio 0 %

Code Coverage

Tests 21
CRAP Score 12.3274

Importance

Changes 0
Metric Value
cc 11
nc 15
nop 1
dl 0
loc 59
ccs 21
cts 27
cp 0.7778
crap 12.3274
rs 6.7478
c 0
b 0
f 0

How to fix   Long Method    Complexity   

Long Method

Small methods make your code easier to understand, in particular if combined with a good name. Besides, if your method is small, finding a good name is usually much easier.

For example, if you find yourself adding comments to a method's body, this is usually a good sign to extract the commented part to a new method, and use the comment as a starting point when coming up with a good name for this new method.

Commonly applied refactorings include:

1
<?php
0 ignored issues
show
Coding Style Compatibility introduced by
For compatibility and reusability of your code, PSR1 recommends that a file should introduce either new symbols (like classes, functions, etc.) or have side-effects (like outputting something, or including other files), but not both at the same time. The first symbol is defined on line 12 and the first side effect is on line 6.

The PSR-1: Basic Coding Standard recommends that a file should either introduce new symbols, that is classes, functions, constants or similar, or have side effects. Side effects are anything that executes logic, like for example printing output, changing ini settings or writing to a file.

The idea behind this recommendation is that merely auto-loading a class should not change the state of an application. It also promotes a cleaner style of programming and makes your code less prone to errors, because the logic is not spread out all over the place.

To learn more about the PSR-1, please see the PHP-FIG site on the PSR-1.

Loading history...
2
namespace GV\Shortcodes;
3
4
/** If this file is called directly, abort. */
5
if ( ! defined( 'GRAVITYVIEW_DIR' ) ) {
6
	die();
7
}
8
9
/**
10
 * The [gravityview] shortcode.
11
 */
12
class gravityview extends \GV\Shortcode {
0 ignored issues
show
Coding Style introduced by
Class name "gravityview" is not in camel caps format
Loading history...
13
	/**
14
	 * {@inheritDoc}
15
	 */
16
	public $name = 'gravityview';
17
18
	/**
19
	 * Process and output the [gravityview] shortcode.
20
	 *
21
	 * @param array $passed_atts The attributes passed.
22
	 * @param string $content The content inside the shortcode.
23
	 *
24
	 * @return string|null The output.
25
	 */
26 6
	public function callback( $passed_atts, $content = null ) {
27
28 6
		$request = gravityview()->request;
29
30 6
		if ( $request->is_admin() ) {
31
			return '';
32
		}
33
34 6
		$atts = wp_parse_args( $passed_atts, array(
35 6
			'id' => 0,
36
			'view_id' => 0,
37
			'detail' => null,
38
		) );
39
		
40 6
		if ( ! $view_id = $atts['id'] ? : $atts['view_id'] ) {
41
			if ( $atts['detail'] && $view = $request->is_view() ) {
42
				$view_id = $view->ID;
0 ignored issues
show
Bug introduced by
The property ID does not seem to exist in GV\View.

An attempt at access to an undefined property has been detected. This may either be a typographical error or the property has been renamed but there are still references to its old name.

If you really want to allow access to undefined properties, you can define magic methods to allow access. See the php core documentation on Overloading.

Loading history...
43
			}
44
		}
45
46 6
		$view = \GV\View::by_id( $view_id );
47
48 6
		if ( ! $view ) {
49
			gravityview()->log->error( 'View does not exist #{view_id}', array( 'view_id' => $view_id ) );
50
			return '';
51
		}
52
53 6
		gravityview()->views->set( $view );
0 ignored issues
show
Documentation introduced by
The property views does not exist on object<GV\Core>. Since you implemented __get, maybe consider adding a @property annotation.

Since your code implements the magic getter _get, this function will be called for any read access on an undefined variable. You can add the @property annotation to your class or interface to document the existence of this variable.

<?php

/**
 * @property int $x
 * @property int $y
 * @property string $text
 */
class MyLabel
{
    private $properties;

    private $allowedProperties = array('x', 'y', 'text');

    public function __get($name)
    {
        if (isset($properties[$name]) && in_array($name, $this->allowedProperties)) {
            return $properties[$name];
        } else {
            return null;
        }
    }

    public function __set($name, $value)
    {
        if (in_array($name, $this->allowedProperties)) {
            $properties[$name] = $value;
        } else {
            throw new \LogicException("Property $name is not defined.");
        }
    }

}

If the property has read access only, you can use the @property-read annotation instead.

Of course, you may also just have mistyped another name, in which case you should fix the error.

See also the PhpDoc documentation for @property.

Loading history...
54
55
		/**
56
		 * When this shortcode is embedded inside a View we can only display it as a directory. There's no other way.
57
		 * Try to detect that we're not embedded to allow edit and single contexts.
58
		 */
59 6
		$is_reembedded = false; // Assume not embedded unless detected otherwise.
60 6
		if ( in_array( get_class( $request ), array( 'GV\Frontend_Request', 'GV\Mock_Request' ) ) ) {
61 6
			if ( ( $_view = $request->is_view() ) && $_view->ID !== $view->ID ) {
0 ignored issues
show
Documentation introduced by
The property ID does not exist on object<GV\View>. Since you implemented __get, maybe consider adding a @property annotation.

Since your code implements the magic getter _get, this function will be called for any read access on an undefined variable. You can add the @property annotation to your class or interface to document the existence of this variable.

<?php

/**
 * @property int $x
 * @property int $y
 * @property string $text
 */
class MyLabel
{
    private $properties;

    private $allowedProperties = array('x', 'y', 'text');

    public function __get($name)
    {
        if (isset($properties[$name]) && in_array($name, $this->allowedProperties)) {
            return $properties[$name];
        } else {
            return null;
        }
    }

    public function __set($name, $value)
    {
        if (in_array($name, $this->allowedProperties)) {
            $properties[$name] = $value;
        } else {
            throw new \LogicException("Property $name is not defined.");
        }
    }

}

If the property has read access only, you can use the @property-read annotation instead.

Of course, you may also just have mistyped another name, in which case you should fix the error.

See also the PhpDoc documentation for @property.

Loading history...
62
				$is_reembedded = true;
63
			}
64
		}
65
66
		/**
67
		 * Remove Widgets on a nested embedded View.
68
		 */
69 6
		if ( $is_reembedded ) {
70
			$view->widgets = new \GV\Widget_Collection();
71
		}
72
73 6
		$atts = $this->parse_and_sanitize_atts( $atts );
74
75 6
		$view->settings->update( $atts );
76 6
		$entries = $view->get_entries( $request );
77
78
		/**
79
		 * Check permissions.
80
		 */
81 6
		while ( $error = $view->can_render( array( 'shortcode' ), $request ) ) {
82 1
			if ( ! is_wp_error( $error ) )
0 ignored issues
show
Coding Style Best Practice introduced by
It is generally a best practice to always use braces with control structures.

Adding braces to control structures avoids accidental mistakes as your code changes:

// Without braces (not recommended)
if (true)
    doSomething();

// Recommended
if (true) {
    doSomething();
}
Loading history...
83
				break;
84
85 1
			switch ( str_replace( 'gravityview/', '', $error->get_error_code() ) ) {
86 1
				case 'post_password_required':
87 1
					return get_the_password_form( $view->ID );
0 ignored issues
show
Documentation introduced by
The property ID does not exist on object<GV\View>. Since you implemented __get, maybe consider adding a @property annotation.

Since your code implements the magic getter _get, this function will be called for any read access on an undefined variable. You can add the @property annotation to your class or interface to document the existence of this variable.

<?php

/**
 * @property int $x
 * @property int $y
 * @property string $text
 */
class MyLabel
{
    private $properties;

    private $allowedProperties = array('x', 'y', 'text');

    public function __get($name)
    {
        if (isset($properties[$name]) && in_array($name, $this->allowedProperties)) {
            return $properties[$name];
        } else {
            return null;
        }
    }

    public function __set($name, $value)
    {
        if (in_array($name, $this->allowedProperties)) {
            $properties[$name] = $value;
        } else {
            throw new \LogicException("Property $name is not defined.");
        }
    }

}

If the property has read access only, you can use the @property-read annotation instead.

Of course, you may also just have mistyped another name, in which case you should fix the error.

See also the PhpDoc documentation for @property.

Loading history...
88 1
				case 'no_form_attached':
89
					/**
90
					 * This View has no data source. There's nothing to show really.
91
					 * ...apart from a nice message if the user can do anything about it.
92
					 */
93
					if ( \GVCommon::has_cap( array( 'edit_gravityviews', 'edit_gravityview' ), $view->ID ) ) {
0 ignored issues
show
Documentation introduced by
The property ID does not exist on object<GV\View>. Since you implemented __get, maybe consider adding a @property annotation.

Since your code implements the magic getter _get, this function will be called for any read access on an undefined variable. You can add the @property annotation to your class or interface to document the existence of this variable.

<?php

/**
 * @property int $x
 * @property int $y
 * @property string $text
 */
class MyLabel
{
    private $properties;

    private $allowedProperties = array('x', 'y', 'text');

    public function __get($name)
    {
        if (isset($properties[$name]) && in_array($name, $this->allowedProperties)) {
            return $properties[$name];
        } else {
            return null;
        }
    }

    public function __set($name, $value)
    {
        if (in_array($name, $this->allowedProperties)) {
            $properties[$name] = $value;
        } else {
            throw new \LogicException("Property $name is not defined.");
        }
    }

}

If the property has read access only, you can use the @property-read annotation instead.

Of course, you may also just have mistyped another name, in which case you should fix the error.

See also the PhpDoc documentation for @property.

Loading history...
94
						return __( sprintf( 'This View is not configured properly. Start by <a href="%s">selecting a form</a>.', esc_url( get_edit_post_link( $view->ID, false ) ) ), 'gravityview' );
0 ignored issues
show
Documentation introduced by
The property ID does not exist on object<GV\View>. Since you implemented __get, maybe consider adding a @property annotation.

Since your code implements the magic getter _get, this function will be called for any read access on an undefined variable. You can add the @property annotation to your class or interface to document the existence of this variable.

<?php

/**
 * @property int $x
 * @property int $y
 * @property string $text
 */
class MyLabel
{
    private $properties;

    private $allowedProperties = array('x', 'y', 'text');

    public function __get($name)
    {
        if (isset($properties[$name]) && in_array($name, $this->allowedProperties)) {
            return $properties[$name];
        } else {
            return null;
        }
    }

    public function __set($name, $value)
    {
        if (in_array($name, $this->allowedProperties)) {
            $properties[$name] = $value;
        } else {
            throw new \LogicException("Property $name is not defined.");
        }
    }

}

If the property has read access only, you can use the @property-read annotation instead.

Of course, you may also just have mistyped another name, in which case you should fix the error.

See also the PhpDoc documentation for @property.

Loading history...
introduced by
Expected a sanitizing function (see Codex for 'Data Validation'), but instead saw 'sprintf'
Loading history...
95
					}
96
					break;
97 1
				case 'no_direct_access':
98 1
				case 'embed_only':
99 1
				case 'not_public':
100 1
					return __( 'You are not allowed to view this content.', 'gravityview' );
101
			}
102
		}
103
104 6
		$is_admin_and_can_view = $view->settings->get( 'admin_show_all_statuses' ) && \GVCommon::has_cap('gravityview_moderate_entries', $view->ID );
0 ignored issues
show
Documentation introduced by
The property ID does not exist on object<GV\View>. Since you implemented __get, maybe consider adding a @property annotation.

Since your code implements the magic getter _get, this function will be called for any read access on an undefined variable. You can add the @property annotation to your class or interface to document the existence of this variable.

<?php

/**
 * @property int $x
 * @property int $y
 * @property string $text
 */
class MyLabel
{
    private $properties;

    private $allowedProperties = array('x', 'y', 'text');

    public function __get($name)
    {
        if (isset($properties[$name]) && in_array($name, $this->allowedProperties)) {
            return $properties[$name];
        } else {
            return null;
        }
    }

    public function __set($name, $value)
    {
        if (in_array($name, $this->allowedProperties)) {
            $properties[$name] = $value;
        } else {
            throw new \LogicException("Property $name is not defined.");
        }
    }

}

If the property has read access only, you can use the @property-read annotation instead.

Of course, you may also just have mistyped another name, in which case you should fix the error.

See also the PhpDoc documentation for @property.

Loading history...
Coding Style introduced by
Expected 1 spaces after opening bracket; 0 found
Loading history...
105
106
		/**
107
		 * View details.
108
		 */
109 6
		if ( $atts['detail'] ) {
110 2
			return $this->detail( $view, $entries, $atts );
111
112
		/**
113
		 * Editing a single entry.
114
		 */
115 5
		} else if ( ! $is_reembedded && ( $entry = $request->is_edit_entry() ) ) {
116
117
			/**
118
			 * When editing an entry don't render multiple views.
119
			 */
120
			if ( ( $selected = \GV\Utils::_GET( 'gvid' ) ) && $view->ID != $selected ) {
0 ignored issues
show
Documentation introduced by
The property ID does not exist on object<GV\View>. Since you implemented __get, maybe consider adding a @property annotation.

Since your code implements the magic getter _get, this function will be called for any read access on an undefined variable. You can add the @property annotation to your class or interface to document the existence of this variable.

<?php

/**
 * @property int $x
 * @property int $y
 * @property string $text
 */
class MyLabel
{
    private $properties;

    private $allowedProperties = array('x', 'y', 'text');

    public function __get($name)
    {
        if (isset($properties[$name]) && in_array($name, $this->allowedProperties)) {
            return $properties[$name];
        } else {
            return null;
        }
    }

    public function __set($name, $value)
    {
        if (in_array($name, $this->allowedProperties)) {
            $properties[$name] = $value;
        } else {
            throw new \LogicException("Property $name is not defined.");
        }
    }

}

If the property has read access only, you can use the @property-read annotation instead.

Of course, you may also just have mistyped another name, in which case you should fix the error.

See also the PhpDoc documentation for @property.

Loading history...
121
				gravityview()->log->notice( 'Entry ID #{entry_id} not rendered because another View ID was passed using `?gvid`: #{selected}', array( 'entry_id' => $entry->ID, 'selected' => $selected ) );
122
				return '';
123
			}
124
125
			if ( $entry['status'] != 'active' ) {
0 ignored issues
show
introduced by
Found "!= '". Use Yoda Condition checks, you must
Loading history...
126
				gravityview()->log->notice( 'Entry ID #{entry_id} is not active', array( 'entry_id' => $entry->ID ) );
127
				return __( 'You are not allowed to view this content.', 'gravityview' );
128
			}
129
130
			if ( apply_filters( 'gravityview_custom_entry_slug', false ) && $entry->slug != get_query_var( \GV\Entry::get_endpoint_name() ) ) {
131
				gravityview()->log->error( 'Entry ID #{entry_id} was accessed by a bad slug', array( 'entry_id' => $entry->ID ) );
132
				return __( 'You are not allowed to view this content.', 'gravityview' );
133
			}
134
135
			if ( $view->settings->get( 'show_only_approved' ) && ! $is_admin_and_can_view ) {
136
				if ( ! \GravityView_Entry_Approval_Status::is_approved( gform_get_meta( $entry->ID, \GravityView_Entry_Approval::meta_key ) )  ) {
137
					gravityview()->log->error( 'Entry ID #{entry_id} is not approved for viewing', array( 'entry_id' => $entry->ID ) );
138
					return __( 'You are not allowed to view this content.', 'gravityview' );
139
				}
140
			}
141
142
			$renderer = new \GV\Edit_Entry_Renderer();
143
			return $renderer->render( $entry, $view, $request );
144
145
		/**
146
		 * Viewing a single entry.
147
		 */
148 5
		} else if ( ! $is_reembedded && ( $entry = $request->is_entry() ) ) {
149
			/**
150
			 * When viewing an entry don't render multiple views.
151
			 */
152 2
			if ( ( $selected = \GV\Utils::_GET( 'gvid' ) ) && $view->ID != $selected ) {
0 ignored issues
show
Documentation introduced by
The property ID does not exist on object<GV\View>. Since you implemented __get, maybe consider adding a @property annotation.

Since your code implements the magic getter _get, this function will be called for any read access on an undefined variable. You can add the @property annotation to your class or interface to document the existence of this variable.

<?php

/**
 * @property int $x
 * @property int $y
 * @property string $text
 */
class MyLabel
{
    private $properties;

    private $allowedProperties = array('x', 'y', 'text');

    public function __get($name)
    {
        if (isset($properties[$name]) && in_array($name, $this->allowedProperties)) {
            return $properties[$name];
        } else {
            return null;
        }
    }

    public function __set($name, $value)
    {
        if (in_array($name, $this->allowedProperties)) {
            $properties[$name] = $value;
        } else {
            throw new \LogicException("Property $name is not defined.");
        }
    }

}

If the property has read access only, you can use the @property-read annotation instead.

Of course, you may also just have mistyped another name, in which case you should fix the error.

See also the PhpDoc documentation for @property.

Loading history...
153
				return '';
154
			}
155
156 2
			if ( $entry['status'] != 'active' ) {
0 ignored issues
show
introduced by
Found "!= '". Use Yoda Condition checks, you must
Loading history...
157 1
				gravityview()->log->notice( 'Entry ID #{entry_id} is not active', array( 'entry_id' => $entry->ID ) );
158 1
				return __( 'You are not allowed to view this content.', 'gravityview' );
159
			}
160
161 2
			if ( apply_filters( 'gravityview_custom_entry_slug', false ) && $entry->slug != get_query_var( \GV\Entry::get_endpoint_name() ) ) {
162 1
				gravityview()->log->error( 'Entry ID #{entry_id} was accessed by a bad slug', array( 'entry_id' => $entry->ID ) );
163 1
				return __( 'You are not allowed to view this content.', 'gravityview' );
164
			}
165
166 2
			if ( $view->settings->get( 'show_only_approved' ) && ! $is_admin_and_can_view ) {
167 1
				if ( ! \GravityView_Entry_Approval_Status::is_approved( gform_get_meta( $entry->ID, \GravityView_Entry_Approval::meta_key ) )  ) {
168 1
					gravityview()->log->error( 'Entry ID #{entry_id} is not approved for viewing', array( 'entry_id' => $entry->ID ) );
169 1
					return __( 'You are not allowed to view this content.', 'gravityview' );
170
				}
171
			}
172
173 2
			$error = \GVCommon::check_entry_display( $entry->as_entry() );
174
175 2
			if( is_wp_error( $error ) ) {
176 1
				gravityview()->log->error( 'Entry ID #{entry_id} is not approved for viewing: {message}', array( 'entry_id' => $entry->ID, 'message' => $error->get_error_message() ) );
177 1
				return __( 'You are not allowed to view this content.', 'gravityview' );
178
			}
179
180 2
			$renderer = new \GV\Entry_Renderer();
181 2
			return $renderer->render( $entry, $view, $request );
182
183
		/**
184
		 * Just this view.
185
		 */
186
		} else {
187 4
			if ( $is_reembedded ) {
188
				
189
				// Mock the request with the actual View, not the global one
190
				$mock_request = new \GV\Mock_Request();
191
				$mock_request->returns['is_view'] = $view;
192
				$mock_request->returns['is_entry'] = $request->is_entry();
193
				$mock_request->returns['is_edit_entry'] = $request->is_edit_entry();
194
				$mock_request->returns['is_search'] = $request->is_search();
195
196
				$request = $mock_request;
197
			}
198
199 4
			$renderer = new \GV\View_Renderer();
200 4
			return $renderer->render( $view, $request );
201
		}
202
	}
203
204
	/**
205
	 * Validate attributes passed to the [gravityview] shortcode. Supports {get} Merge Tags values.
206
	 *
207
	 * Attributes passed to the shortcode are compared to registered attributes {@see \GV\View_Settings::defaults}
208
	 * Only attributes that are defined will be allowed through.
209
	 *
210
	 * Then, {get} merge tags are replaced with their $_GET values, if passed
211
	 *
212
	 * Then, attributes are sanitized based on the type of setting (number, checkbox, select, radio, text)
213
	 *
214
	 * @see \GV\View_Settings::defaults() Only attributes defined in default() are valid to be passed via the shortcode
215
	 *
216
	 * @param array $passed_atts Attribute pairs defined to render the View
217
	 *
218
	 * @return array Valid and sanitized attribute pairs
219
	 */
220 5
	private function parse_and_sanitize_atts( $passed_atts ) {
221
222 5
		$defaults = \GV\View_Settings::defaults( true );
223
224 5
		$supported_atts = array_fill_keys( array_keys( $defaults ), '' );
225
226
		// Whittle down the attributes to only valid pairs
227 5
		$filtered_atts = shortcode_atts( $supported_atts, $passed_atts, 'gravityview' );
228
229
		// Only keep the passed attributes after making sure that they're valid pairs
230 5
		$filtered_atts = array_intersect_key( (array) $passed_atts, $filtered_atts );
231
232 5
		$atts = array();
233
234 5
		foreach( $filtered_atts as $key => $passed_value ) {
235
236
			// Allow using GravityView merge tags in shortcode attributes, like {get} and {created_by}
237 5
			$passed_value = \GravityView_Merge_Tags::replace_variables( $passed_value );
238
239 5
			switch( $defaults[ $key ]['type'] ) {
240
241
				/**
242
				 * Make sure number fields are numeric.
243
				 * Also, convert mixed number strings to numbers
244
				 * @see http://php.net/manual/en/function.is-numeric.php#107326
245
				 */
246 5
				case 'number':
247 5
					if( is_numeric( $passed_value ) ) {
248 5
						$atts[ $key ] = ( $passed_value + 0 );
249
					}
250 5
					break;
251
252
				// Checkboxes should be 1 or 0
253 1
				case 'checkbox':
254
					$atts[ $key ] = gv_empty( $passed_value, true, false ) ? 0 : 1;
255
					break;
256
257
				/**
258
				 * Only allow values that are defined in the settings
259
				 */
260 1
				case 'select':
261 1
				case 'radio':
262
					$options = isset( $defaults[ $key ]['choices'] ) ? $defaults[ $key ]['choices'] : $defaults[ $key ]['options'];
263
					if( in_array( $passed_value, array_keys( $options ) ) ) {
264
						$atts[ $key ] = $passed_value;
265
					}
266
					break;
267
268 1
				case 'text':
269
				default:
270 1
					$atts[ $key ] = $passed_value;
271 5
					break;
272
			}
273
		}
274
275 5
		$atts['detail'] = \GV\Utils::get( $passed_atts, 'detail', null );
276
277 5
		return $atts;
278
	}
279
280
	/**
281
	 * Output view details.
282
	 *
283
	 * @param \GV\View $view The View.
284
	 * @param \GV\Entry_Collection $entries The calculated entries.
285
	 * @param array $atts The shortcode attributes (with defaults).
286
	 *
287
	 * @return string The output.
288
	 */
289 1
	private function detail( $view, $entries, $atts ) {
290 1
		$output = '';
291
292 1
		switch ( $key = $atts['detail'] ):
293 1
			case 'total_entries':
294 1
				$output = number_format_i18n( $entries->total() );
295 1
				break;
296
			case 'first_entry':
297
				$output = number_format_i18n( min( $entries->total(), $view->settings->get( 'offset' ) + 1 ) );
298
				break;
299
			case 'last_entry':
300
				$output = number_format_i18n( $view->settings->get( 'page_size' ) + $view->settings->get( 'offset' ) );
301
				break;
302
			case 'page_size':
303
				$output = number_format_i18n( $view->settings->get( $key ) );
304
				break;
305
		endswitch;
306
307
		/**
308
		 * @filter `gravityview/shortcode/detail/{$detail}` Filter the detail output returned from `[gravityview detail="$detail"]`
309
		 * @since 1.13
310
		 * @param string[in,out] $output Existing output
0 ignored issues
show
Documentation introduced by
The doc-type string[in,out] could not be parsed: Expected "]" at position 2, but found "in". (view supported doc-types)

This check marks PHPDoc comments that could not be parsed by our parser. To see which comment annotations we can parse, please refer to our documentation on supported doc-types.

Loading history...
311
		 *
312
		 * @since 2.0.3
313
		 * @param \GV\View $view The view.
314
		 * @param \GV\Entry_Collection $entries The entries.
315
		 * @param array $atts The shortcode atts with defaults.
316
		 */
317 1
		$output = apply_filters( "gravityview/shortcode/detail/$key", $output, $view );
318
319 1
		return $output;
320
	}
321
}
322