[FIX] website_forum: allow moderators to see misbehaving user profiles
[odoo/odoo.git] / addons / website_forum / controllers / main.py
1 # -*- coding: utf-8 -*-
2
3 import werkzeug.urls
4 import werkzeug.wrappers
5 import simplejson
6
7 from openerp import tools
8 from openerp import SUPERUSER_ID
9 from openerp.addons.web import http
10 from openerp.addons.web.controllers.main import login_redirect
11 from openerp.addons.web.http import request
12 from openerp.addons.website.controllers.main import Website as controllers
13 from openerp.addons.website.models.website import slug
14
15 controllers = controllers()
16
17
18 class WebsiteForum(http.Controller):
19     _post_per_page = 10
20     _user_per_page = 30
21
22     def _get_notifications(self):
23         cr, uid, context = request.cr, request.uid, request.context
24         Message = request.registry['mail.message']
25         badge_st_id = request.registry['ir.model.data'].xmlid_to_res_id(cr, uid, 'gamification.mt_badge_granted')
26         if badge_st_id:
27             msg_ids = Message.search(cr, uid, [('subtype_id', '=', badge_st_id), ('to_read', '=', True)], context=context)
28             msg = Message.browse(cr, uid, msg_ids, context=context)
29         else:
30             msg = list()
31         return msg
32
33     def _prepare_forum_values(self, forum=None, **kwargs):
34         user = request.registry['res.users'].browse(request.cr, request.uid, request.uid, context=request.context)
35         values = {
36             'user': user,
37             'is_public_user': user.id == request.website.user_id.id,
38             'notifications': self._get_notifications(),
39             'header': kwargs.get('header', dict()),
40             'searches': kwargs.get('searches', dict()),
41             'validation_email_sent': request.session.get('validation_email_sent', False),
42             'validation_email_done': request.session.get('validation_email_done', False),
43         }
44         if forum:
45             values['forum'] = forum
46         elif kwargs.get('forum_id'):
47             values['forum'] = request.registry['forum.forum'].browse(request.cr, request.uid, kwargs.pop('forum_id'), context=request.context)
48         values.update(kwargs)
49         return values
50
51     # User and validation
52     # --------------------------------------------------
53
54     @http.route('/forum/send_validation_email', type='json', auth='user', website=True)
55     def send_validation_email(self, forum_id=None, **kwargs):
56         request.registry['res.users'].send_forum_validation_email(request.cr, request.uid, request.uid, forum_id=forum_id, context=request.context)
57         request.session['validation_email_sent'] = True
58         return True
59
60     @http.route('/forum/validate_email', type='http', auth='public', website=True)
61     def validate_email(self, token, id, email, forum_id=None, **kwargs):
62         if forum_id:
63             try:
64                 forum_id = int(forum_id)
65             except ValueError:
66                 forum_id = None
67         done = request.registry['res.users'].process_forum_validation_token(request.cr, request.uid, token, int(id), email, forum_id=forum_id, context=request.context)
68         if done:
69             request.session['validation_email_done'] = True
70         if forum_id:
71             return request.redirect("/forum/%s" % int(forum_id))
72         return request.redirect('/forum')
73
74     @http.route('/forum/validate_email/close', type='json', auth='public', website=True)
75     def validate_email_done(self):
76         request.session['validation_email_done'] = False
77         return True
78
79     # Forum
80     # --------------------------------------------------
81
82     @http.route(['/forum'], type='http', auth="public", website=True)
83     def forum(self, **kwargs):
84         cr, uid, context = request.cr, request.uid, request.context
85         Forum = request.registry['forum.forum']
86         obj_ids = Forum.search(cr, uid, [], context=context)
87         forums = Forum.browse(cr, uid, obj_ids, context=context)
88         return request.website.render("website_forum.forum_all", {'forums': forums})
89
90     @http.route('/forum/new', type='http', auth="user", methods=['POST'], website=True)
91     def forum_create(self, forum_name="New Forum", **kwargs):
92         forum_id = request.registry['forum.forum'].create(request.cr, request.uid, {
93             'name': forum_name,
94         }, context=request.context)
95         return request.redirect("/forum/%s" % forum_id)
96
97     @http.route('/forum/notification_read', type='json', auth="user", methods=['POST'], website=True)
98     def notification_read(self, **kwargs):
99         request.registry['mail.message'].set_message_read(request.cr, request.uid, [int(kwargs.get('notification_id'))], read=True, context=request.context)
100         return True
101
102     @http.route(['/forum/<model("forum.forum"):forum>',
103                  '/forum/<model("forum.forum"):forum>/page/<int:page>',
104                  '''/forum/<model("forum.forum"):forum>/tag/<model("forum.tag", "[('forum_id','=',forum[0])]"):tag>/questions''',
105                  '''/forum/<model("forum.forum"):forum>/tag/<model("forum.tag", "[('forum_id','=',forum[0])]"):tag>/questions/page/<int:page>''',
106                  ], type='http', auth="public", website=True)
107     def questions(self, forum, tag=None, page=1, filters='all', sorting='date', search='', **post):
108         cr, uid, context = request.cr, request.uid, request.context
109         Post = request.registry['forum.post']
110         user = request.registry['res.users'].browse(cr, uid, uid, context=context)
111
112         domain = [('forum_id', '=', forum.id), ('parent_id', '=', False), ('state', '=', 'active')]
113         if search:
114             domain += ['|', ('name', 'ilike', search), ('content', 'ilike', search)]
115         if tag:
116             domain += [('tag_ids', 'in', tag.id)]
117         if filters == 'unanswered':
118             domain += [('child_ids', '=', False)]
119         elif filters == 'followed':
120             domain += [('message_follower_ids', '=', user.partner_id.id)]
121         else:
122             filters = 'all'
123
124         if sorting == 'answered':
125             order = 'child_count desc'
126         elif sorting == 'vote':
127             order = 'vote_count desc'
128         elif sorting == 'date':
129             order = 'write_date desc'
130         else:
131             sorting = 'creation'
132             order = 'create_date desc'
133
134         question_count = Post.search(cr, uid, domain, count=True, context=context)
135         if tag:
136             url = "/forum/%s/tag/%s/questions" % (slug(forum), slug(tag))
137         else:
138             url = "/forum/%s" % slug(forum)
139
140         url_args = {}
141         if search:
142             url_args['search'] = search
143         if filters:
144             url_args['filters'] = filters
145         if sorting:
146             url_args['sorting'] = sorting
147         pager = request.website.pager(url=url, total=question_count, page=page,
148                                       step=self._post_per_page, scope=self._post_per_page,
149                                       url_args=url_args)
150
151         obj_ids = Post.search(cr, uid, domain, limit=self._post_per_page, offset=pager['offset'], order=order, context=context)
152         question_ids = Post.browse(cr, uid, obj_ids, context=context)
153
154         values = self._prepare_forum_values(forum=forum, searches=post)
155         values.update({
156             'main_object': tag or forum,
157             'question_ids': question_ids,
158             'question_count': question_count,
159             'pager': pager,
160             'tag': tag,
161             'filters': filters,
162             'sorting': sorting,
163             'search': search,
164         })
165         return request.website.render("website_forum.forum_index", values)
166
167     @http.route(['/forum/<model("forum.forum"):forum>/faq'], type='http', auth="public", website=True)
168     def forum_faq(self, forum, **post):
169         values = self._prepare_forum_values(forum=forum, searches=dict(), header={'is_guidelines': True}, **post)
170         return request.website.render("website_forum.faq", values)
171
172     @http.route('/forum/get_tags', type='http', auth="public", methods=['GET'], website=True)
173     def tag_read(self, q='', l=25, t='texttext', **post):
174         data = request.registry['forum.tag'].search_read(
175             request.cr,
176             request.uid,
177             domain=[('name', '=ilike', (q or '') + "%")],
178             fields=['id', 'name'],
179             limit=int(l),
180             context=request.context
181         )
182         if t == 'texttext':
183             # old tag with texttext - Retro for V8 - #TODO Remove in master
184             data = [tag['name'] for tag in data]
185         return simplejson.dumps(data)
186
187     @http.route(['/forum/<model("forum.forum"):forum>/tag'], type='http', auth="public", website=True)
188     def tags(self, forum, page=1, **post):
189         cr, uid, context = request.cr, request.uid, request.context
190         Tag = request.registry['forum.tag']
191         obj_ids = Tag.search(cr, uid, [('forum_id', '=', forum.id), ('posts_count', '>', 0)], limit=None, order='posts_count DESC', context=context)
192         tags = Tag.browse(cr, uid, obj_ids, context=context)
193         values = self._prepare_forum_values(forum=forum, searches={'tags': True}, **post)
194         values.update({
195             'tags': tags,
196             'main_object': forum,
197         })
198         return request.website.render("website_forum.tag", values)
199
200     # Questions
201     # --------------------------------------------------
202
203     @http.route(['/forum/<model("forum.forum"):forum>/ask'], type='http', auth="public", website=True)
204     def question_ask(self, forum, **post):
205         if not request.session.uid:
206             return login_redirect()
207         values = self._prepare_forum_values(forum=forum, searches={}, header={'ask_hide': True})
208         return request.website.render("website_forum.ask_question", values)
209
210     @http.route('/forum/<model("forum.forum"):forum>/question/new', type='http', auth="user", methods=['POST'], website=True)
211     def question_create(self, forum, **post):
212         cr, uid, context = request.cr, request.uid, request.context
213         Tag = request.registry['forum.tag']
214         Forum = request.registry['forum.forum']
215         question_tag_ids = []
216         tag_version = post.get('tag_type', 'texttext')
217         if tag_version == "texttext":  # TODO Remove in master
218             if post.get('question_tags').strip('[]'):
219                 tags = post.get('question_tags').strip('[]').replace('"', '').split(",")
220                 for tag in tags:
221                     tag_ids = Tag.search(cr, uid, [('name', '=', tag)], context=context)
222                     if tag_ids:
223                         question_tag_ids.append((4, tag_ids[0]))
224                     else:
225                         question_tag_ids.append((0, 0, {'name': tag, 'forum_id': forum.id}))
226         elif tag_version == "select2":
227             question_tag_ids = Forum._tag_to_write_vals(cr, uid, [forum.id], post.get('question_tags', ''), context)
228
229         new_question_id = request.registry['forum.post'].create(
230             request.cr, request.uid, {
231                 'forum_id': forum.id,
232                 'name': post.get('question_name'),
233                 'content': post.get('content'),
234                 'tag_ids': question_tag_ids[forum.id],
235             }, context=context)
236         return werkzeug.utils.redirect("/forum/%s/question/%s" % (slug(forum), new_question_id))
237
238     @http.route(['''/forum/<model("forum.forum"):forum>/question/<model("forum.post", "[('forum_id','=',forum[0]),('parent_id','=',False)]"):question>'''], type='http', auth="public", website=True)
239     def question(self, forum, question, **post):
240         cr, uid, context = request.cr, request.uid, request.context
241         # increment view counter
242         request.registry['forum.post'].set_viewed(cr, SUPERUSER_ID, [question.id], context=context)
243
244         if question.parent_id:
245             redirect_url = "/forum/%s/question/%s" % (slug(forum), slug(question.parent_id))
246             return werkzeug.utils.redirect(redirect_url, 301)
247
248         filters = 'question'
249         values = self._prepare_forum_values(forum=forum, searches=post)
250         values.update({
251             'main_object': question,
252             'question': question,
253             'header': {'question_data': True},
254             'filters': filters,
255             'reversed': reversed,
256         })
257         return request.website.render("website_forum.post_description_full", values)
258
259     @http.route('/forum/<model("forum.forum"):forum>/question/<model("forum.post"):question>/toggle_favourite', type='json', auth="user", methods=['POST'], website=True)
260     def question_toggle_favorite(self, forum, question, **post):
261         if not request.session.uid:
262             return {'error': 'anonymous_user'}
263         # TDE: add check for not public
264         favourite = False if question.user_favourite else True
265         if favourite:
266             favourite_ids = [(4, request.uid)]
267         else:
268             favourite_ids = [(3, request.uid)]
269         request.registry['forum.post'].write(request.cr, request.uid, [question.id], {'favourite_ids': favourite_ids}, context=request.context)
270         return favourite
271
272     @http.route('/forum/<model("forum.forum"):forum>/question/<model("forum.post"):question>/ask_for_close', type='http', auth="user", methods=['POST'], website=True)
273     def question_ask_for_close(self, forum, question, **post):
274         cr, uid, context = request.cr, request.uid, request.context
275         Reason = request.registry['forum.post.reason']
276         reason_ids = Reason.search(cr, uid, [], context=context)
277         reasons = Reason.browse(cr, uid, reason_ids, context)
278
279         values = self._prepare_forum_values(**post)
280         values.update({
281             'question': question,
282             'question': question,
283             'forum': forum,
284             'reasons': reasons,
285         })
286         return request.website.render("website_forum.close_question", values)
287
288     @http.route('/forum/<model("forum.forum"):forum>/question/<model("forum.post"):question>/edit_answer', type='http', auth="user", website=True)
289     def question_edit_answer(self, forum, question, **kwargs):
290         for record in question.child_ids:
291             if record.create_uid.id == request.uid:
292                 answer = record
293                 break
294         return werkzeug.utils.redirect("/forum/%s/post/%s/edit" % (slug(forum), slug(answer)))
295
296     @http.route('/forum/<model("forum.forum"):forum>/question/<model("forum.post"):question>/close', type='http', auth="user", methods=['POST'], website=True)
297     def question_close(self, forum, question, **post):
298         request.registry['forum.post'].close(request.cr, request.uid, [question.id], reason_id=int(post.get('reason_id', False)), context=request.context)
299         return werkzeug.utils.redirect("/forum/%s/question/%s" % (slug(forum), slug(question)))
300
301     @http.route('/forum/<model("forum.forum"):forum>/question/<model("forum.post"):question>/reopen', type='http', auth="user", methods=['POST'], website=True)
302     def question_reopen(self, forum, question, **kwarg):
303         request.registry['forum.post'].reopen(request.cr, request.uid, [question.id], context=request.context)
304         return werkzeug.utils.redirect("/forum/%s/question/%s" % (slug(forum), slug(question)))
305
306     @http.route('/forum/<model("forum.forum"):forum>/question/<model("forum.post"):question>/delete', type='http', auth="user", methods=['POST'], website=True)
307     def question_delete(self, forum, question, **kwarg):
308         request.registry['forum.post'].write(request.cr, request.uid, [question.id], {'active': False}, context=request.context)
309         return werkzeug.utils.redirect("/forum/%s/question/%s" % (slug(forum), slug(question)))
310
311     @http.route('/forum/<model("forum.forum"):forum>/question/<model("forum.post"):question>/undelete', type='http', auth="user", methods=['POST'], website=True)
312     def question_undelete(self, forum, question, **kwarg):
313         request.registry['forum.post'].write(request.cr, request.uid, [question.id], {'active': True}, context=request.context)
314         return werkzeug.utils.redirect("/forum/%s/question/%s" % (slug(forum), slug(question)))
315
316     # Post
317     # --------------------------------------------------
318
319     @http.route('/forum/<model("forum.forum"):forum>/post/<model("forum.post"):post>/new', type='http', auth="public", methods=['POST'], website=True)
320     def post_new(self, forum, post, **kwargs):
321         if not request.session.uid:
322             return login_redirect()
323         cr, uid, context = request.cr, request.uid, request.context
324         user = request.registry['res.users'].browse(cr, SUPERUSER_ID, uid, context=context)
325         if not user.email or not tools.single_email_re.match(user.email):
326             return werkzeug.utils.redirect("/forum/%s/user/%s/edit?email_required=1" % (slug(forum), uid))
327         request.registry['forum.post'].create(
328             request.cr, request.uid, {
329                 'forum_id': forum.id,
330                 'parent_id': post.id,
331                 'content': kwargs.get('content'),
332             }, context=request.context)
333         return werkzeug.utils.redirect("/forum/%s/question/%s" % (slug(forum), slug(post)))
334
335     @http.route('/forum/<model("forum.forum"):forum>/post/<model("forum.post"):post>/comment', type='http', auth="public", methods=['POST'], website=True)
336     def post_comment(self, forum, post, **kwargs):
337         if not request.session.uid:
338             return login_redirect()
339         question = post.parent_id if post.parent_id else post
340         cr, uid, context = request.cr, request.uid, request.context
341         if kwargs.get('comment') and post.forum_id.id == forum.id:
342             # TDE FIXME: check that post_id is the question or one of its answers
343             request.registry['forum.post'].message_post(
344                 cr, uid, post.id,
345                 body=kwargs.get('comment'),
346                 type='comment',
347                 subtype='mt_comment',
348                 context=dict(context, mail_create_nosubcribe=True))
349         return werkzeug.utils.redirect("/forum/%s/question/%s" % (slug(forum), slug(question)))
350
351     @http.route('/forum/<model("forum.forum"):forum>/post/<model("forum.post"):post>/toggle_correct', type='json', auth="public", website=True)
352     def post_toggle_correct(self, forum, post, **kwargs):
353         cr, uid, context = request.cr, request.uid, request.context
354         if post.parent_id is False:
355             return request.redirect('/')
356         if not request.session.uid:
357             return {'error': 'anonymous_user'}
358
359         # set all answers to False, only one can be accepted
360         request.registry['forum.post'].write(cr, uid, [c.id for c in post.parent_id.child_ids if not c.id == post.id], {'is_correct': False}, context=context)
361         request.registry['forum.post'].write(cr, uid, [post.id], {'is_correct': not post.is_correct}, context=context)
362         return post.is_correct
363
364     @http.route('/forum/<model("forum.forum"):forum>/post/<model("forum.post"):post>/delete', type='http', auth="user", methods=['POST'], website=True)
365     def post_delete(self, forum, post, **kwargs):
366         question = post.parent_id
367         request.registry['forum.post'].unlink(request.cr, request.uid, [post.id], context=request.context)
368         if question:
369             werkzeug.utils.redirect("/forum/%s/question/%s" % (slug(forum), slug(question)))
370         return werkzeug.utils.redirect("/forum/%s" % slug(forum))
371
372     @http.route('/forum/<model("forum.forum"):forum>/post/<model("forum.post"):post>/edit', type='http', auth="user", website=True)
373     def post_edit(self, forum, post, **kwargs):
374         tag_version = kwargs.get('tag_type', 'texttext')
375         if tag_version == "texttext":  # old version - retro v8 - #TODO Remove in master
376             tags = ""
377             for tag_name in post.tag_ids:
378                 tags += tag_name.name + ","
379         elif tag_version == "select2":  # new version
380             tags = [dict(id=tag.id, name=tag.name) for tag in post.tag_ids]
381             tags = simplejson.dumps(tags)
382         values = self._prepare_forum_values(forum=forum)
383
384         values.update({
385             'tags': tags,
386             'post': post,
387             'is_answer': bool(post.parent_id),
388             'searches': kwargs
389         })
390         return request.website.render("website_forum.edit_post", values)
391
392     @http.route('/forum/<model("forum.forum"):forum>/post/<model("forum.post"):post>/edition', type='http', auth="user", website=True)
393     def post_edit_retro(self, forum, post, **kwargs):
394         # This function is only there for retrocompatibility between old template using texttext and template using select2
395         # It should be removed into master  #TODO JKE: remove in master all condition with tag_type
396         kwargs.update(tag_type="select2")
397         return self.post_edit(forum, post, **kwargs)
398
399     @http.route('/forum/<model("forum.forum"):forum>/post/<model("forum.post"):post>/save', type='http', auth="user", methods=['POST'], website=True)
400     def post_save(self, forum, post, **kwargs):
401         cr, uid, context = request.cr, request.uid, request.context
402         question_tags = []
403         Tag = request.registry['forum.tag']
404         Forum = request.registry['forum.forum']
405         tag_version = kwargs.get('tag_type', 'texttext')
406         if tag_version == "texttext":  # old version - retro v8 - #TODO Remove in master
407             if kwargs.get('question_tag') and kwargs.get('question_tag').strip('[]'):
408                 tags = kwargs.get('question_tag').strip('[]').replace('"', '').split(",")
409                 for tag in tags:
410                     tag_ids = Tag.search(cr, uid, [('name', '=', tag)], context=context)
411                     if tag_ids:
412                         question_tags += tag_ids
413                     else:
414                         new_tag = Tag.create(cr, uid, {'name': tag, 'forum_id': forum.id}, context=context)
415                         question_tags.append(new_tag)
416             tags_val = [(6, 0, question_tags)]
417         elif tag_version == "select2":  # new version
418             tags_val = Forum._tag_to_write_vals(cr, uid, [forum.id], kwargs.get('question_tag', ''), context)
419
420         vals = {
421             'tag_ids': tags_val[forum.id],
422             'name': kwargs.get('question_name'),
423             'content': kwargs.get('content'),
424         }
425         request.registry['forum.post'].write(cr, uid, [post.id], vals, context=context)
426         question = post.parent_id if post.parent_id else post
427         return werkzeug.utils.redirect("/forum/%s/question/%s" % (slug(forum), slug(question)))
428
429     @http.route('/forum/<model("forum.forum"):forum>/post/<model("forum.post"):post>/upvote', type='json', auth="public", website=True)
430     def post_upvote(self, forum, post, **kwargs):
431         if not request.session.uid:
432             return {'error': 'anonymous_user'}
433         if request.uid == post.create_uid.id:
434             return {'error': 'own_post'}
435         upvote = True if not post.user_vote > 0 else False
436         return request.registry['forum.post'].vote(request.cr, request.uid, [post.id], upvote=upvote, context=request.context)
437
438     @http.route('/forum/<model("forum.forum"):forum>/post/<model("forum.post"):post>/downvote', type='json', auth="public", website=True)
439     def post_downvote(self, forum, post, **kwargs):
440         if not request.session.uid:
441             return {'error': 'anonymous_user'}
442         if request.uid == post.create_uid.id:
443             return {'error': 'own_post'}
444         upvote = True if post.user_vote < 0 else False
445         return request.registry['forum.post'].vote(request.cr, request.uid, [post.id], upvote=upvote, context=request.context)
446
447     # User
448     # --------------------------------------------------
449
450     @http.route(['/forum/<model("forum.forum"):forum>/users',
451                  '/forum/<model("forum.forum"):forum>/users/page/<int:page>'],
452                 type='http', auth="public", website=True)
453     def users(self, forum, page=1, **searches):
454         cr, uid, context = request.cr, request.uid, request.context
455         User = request.registry['res.users']
456
457         step = 30
458         tag_count = User.search(cr, SUPERUSER_ID, [('karma', '>', 1), ('website_published', '=', True)], count=True, context=context)
459         pager = request.website.pager(url="/forum/%s/users" % slug(forum), total=tag_count, page=page, step=step, scope=30)
460
461         obj_ids = User.search(cr, SUPERUSER_ID, [('karma', '>', 1), ('website_published', '=', True)], limit=step, offset=pager['offset'], order='karma DESC', context=context)
462         # put the users in block of 3 to display them as a table
463         users = [[] for i in range(len(obj_ids)/3+1)]
464         for index, user in enumerate(User.browse(cr, SUPERUSER_ID, obj_ids, context=context)):
465             users[index/3].append(user)
466         searches['users'] = 'True'
467
468         values = self._prepare_forum_values(forum=forum, searches=searches)
469         values .update({
470             'users': users,
471             'main_object': forum,
472             'notifications': self._get_notifications(),
473             'pager': pager,
474         })
475
476         return request.website.render("website_forum.users", values)
477
478     @http.route(['/forum/<model("forum.forum"):forum>/partner/<int:partner_id>'], type='http', auth="public", website=True)
479     def open_partner(self, forum, partner_id=0, **post):
480         cr, uid, context = request.cr, request.uid, request.context
481         if partner_id:
482             partner = request.registry['res.partner'].browse(cr, SUPERUSER_ID, partner_id, context=context)
483             if partner.exists() and partner.user_ids:
484                 return werkzeug.utils.redirect("/forum/%s/user/%d" % (slug(forum), partner.user_ids[0].id))
485         return werkzeug.utils.redirect("/forum/%s" % slug(forum))
486
487     @http.route(['/forum/user/<int:user_id>/avatar'], type='http', auth="public", website=True)
488     def user_avatar(self, user_id=0, **post):
489         cr, uid, context = request.cr, request.uid, request.context
490         response = werkzeug.wrappers.Response()
491         User = request.registry['res.users']
492         Website = request.registry['website']
493         user = User.browse(cr, SUPERUSER_ID, user_id, context=context)
494         if not user.exists() or (user_id != request.session.uid and user.karma < 1):
495             return Website._image_placeholder(response)
496         return Website._image(cr, SUPERUSER_ID, 'res.users', user.id, 'image', response)
497
498     @http.route(['/forum/<model("forum.forum"):forum>/user/<int:user_id>'], type='http', auth="public", website=True)
499     def open_user(self, forum, user_id=0, **post):
500         cr, uid, context = request.cr, request.uid, request.context
501         User = request.registry['res.users']
502         Post = request.registry['forum.post']
503         Vote = request.registry['forum.post.vote']
504         Activity = request.registry['mail.message']
505         Followers = request.registry['mail.followers']
506         Data = request.registry["ir.model.data"]
507
508         user = User.browse(cr, SUPERUSER_ID, user_id, context=context)
509         current_user = User.browse(cr, SUPERUSER_ID, uid, context=context)
510
511         # Users with high karma can see users with karma <= 0 for
512         # moderation purposes, IFF they have posted something (see below)
513         if (not user.exists() or
514                (user.karma < 1 and current_user.karma < forum.karma_unlink_all)):
515             return werkzeug.utils.redirect("/forum/%s" % slug(forum))
516         values = self._prepare_forum_values(forum=forum, **post)
517
518         # questions and answers by user
519         user_question_ids = Post.search(cr, uid, [
520                 ('parent_id', '=', False),
521                 ('forum_id', '=', forum.id), ('create_uid', '=', user.id),
522             ], order='create_date desc', context=context)
523         count_user_questions = len(user_question_ids)
524
525         if (user_id != request.session.uid and not
526                 (user.website_published or
527                     (count_user_questions and current_user.karma > forum.karma_unlink_all))):
528             return request.website.render("website_forum.private_profile", values)
529
530         # displaying only the 20 most recent questions
531         user_questions = Post.browse(cr, uid, user_question_ids[:20], context=context)
532
533         user_answer_ids = Post.search(cr, uid, [
534                 ('parent_id', '!=', False),
535                 ('forum_id', '=', forum.id), ('create_uid', '=', user.id),
536             ], order='create_date desc', context=context)
537         count_user_answers = len(user_answer_ids)
538         # displaying only the 20  most recent answers
539         user_answers = Post.browse(cr, uid, user_answer_ids[:20], context=context)
540
541         # showing questions which user following
542         obj_ids = Followers.search(cr, SUPERUSER_ID, [('res_model', '=', 'forum.post'), ('partner_id', '=', user.partner_id.id)], context=context)
543         post_ids = [follower.res_id for follower in Followers.browse(cr, SUPERUSER_ID, obj_ids, context=context)]
544         que_ids = Post.search(cr, uid, [('id', 'in', post_ids), ('forum_id', '=', forum.id), ('parent_id', '=', False)], context=context)
545         followed = Post.browse(cr, uid, que_ids, context=context)
546
547         #showing Favourite questions of user.
548         fav_que_ids = Post.search(cr, uid, [('favourite_ids', '=', user.id), ('forum_id', '=', forum.id), ('parent_id', '=', False)], context=context)
549         favourite = Post.browse(cr, uid, fav_que_ids, context=context)
550
551         #votes which given on users questions and answers.
552         data = Vote.read_group(cr, uid, [('forum_id', '=', forum.id), ('recipient_id', '=', user.id)], ["vote"], groupby=["vote"], context=context)
553         up_votes, down_votes = 0, 0
554         for rec in data:
555             if rec['vote'] == '1':
556                 up_votes = rec['vote_count']
557             elif rec['vote'] == '-1':
558                 down_votes = rec['vote_count']
559
560         #Votes which given by users on others questions and answers.
561         post_votes = Vote.search(cr, uid, [('user_id', '=', user.id)], context=context)
562         vote_ids = Vote.browse(cr, uid, post_votes, context=context)
563
564         #activity by user.
565         model, comment = Data.get_object_reference(cr, uid, 'mail', 'mt_comment')
566         activity_ids = Activity.search(cr, uid, [('res_id', 'in', user_question_ids+user_answer_ids), ('model', '=', 'forum.post'), ('subtype_id', '!=', comment)], order='date DESC', limit=100, context=context)
567         activities = Activity.browse(cr, uid, activity_ids, context=context)
568
569         posts = {}
570         for act in activities:
571             posts[act.res_id] = True
572         posts_ids = Post.browse(cr, uid, posts.keys(), context=context)
573         posts = dict(map(lambda x: (x.id, (x.parent_id or x, x.parent_id and x or False)), posts_ids))
574
575         # TDE CLEANME MASTER: couldn't it be rewritten using a 'menu' key instead of one key for each menu ?
576         if user.id == uid:
577             post['my_profile'] = True
578         else:
579             post['users'] = True
580
581         values.update({
582             'uid': uid,
583             'user': user,
584             'main_object': user,
585             'searches': post,
586             'questions': user_questions,
587             'count_questions': count_user_questions,
588             'answers': user_answers,
589             'count_answers': count_user_answers,
590             'followed': followed,
591             'favourite': favourite,
592             'up_votes': up_votes,
593             'down_votes': down_votes,
594             'activities': activities,
595             'posts': posts,
596             'vote_post': vote_ids,
597         })
598         return request.website.render("website_forum.user_detail_full", values)
599
600     @http.route('/forum/<model("forum.forum"):forum>/user/<model("res.users"):user>/edit', type='http', auth="user", website=True)
601     def edit_profile(self, forum, user, **kwargs):
602         country = request.registry['res.country']
603         country_ids = country.search(request.cr, SUPERUSER_ID, [], context=request.context)
604         countries = country.browse(request.cr, SUPERUSER_ID, country_ids, context=request.context)
605         values = self._prepare_forum_values(forum=forum, searches=kwargs)
606         values.update({
607             'email_required': kwargs.get('email_required'),
608             'countries': countries,
609             'notifications': self._get_notifications(),
610         })
611         return request.website.render("website_forum.edit_profile", values)
612
613     @http.route('/forum/<model("forum.forum"):forum>/user/<model("res.users"):user>/save', type='http', auth="user", methods=['POST'], website=True)
614     def save_edited_profile(self, forum, user, **kwargs):
615         values = {
616             'name': kwargs.get('name'),
617             'website': kwargs.get('website'),
618             'email': kwargs.get('email'),
619             'city': kwargs.get('city'),
620             'country_id': int(kwargs.get('country')) if kwargs.get('country') else False,
621             'website_description': kwargs.get('description'),
622         }
623         if request.uid == user.id:  # the controller allows to edit only its own privacy settings; use partner management for other cases
624             values['website_published'] = kwargs.get('website_published') == 'True'
625         request.registry['res.users'].write(request.cr, request.uid, [user.id], values, context=request.context)
626         return werkzeug.utils.redirect("/forum/%s/user/%d" % (slug(forum), user.id))
627
628     # Badges
629     # --------------------------------------------------
630
631     @http.route('/forum/<model("forum.forum"):forum>/badge', type='http', auth="public", website=True)
632     def badges(self, forum, **searches):
633         cr, uid, context = request.cr, request.uid, request.context
634         Badge = request.registry['gamification.badge']
635         badge_ids = Badge.search(cr, SUPERUSER_ID, [('challenge_ids.category', '=', 'forum')], context=context)
636         badges = Badge.browse(cr, uid, badge_ids, context=context)
637         badges = sorted(badges, key=lambda b: b.stat_count_distinct, reverse=True)
638         values = self._prepare_forum_values(forum=forum, searches={'badges': True})
639         values.update({
640             'badges': badges,
641         })
642         return request.website.render("website_forum.badge", values)
643
644     @http.route(['''/forum/<model("forum.forum"):forum>/badge/<model("gamification.badge"):badge>'''], type='http', auth="public", website=True)
645     def badge_users(self, forum, badge, **kwargs):
646         user_ids = [badge_user.user_id.id for badge_user in badge.owner_ids]
647         users = request.registry['res.users'].browse(request.cr, SUPERUSER_ID, user_ids, context=request.context)
648         values = self._prepare_forum_values(forum=forum, searches={'badges': True})
649         values.update({
650             'badge': badge,
651             'users': users,
652         })
653         return request.website.render("website_forum.badge_user", values)
654
655     # Messaging
656     # --------------------------------------------------
657
658     @http.route('/forum/<model("forum.forum"):forum>/post/<model("forum.post"):post>/comment/<model("mail.message"):comment>/convert_to_answer', type='http', auth="user", methods=['POST'], website=True)
659     def convert_comment_to_answer(self, forum, post, comment, **kwarg):
660         new_post_id = request.registry['forum.post'].convert_comment_to_answer(request.cr, request.uid, comment.id, context=request.context)
661         if not new_post_id:
662             return werkzeug.utils.redirect("/forum/%s" % slug(forum))
663         post = request.registry['forum.post'].browse(request.cr, request.uid, new_post_id, context=request.context)
664         question = post.parent_id if post.parent_id else post
665         return werkzeug.utils.redirect("/forum/%s/question/%s" % (slug(forum), slug(question)))
666
667     @http.route('/forum/<model("forum.forum"):forum>/post/<model("forum.post"):post>/convert_to_comment', type='http', auth="user", methods=['POST'], website=True)
668     def convert_answer_to_comment(self, forum, post, **kwarg):
669         question = post.parent_id
670         new_msg_id = request.registry['forum.post'].convert_answer_to_comment(request.cr, request.uid, post.id, context=request.context)
671         if not new_msg_id:
672             return werkzeug.utils.redirect("/forum/%s" % slug(forum))
673         return werkzeug.utils.redirect("/forum/%s/question/%s" % (slug(forum), slug(question)))
674
675     @http.route('/forum/<model("forum.forum"):forum>/post/<model("forum.post"):post>/comment/<model("mail.message"):comment>/delete', type='json', auth="user", website=True)
676     def delete_comment(self, forum, post, comment, **kwarg):
677         if not request.session.uid:
678             return {'error': 'anonymous_user'}
679         return request.registry['forum.post'].unlink_comment(request.cr, request.uid, post.id, comment.id, context=request.context)