. */ declare(strict_types=1); namespace FireflyIII\Rules; use FireflyIII\Exceptions\FireflyException; use FireflyIII\Models\Account; use FireflyIII\Models\Bill; use FireflyIII\Models\Budget; use FireflyIII\Models\Category; use FireflyIII\Models\PiggyBank; use FireflyIII\Models\TransactionJournal; use Illuminate\Contracts\Validation\Rule; use Illuminate\Support\Facades\Log; /** * Class BelongsUser */ class BelongsUser implements Rule { /** * Create a new rule instance. * * @return void */ public function __construct() { // } /** * Get the validation error message. * * @return string */ public function message(): string { return (string)trans('validation.belongs_user'); } /** * Determine if the validation rule passes. * * @param string $attribute * @param mixed $value * * @return bool * @throws FireflyException * */ public function passes($attribute, $value): bool { $attribute = $this->parseAttribute($attribute); if (!auth()->check()) { return true; } $attribute = (string)$attribute; Log::debug(sprintf('Going to validate %s', $attribute)); return match ($attribute) { 'piggy_bank_id' => $this->validatePiggyBankId((int)$value), 'piggy_bank_name' => $this->validatePiggyBankName($value), 'bill_id' => $this->validateBillId((int)$value), 'transaction_journal_id' => $this->validateJournalId((int)$value), 'bill_name' => $this->validateBillName($value), 'budget_id' => $this->validateBudgetId((int)$value), 'category_id' => $this->validateCategoryId((int)$value), 'budget_name' => $this->validateBudgetName($value), 'source_id', 'destination_id' => $this->validateAccountId((int)$value), default => throw new FireflyException(sprintf('Rule BelongUser cannot handle "%s"', $attribute)), }; } /** * @param string $attribute * * @return string */ private function parseAttribute(string $attribute): string { $parts = explode('.', $attribute); if (1 === count($parts)) { return $attribute; } if (3 === count($parts)) { return $parts[2]; } return $attribute; } /** * @param int $value * * @return bool */ private function validatePiggyBankId(int $value): bool { $count = PiggyBank::leftJoin('accounts', 'accounts.id', '=', 'piggy_banks.account_id') ->where('piggy_banks.id', '=', $value) ->where('accounts.user_id', '=', auth()->user()->id)->count(); return 1 === $count; } /** * @param string $value * * @return bool */ private function validatePiggyBankName(string $value): bool { $count = $this->countField(PiggyBank::class, 'name', $value); return 1 === $count; } /** * @param string $class * @param string $field * @param string $value * * @return int * */ protected function countField(string $class, string $field, string $value): int { $value = trim($value); $objects = []; // get all objects belonging to user: if (PiggyBank::class === $class) { $objects = PiggyBank::leftJoin('accounts', 'accounts.id', '=', 'piggy_banks.account_id') ->where('accounts.user_id', '=', auth()->user()->id)->get(['piggy_banks.*']); } if (PiggyBank::class !== $class) { $objects = $class::where('user_id', '=', auth()->user()->id)->get(); } $count = 0; foreach ($objects as $object) { $objectValue = trim((string)$object->$field); Log::debug(sprintf('Comparing object "%s" with value "%s"', $objectValue, $value)); if ($objectValue === $value) { $count++; Log::debug(sprintf('Hit! Count is now %d', $count)); } } return $count; } /** * @param int $value * * @return bool */ private function validateBillId(int $value): bool { if (0 === $value) { return true; } $count = Bill::where('id', '=', $value)->where('user_id', '=', auth()->user()->id)->count(); return 1 === $count; } /** * @param int $value * * @return bool */ private function validateJournalId(int $value): bool { if (0 === $value) { return true; } $count = TransactionJournal::where('id', '=', $value)->where('user_id', '=', auth()->user()->id)->count(); return 1 === $count; } /** * @param string $value * * @return bool */ private function validateBillName(string $value): bool { $count = $this->countField(Bill::class, 'name', $value); Log::debug(sprintf('Result of countField for bill name "%s" is %d', $value, $count)); return 1 === $count; } /** * @param int $value * * @return bool */ private function validateBudgetId(int $value): bool { if (0 === $value) { return true; } $count = Budget::where('id', '=', $value)->where('user_id', '=', auth()->user()->id)->count(); return 1 === $count; } /** * @param int $value * * @return bool */ private function validateCategoryId(int $value): bool { $count = Category::where('id', '=', $value)->where('user_id', '=', auth()->user()->id)->count(); return 1 === $count; } /** * @param string $value * * @return bool */ private function validateBudgetName(string $value): bool { $count = $this->countField(Budget::class, 'name', $value); return 1 === $count; } /** * @param int $value * * @return bool */ private function validateAccountId(int $value): bool { if (0 === $value) { // its ok to submit 0. other checks will fail. return true; } $count = Account::where('id', '=', $value)->where('user_id', '=', auth()->user()->id)->count(); return 1 === $count; } }