dolibarr 18.0.6
api_members.class.php
1<?php
2/* Copyright (C) 2016 Xebax Christy <xebax@wanadoo.fr>
3 * Copyright (C) 2017 Regis Houssin <regis.houssin@inodbox.com>
4 * Copyright (C) 2020 Thibault FOUCART<support@ptibogxiv.net>
5 * Copyright (C) 2020 Frédéric France <frederic.france@netlogic.fr>
6 *
7 * This program is free software; you can redistribute it and/or modify
8 * it under the terms of the GNU General Public License as published by
9 * the Free Software Foundation; either version 3 of the License, or
10 * (at your option) any later version.
11 *
12 * This program is distributed in the hope that it will be useful,
13 * but WITHOUT ANY WARRANTY; without even the implied warranty of
14 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
15 * GNU General Public License for more details.
16 *
17 * You should have received a copy of the GNU General Public License
18 * along with this program. If not, see <https://www.gnu.org/licenses/>.
19 */
20
21use Luracast\Restler\RestException;
22
23require_once DOL_DOCUMENT_ROOT.'/societe/class/societe.class.php';
24require_once DOL_DOCUMENT_ROOT.'/adherents/class/adherent.class.php';
25require_once DOL_DOCUMENT_ROOT.'/adherents/class/subscription.class.php';
26require_once DOL_DOCUMENT_ROOT.'/categories/class/categorie.class.php';
27
34class Members extends DolibarrApi
35{
39 public static $FIELDS = array(
40 'morphy',
41 'typeid'
42 );
43
47 public function __construct()
48 {
49 global $db, $conf;
50 $this->db = $db;
51 }
52
63 public function get($id)
64 {
65 if (!DolibarrApiAccess::$user->hasRight('adherent', 'lire')) {
66 throw new RestException(401);
67 }
68
69 $member = new Adherent($this->db);
70 if ($id == 0) {
71 $result = $member->initAsSpecimen();
72 } else {
73 $result = $member->fetch($id);
74 }
75 if (!$result) {
76 throw new RestException(404, 'member not found');
77 }
78
79 if (!DolibarrApi::_checkAccessToResource('adherent', $member->id) && $id > 0) {
80 throw new RestException(401, 'Access not allowed for login '.DolibarrApiAccess::$user->login);
81 }
82
83 return $this->_cleanObjectDatas($member);
84 }
85
100 public function getByThirdparty($thirdparty)
101 {
102 if (!DolibarrApiAccess::$user->hasRight('adherent', 'lire')) {
103 throw new RestException(401);
104 }
105
106 $member = new Adherent($this->db);
107 $result = $member->fetch('', '', $thirdparty);
108 if (!$result) {
109 throw new RestException(404, 'member not found');
110 }
111
112 if (!DolibarrApi::_checkAccessToResource('adherent', $member->id)) {
113 throw new RestException(401, 'Access not allowed for login '.DolibarrApiAccess::$user->login);
114 }
115
116 return $this->_cleanObjectDatas($member);
117 }
118
133 public function getByThirdpartyEmail($email)
134 {
135 if (!DolibarrApiAccess::$user->hasRight('adherent', 'lire')) {
136 throw new RestException(401);
137 }
138
139 $thirdparty = new Societe($this->db);
140 $result = $thirdparty->fetch('', '', '', '', '', '', '', '', '', '', $email);
141 if (!$result) {
142 throw new RestException(404, 'thirdparty not found');
143 }
144
145 $member = new Adherent($this->db);
146 $result = $member->fetch('', '', $thirdparty->id);
147 if (!$result) {
148 throw new RestException(404, 'member not found');
149 }
150
151 if (!DolibarrApi::_checkAccessToResource('adherent', $member->id)) {
152 throw new RestException(401, 'Access not allowed for login '.DolibarrApiAccess::$user->login);
153 }
154
155 return $this->_cleanObjectDatas($member);
156 }
157
172 public function getByThirdpartyBarcode($barcode)
173 {
174 if (!DolibarrApiAccess::$user->hasRight('adherent', 'lire')) {
175 throw new RestException(401);
176 }
177
178 $thirdparty = new Societe($this->db);
179 $result = $thirdparty->fetch('', '', '', $barcode);
180 if (!$result) {
181 throw new RestException(404, 'thirdparty not found');
182 }
183
184 $member = new Adherent($this->db);
185 $result = $member->fetch('', '', $thirdparty->id);
186 if (!$result) {
187 throw new RestException(404, 'member not found');
188 }
189
190 if (!DolibarrApi::_checkAccessToResource('adherent', $member->id)) {
191 throw new RestException(401, 'Access not allowed for login '.DolibarrApiAccess::$user->login);
192 }
193
194 return $this->_cleanObjectDatas($member);
195 }
196
214 public function index($sortfield = "t.rowid", $sortorder = 'ASC', $limit = 100, $page = 0, $typeid = '', $category = 0, $sqlfilters = '')
215 {
216 global $db, $conf;
217
218 $obj_ret = array();
219
220 if (!DolibarrApiAccess::$user->hasRight('adherent', 'lire')) {
221 throw new RestException(401);
222 }
223
224 $sql = "SELECT t.rowid";
225 $sql .= " FROM ".MAIN_DB_PREFIX."adherent AS t LEFT JOIN ".MAIN_DB_PREFIX."adherent_extrafields AS ef ON (ef.fk_object = t.rowid)"; // Modification VMR Global Solutions to include extrafields as search parameters in the API GET call
226 if ($category > 0) {
227 $sql .= ", ".MAIN_DB_PREFIX."categorie_member as c";
228 }
229 $sql .= ' WHERE t.entity IN ('.getEntity('adherent').')';
230 if (!empty($typeid)) {
231 $sql .= ' AND t.fk_adherent_type='.((int) $typeid);
232 }
233 // Select members of given category
234 if ($category > 0) {
235 $sql .= " AND c.fk_categorie = ".((int) $category);
236 $sql .= " AND c.fk_member = t.rowid";
237 }
238 // Add sql filters
239 if ($sqlfilters) {
240 $errormessage = '';
241 $sql .= forgeSQLFromUniversalSearchCriteria($sqlfilters, $errormessage);
242 if ($errormessage) {
243 throw new RestException(400, 'Error when validating parameter sqlfilters -> '.$errormessage);
244 }
245 }
246
247 $sql .= $this->db->order($sortfield, $sortorder);
248 if ($limit) {
249 if ($page < 0) {
250 $page = 0;
251 }
252 $offset = $limit * $page;
253
254 $sql .= $this->db->plimit($limit + 1, $offset);
255 }
256
257 $result = $this->db->query($sql);
258 if ($result) {
259 $i = 0;
260 $num = $this->db->num_rows($result);
261 $min = min($num, ($limit <= 0 ? $num : $limit));
262 while ($i < $min) {
263 $obj = $this->db->fetch_object($result);
264 $member = new Adherent($this->db);
265 if ($member->fetch($obj->rowid)) {
266 $obj_ret[] = $this->_cleanObjectDatas($member);
267 }
268 $i++;
269 }
270 } else {
271 throw new RestException(503, 'Error when retrieve member list : '.$this->db->lasterror());
272 }
273 if (!count($obj_ret)) {
274 throw new RestException(404, 'No member found');
275 }
276
277 return $obj_ret;
278 }
279
286 public function post($request_data = null)
287 {
288 if (!DolibarrApiAccess::$user->hasRight('adherent', 'creer')) {
289 throw new RestException(401);
290 }
291 // Check mandatory fields
292 $result = $this->_validate($request_data);
293
294 $member = new Adherent($this->db);
295 foreach ($request_data as $field => $value) {
296 $member->$field = $value;
297 }
298 if ($member->create(DolibarrApiAccess::$user) < 0) {
299 throw new RestException(500, 'Error creating member', array_merge(array($member->error), $member->errors));
300 }
301 return $member->id;
302 }
303
311 public function put($id, $request_data = null)
312 {
313 if (!DolibarrApiAccess::$user->hasRight('adherent', 'creer')) {
314 throw new RestException(401);
315 }
316
317 $member = new Adherent($this->db);
318 $result = $member->fetch($id);
319 if (!$result) {
320 throw new RestException(404, 'member not found');
321 }
322
323 if (!DolibarrApi::_checkAccessToResource('member', $member->id)) {
324 throw new RestException(401, 'Access not allowed for login '.DolibarrApiAccess::$user->login);
325 }
326
327 foreach ($request_data as $field => $value) {
328 if ($field == 'id') {
329 continue;
330 }
331 // Process the status separately because it must be updated using
332 // the validate(), resiliate() and exclude() methods of the class Adherent.
333 if ($field == 'statut') {
334 if ($value == '0') {
335 $result = $member->resiliate(DolibarrApiAccess::$user);
336 if ($result < 0) {
337 throw new RestException(500, 'Error when resiliating member: '.$member->error);
338 }
339 } elseif ($value == '1') {
340 $result = $member->validate(DolibarrApiAccess::$user);
341 if ($result < 0) {
342 throw new RestException(500, 'Error when validating member: '.$member->error);
343 }
344 } elseif ($value == '-2') {
345 $result = $member->exclude(DolibarrApiAccess::$user);
346 if ($result < 0) {
347 throw new RestException(500, 'Error when excluding member: '.$member->error);
348 }
349 }
350 } else {
351 if ($field == 'array_options' && is_array($value)) {
352 foreach ($value as $index => $val) {
353 $member->array_options[$index] = $this->_checkValForAPI($field, $val, $member);
354 }
355 continue;
356 }
357 $member->$field = $value;
358 }
359 }
360
361 // If there is no error, update() returns the number of affected rows
362 // so if the update is a no op, the return value is zero.
363 if ($member->update(DolibarrApiAccess::$user) >= 0) {
364 return $this->get($id);
365 } else {
366 throw new RestException(500, 'Error when updating member: '.$member->error);
367 }
368 }
369
376 public function delete($id)
377 {
378 if (!DolibarrApiAccess::$user->hasRight('adherent', 'supprimer')) {
379 throw new RestException(401);
380 }
381 $member = new Adherent($this->db);
382 $result = $member->fetch($id);
383 if (!$result) {
384 throw new RestException(404, 'member not found');
385 }
386
387 if (!DolibarrApi::_checkAccessToResource('member', $member->id)) {
388 throw new RestException(401, 'Access not allowed for login '.DolibarrApiAccess::$user->login);
389 }
390
391
392 $res = $member->delete($member->id, DolibarrApiAccess::$user);
393 if ($res < 0) {
394 throw new RestException(500, "Can't delete, error occurs");
395 } elseif ($res == 0) {
396 throw new RestException(409, "Can't delete, that product is probably used");
397 }
398
399 return array(
400 'success' => array(
401 'code' => 200,
402 'message' => 'Member deleted'
403 )
404 );
405 }
406
415 private function _validate($data)
416 {
417 $member = array();
418 foreach (Members::$FIELDS as $field) {
419 if (!isset($data[$field])) {
420 throw new RestException(400, "$field field missing");
421 }
422 $member[$field] = $data[$field];
423 }
424 return $member;
425 }
426
427 // phpcs:disable PEAR.NamingConventions.ValidFunctionName.PublicUnderscore
434 protected function _cleanObjectDatas($object)
435 {
436 // phpcs:enable
437 $object = parent::_cleanObjectDatas($object);
438
439 // Remove the subscriptions because they are handled as a subresource.
440 unset($object->subscriptions);
441 unset($object->fk_incoterms);
442 unset($object->label_incoterms);
443 unset($object->location_incoterms);
444 unset($object->fk_delivery_address);
445 unset($object->shipping_method_id);
446
447 unset($object->total_ht);
448 unset($object->total_ttc);
449 unset($object->total_tva);
450 unset($object->total_localtax1);
451 unset($object->total_localtax2);
452
453 return $object;
454 }
455
468 public function getSubscriptions($id)
469 {
470 $obj_ret = array();
471
472 if (!DolibarrApiAccess::$user->hasRight('adherent', 'cotisation', 'lire')) {
473 throw new RestException(401);
474 }
475
476 $member = new Adherent($this->db);
477 $result = $member->fetch($id);
478 if (!$result) {
479 throw new RestException(404, 'member not found');
480 }
481
482 $obj_ret = array();
483 foreach ($member->subscriptions as $subscription) {
484 $obj_ret[] = $this->_cleanObjectDatas($subscription);
485 }
486 return $obj_ret;
487 }
488
501 public function createSubscription($id, $start_date, $end_date, $amount, $label = '')
502 {
503 if (!DolibarrApiAccess::$user->hasRight('adherent', 'cotisation', 'creer')) {
504 throw new RestException(401);
505 }
506
507 $member = new Adherent($this->db);
508 $result = $member->fetch($id);
509 if (!$result) {
510 throw new RestException(404, 'member not found');
511 }
512
513 return $member->subscription($start_date, $amount, 0, '', $label, '', '', '', $end_date);
514 }
515
529 public function getCategories($id, $sortfield = "s.rowid", $sortorder = 'ASC', $limit = 0, $page = 0)
530 {
531 if (!DolibarrApiAccess::$user->rights->categorie->lire) {
532 throw new RestException(401);
533 }
534
535 $categories = new Categorie($this->db);
536
537 $result = $categories->getListForItem($id, 'member', $sortfield, $sortorder, $limit, $page);
538
539 if (empty($result)) {
540 throw new RestException(404, 'No category found');
541 }
542
543 if ($result < 0) {
544 throw new RestException(503, 'Error when retrieve category list : '.$categories->error);
545 }
546
547 return $result;
548 }
549}
Class to manage members of a foundation.
Class to manage categories.
Class for API REST v1.
Definition api.class.php:31
static _checkAccessToResource($resource, $resource_id=0, $dbtablename='', $feature2='', $dbt_keyfield='fk_soc', $dbt_select='rowid')
Check access by user to a given resource.
_checkValForAPI($field, $value, $object)
Check and convert a string depending on its type/name.
Definition api.class.php:86
put($id, $request_data=null)
Update member.
createSubscription($id, $start_date, $end_date, $amount, $label='')
Add a subscription for a member.
_validate($data)
Validate fields before creating an object.
getByThirdparty($thirdparty)
Get properties of a member object by linked thirdparty.
getByThirdpartyBarcode($barcode)
Get properties of a member object by linked thirdparty barcode.
__construct()
Constructor.
getCategories($id, $sortfield="s.rowid", $sortorder='ASC', $limit=0, $page=0)
Get categories for a member.
getByThirdpartyEmail($email)
Get properties of a member object by linked thirdparty email.
index($sortfield="t.rowid", $sortorder='ASC', $limit=100, $page=0, $typeid='', $category=0, $sqlfilters='')
List members.
_cleanObjectDatas($object)
Clean sensible object datas.
getSubscriptions($id)
List subscriptions of a member.
post($request_data=null)
Create member object.
Class to manage third parties objects (customers, suppliers, prospects...)
forgeSQLFromUniversalSearchCriteria($filter, &$errorstr='', $noand=0, $nopar=0, $noerror=0)
forgeSQLFromUniversalSearchCriteria