dolibarr 23.0.3
index.php
Go to the documentation of this file.
1<?php
2/* Copyright (C) 2021 Dorian Vabre <dorian.vabre@gmail.com>
3 * Copyright (C) 2024-2025 Frédéric France <frederic.france@free.fr>
4 * Copyright (C) 2025 MDW <mdeweerd@users.noreply.github.com>
5 *
6 * This program is free software; you can redistribute it and/or modify
7 * it under the terms of the GNU General Public License as published by
8 * the Free Software Foundation; either version 3 of the License, or
9 * (at your option) any later version.
10 *
11 * This program is distributed in the hope that it will be useful,
12 * but WITHOUT ANY WARRANTY; without even the implied warranty of
13 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
14 * GNU General Public License for more details.
15 *
16 * You should have received a copy of the GNU General Public License
17 * along with this program. If not, see <https://www.gnu.org/licenses/>.
18 */
19
27if (!defined('NOLOGIN')) {
28 define("NOLOGIN", 1); // This means this output page does not require to be logged.
29}
30if (!defined('NOCSRFCHECK')) {
31 define("NOCSRFCHECK", 1); // We accept to go on this page from external web site.
32}
33if (!defined('NOIPCHECK')) {
34 define('NOIPCHECK', '1'); // Do not check IP defined into conf $dolibarr_main_restrict_ip
35}
36if (!defined('NOBROWSERNOTIF')) {
37 define('NOBROWSERNOTIF', '1');
38}
39
40// For MultiCompany module.
41// Do not use GETPOST here, function is not defined and get of entity must be done before including main.inc.php
42// Because 2 entities can have the same ref.
43$entity = (!empty($_GET['entity']) ? (int) $_GET['entity'] : (!empty($_POST['entity']) ? (int) $_POST['entity'] : (!empty($_GET['e']) ? (int) $_GET['e'] : (!empty($_POST['e']) ? (int) $_POST['e'] : 1))));
44if (is_numeric($entity)) {
45 define("DOLENTITY", $entity);
46}
47
48// Load Dolibarr environment
49require '../../main.inc.php';
50require_once DOL_DOCUMENT_ROOT.'/core/lib/company.lib.php';
51require_once DOL_DOCUMENT_ROOT.'/core/lib/payments.lib.php';
52require_once DOL_DOCUMENT_ROOT.'/core/lib/functions2.lib.php';
53require_once DOL_DOCUMENT_ROOT.'/product/class/product.class.php';
54require_once DOL_DOCUMENT_ROOT.'/societe/class/societeaccount.class.php';
55require_once DOL_DOCUMENT_ROOT.'/compta/facture/class/facture.class.php';
56require_once DOL_DOCUMENT_ROOT.'/projet/class/project.class.php';
57
69// Load translation files
70$langs->loadLangs(array("other", "dict", "bills", "companies", "errors", "paypal", "stripe")); // File with generic data
71
72// Security check
73// No check on module enabled. Done later according to $validpaymentmethod
74
75$errmsg = '';
76$error = 0;
77$action = GETPOST('action', 'aZ09');
78$id = GETPOSTINT('id');
79$securekeyreceived = GETPOST("securekey", 'alpha');
80$securekeytocompare = dol_hash(getDolGlobalString('EVENTORGANIZATION_SECUREKEY').'conferenceorbooth'.((int) $id), 'md5');
81
82if ($securekeytocompare != $securekeyreceived) {
83 print $langs->trans('MissingOrBadSecureKey');
84 exit;
85}
86
87// Define $urlwithroot
88//$urlwithouturlroot=preg_replace('/'.preg_quote(DOL_URL_ROOT,'/').'$/i','',trim($dolibarr_main_url_root));
89//$urlwithroot=$urlwithouturlroot.DOL_URL_ROOT; // This is to use external domain name found into config file
90$urlwithroot = DOL_MAIN_URL_ROOT; // This is to use same domain name than current. For Paypal payment, we can use internal URL like localhost.
91
92$project = new Project($db);
93$resultproject = $project->fetch($id);
94if ($resultproject < 0) {
95 $error++;
96 $errmsg .= $project->error;
97}
98
99$hookmanager->initHooks(array('newpayment'));
100
101$extrafields = new ExtraFields($db);
102
103$user->loadDefaultValues();
104
105// Security check
106if (empty($conf->project->enabled)) {
107 httponly_accessforbidden('Module Project not enabled');
108}
109
110
111
125function llxHeaderVierge($title, $head = "", $disablejs = 0, $disablehead = 0, $arrayofjs = [], $arrayofcss = []) // @phan-suppress-current-line PhanRedefineFunction
126{
127 global $conf, $langs, $mysoc;
128
129 top_htmlhead($head, $title, $disablejs, $disablehead, $arrayofjs, $arrayofcss); // Show html headers
130
131 print '<body id="mainbody" class="publicnewmemberform">';
132
133 // Define urllogo
134 $urllogo = DOL_URL_ROOT.'/theme/common/login_logo.png';
135
136 if (!empty($mysoc->logo_small) && is_readable($conf->mycompany->dir_output.'/logos/thumbs/'.$mysoc->logo_small)) {
137 $urllogo = DOL_URL_ROOT.'/viewimage.php?cache=1&amp;modulepart=mycompany&amp;file='.urlencode('logos/thumbs/'.$mysoc->logo_small);
138 } elseif (!empty($mysoc->logo) && is_readable($conf->mycompany->dir_output.'/logos/'.$mysoc->logo)) {
139 $urllogo = DOL_URL_ROOT.'/viewimage.php?cache=1&amp;modulepart=mycompany&amp;file='.urlencode('logos/'.$mysoc->logo);
140 } elseif (is_readable(DOL_DOCUMENT_ROOT.'/theme/dolibarr_logo.svg')) {
141 $urllogo = DOL_URL_ROOT.'/theme/dolibarr_logo.svg';
142 }
143
144 print '<div class="center">';
145 // Output html code for logo
146 print '<div class="backgreypublicpayment">';
147 print '<div class="logopublicpayment">';
148 if ($urllogo) {
149 print '<img id="dolpaymentlogo" src="'.$urllogo.'">';
150 }
151 if (empty($urllogo)) {
152 print $mysoc->name;
153 }
154 print '</div>';
155 if (!getDolGlobalString('MAIN_HIDE_POWERED_BY')) {
156 print '<div class="poweredbypublicpayment opacitymedium right"><a class="poweredbyhref" href="https://www.dolibarr.org?utm_medium=website&utm_source=poweredby" target="dolibarr" rel="noopener">'.$langs->trans("PoweredBy").'<br><img class="poweredbyimg" src="'.DOL_URL_ROOT.'/theme/dolibarr_logo.svg" width="80px"></a></div>';
157 }
158 print '</div>';
159
160 if (getDolGlobalString('PROJECT_IMAGE_PUBLIC_ORGANIZEDEVENT')) {
161 print '<div class="backimagepubliceventorganizationsubscription">';
162 print '<img id="idPROJECT_IMAGE_PUBLIC_ORGANIZEDEVENT" src="' . getDolGlobalString('PROJECT_IMAGE_PUBLIC_ORGANIZEDEVENT').'">';
163 print '</div>';
164 }
165
166 print '</div>';
167
168 print '<div class="divmainbodylarge">';
169}
170
178function llxFooterVierge() // @phan-suppress-current-line PhanRedefineFunction
179{
180 print '</div>';
181
182 printCommonFooter('public');
183
184 print "</body>\n";
185 print "</html>\n";
186}
187
188
189/*
190 * Actions
191 */
192
193if (GETPOST('suggestbooth')) {
194 header("Location: ".dol_buildpath('/public/project/suggestbooth.php', 1).'?id='.$id."&securekey=".$securekeyreceived);
195 exit;
196}
197
198if (GETPOST('suggestconference')) {
199 header("Location: ".dol_buildpath('/public/project/suggestconference.php', 1).'?id='.$id."&securekey=".$securekeyreceived);
200 exit;
201}
202
203if (GETPOST('viewandvote')) {
204 header("Location: ".dol_buildpath('/public/project/viewandvote.php', 1).'?id='.$id."&securekey=".$securekeyreceived);
205 exit;
206}
207
208
209/*
210 * View
211 */
212
213$head = '';
214if (getDolGlobalString('ONLINE_PAYMENT_CSS_URL')) {
215 $head = '<link rel="stylesheet" type="text/css" href="' . getDolGlobalString('ONLINE_PAYMENT_CSS_URL').'?lang='.$langs->defaultlang.'">'."\n";
216}
217
218$conf->dol_hide_topmenu = 1;
219$conf->dol_hide_leftmenu = 1;
220
221$replacemainarea = (empty($conf->dol_hide_leftmenu) ? '<div>' : '').'<div>';
222
223//llxHeader($head, $langs->trans("SuggestForm"), '', '', 0, 0, '', '', '', 'onlinepaymentbody', $replacemainarea);
224
225llxHeaderVierge($langs->trans("SuggestForm"));
226
227
228print '<span id="dolpaymentspan"></span>'."\n";
229print '<div class="center">'."\n";
230
231print '<form id="dolpaymentform" class="center" name="paymentform" action="'.$_SERVER["PHP_SELF"].'" method="POST">'."\n";
232print '<input type="hidden" name="token" value="'.newToken().'">'."\n";
233print '<input type="hidden" name="action" value="dopayment">'."\n";
234print '<input type="hidden" name="tag" value="'.GETPOST("tag", 'alpha').'">'."\n";
235//print '<input type="hidden" name="suffix" value="'.dol_escape_htmltag($suffix).'">'."\n";
236print '<input type="hidden" name="id" value="'.dol_escape_htmltag((string) $id).'">'."\n";
237print '<input type="hidden" name="securekey" value="'.dol_escape_htmltag($securekeyreceived).'">'."\n";
238print '<input type="hidden" name="e" value="'.$entity.'" />';
239//print '<input type="hidden" name="forcesandbox" value="'.GETPOSTINT('forcesandbox').'" />';
240print "\n";
241
242
243print '<div class="centergrid">';
244print '<div id="divsubscribe">';
245
246
247// Sub banner
248print '<div class="center subscriptionformbanner subbanner justify margintoponly paddingtop marginbottomonly padingbottom">';
249print load_fiche_titre($langs->trans("NewRegistration"), '', '', 0, '', 'center');
250// Welcome message
251print '<br>';
252print '<span class="opacitymedium">'.$langs->trans("EvntOrgRegistrationWelcomeMessage").'</span>';
253print '<br>';
254// Title
255print '<span class="eventlabel large">'.dol_escape_htmltag($project->title).'</span><br>';
256print '</div>';
257
258// Help text
259print '<div class="justify subscriptionformhelptext">';
260
261if ($project->date_start_event || $project->date_end_event) {
262 print '<br><span class="fa fa-calendar pictofixedwidth opacitymedium"></span>';
263}
264if ($project->date_start_event) {
265 $format = 'day';
266 $tmparray = dol_getdate($project->date_start_event, false, '');
267 if ($tmparray['hours'] || $tmparray['minutes'] || $tmparray['minutes']) {
268 $format = 'dayhour';
269 }
270 print dol_print_date($project->date_start_event, $format);
271}
272if ($project->date_start_event && $project->date_end_event) {
273 print ' - ';
274}
275if ($project->date_end_event) {
276 $format = 'day';
277 $tmparray = dol_getdate($project->date_end_event, false, '');
278 if ($tmparray['hours'] || $tmparray['minutes'] || $tmparray['minutes']) {
279 $format = 'dayhour';
280 }
281 print dol_print_date($project->date_end_event, $format);
282}
283if ($project->date_start_event || $project->date_end_event) {
284 print '<br>';
285}
286if ($project->location) {
287 print '<span class="fa fa-map-marked-alt pictofixedwidth opacitymedium"></span>'.dol_escape_htmltag($project->location).'<br>';
288}
289
290print '</div>';
291
292
293print '<br>';
294
295print '<table id="dolsuggestboost" summary="Suggest a boost form" class="center">'."\n";
296
297// Output payment summary form
298print '<tr><td class="center">';
299
300print "\n";
301
302
303// Show all action buttons
304print '<br>';
305
306// Output introduction text
307$foundaction = 0;
308if ($project->accept_booth_suggestions) {
309 $foundaction++;
310 print '<input type="submit" value="'.$langs->trans("SuggestBooth").'" id="suggestbooth" name="suggestbooth" class="button minwidth250">';
311 print '<br><br>';
312}
313if ($project->accept_conference_suggestions == 1 || $project->accept_conference_suggestions == 2) { // Can suggest conferences
314 $foundaction++;
315 print '<input type="submit" value="'.$langs->trans("SuggestConference").'" id="suggestconference" name="suggestconference" class="button minwidth250">';
316 print '<br><br>';
317}
318if ($project->accept_conference_suggestions == 2 || $project->accept_conference_suggestions == 3) { // Can vote for conferences
319 $foundaction++;
320 print '<input type="submit" value="'.$langs->trans("ViewAndVote").'" id="viewandvote" name="viewandvote" class="button minwidth250">';
321}
322
323if (! $foundaction) {
324 print '<span class="opacitymedium">'.$langs->trans("NoPublicActionsAllowedForThisEvent").'</span>';
325}
326
327print '</td></tr>'."\n";
328
329print '</table>'."\n";
330
331
332print '</div></div>';
333
334
335print '</form>'."\n";
336print '</div>'."\n";
337print '<br>';
338
339
340$suffix = '';
341
342htmlPrintOnlineFooter($mysoc, $langs, 1, $suffix, $project);
343
344llxFooter('', 'public');
345
346$db->close();
$id
Support class for third parties, contacts, members, users or resources.
Definition account.php:47
llxFooter($comment='', $zone='private', $disabledoutputofmessages=0)
Empty footer.
Definition wrapper.php:91
Class to manage standard extra fields.
Class to manage projects.
htmlPrintOnlineFooter($fromcompany, $langs, $addformmessage=0, $suffix='', $object=null)
Show footer of company in HTML public pages.
global $mysoc
GETPOSTINT($paramname, $method=0)
Return the value of a $_GET or $_POST supervariable, converted into integer.
printCommonFooter($zone='private')
Print common footer : conf->global->MAIN_HTML_FOOTER js for switch of menu hider js for conf->global-...
GETPOST($paramname, $check='alphanohtml', $method=0, $filter=null, $options=null, $noreplace=0)
Return value of a param into GET or POST supervariable.
dol_buildpath($path, $type=0, $returnemptyifnotfound=0)
Return path of url or filesystem.
dol_print_date($time, $format='', $tzoutput='auto', $outputlangs=null, $encodetooutput=false, $decorate=0)
Output date in a string format according to outputlangs (or langs if not defined).
load_fiche_titre($title, $morehtmlright='', $picto='generic', $pictoisfullpath=0, $id='', $morecssontable='', $morehtmlcenter='', $morecssonpicto='widthpictotitle')
Load a title with picto.
getDolGlobalString($key, $default='')
Return a Dolibarr global constant string value.
dol_getdate($timestamp, $fast=false, $forcetimezone='')
Return an array with locale date info.
top_htmlhead($head, $title='', $disablejs=0, $disablehead=0, $arrayofjs=array(), $arrayofcss=array(), $disableforlogin=0, $disablenofollow=0, $disablenoindex=0)
Output html header of a page.
llxHeaderVierge($title, $head="", $disablejs=0, $disablehead=0, $arrayofjs=[], $arrayofcss=[])
Show header for booking.
Definition index.php:142
llxFooterVierge()
Show footer for demo.
Definition index.php:507
httponly_accessforbidden($message='1', $http_response_code=403, $stringalreadysanitized=0)
Show a message to say access is forbidden and stop program.
dol_hash($chain, $type='0', $nosalt=0, $mode=0)
Returns a hash (non reversible encryption) of a string.