Fork of Pleroma with site-specific changes and feature branches https://git.pleroma.social/pleroma/pleroma
You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

157 lines
4.8KB

  1. # Pleroma: A lightweight social networking server
  2. # Copyright © 2017-2019 Pleroma Authors <https://pleroma.social/>
  3. # SPDX-License-Identifier: AGPL-3.0-only
  4. defmodule Pleroma.Web.ActivityPub.MRF.SimplePolicy do
  5. alias Pleroma.User
  6. @moduledoc "Filter activities depending on their origin instance"
  7. @behaviour Pleroma.Web.ActivityPub.MRF
  8. defp check_accept(%{host: actor_host} = _actor_info, object) do
  9. accepts = Pleroma.Config.get([:mrf_simple, :accept])
  10. cond do
  11. accepts == [] -> {:ok, object}
  12. actor_host == Pleroma.Config.get([Pleroma.Web.Endpoint, :url, :host]) -> {:ok, object}
  13. Enum.member?(accepts, actor_host) -> {:ok, object}
  14. true -> {:reject, nil}
  15. end
  16. end
  17. defp check_reject(%{host: actor_host} = _actor_info, object) do
  18. if Enum.member?(Pleroma.Config.get([:mrf_simple, :reject]), actor_host) do
  19. {:reject, nil}
  20. else
  21. {:ok, object}
  22. end
  23. end
  24. defp check_media_removal(
  25. %{host: actor_host} = _actor_info,
  26. %{"type" => "Create", "object" => %{"attachment" => child_attachment}} = object
  27. )
  28. when length(child_attachment) > 0 do
  29. object =
  30. if Enum.member?(Pleroma.Config.get([:mrf_simple, :media_removal]), actor_host) do
  31. child_object = Map.delete(object["object"], "attachment")
  32. Map.put(object, "object", child_object)
  33. else
  34. object
  35. end
  36. {:ok, object}
  37. end
  38. defp check_media_removal(_actor_info, object), do: {:ok, object}
  39. defp check_media_nsfw(
  40. %{host: actor_host} = _actor_info,
  41. %{
  42. "type" => "Create",
  43. "object" => child_object
  44. } = object
  45. ) do
  46. object =
  47. if Enum.member?(Pleroma.Config.get([:mrf_simple, :media_nsfw]), actor_host) do
  48. tags = (child_object["tag"] || []) ++ ["nsfw"]
  49. child_object = Map.put(child_object, "tag", tags)
  50. child_object = Map.put(child_object, "sensitive", true)
  51. Map.put(object, "object", child_object)
  52. else
  53. object
  54. end
  55. {:ok, object}
  56. end
  57. defp check_media_nsfw(_actor_info, object), do: {:ok, object}
  58. defp check_ftl_removal(%{host: actor_host} = _actor_info, object) do
  59. object =
  60. with true <-
  61. Enum.member?(
  62. Pleroma.Config.get([:mrf_simple, :federated_timeline_removal]),
  63. actor_host
  64. ),
  65. user <- User.get_cached_by_ap_id(object["actor"]),
  66. true <- "https://www.w3.org/ns/activitystreams#Public" in object["to"],
  67. true <- user.follower_address in object["cc"] do
  68. to =
  69. List.delete(object["to"], "https://www.w3.org/ns/activitystreams#Public") ++
  70. [user.follower_address]
  71. cc =
  72. List.delete(object["cc"], user.follower_address) ++
  73. ["https://www.w3.org/ns/activitystreams#Public"]
  74. object
  75. |> Map.put("to", to)
  76. |> Map.put("cc", cc)
  77. else
  78. _ -> object
  79. end
  80. {:ok, object}
  81. end
  82. defp check_report_removal(%{host: actor_host} = _actor_info, %{"type" => "Flag"} = object) do
  83. if actor_host in Pleroma.Config.get([:mrf_simple, :report_removal]) do
  84. {:reject, nil}
  85. else
  86. {:ok, object}
  87. end
  88. end
  89. defp check_report_removal(_actor_info, object), do: {:ok, object}
  90. defp check_avatar_removal(%{host: actor_host} = _actor_info, %{"icon" => _icon} = object) do
  91. if actor_host in Pleroma.Config.get([:mrf_simple, :avatar_removal]) do
  92. {:ok, Map.delete(object, "icon")}
  93. else
  94. {:ok, object}
  95. end
  96. end
  97. defp check_avatar_removal(_actor_info, object), do: {:ok, object}
  98. defp check_banner_removal(%{host: actor_host} = _actor_info, %{"image" => _image} = object) do
  99. if actor_host in Pleroma.Config.get([:mrf_simple, :banner_removal]) do
  100. {:ok, Map.delete(object, "image")}
  101. else
  102. {:ok, object}
  103. end
  104. end
  105. defp check_banner_removal(_actor_info, object), do: {:ok, object}
  106. @impl true
  107. def filter(%{"actor" => actor} = object) do
  108. actor_info = URI.parse(actor)
  109. with {:ok, object} <- check_accept(actor_info, object),
  110. {:ok, object} <- check_reject(actor_info, object),
  111. {:ok, object} <- check_media_removal(actor_info, object),
  112. {:ok, object} <- check_media_nsfw(actor_info, object),
  113. {:ok, object} <- check_ftl_removal(actor_info, object),
  114. {:ok, object} <- check_report_removal(actor_info, object) do
  115. {:ok, object}
  116. else
  117. _e -> {:reject, nil}
  118. end
  119. end
  120. def filter(%{"id" => actor, "type" => obj_type} = object)
  121. when obj_type in ["Application", "Group", "Organization", "Person", "Service"] do
  122. actor_info = URI.parse(actor)
  123. with {:ok, object} <- check_avatar_removal(actor_info, object),
  124. {:ok, object} <- check_banner_removal(actor_info, object) do
  125. {:ok, object}
  126. else
  127. _e -> {:reject, nil}
  128. end
  129. end
  130. def filter(object), do: {:ok, object}
  131. end