mirror of
https://github.com/simple-login/app.git
synced 2024-11-14 08:01:13 +01:00
70 lines
2.3 KiB
Python
70 lines
2.3 KiB
Python
"""
|
|
Allow user to disable an alias or block a contact via the one click unsubscribe
|
|
"""
|
|
|
|
from app.db import Session
|
|
|
|
|
|
from flask import redirect, url_for, flash, request, render_template
|
|
from flask_login import login_required, current_user
|
|
|
|
from app.dashboard.base import dashboard_bp
|
|
from app.models import Alias, Contact
|
|
|
|
|
|
@dashboard_bp.route("/unsubscribe/<alias_id>", methods=["GET", "POST"])
|
|
@login_required
|
|
def unsubscribe(alias_id):
|
|
alias = Alias.get(alias_id)
|
|
if not alias:
|
|
flash("Incorrect link. Redirect you to the home page", "warning")
|
|
return redirect(url_for("dashboard.index"))
|
|
|
|
if alias.user_id != current_user.id:
|
|
flash(
|
|
"You don't have access to this page. Redirect you to the home page",
|
|
"warning",
|
|
)
|
|
return redirect(url_for("dashboard.index"))
|
|
|
|
# automatic unsubscribe, according to https://tools.ietf.org/html/rfc8058
|
|
if request.method == "POST":
|
|
alias.enabled = False
|
|
flash(f"Alias {alias.email} has been blocked", "success")
|
|
Session.commit()
|
|
|
|
return redirect(url_for("dashboard.index", highlight_alias_id=alias.id))
|
|
else: # ask user confirmation
|
|
return render_template("dashboard/unsubscribe.html", alias=alias.email)
|
|
|
|
|
|
@dashboard_bp.route("/block_contact/<contact_id>", methods=["GET", "POST"])
|
|
@login_required
|
|
def block_contact(contact_id):
|
|
contact = Contact.get(contact_id)
|
|
if not contact:
|
|
flash("Incorrect link. Redirect you to the home page", "warning")
|
|
return redirect(url_for("dashboard.index"))
|
|
|
|
if contact.user_id != current_user.id:
|
|
flash(
|
|
"You don't have access to this page. Redirect you to the home page",
|
|
"warning",
|
|
)
|
|
return redirect(url_for("dashboard.index"))
|
|
|
|
# automatic unsubscribe, according to https://tools.ietf.org/html/rfc8058
|
|
if request.method == "POST":
|
|
contact.block_forward = True
|
|
flash(f"Emails sent from {contact.website_email} are now blocked", "success")
|
|
Session.commit()
|
|
|
|
return redirect(
|
|
url_for(
|
|
"dashboard.alias_contact_manager",
|
|
alias_id=contact.alias_id,
|
|
highlight_contact_id=contact.id,
|
|
)
|
|
)
|
|
else: # ask user confirmation
|
|
return render_template("dashboard/block_contact.html", contact=contact)
|