about summary refs log blame commit diff
path: root/app/controllers/activitypub/inboxes_controller.rb
blob: 36f8378411d68cf87dde127993b4a7416b8779b0 (plain) (tree)
1
2
3
4
5
6
7
8
9


                                                          
                      


                            

                                
                     
              
        
                                                                      



         





                                                                                                                                                    
                 
                                                                                          

          


                                                            

                     
                                                                                              
     
# frozen_string_literal: true

class ActivityPub::InboxesController < Api::BaseController
  include SignatureVerification
  include JsonLdHelper

  before_action :set_account

  def create
    if unknown_deleted_account?
      head 202
    elsif signed_request_account
      process_payload
      head 202
    else
      render plain: signature_verification_failure_reason, status: 401
    end
  end

  private

  def unknown_deleted_account?
    json = Oj.load(body, mode: :strict)
    json['type'] == 'Delete' && json['actor'].present? && json['actor'] == value_or_id(json['object']) && !Account.where(uri: json['actor']).exists?
  rescue Oj::ParseError
    false
  end

  def set_account
    @account = Account.find_local!(params[:account_username]) if params[:account_username]
  end

  def body
    return @body if defined?(@body)
    @body = request.body.read.force_encoding('UTF-8')
    request.body.rewind if request.body.respond_to?(:rewind)
    @body
  end

  def process_payload
    ActivityPub::ProcessingWorker.perform_async(signed_request_account.id, body, @account&.id)
  end
end