about summary refs log tree commit diff
path: root/app/controllers/activitypub/inboxes_controller.rb
blob: 36f8378411d68cf87dde127993b4a7416b8779b0 (plain) (blame)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
# frozen_string_literal: true

class ActivityPub::InboxesController < Api::BaseController
  include SignatureVerification
  include JsonLdHelper

  before_action :set_account

  def create
    if unknown_deleted_account?
      head 202
    elsif signed_request_account
      process_payload
      head 202
    else
      render plain: signature_verification_failure_reason, status: 401
    end
  end

  private

  def unknown_deleted_account?
    json = Oj.load(body, mode: :strict)
    json['type'] == 'Delete' && json['actor'].present? && json['actor'] == value_or_id(json['object']) && !Account.where(uri: json['actor']).exists?
  rescue Oj::ParseError
    false
  end

  def set_account
    @account = Account.find_local!(params[:account_username]) if params[:account_username]
  end

  def body
    return @body if defined?(@body)
    @body = request.body.read.force_encoding('UTF-8')
    request.body.rewind if request.body.respond_to?(:rewind)
    @body
  end

  def process_payload
    ActivityPub::ProcessingWorker.perform_async(signed_request_account.id, body, @account&.id)
  end
end