<!DOCTYPE html PUBLIC "-//W3C//DTD XHTML 1.1//EN"
"http://www.w3.org/TR/xhtml11/DTD/xhtml11.dtd">
<html xmlns="http://www.w3.org/1999/xhtml">
<head><meta http-equiv="content-type" content="text/html; charset=utf-8" />
<title>[1655] sites/trunk/jobs.wordpress.net/public_html/wp-content/plugins/jobswp/jobswp.php: jobs.wordpress.net: Implement mechanism for job posters to remove their own jobs.</title>
</head>
<body>
<style type="text/css"><!--
#msg dl.meta { border: 1px #006 solid; background: #369; padding: 6px; color: #fff; }
#msg dl.meta dt { float: left; width: 6em; font-weight: bold; }
#msg dt:after { content:':';}
#msg dl, #msg dt, #msg ul, #msg li, #header, #footer, #logmsg { font-family: verdana,arial,helvetica,sans-serif; font-size: 10pt; }
#msg dl a { font-weight: bold}
#msg dl a:link { color:#fc3; }
#msg dl a:active { color:#ff0; }
#msg dl a:visited { color:#cc6; }
h3 { font-family: verdana,arial,helvetica,sans-serif; font-size: 10pt; font-weight: bold; }
#msg pre { overflow: auto; background: #ffc; border: 1px #fa0 solid; padding: 6px; }
#logmsg { background: #ffc; border: 1px #fa0 solid; padding: 1em 1em 0 1em; }
#logmsg p, #logmsg pre, #logmsg blockquote { margin: 0 0 1em 0; }
#logmsg p, #logmsg li, #logmsg dt, #logmsg dd { line-height: 14pt; }
#logmsg h1, #logmsg h2, #logmsg h3, #logmsg h4, #logmsg h5, #logmsg h6 { margin: .5em 0; }
#logmsg h1:first-child, #logmsg h2:first-child, #logmsg h3:first-child, #logmsg h4:first-child, #logmsg h5:first-child, #logmsg h6:first-child { margin-top: 0; }
#logmsg ul, #logmsg ol { padding: 0; list-style-position: inside; margin: 0 0 0 1em; }
#logmsg ul { text-indent: -1em; padding-left: 1em; }#logmsg ol { text-indent: -1.5em; padding-left: 1.5em; }
#logmsg > ul, #logmsg > ol { margin: 0 0 1em 0; }
#logmsg pre { background: #eee; padding: 1em; }
#logmsg blockquote { border: 1px solid #fa0; border-left-width: 10px; padding: 1em 1em 0 1em; background: white;}
#logmsg dl { margin: 0; }
#logmsg dt { font-weight: bold; }
#logmsg dd { margin: 0; padding: 0 0 0.5em 0; }
#logmsg dd:before { content:'\00bb';}
#logmsg table { border-spacing: 0px; border-collapse: collapse; border-top: 4px solid #fa0; border-bottom: 1px solid #fa0; background: #fff; }
#logmsg table th { text-align: left; font-weight: normal; padding: 0.2em 0.5em; border-top: 1px dotted #fa0; }
#logmsg table td { text-align: right; border-top: 1px dotted #fa0; padding: 0.2em 0.5em; }
#logmsg table thead th { text-align: center; border-bottom: 1px solid #fa0; }
#logmsg table th.Corner { text-align: left; }
#logmsg hr { border: none 0; border-top: 2px dashed #fa0; height: 1px; }
#header, #footer { color: #fff; background: #636; border: 1px #300 solid; padding: 6px; }
#patch { width: 100%; }
#patch h4 {font-family: verdana,arial,helvetica,sans-serif;font-size:10pt;padding:8px;background:#369;color:#fff;margin:0;}
#patch .propset h4, #patch .binary h4 {margin:0;}
#patch pre {padding:0;line-height:1.2em;margin:0;}
#patch .diff {width:100%;background:#eee;padding: 0 0 10px 0;overflow:auto;}
#patch .propset .diff, #patch .binary .diff {padding:10px 0;}
#patch span {display:block;padding:0 10px;}
#patch .modfile, #patch .addfile, #patch .delfile, #patch .propset, #patch .binary, #patch .copfile {border:1px solid #ccc;margin:10px 0;}
#patch ins {background:#dfd;text-decoration:none;display:block;padding:0 10px;}
#patch del {background:#fdd;text-decoration:none;display:block;padding:0 10px;}
#patch .lines, .info {color:#888;background:#fff;}
--></style>
<div id="msg">
<dl class="meta" style="font-size: 105%">
<dt style="float: left; width: 6em; font-weight: bold">Revision</dt> <dd><a style="font-weight: bold" href="http://meta.trac.wordpress.org/changeset/1655">1655</a><script type="application/ld+json">{"@context":"http://schema.org","@type":"EmailMessage","description":"Review this Commit","action":{"@type":"ViewAction","url":"http://meta.trac.wordpress.org/changeset/1655","name":"Review Commit"}}</script></dd>
<dt style="float: left; width: 6em; font-weight: bold">Author</dt> <dd>coffee2code</dd>
<dt style="float: left; width: 6em; font-weight: bold">Date</dt> <dd>2015-06-10 21:58:13 +0000 (Wed, 10 Jun 2015)</dd>
</dl>
<pre style='padding-left: 1em; margin: 2em 0; border-left: 2px solid #ccc; line-height: 1.25; font-size: 105%; font-family: sans-serif'>jobs.wordpress.net: Implement mechanism for job posters to remove their own jobs.
* Generate unique token for each job, given to job poster after submission.
* Add template for remove-a-job page for submitting job removal requests (including form hook, e.g. for adding captcha)
* Handle job removal requests
* Email job poster after submission, to include the job token</pre>
<h3>Modified Paths</h3>
<ul>
<li><a href="#sitestrunkjobswordpressnetpublic_htmlwpcontentpluginsjobswpjobswpphp">sites/trunk/jobs.wordpress.net/public_html/wp-content/plugins/jobswp/jobswp.php</a></li>
</ul>
</div>
<div id="patch">
<h3>Diff</h3>
<a id="sitestrunkjobswordpressnetpublic_htmlwpcontentpluginsjobswpjobswpphp"></a>
<div class="modfile"><h4 style="background-color: #eee; color: inherit; margin: 1em 0; padding: 1.3em; font-size: 115%">Modified: sites/trunk/jobs.wordpress.net/public_html/wp-content/plugins/jobswp/jobswp.php</h4>
<pre class="diff"><span>
<span class="info" style="display: block; padding: 0 10px; color: #888">--- sites/trunk/jobs.wordpress.net/public_html/wp-content/plugins/jobswp/jobswp.php 2015-06-10 21:48:58 UTC (rev 1654)
+++ sites/trunk/jobs.wordpress.net/public_html/wp-content/plugins/jobswp/jobswp.php 2015-06-10 21:58:13 UTC (rev 1655)
</span><span class="lines" style="display: block; padding: 0 10px; color: #888">@@ -118,6 +118,8 @@
</span><span class="cx" style="display: block; padding: 0 10px"> foreach ( array( 'the_content', 'the_title', 'single_post_title' ) as $filter )
</span><span class="cx" style="display: block; padding: 0 10px"> add_filter( $filter, array( $this, 'WordPress_dangit' ) );
</span><span class="cx" style="display: block; padding: 0 10px">
</span><ins style="background-color: #dfd; text-decoration:none; display:block; padding: 0 10px">+ add_action( 'save_post_job', array( $this, 'email_job_poster' ), 10, 3 );
+ add_action( 'wp', array( $this, 'maybe_remove_job' ) );
</ins><span class="cx" style="display: block; padding: 0 10px"> $this->save_job();
</span><span class="cx" style="display: block; padding: 0 10px"> $this->schedule_job_pruning();
</span><span class="cx" style="display: block; padding: 0 10px">
</span><span class="lines" style="display: block; padding: 0 10px; color: #888">@@ -518,6 +520,129 @@
</span><span class="cx" style="display: block; padding: 0 10px"> }
</span><span class="cx" style="display: block; padding: 0 10px">
</span><span class="cx" style="display: block; padding: 0 10px"> /**
</span><ins style="background-color: #dfd; text-decoration:none; display:block; padding: 0 10px">+ * Generates a random token.
+ *
+ * Incorporates the job id to further ensure uniqueness and to facilitate
+ * later use.
+ *
+ * @param int $job_id The job post ID.
+ * @return string The token.
+ */
+ protected function generate_job_token( $job_id ) {
+ return $job_id . '|' . bin2hex( openssl_random_pseudo_bytes( 20 ) );
+ }
+
+ /**
+ * Gets the published job with the given token.
+ *
+ * @param string $token The token.
+ * @return WP_Post|false The job, or false if no matching job found.
+ */
+ public function get_job_by_token( $token ) {
+ $job = false;
+
+ $parts = explode( '|', trim( $token ), 2 );
+
+ if ( count( $parts ) > 1 ) {
+ list( $job_id, $job_token ) = $parts;
+
+ $stored_job_token = get_post_meta( (int) $job_id, 'job_token', true );
+
+ if ( $token === $stored_job_token ) {
+ $job = get_post( (int) $job_id );
+ }
+ }
+
+ return $job;
+ }
+
+ /**
+ * Handles front-end submission of a job removal request.
+ */
+ public function maybe_remove_job() {
+ if ( isset( $_POST['removejob'] ) && 1 == $_POST['removejob'] ) {
+ check_admin_referer( 'jobswpremovejob' );
+ $has_errors = false;
+ $this->success = false;
+
+ // Verify job token is provided.
+ if ( ! isset( $_POST['job_token'] ) || empty( $_POST['job_token'] ) ) {
+ $has_errors = true;
+ }
+
+ $has_errors = apply_filters( 'jobswp_remove_job_errors', $has_errors );
+
+ // Only query for job if no errors thus far.
+ if ( ! $has_errors ) {
+ $job = $this->get_job_by_token( $_POST['job_token'] );
+ if ( ! $job ) {
+ $has_errors = __( 'The provided job token does not match an open or pending job posting.', 'jobswp' );
+ }
+ }
+
+ if ( $has_errors ) {
+ $_POST['errors'] = $has_errors;
+ } else {
+ $this->success = true;
+ }
+
+ // If everything checks out, try to remove the job.
+ if ( $this->success ) {
+ $updated = $this->close_job( $job );
+
+ if ( is_wp_error( $updated ) || ! $updated ) {
+ $this->success = false;
+ $_POST['errors'] = __( 'Unable to remove job. Please try again or contact us for assistance.', 'jobswp' );
+ } else {
+ wp_safe_redirect( '/remove-a-job/?removedjob=1' );
+ }
+ }
+
+ }
+ }
+
+ /**
+ * Emails the job poster after submission of their job posting.
+ *
+ * @param int $post_ID Post ID.
+ * @param WP_Post $post Post object.
+ * @param bool $update Whether this is an existing post being updated or not.
+ */
+ public function email_job_poster( $post_id, $post, $update ) {
+ if ( ! $update ) {
+ $to = get_post_meta( $post_id, 'email', true );
+ $title = get_the_title( $post );
+ $subject = sprintf( 'Job submitted: %s', $title );
+ $token = get_post_meta( $post_id, 'job_token', true );
+ $body = <<<EMAIL
+Hi,
+
+Your job "%1\$s" has been successfully submitted to %2\$s. Please be patient as it may take our team of volunteer moderators 24-48 hours to review and publish it to the site.
+
+Take note of this special job token: %3\$s
+
+Your job will automatically be removed from the site after 21 days. If you wish to remove the job sooner than that, you can do so by using the job removal form at %4\$s and providing the job token provided above.
+
+Cheers.
+
+- The jobs.wordpress.net team.
+
+EMAIL;
+
+ $headers = '';
+ $headers['From'] = 'jobs.wordpress.net <jobs@wordpress.net>';
+
+ $body = sprintf( $body, $title, 'http://jobs.wordpress.net/', $token, 'http://jobs.wordpress.net/remove-a-job/' );
+
+ if ( $to ) {
+ wp_mail( $to, $subject, $body, $headers );
+ }
+ }
+
+ return $post_id;
+ }
+
+ /**
</ins><span class="cx" style="display: block; padding: 0 10px"> * Saves a job posting submission, which is coming from the front-end by an
</span><span class="cx" style="display: block; padding: 0 10px"> * unverified visitor.
</span><span class="cx" style="display: block; padding: 0 10px"> */
</span><span class="lines" style="display: block; padding: 0 10px; color: #888">@@ -556,6 +681,13 @@
</span><span class="cx" style="display: block; padding: 0 10px"> // If everything checks out, create the job
</span><span class="cx" style="display: block; padding: 0 10px"> if ( $this->success ) {
</span><span class="cx" style="display: block; padding: 0 10px"> $job_id = $this->create_job();
</span><ins style="background-color: #dfd; text-decoration:none; display:block; padding: 0 10px">+
+ // Generate and store a unique token for the job, primarily to be used by
+ // job posters to close their jobs themselves despite the site's lack of
+ // users.
+ $_POST['job_token'] = $this->generate_job_token( $job_id );
+ add_post_meta( $job_id, 'job_token', $_POST['job_token'], true );
+
</ins><span class="cx" style="display: block; padding: 0 10px"> if ( is_wp_error( $job_id ) ) {
</span><span class="cx" style="display: block; padding: 0 10px"> $_POST['errors'] = $job_id->get_error_message();
</span><span class="cx" style="display: block; padding: 0 10px"> $this->success = false;
</span></span></pre>
</div>
</div>
</body>
</html>