routes.rb 13 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420
  1. # frozen_string_literal: true
  2. require 'sidekiq/web'
  3. require 'sidekiq-scheduler/web'
  4. Sidekiq::Web.set :session_secret, Rails.application.secrets[:secret_key_base]
  5. Rails.application.routes.draw do
  6. mount LetterOpenerWeb::Engine, at: 'letter_opener' if Rails.env.development?
  7. authenticate :user, lambda { |u| u.admin? } do
  8. mount Sidekiq::Web, at: 'sidekiq', as: :sidekiq
  9. mount PgHero::Engine, at: 'pghero', as: :pghero
  10. end
  11. use_doorkeeper do
  12. controllers authorizations: 'oauth/authorizations',
  13. authorized_applications: 'oauth/authorized_applications',
  14. tokens: 'oauth/tokens'
  15. end
  16. get '.well-known/host-meta', to: 'well_known/host_meta#show', as: :host_meta, defaults: { format: 'xml' }
  17. get '.well-known/webfinger', to: 'well_known/webfinger#show', as: :webfinger
  18. get '.well-known/change-password', to: redirect('/auth/edit')
  19. get '.well-known/keybase-proof-config', to: 'well_known/keybase_proof_config#show'
  20. get 'manifest', to: 'manifests#show', defaults: { format: 'json' }
  21. get 'intent', to: 'intents#show'
  22. get 'custom.css', to: 'custom_css#show', as: :custom_css
  23. devise_scope :user do
  24. get '/invite/:invite_code', to: 'auth/registrations#new', as: :public_invite
  25. match '/auth/finish_signup' => 'auth/confirmations#finish_signup', via: [:get, :patch], as: :finish_signup
  26. end
  27. devise_for :users, path: 'auth', controllers: {
  28. omniauth_callbacks: 'auth/omniauth_callbacks',
  29. sessions: 'auth/sessions',
  30. registrations: 'auth/registrations',
  31. passwords: 'auth/passwords',
  32. confirmations: 'auth/confirmations',
  33. }
  34. get '/users/:username', to: redirect('/@%{username}'), constraints: lambda { |req| req.format.nil? || req.format.html? }
  35. get '/authorize_follow', to: redirect { |_, request| "/authorize_interaction?#{request.params.to_query}" }
  36. resources :accounts, path: 'users', only: [:show], param: :username do
  37. resources :stream_entries, path: 'updates', only: [:show] do
  38. member do
  39. get :embed
  40. end
  41. end
  42. get :remote_follow, to: 'remote_follow#new'
  43. post :remote_follow, to: 'remote_follow#create'
  44. resources :statuses, only: [:show] do
  45. member do
  46. get :activity
  47. get :embed
  48. get :replies
  49. end
  50. end
  51. resources :followers, only: [:index], controller: :follower_accounts
  52. resources :following, only: [:index], controller: :following_accounts
  53. resource :follow, only: [:create], controller: :account_follow
  54. resource :unfollow, only: [:create], controller: :account_unfollow
  55. resource :outbox, only: [:show], module: :activitypub
  56. resource :inbox, only: [:create], module: :activitypub
  57. resources :collections, only: [:show], module: :activitypub
  58. end
  59. resource :inbox, only: [:create], module: :activitypub
  60. get '/@:username', to: 'accounts#show', as: :short_account
  61. get '/@:username/with_replies', to: 'accounts#show', as: :short_account_with_replies
  62. get '/@:username/media', to: 'accounts#show', as: :short_account_media
  63. get '/@:username/tagged/:tag', to: 'accounts#show', as: :short_account_tag
  64. get '/@:account_username/:id', to: 'statuses#show', as: :short_account_status
  65. get '/@:account_username/:id/embed', to: 'statuses#embed', as: :embed_short_account_status
  66. get '/interact/:id', to: 'remote_interaction#new', as: :remote_interaction
  67. post '/interact/:id', to: 'remote_interaction#create'
  68. get '/explore', to: 'directories#index', as: :explore
  69. get '/explore/:id', to: 'directories#show', as: :explore_hashtag
  70. namespace :settings do
  71. resource :profile, only: [:show, :update]
  72. resource :preferences, only: [:show, :update]
  73. resource :notifications, only: [:show, :update]
  74. resource :import, only: [:show, :create]
  75. resource :export, only: [:show, :create]
  76. namespace :exports, constraints: { format: :csv } do
  77. resources :follows, only: :index, controller: :following_accounts
  78. resources :blocks, only: :index, controller: :blocked_accounts
  79. resources :mutes, only: :index, controller: :muted_accounts
  80. resources :lists, only: :index, controller: :lists
  81. resources :domain_blocks, only: :index, controller: :blocked_domains
  82. end
  83. resource :two_factor_authentication, only: [:show, :create, :destroy]
  84. namespace :two_factor_authentication do
  85. resources :recovery_codes, only: [:create]
  86. resource :confirmation, only: [:new, :create]
  87. end
  88. resources :identity_proofs, only: [:index, :show, :new, :create, :update]
  89. resources :applications, except: [:edit] do
  90. member do
  91. post :regenerate
  92. end
  93. end
  94. resource :delete, only: [:show, :destroy]
  95. resource :migration, only: [:show, :update]
  96. resources :sessions, only: [:destroy]
  97. resources :featured_tags, only: [:index, :create, :destroy]
  98. end
  99. resources :media, only: [:show] do
  100. get :player
  101. end
  102. resources :tags, only: [:show]
  103. resources :emojis, only: [:show]
  104. resources :invites, only: [:index, :create, :destroy]
  105. resources :filters, except: [:show]
  106. resource :relationships, only: [:show, :update]
  107. get '/public', to: 'public_timelines#show', as: :public_timeline
  108. get '/media_proxy/:id/(*any)', to: 'media_proxy#show', as: :media_proxy
  109. # Remote follow
  110. resource :remote_unfollow, only: [:create]
  111. resource :authorize_interaction, only: [:show, :create]
  112. resource :share, only: [:show, :create]
  113. namespace :admin do
  114. get '/dashboard', to: 'dashboard#index'
  115. resources :subscriptions, only: [:index]
  116. resources :domain_blocks, only: [:new, :create, :show, :destroy]
  117. resources :email_domain_blocks, only: [:index, :new, :create, :destroy]
  118. resources :action_logs, only: [:index]
  119. resources :warning_presets, except: [:new]
  120. resource :settings, only: [:edit, :update]
  121. resources :invites, only: [:index, :create, :destroy] do
  122. collection do
  123. post :deactivate_all
  124. end
  125. end
  126. resources :relays, only: [:index, :new, :create, :destroy] do
  127. member do
  128. post :enable
  129. post :disable
  130. end
  131. end
  132. resources :instances, only: [:index, :show], constraints: { id: /[^\/]+/ }
  133. resources :reports, only: [:index, :show] do
  134. member do
  135. post :assign_to_self
  136. post :unassign
  137. post :reopen
  138. post :resolve
  139. end
  140. resources :reported_statuses, only: [:create]
  141. end
  142. resources :report_notes, only: [:create, :destroy]
  143. resources :accounts, only: [:index, :show] do
  144. member do
  145. post :subscribe
  146. post :unsubscribe
  147. post :enable
  148. post :unsilence
  149. post :unsuspend
  150. post :redownload
  151. post :remove_avatar
  152. post :remove_header
  153. post :memorialize
  154. post :approve
  155. post :reject
  156. end
  157. resource :change_email, only: [:show, :update]
  158. resource :reset, only: [:create]
  159. resource :action, only: [:new, :create], controller: 'account_actions'
  160. resources :statuses, only: [:index, :show, :create, :update, :destroy]
  161. resources :followers, only: [:index]
  162. resource :confirmation, only: [:create] do
  163. collection do
  164. post :resend
  165. end
  166. end
  167. resource :role do
  168. member do
  169. post :promote
  170. post :demote
  171. end
  172. end
  173. end
  174. resources :pending_accounts, only: [:index] do
  175. collection do
  176. post :approve_all
  177. post :reject_all
  178. post :batch
  179. end
  180. end
  181. resources :users, only: [] do
  182. resource :two_factor_authentication, only: [:destroy]
  183. end
  184. resources :custom_emojis, only: [:index, :new, :create, :update, :destroy] do
  185. member do
  186. post :copy
  187. post :enable
  188. post :disable
  189. end
  190. end
  191. resources :account_moderation_notes, only: [:create, :destroy]
  192. resources :tags, only: [:index] do
  193. member do
  194. post :hide
  195. post :unhide
  196. end
  197. end
  198. end
  199. get '/admin', to: redirect('/admin/dashboard', status: 302)
  200. namespace :api do
  201. # PubSubHubbub outgoing subscriptions
  202. resources :subscriptions, only: [:show]
  203. post '/subscriptions/:id', to: 'subscriptions#update'
  204. # PubSubHubbub incoming subscriptions
  205. post '/push', to: 'push#update', as: :push
  206. # Salmon
  207. post '/salmon/:id', to: 'salmon#update', as: :salmon
  208. # OEmbed
  209. get '/oembed', to: 'oembed#show', as: :oembed
  210. # Identity proofs
  211. get :proofs, to: 'proofs#index'
  212. # JSON / REST API
  213. namespace :v1 do
  214. resources :statuses, only: [:create, :show, :destroy] do
  215. scope module: :statuses do
  216. resources :reblogged_by, controller: :reblogged_by_accounts, only: :index
  217. resources :favourited_by, controller: :favourited_by_accounts, only: :index
  218. resource :reblog, only: :create
  219. post :unreblog, to: 'reblogs#destroy'
  220. resource :favourite, only: :create
  221. post :unfavourite, to: 'favourites#destroy'
  222. resource :mute, only: :create
  223. post :unmute, to: 'mutes#destroy'
  224. resource :pin, only: :create
  225. post :unpin, to: 'pins#destroy'
  226. end
  227. member do
  228. get :context
  229. get :card
  230. end
  231. end
  232. namespace :timelines do
  233. resource :direct, only: :show, controller: :direct
  234. resource :home, only: :show, controller: :home
  235. resource :public, only: :show, controller: :public
  236. resources :tag, only: :show
  237. resources :list, only: :show
  238. end
  239. resources :streaming, only: [:index]
  240. resources :custom_emojis, only: [:index]
  241. resources :suggestions, only: [:index, :destroy]
  242. resources :scheduled_statuses, only: [:index, :show, :update, :destroy]
  243. resources :preferences, only: [:index]
  244. resources :conversations, only: [:index, :destroy] do
  245. member do
  246. post :read
  247. end
  248. end
  249. get '/search', to: 'search#index', as: :search
  250. resources :follows, only: [:create]
  251. resources :media, only: [:create, :update]
  252. resources :blocks, only: [:index]
  253. resources :mutes, only: [:index]
  254. resources :favourites, only: [:index]
  255. resources :reports, only: [:create]
  256. resources :filters, only: [:index, :create, :show, :update, :destroy]
  257. resources :endorsements, only: [:index]
  258. namespace :apps do
  259. get :verify_credentials, to: 'credentials#show'
  260. end
  261. resources :apps, only: [:create]
  262. resource :instance, only: [:show] do
  263. resources :peers, only: [:index], controller: 'instances/peers'
  264. resource :activity, only: [:show], controller: 'instances/activity'
  265. end
  266. resource :domain_blocks, only: [:show, :create, :destroy]
  267. resources :follow_requests, only: [:index] do
  268. member do
  269. post :authorize
  270. post :reject
  271. end
  272. end
  273. resources :notifications, only: [:index, :show] do
  274. collection do
  275. post :clear
  276. post :dismiss # Deprecated
  277. end
  278. member do
  279. post :dismiss
  280. end
  281. end
  282. namespace :accounts do
  283. get :verify_credentials, to: 'credentials#show'
  284. patch :update_credentials, to: 'credentials#update'
  285. resource :search, only: :show, controller: :search
  286. resources :relationships, only: :index
  287. end
  288. resources :accounts, only: [:create, :show] do
  289. resources :statuses, only: :index, controller: 'accounts/statuses'
  290. resources :followers, only: :index, controller: 'accounts/follower_accounts'
  291. resources :following, only: :index, controller: 'accounts/following_accounts'
  292. resources :lists, only: :index, controller: 'accounts/lists'
  293. resources :identity_proofs, only: :index, controller: 'accounts/identity_proofs'
  294. member do
  295. post :follow
  296. post :unfollow
  297. post :block
  298. post :unblock
  299. post :mute
  300. post :unmute
  301. end
  302. resource :pin, only: :create, controller: 'accounts/pins'
  303. post :unpin, to: 'accounts/pins#destroy'
  304. end
  305. resources :lists, only: [:index, :create, :show, :update, :destroy] do
  306. resource :accounts, only: [:show, :create, :destroy], controller: 'lists/accounts'
  307. end
  308. resources :polls, only: [:create, :show] do
  309. resources :votes, only: :create, controller: 'polls/votes'
  310. end
  311. namespace :push do
  312. resource :subscription, only: [:create, :show, :update, :destroy]
  313. end
  314. end
  315. namespace :v2 do
  316. get '/search', to: 'search#index', as: :search
  317. end
  318. namespace :web do
  319. resource :settings, only: [:update]
  320. resource :embed, only: [:create]
  321. resources :push_subscriptions, only: [:create] do
  322. member do
  323. put :update
  324. end
  325. end
  326. end
  327. end
  328. get '/web/(*any)', to: 'home#index', as: :web
  329. get '/about', to: 'about#show'
  330. get '/about/more', to: 'about#more'
  331. get '/terms', to: 'about#terms'
  332. root 'home#index'
  333. match '*unmatched_route',
  334. via: :all,
  335. to: 'application#raise_not_found',
  336. format: false
  337. end