+ my projects:
+
+HEREDOC;
+ $sql = "SELECT title FROM projects";
+ $result = $this->db->query($sql);
+ while ($entry = $result->fetch_object()) {
+ echo "title\">$entry->title";
+ }
+ }
+}
+
+class project extends index {
+ protected function display_exhibits() {
+ echo "";
+ $sql = "SELECT text FROM projects
+ WHERE title = ?";
+ $result = $this->query($sql, "s", $_GET['project']);
+ if ($result = $result[0]['text']) {
+ $text = str_replace("class=\"exhibit\"", "class=\"exhibit\" style=\"display:block;\"", $result);
+ echo $text;
+ echo "
";
+ } else {
+ throw new notFound();
+ }
+ }
+}
+
+class page extends cms {
+ private $page = 1;
+ private $offset = 0;
+ private $notes_per_page = 4;
+ private $number_of_pages = 1;
+
+ public function __construct() {
+ parent::__construct();
+ $this->page_offset();
+ }
+
+ private function page_offset() {
+ $sql = "SELECT COUNT(*) FROM notes";
+ $result = $this->db->query($sql);
+ $result = $result->fetch_array();
+ $this->number_of_pages = ceil($result[0] / $this->notes_per_page);
+ if (isset($_GET['page']) && is_numeric($_GET['page'])) {
+ $this->page = (int) $_GET['page'];
+ } else {
+ throw new notFound();
+ }
+ if ($this->page > $this->number_of_pages) {
+ throw new notFound();
+ }
+ if ($this->page < 1) {
+ throw new notFound();
+ }
+ $this->offset = ($this->page - 1) * $this->notes_per_page;
+ }
+
+ public function display() {
+ $this->display_head();
+ echo "";
+ $sql = "SELECT date_posted, title, url, text
+ FROM notes ORDER BY date_posted DESC
+ LIMIT ?, ?";
+ $result = $this->query($sql, "ii",
+ $this->offset,
+ $this->notes_per_page);
+ foreach ($result as $row => $entry) {
+ $title = $entry['title'];
+ $url = '/note/' . $entry['url'];
+ $date_posted = explode("-", $entry['date_posted']);
+ $year_posted = $date_posted[0];
+ $month_posted = $date_posted[1];
+ $datetime_posted = explode(' ', $date_posted[2]);
+ $day_posted = $datetime_posted[0];
+ echo "
";
+ echo "
$year_posted/$month_posted/$day_posted/$title
";
+ echo $entry['text'];
+ echo "
";
+ }
+ echo "
";
+ $this->write_navigation();
+ $this->display_close();
+ }
+
+ private function write_navigation() {
+ echo "";
+ echo "
";
+ if($this->page > 1){
+ $previous_page = $this->page - 1;
+ echo "prev";
+ }
+ if($this->page < $this->number_of_pages) {
+ $forward_page = $this->page + 1;
+ echo " next";
+ }
+ echo "
";
+ echo "
";
+ }
+
+}
+
+class note extends cms {
+
+ private $id;
+ private $comments_enabled = false;
+ private $failed_captcha;
+ public $url;
+ public $title;
+ public $year_posted;
+ public $month_posted;
+ public $day_posted;
+ public $text;
+ public $number_of_comments;
+
+ public function __construct($comments_enabled = false) {
+ parent::__construct();
+ $this->comments_enabled = $comments_enabled;
+ $url = htmlspecialchars($_SERVER['REQUEST_URI']);
+ if (isset($_GET['verify'])) {
+ $url = substr($url, 0, (strlen($url)-6));
+ }
+ $this->url = $url;
+ $sql = "SELECT title, date_posted, text, id
+ FROM notes WHERE url = ?";
+ $result = $this->query($sql, "s",
+ $_GET['note']);
+ if ($result) {
+ $entry = $result[0];
+ $this->id = $entry["id"];
+ $this->title = $entry["title"];
+ $date_posted = explode("-", $entry["date_posted"]);
+ $this->year_posted = $date_posted[0];
+ $this->month_posted = $date_posted[1];
+ $datetime_posted = explode(' ', $date_posted[2]);
+ $this->day_posted = $datetime_posted[0];
+ $this->text = $entry["text"];
+ } else {
+ throw new notFound();
+ }
+ $sql = "SELECT COUNT(*) FROM comments
+ WHERE note = $this->id";
+ $result = $this->db->query($sql);
+ $result = $result->fetch_array();
+ $this->number_of_comments = $result[0];
+ if (isset($_GET['verify'])) {
+ $this->verify();
+ }
+ }
+
+ public function display() {
+ $this->display_head();
+ $this->display_note();
+ if ($this->comments_enabled) {
+ $this->display_comments();
+ $this->display_comment_form();
+ }
+ $this->write_navigation();
+ $this->display_close();
+ }
+
+ private function verify() {
+ require_once('includes/recaptchalib.php');
+ echo "
";
+ $resp = recaptcha_check_answer ($this->recaptcha_privatekey,
+ $_SERVER["REMOTE_ADDR"],
+ $_POST["recaptcha_challenge_field"],
+ $_POST["recaptcha_response_field"]);
+ if (!$resp->is_valid) {
+ $this->failed_captcha = true;
+ } else {
+ $sql = ("INSERT INTO comments (date_posted, author,
+ email, text, note)
+ VALUES(NOW(), ?, ?, ?, ?)");
+ $stmt = $this->db->prepare($sql);
+ // Checks are needed here (no blank text,
+ // and a default author / email need to be set
+ $stmt->bind_param('ssss',
+ htmlspecialchars($_POST['author']),
+ htmlspecialchars($_POST['email']),
+ htmlspecialchars($_POST['text']),
+ $this->id);
+ $stmt->execute();
+ }
+ }
+
+ private function display_note() {
+ echo "";
+ echo "
$this->year_posted/$this->month_posted/$this->day_posted/$this->title
";
+ echo $this->text;
+ }
+
+ private function write_navigation() {
+ echo <<
+
+
+END_OF_NAVIGATION;
+ if ($this->failed_captcha) {
+ echo "sorry, reCAPTCHA said you're not human.
";
+ }
+ if (!$this->comments_enabled) {
+ $this->display_comment_link();
+ }
+ echo <<notes/
+
+
+END_OF_NAVIGATION;
+ }
+
+ private function display_comment_link() {
+ if ($this->number_of_comments > 0) {
+ $anchor_text = "comments ($this->number_of_comments)";
+ } else {
+ $anchor_text = "comment?";
+ }
+ if (substr($this->url, (strlen($this->url)-1), strlen($this->url)) == '/') {
+ $url = $this->url . 'comments/';
+ } else {
+ $url = $this->url . '/comments/';
+ }
+ echo "";
+ }
+
+ private function display_comments() {
+ echo "";
+ }
+
+ private function display_comment_form() {
+ $publickey = $this->recaptcha_publickey;
+ echo <<
+function showRecaptcha(element) {
+Recaptcha.create("$publickey",
+ "recaptcha_div",
+ {
+ theme : 'custom',
+ custom_theme_widget: 'recaptcha_widget',
+ callback: Recaptcha.focus_response_field
+ });
+}
+
+END_CAPTCHA_STYLE;
+ require_once('includes/recaptchalib.php');
+ // Trailing slash is necessary for reloads to work
+ $url = $this->url . "verify";
+ echo "
+
+END_OF_FORM;
+ }
+}
+
+
+class archive extends cms {
+
+ public function __construct() {
+ parent::__construct();
+ }
+
+ private function check_exists() {
+ $sql = "SELECT COUNT(*) FROM notes
+ WHERE url = ?";
+ $results = $this->query($sql, "s", $_GET['note']);
+ if ($results[0]["COUNT(*)"] != 1) {
+ $this->not_found();
+ }
+ }
+
+ public function display() {
+ // this really needs its own pagination...
+ // there should be a class for that.
+ $this->display_head();
+ switch (true) {
+ case (isset($_GET['year']) && !isset($_GET['month'])
+ && !isset($_GET['day'])):
+ $sql = "SELECT title, url, date_posted, text
+ FROM notes WHERE YEAR(date_posted) = ?
+ ORDER BY date_posted DESC";
+ $result = $this->query($sql, "d",
+ $_GET['year']);
+ break;
+ case (isset($_GET['year']) && isset($_GET['month'])
+ && !isset($_GET['day'])):
+ $sql = "SELECT title, url, date_posted, text
+ FROM notes WHERE YEAR(date_posted) = ?
+ AND MONTH(date_posted) = ?
+ ORDER BY date_posted DESC";
+ $result = $this->query($sql, "dd",
+ $_GET['year'], $_GET['month']);
+ break;
+ case (isset($_GET['year']) && isset($_GET['month'])
+ && isset($_GET['day'])):
+ $sql = "SELECT title, url, date_posted, text
+ FROM notes WHERE YEAR(date_posted) = ?
+ AND MONTH(date_posted) = ?
+ AND DAY(date_posted) = ?
+ ORDER BY date_posted DESC";
+ $result = $this->query($sql, "ddd",
+ $_GET['year'], $_GET['month'],
+ $_GET['day']);
+ break;
+ }
+ if (count($result) >= 1) {
+ echo "";
+ foreach ($result as $row => $entry) {
+ $title = $entry['title'];
+ $url = '/note/' . $entry['url'];
+ $date_posted = explode("-", $entry['date_posted']);
+ $year_posted = $date_posted[0];
+ $month_posted = $date_posted[1];
+ $datetime_posted = explode(' ', $date_posted[2]);
+ $day_posted = $datetime_posted[0];
+ echo "
";
+ echo "
$year_posted/$month_posted/$day_posted/$title
";
+ echo $entry['text'];
+ echo "
";
+ }
+ echo "
";
+ $this->write_navigation();
+ } else {
+ echo "
";
+ echo "sorry, nothing here
";
+ echo "Empty set (0.00 sec)
";
+ }
+ $this->display_close();
+ }
+
+ private function write_navigation() {
+ echo "
";
+ echo "";
+ echo "
";
+ // fill me in!
+ echo "
";
+ echo "";
+ }
+}
+
+
+class notFound extends Exception {
+ public function __construct() {
+ header("HTTP/1.0 404 Not Found");
+ ob_end_clean();
+ include("404.php");
+ exit();
+ }
+}
+
+## now actually do something:
+switch (cms::determine_type()) {
+ case "index":
+ $index = new index();
+ $index->display();
+ break;
+ case "project":
+ $project = new project();
+ $project->display();
+ break;
+ case "note":
+ if (isset($_GET['comments'])) {
+ $note = new note($comments_enabled = true);
+ } else {
+ $note = new note;
+ }
+ $note->display();
+ break;
+ case "page":
+ $page = new page;
+ $page->display();
+ break;
+ case "archive":
+ $archive = new archive;
+ $archive->display();
+ break;
+}
+
+?>