~widelands-dev/widelands-website/trunk

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
from django.db import models
from django.contrib.auth.models import User
from django.contrib.contenttypes.models import ContentType
from django.contrib.contenttypes.fields import GenericForeignKey
from django.conf import settings
import re


class SuspiciousInput(models.Model):
    """Model for collecting suspicios user input.

        Call the check_input method with this attributes:
        content_object = Model instance of a saved(!) object
        user = user
        text = text to check for suspicious content

        Example:
        is_suspicous = SuspiciousInput.check_input(content_object=post,
    user=post.user, text=post.body)

    """

    text = models.CharField(
        max_length=200, verbose_name='suspicious user input')
    user = models.ForeignKey(User, verbose_name='related user')
    content_type = models.ForeignKey(ContentType, verbose_name='related model')
    object_id = models.PositiveIntegerField()
    content_object = GenericForeignKey('content_type', 'object_id')

    class Meta:
        ordering = ['content_type_id']
        default_permissions = ('change', 'delete',)

    def __str__(self):
        return self.text

    def clean(self):
        # Cleaning fields
        max_chars = self._meta.get_field('text').max_length
        if len(self.text) >= max_chars:
            # Truncate the text to fit with max_length of field
            # otherwise a Database error is thrown
            self.text = self.text[:max_chars]

    def is_suspicious(self):
        if any(x in self.text.lower() for x in settings.ANTI_SPAM_KWRDS):
            return True
        if re.search(settings.ANTI_SPAM_PHONE_NR, self.text):
            return True
        return False

    @classmethod
    def check_input(cls, *args, **kwargs):
        user_input = cls(*args, **kwargs)
        is_spam = user_input.is_suspicious()
        if is_spam:
            try:
                user_input.clean()
                user_input.save()
            except:
                pass

        return is_spam