PageRenderTime 26ms CodeModel.GetById 24ms RepoModel.GetById 0ms app.codeStats 0ms

/catalog/model/affiliate/affiliate.php

https://gitlab.com/dadangnh/sb1-bon
PHP | 180 lines | 133 code | 45 blank | 2 comment | 10 complexity | ae5621deff68f1b08f2d97f6a2ca132f MD5 | raw file
  1. <?php
  2. class ModelAffiliateAffiliate extends Model {
  3. public function addAffiliate($data) {
  4. $this->db->query("INSERT INTO " . DB_PREFIX . "affiliate SET firstname = '" . $this->db->escape($data['firstname']) . "', lastname = '" . $this->db->escape($data['lastname']) . "', email = '" . $this->db->escape($data['email']) . "', telephone = '" . $this->db->escape($data['telephone']) . "', fax = '" . $this->db->escape($data['fax']) . "', salt = '" . $this->db->escape($salt = token(9)) . "', password = '" . $this->db->escape(sha1($salt . sha1($salt . sha1($data['password'])))) . "', company = '" . $this->db->escape($data['company']) . "', website = '" . $this->db->escape($data['website']) . "', address_1 = '" . $this->db->escape($data['address_1']) . "', address_2 = '" . $this->db->escape($data['address_2']) . "', city = '" . $this->db->escape($data['city']) . "', postcode = '" . $this->db->escape($data['postcode']) . "', country_id = '" . (int)$data['country_id'] . "', zone_id = '" . (int)$data['zone_id'] . "', code = '" . $this->db->escape(uniqid()) . "', commission = '" . (float)$this->config->get('config_affiliate_commission') . "', tax = '" . $this->db->escape($data['tax']) . "', payment = '" . $this->db->escape($data['payment']) . "', cheque = '" . $this->db->escape($data['cheque']) . "', paypal = '" . $this->db->escape($data['paypal']) . "', bank_name = '" . $this->db->escape($data['bank_name']) . "', bank_branch_number = '" . $this->db->escape($data['bank_branch_number']) . "', bank_swift_code = '" . $this->db->escape($data['bank_swift_code']) . "', bank_account_name = '" . $this->db->escape($data['bank_account_name']) . "', bank_account_number = '" . $this->db->escape($data['bank_account_number']) . "', status = '1', approved = '" . (int)!$this->config->get('config_affiliate_approval') . "', date_added = NOW()");
  5. $affiliate_id = $this->db->getLastId();
  6. $this->load->language('mail/affiliate');
  7. $subject = sprintf($this->language->get('text_subject'), html_entity_decode($this->config->get('config_name'), ENT_QUOTES, 'UTF-8'));
  8. $message = sprintf($this->language->get('text_welcome'), html_entity_decode($this->config->get('config_name'), ENT_QUOTES, 'UTF-8')) . "\n\n";
  9. if (!$this->config->get('config_affiliate_approval')) {
  10. $message .= $this->language->get('text_login') . "\n";
  11. } else {
  12. $message .= $this->language->get('text_approval') . "\n";
  13. }
  14. $message .= $this->url->link('affiliate/login', '', true) . "\n\n";
  15. $message .= $this->language->get('text_services') . "\n\n";
  16. $message .= $this->language->get('text_thanks') . "\n";
  17. $message .= html_entity_decode($this->config->get('config_name'), ENT_QUOTES, 'UTF-8');
  18. $mail = new Mail();
  19. $mail->protocol = $this->config->get('config_mail_protocol');
  20. $mail->parameter = $this->config->get('config_mail_parameter');
  21. $mail->smtp_hostname = $this->config->get('config_mail_smtp_hostname');
  22. $mail->smtp_username = $this->config->get('config_mail_smtp_username');
  23. $mail->smtp_password = html_entity_decode($this->config->get('config_mail_smtp_password'), ENT_QUOTES, 'UTF-8');
  24. $mail->smtp_port = $this->config->get('config_mail_smtp_port');
  25. $mail->smtp_timeout = $this->config->get('config_mail_smtp_timeout');
  26. $mail->setTo($this->request->post['email']);
  27. $mail->setFrom($this->config->get('config_email'));
  28. $mail->setSender(html_entity_decode($this->config->get('config_name'), ENT_QUOTES, 'UTF-8'));
  29. $mail->setSubject($subject);
  30. $mail->setText($message);
  31. $mail->send();
  32. // Send to main admin email if new affiliate email is enabled
  33. if (in_array('affiliate', (array)$this->config->get('config_mail_alert'))) {
  34. $message = $this->language->get('text_signup') . "\n\n";
  35. $message .= $this->language->get('text_store') . ' ' . html_entity_decode($this->config->get('config_name'), ENT_QUOTES, 'UTF-8') . "\n";
  36. $message .= $this->language->get('text_firstname') . ' ' . $data['firstname'] . "\n";
  37. $message .= $this->language->get('text_lastname') . ' ' . $data['lastname'] . "\n";
  38. if ($data['website']) {
  39. $message .= $this->language->get('text_website') . ' ' . $data['website'] . "\n";
  40. }
  41. if ($data['company']) {
  42. $message .= $this->language->get('text_company') . ' ' . $data['company'] . "\n";
  43. }
  44. $message .= $this->language->get('text_email') . ' ' . $data['email'] . "\n";
  45. $message .= $this->language->get('text_telephone') . ' ' . $data['telephone'] . "\n";
  46. $mail->setTo($this->config->get('config_email'));
  47. $mail->setSubject(html_entity_decode($this->language->get('text_new_affiliate'), ENT_QUOTES, 'UTF-8'));
  48. $mail->setText($message);
  49. $mail->send();
  50. // Send to additional alert emails if new affiliate email is enabled
  51. $emails = explode(',', $this->config->get('config_alert_email'));
  52. foreach ($emails as $email) {
  53. if (utf8_strlen($email) > 0 && filter_var($email, FILTER_VALIDATE_EMAIL)) {
  54. $mail->setTo($email);
  55. $mail->send();
  56. }
  57. }
  58. }
  59. return $affiliate_id;
  60. }
  61. public function editAffiliate($data) {
  62. $affiliate_id = $this->affiliate->getId();
  63. $this->db->query("UPDATE " . DB_PREFIX . "affiliate SET firstname = '" . $this->db->escape($data['firstname']) . "', lastname = '" . $this->db->escape($data['lastname']) . "', email = '" . $this->db->escape($data['email']) . "', telephone = '" . $this->db->escape($data['telephone']) . "', fax = '" . $this->db->escape($data['fax']) . "', company = '" . $this->db->escape($data['company']) . "', website = '" . $this->db->escape($data['website']) . "', address_1 = '" . $this->db->escape($data['address_1']) . "', address_2 = '" . $this->db->escape($data['address_2']) . "', city = '" . $this->db->escape($data['city']) . "', postcode = '" . $this->db->escape($data['postcode']) . "', country_id = '" . (int)$data['country_id'] . "', zone_id = '" . (int)$data['zone_id'] . "' WHERE affiliate_id = '" . (int)$affiliate_id . "'");
  64. }
  65. public function editPayment($data) {
  66. $affiliate_id = $this->affiliate->getId();
  67. $this->db->query("UPDATE " . DB_PREFIX . "affiliate SET tax = '" . $this->db->escape($data['tax']) . "', payment = '" . $this->db->escape($data['payment']) . "', cheque = '" . $this->db->escape($data['cheque']) . "', paypal = '" . $this->db->escape($data['paypal']) . "', bank_name = '" . $this->db->escape($data['bank_name']) . "', bank_branch_number = '" . $this->db->escape($data['bank_branch_number']) . "', bank_swift_code = '" . $this->db->escape($data['bank_swift_code']) . "', bank_account_name = '" . $this->db->escape($data['bank_account_name']) . "', bank_account_number = '" . $this->db->escape($data['bank_account_number']) . "' WHERE affiliate_id = '" . (int)$affiliate_id . "'");
  68. }
  69. public function editPassword($email, $password) {
  70. $this->db->query("UPDATE " . DB_PREFIX . "affiliate SET salt = '" . $this->db->escape($salt = token(9)) . "', password = '" . $this->db->escape(sha1($salt . sha1($salt . sha1($password)))) . "' WHERE LOWER(email) = '" . $this->db->escape(utf8_strtolower($email)) . "'");
  71. }
  72. public function getAffiliate($affiliate_id) {
  73. $query = $this->db->query("SELECT * FROM " . DB_PREFIX . "affiliate WHERE affiliate_id = '" . (int)$affiliate_id . "'");
  74. return $query->row;
  75. }
  76. public function getAffiliateByEmail($email) {
  77. $query = $this->db->query("SELECT * FROM " . DB_PREFIX . "affiliate WHERE LOWER(email) = '" . $this->db->escape(utf8_strtolower($email)) . "'");
  78. return $query->row;
  79. }
  80. public function getAffiliateByCode($code) {
  81. $query = $this->db->query("SELECT * FROM " . DB_PREFIX . "affiliate WHERE code = '" . $this->db->escape($code) . "'");
  82. return $query->row;
  83. }
  84. public function getTotalAffiliatesByEmail($email) {
  85. $query = $this->db->query("SELECT COUNT(*) AS total FROM " . DB_PREFIX . "affiliate WHERE LOWER(email) = '" . $this->db->escape(utf8_strtolower($email)) . "'");
  86. return $query->row['total'];
  87. }
  88. public function addTransaction($affiliate_id, $amount = '', $order_id = 0) {
  89. $affiliate_info = $this->getAffiliate($affiliate_id);
  90. if ($affiliate_info) {
  91. $this->load->language('mail/affiliate');
  92. $this->db->query("INSERT INTO " . DB_PREFIX . "affiliate_transaction SET affiliate_id = '" . (int)$affiliate_id . "', order_id = '" . (float)$order_id . "', description = '" . $this->db->escape($this->language->get('text_order_id') . ' #' . $order_id) . "', amount = '" . (float)$amount . "', date_added = NOW()");
  93. $affiliate_transaction_id = $this->db->getLastId();
  94. $message = sprintf($this->language->get('text_transaction_received'), $this->currency->format($amount, $this->config->get('config_currency'))) . "\n\n";
  95. $message .= sprintf($this->language->get('text_transaction_total'), $this->currency->format($this->getTransactionTotal($affiliate_id), $this->config->get('config_currency')));
  96. $mail = new Mail();
  97. $mail->protocol = $this->config->get('config_mail_protocol');
  98. $mail->parameter = $this->config->get('config_mail_parameter');
  99. $mail->smtp_hostname = $this->config->get('config_mail_smtp_hostname');
  100. $mail->smtp_username = $this->config->get('config_mail_smtp_username');
  101. $mail->smtp_password = html_entity_decode($this->config->get('config_mail_smtp_password'), ENT_QUOTES, 'UTF-8');
  102. $mail->smtp_port = $this->config->get('config_mail_smtp_port');
  103. $mail->smtp_timeout = $this->config->get('config_mail_smtp_timeout');
  104. $mail->setTo($affiliate_info['email']);
  105. $mail->setFrom($this->config->get('config_email'));
  106. $mail->setSender(html_entity_decode($this->config->get('config_name'), ENT_QUOTES, 'UTF-8'));
  107. $mail->setSubject(sprintf($this->language->get('text_transaction_subject'), html_entity_decode($this->config->get('config_name'), ENT_QUOTES, 'UTF-8')));
  108. $mail->setText($message);
  109. $mail->send();
  110. return $affiliate_transaction_id;
  111. }
  112. }
  113. public function deleteTransaction($order_id) {
  114. $this->db->query("DELETE FROM " . DB_PREFIX . "affiliate_transaction WHERE order_id = '" . (int)$order_id . "'");
  115. }
  116. public function getTransactionTotal($affiliate_id) {
  117. $query = $this->db->query("SELECT SUM(amount) AS total FROM " . DB_PREFIX . "affiliate_transaction WHERE affiliate_id = '" . (int)$affiliate_id . "'");
  118. return $query->row['total'];
  119. }
  120. public function addLoginAttempt($email) {
  121. $query = $this->db->query("SELECT * FROM " . DB_PREFIX . "affiliate_login WHERE email = '" . $this->db->escape(utf8_strtolower((string)$email)) . "' AND ip = '" . $this->db->escape($this->request->server['REMOTE_ADDR']) . "'");
  122. if (!$query->num_rows) {
  123. $this->db->query("INSERT INTO " . DB_PREFIX . "affiliate_login SET email = '" . $this->db->escape(utf8_strtolower((string)$email)) . "', ip = '" . $this->db->escape($this->request->server['REMOTE_ADDR']) . "', total = 1, date_added = '" . $this->db->escape(date('Y-m-d H:i:s')) . "', date_modified = '" . $this->db->escape(date('Y-m-d H:i:s')) . "'");
  124. } else {
  125. $this->db->query("UPDATE " . DB_PREFIX . "affiliate_login SET total = (total + 1), date_modified = '" . $this->db->escape(date('Y-m-d H:i:s')) . "' WHERE affiliate_login_id = '" . (int)$query->row['affiliate_login_id'] . "'");
  126. }
  127. }
  128. public function getLoginAttempts($email) {
  129. $query = $this->db->query("SELECT * FROM `" . DB_PREFIX . "affiliate_login` WHERE email = '" . $this->db->escape(utf8_strtolower($email)) . "'");
  130. return $query->row;
  131. }
  132. public function deleteLoginAttempts($email) {
  133. $this->db->query("DELETE FROM `" . DB_PREFIX . "affiliate_login` WHERE email = '" . $this->db->escape(utf8_strtolower($email)) . "'");
  134. }
  135. }