aboutsummaryrefslogblamecommitdiffstats
path: root/mod/removeme.php
blob: 89b08cdc52c7a4050833b5e9999c0f81bb353f01 (plain) (tree)




































                                                                                     
                                                      











                                                                                                                         
<?php

function removeme_post(&$a) {

	if(! local_user())
		return;

	if((! x($_POST,'qxz_password')) || (! strlen(trim($_POST['qxz_password']))))
		return;

	if((! x($_POST,'verify')) || (! strlen(trim($_POST['verify']))))
		return;

	if($_POST['verify'] !== $_SESSION['remove_account_verify'])
		return;

	$encrypted = hash('whirlpool',trim($_POST['qxz_password']));

	if((strlen($a->user['password'])) && ($encrypted === $a->user['password'])) {
		require_once('include/Contact.php');
		user_remove($a->user['uid']);
		// NOTREACHED
	}

}



function removeme_content(&$a) {

	if(! local_user())
		goaway($a->get_baseurl());

	$hash = random_string();

	$_SESSION['remove_account_verify'] = $hash;

	$tpl = file_get_contents('view/removeme.tpl');
	$o .= replace_macros($tpl, array(
		'$basedir' => $a->get_baseurl(),
		'$hash' => $hash,
		'$title' => t('Remove My Account'),
		'$desc' => t('This will completely remove your account. Once this has been done it is not recoverable.'),
		'$passwd' => t('Please enter your password for verification:'),
		'$submit' => t('Remove My Account')
	));

	return $o;		

}