Files
domnitor/public/index.php

85 lines
2.5 KiB
PHP
Raw Normal View History

2025-10-08 14:23:07 +03:00
<?php
require_once __DIR__ . '/../vendor/autoload.php';
use Core\Application;
use Core\Router;
use Dotenv\Dotenv;
use App\Services\ErrorHandler;
2025-10-08 14:23:07 +03:00
2025-10-09 17:08:10 +05:30
define('PATH_ROOT', __DIR__ . '/../');
// Register global error handlers FIRST (before anything else can fail)
ErrorHandler::register();
// Load environment variables (using safeLoad to not throw if missing)
2025-10-08 14:23:07 +03:00
$dotenv = Dotenv::createImmutable(__DIR__ . '/..');
try {
$dotenv->load();
} catch (\Throwable $e) {
// If .env is missing, create a minimal one or use defaults
if (!file_exists(__DIR__ . '/../.env')) {
// Show helpful error about missing .env file
throw new \Exception(
".env file not found! Please copy env.example.txt to .env and configure your settings.\n\n" .
"Quick fix:\n" .
"1. Copy env.example.txt to .env\n" .
"2. Update database credentials in .env\n" .
"3. Set APP_ENV=development or production\n\n" .
"Original error: " . $e->getMessage()
);
}
throw $e;
}
2025-10-08 14:23:07 +03:00
// Configure and start session (with database sessions if available)
Core\SessionConfig::configure();
Core\SessionConfig::start();
2025-10-08 14:23:07 +03:00
// Load CSRF helper functions
require_once __DIR__ . '/../app/Helpers/CsrfHelper.php';
Upgraded to 1.1.0 1.1.0 (2025-10-09) - **User Notifications System** - In-app notification center with 7 notification types, filtering, pagination - **Advanced Session Management** - Database-backed sessions with geolocation (country, city, ISP) - **Remote Session Control** - Terminate any device instantly with immediate logout validation - **Enhanced Profile Page** - Sidebar navigation with 4 tabs, hash-based routing (#profile, #security, #sessions) - **MVC Architecture Refactoring** - 3 new Helpers (Layout, Domain, Session), ~265 lines cleaned from views - **Geolocation Tracking** - IP-based location detection using ip-api.com, country flags with flag-icons - **Device Detection** - Browser & device type parsing (Chrome/Firefox/Safari, Desktop/Mobile/Tablet) - **Auto-Detected Cron Paths** - Settings show actual installation paths (thanks @jadeops) - **Welcome Notifications** - Sent to new users on registration or fresh install - **Upgrade Notifications** - Admins notified on system updates with version & migration count - **Web-Based Installer** - Replaces CLI, auto-generates encryption key, one-time password display - **Web-Based Updater** - `/install/update` for running new migrations with smart detection - **User Registration** - Full signup flow with email verification, password reset, resend verification - **User Management** - CRUD for users with filtering, sorting, pagination (admin-only) - **Remember Me** - 30-day secure tokens linked to sessions, cascade deletion on logout - **Session Validator** - Middleware validates sessions on every request for instant remote logout - **Consistent UI/UX** - Unified filtering, sorting, pagination across Domains, Users, Notifications, TLD Registry - **Smart Migrations** - Consolidated schema for fresh installs, incremental for upgrades - **XSS Protection** - htmlspecialchars() applied across all user-facing data (thanks @jadeops)
2025-10-09 18:02:46 +03:00
// Check if system is installed (using flag file - no DB queries!)
$currentPath = parse_url($_SERVER['REQUEST_URI'] ?? '/', PHP_URL_PATH);
$isInstallerPath = strpos($currentPath, '/install') === 0;
$installedFlagFile = __DIR__ . '/../.installed';
if (!$isInstallerPath) {
// Check if .installed flag file exists
if (!file_exists($installedFlagFile)) {
header('Location: /install');
exit;
}
}
// Check remember me token if user is not logged in
if (!isset($_SESSION['user_id']) && isset($_COOKIE['remember_token']) && !$isInstallerPath) {
$authController = new \App\Controllers\AuthController();
$authController->checkRememberToken();
}
// Set application timezone early (before any date operations)
if (!$isInstallerPath && file_exists($installedFlagFile)) {
try {
$settingModel = new \App\Models\Setting();
$timezone = $settingModel->getValue('app_timezone', 'UTC');
date_default_timezone_set($timezone);
} catch (\Exception $e) {
// Database not available, use UTC as fallback
date_default_timezone_set('UTC');
}
} else {
// Default to UTC during installation
date_default_timezone_set('UTC');
}
2025-10-08 14:23:07 +03:00
// Initialize application
$app = new Application();
// Load routes
require_once __DIR__ . '/../routes/web.php';
// Run application
$app->run();