from flask import Flask, render_template, redirect, url_for, request, session, jsonify, send_file, flash, g from requests_oauthlib import OAuth2Session import os import subprocess import psutil import mysql.connector from datetime import datetime from flask_session import Session app = Flask(__name__) app.secret_key = os.getenv("FLASK_SECRET_KEY") LOG_FILE_PATH = os.path.join("logs", f"{datetime.now().strftime('%Y-%m-%d')}.log") app.config["SESSION_TYPE"] = "filesystem" Session(app) DB_HOST = os.getenv("DB_HOST") DB_PORT = os.getenv("DB_PORT") DB_USER = os.getenv("DB_USER") DB_PASS = os.getenv("DB_PASSWORD") DB_NAME = os.getenv("DB_DATABASE") DISCORD_CLIENT_ID = os.getenv("DISCORD_CLIENT_ID") DISCORD_CLIENT_SECRET = os.getenv("DISCORD_CLIENT_SECRET") DISCORD_REDIRECT_URI = os.getenv("DISCORD_REDIRECT_URI") DISCORD_OAUTH2_URL = "https://discord.com/api/oauth2/authorize" DISCORD_TOKEN_URL = "https://discord.com/api/oauth2/token" DISCORD_API_URL = "https://discord.com/api/users/@me" os.environ['OAUTHLIB_INSECURE_TRANSPORT'] = '1' bot_process = None def bot_status(): global bot_process return bot_process is not None and bot_process.poll() is None def start_bot(): global bot_process if not bot_status(): bot_process = subprocess.Popen(["python", "bot.py"], cwd=os.path.dirname(os.path.abspath(__file__))) def stop_bot(): global bot_process if bot_process and bot_status(): bot_process.terminate() bot_process.wait() bot_process = None def get_db_connection(): return mysql.connector.connect( host=DB_HOST, port=DB_PORT, user=DB_USER, password=DB_PASS, database=DB_NAME ) def token_updater(token): session['oauth_token'] = token def make_discord_session(token=None, state=None): return OAuth2Session( DISCORD_CLIENT_ID, token=token or session.get("oauth_token"), state=state, redirect_uri=DISCORD_REDIRECT_URI, scope=["identify", "guilds"], auto_refresh_kwargs={ 'client_id': DISCORD_CLIENT_ID, 'client_secret': DISCORD_CLIENT_SECRET, }, auto_refresh_url=DISCORD_TOKEN_URL, token_updater=token_updater ) @app.before_request def load_user_data(): if "discord_user" in session: g.user_info = session["discord_user"] g.is_admin = session.get("is_admin", False) g.guilds = session.get("discord_guilds", []) g.bot_running = bot_status() else: g.user_info = None g.is_admin = False g.guilds = [] g.bot_running = False @app.route("/") def landing_page(): return render_template("landing.html") @app.route("/about") def about(): return render_template("about.html") @app.route("/contact") def contact(): return render_template("contact.html") @app.route("/faq") def faq(): return render_template("faq.html") @app.route("/help") def help_page(): return render_template("help.html") @app.route("/login") def login(): discord = make_discord_session() authorization_url, state = discord.authorization_url(DISCORD_OAUTH2_URL) session['oauth_state'] = state return redirect(authorization_url) @app.route("/callback") def callback(): try: discord = make_discord_session(state=session.get("oauth_state")) token = discord.fetch_token( DISCORD_TOKEN_URL, client_secret=DISCORD_CLIENT_SECRET, authorization_response=request.url, ) session['oauth_token'] = token user_info = discord.get(DISCORD_API_URL).json() session['discord_user'] = user_info guilds_response = discord.get('https://discord.com/api/users/@me/guilds') if guilds_response.status_code != 200: flash("Fehler beim Abrufen der Gilden.", "danger") return redirect(url_for("landing_page")) session['discord_guilds'] = guilds_response.json() connection = get_db_connection() cursor = connection.cursor(dictionary=True) cursor.execute("SELECT global_permission FROM bot_data WHERE user_id = %s", (user_info["id"],)) bot_admin_data = cursor.fetchone() session['is_admin'] = bool(bot_admin_data and bot_admin_data['global_permission'] >= 8) cursor.close() connection.close() return redirect(url_for("user_landing_page")) except Exception as e: print(f"Error in OAuth2 callback: {e}") flash("Ein Fehler ist beim Authentifizierungsprozess aufgetreten.", "danger") return redirect(url_for("landing_page")) @app.route("/user_landing_page") def user_landing_page(): if g.user_info: return render_template("user_landing_page.html") return redirect(url_for("landing_page")) @app.route("/global_admin_dashboard") def global_admin_dashboard(): if g.is_admin: return render_template("global_admin_dashboard.html") return redirect(url_for("user_landing_page")) @app.route("/user_dashboard/") def user_dashboard(guild_id): if g.user_info: connection = get_db_connection() cursor = connection.cursor(dictionary=True) cursor.execute("SELECT * FROM user_data WHERE user_id = %s AND guild_id = %s", (g.user_info["id"], guild_id)) g.user_data = cursor.fetchone() cursor.close() connection.close() if g.user_data: g.guild_id = guild_id return render_template("user_dashboard.html") return redirect(url_for("landing_page")) @app.route("/server_admin_dashboard/") def server_admin_dashboard(guild_id): if g.user_info: connection = get_db_connection() cursor = connection.cursor(dictionary=True) cursor.execute("SELECT permission FROM user_data WHERE user_id = %s AND guild_id = %s", (g.user_info["id"], guild_id)) user_data = cursor.fetchone() cursor.execute("SELECT name FROM guilds WHERE guild_id = %s", (guild_id,)) guild_name = cursor.fetchone()["name"] cursor.close() connection.close() if user_data and user_data['permission'] >= 8: g.guild_id = guild_id g.guild_name = guild_name return render_template("server_admin_dashboard.html") return redirect(url_for("user_landing_page")) @app.route("/server_giveaways/") def server_giveaways(guild_id): if g.user_info: connection = get_db_connection() cursor = connection.cursor(dictionary=True) cursor.execute("SELECT permission FROM user_data WHERE user_id = %s AND guild_id = %s", (g.user_info["id"], guild_id)) user_data = cursor.fetchone() if user_data and user_data['permission'] >= 8: cursor.execute("SELECT * FROM giveaway_data WHERE guild_id = %s", (guild_id,)) g.giveaways = cursor.fetchall() g.guild_id = guild_id cursor.close() connection.close() return render_template("server_giveaways.html") return redirect(url_for("user_landing_page")) @app.route("/logout") def logout(): session.clear() return redirect(url_for("landing_page")) # Bot Management Routes @app.route("/start_bot") def start(): if g.is_admin: start_bot() return redirect(url_for("global_admin_dashboard")) return redirect(url_for("landing_page")) @app.route("/stop_bot") def stop(): if g.is_admin: stop_bot() return redirect(url_for("global_admin_dashboard")) return redirect(url_for("landing_page")) if __name__ == "__main__": app.run(host="0.0.0.0", port=5000, debug=True)