webapp.py 49 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615616617618619620621622623624625626627628629630631632633634635636637638639640641642643644645646647648649650651652653654655656657658659660661662663664665666667668669670671672673674675676677678679680681682683684685686687688689690691692693694695696697698699700701702703704705706707708709710711712713714715716717718719720721722723724725726727728729730731732733734735736737738739740741742743744745746747748749750751752753754755756757758759760761762763764765766767768769770771772773774775776777778779780781782783784785786787788789790791792793794795796797798799800801802803804805806807808809810811812813814815816817818819820821822823824825826827828829830831832833834835836837838839840841842843844845846847848849850851852853854855856857858859860861862863864865866867868869870871872873874875876877878879880881882883884885886887888889890891892893894895896897898899900901902903904905906907908909910911912913914915916917918919920921922923924925926927928929930931932933934935936937938939940941942943944945946947948949950951952953954955956957958959960961962963964965966967968969970971972973974975976977978979980981982983984985986987988989990991992993994995996997998999100010011002100310041005100610071008100910101011101210131014101510161017101810191020102110221023102410251026102710281029103010311032103310341035103610371038103910401041104210431044104510461047104810491050105110521053105410551056105710581059106010611062106310641065106610671068106910701071107210731074107510761077107810791080108110821083108410851086108710881089109010911092109310941095109610971098109911001101110211031104110511061107110811091110111111121113111411151116111711181119112011211122112311241125112611271128112911301131113211331134113511361137113811391140114111421143114411451146114711481149115011511152115311541155115611571158115911601161116211631164116511661167116811691170117111721173117411751176117711781179118011811182118311841185118611871188118911901191119211931194119511961197119811991200120112021203120412051206120712081209121012111212121312141215121612171218121912201221122212231224122512261227122812291230123112321233123412351236123712381239124012411242124312441245124612471248124912501251125212531254125512561257125812591260126112621263126412651266126712681269127012711272127312741275127612771278127912801281128212831284128512861287128812891290129112921293129412951296129712981299130013011302130313041305130613071308130913101311131213131314131513161317131813191320132113221323132413251326132713281329133013311332133313341335133613371338133913401341134213431344134513461347134813491350135113521353135413551356135713581359136013611362136313641365136613671368136913701371137213731374137513761377
  1. #!/usr/bin/env python
  2. # SPDX-License-Identifier: AGPL-3.0-or-later
  3. """WebbApp
  4. """
  5. # pylint: disable=use-dict-literal
  6. from __future__ import annotations
  7. import hashlib
  8. import hmac
  9. import json
  10. import os
  11. import sys
  12. import base64
  13. from timeit import default_timer
  14. from html import escape
  15. from io import StringIO
  16. import typing
  17. import urllib
  18. import urllib.parse
  19. from urllib.parse import urlencode, urlparse, unquote
  20. import warnings
  21. import httpx
  22. from pygments import highlight
  23. from pygments.lexers import get_lexer_by_name
  24. from pygments.formatters import HtmlFormatter # pylint: disable=no-name-in-module
  25. import flask
  26. from flask import (
  27. Flask,
  28. render_template,
  29. url_for,
  30. make_response,
  31. redirect,
  32. send_from_directory,
  33. )
  34. from flask.wrappers import Response
  35. from flask.json import jsonify
  36. from flask_babel import (
  37. Babel,
  38. gettext,
  39. format_decimal,
  40. )
  41. from searx.extended_types import sxng_request
  42. from searx import (
  43. logger,
  44. get_setting,
  45. settings,
  46. searx_debug,
  47. )
  48. from searx import infopage
  49. from searx import limiter
  50. from searx.botdetection import link_token
  51. from searx.data import ENGINE_DESCRIPTIONS
  52. from searx.result_types import Answer
  53. from searx.settings_defaults import OUTPUT_FORMATS
  54. from searx.settings_loader import DEFAULT_SETTINGS_FILE
  55. from searx.exceptions import SearxParameterException
  56. from searx.engines import (
  57. DEFAULT_CATEGORY,
  58. categories,
  59. engines,
  60. engine_shortcuts,
  61. )
  62. from searx import webutils
  63. from searx.webutils import (
  64. highlight_content,
  65. get_static_files,
  66. get_result_templates,
  67. get_themes,
  68. exception_classname_to_text,
  69. new_hmac,
  70. is_hmac_of,
  71. is_flask_run_cmdline,
  72. group_engines_in_tab,
  73. )
  74. from searx.webadapter import (
  75. get_search_query_from_webapp,
  76. get_selected_categories,
  77. parse_lang,
  78. )
  79. from searx.utils import gen_useragent, dict_subset
  80. from searx.version import VERSION_STRING, GIT_URL, GIT_BRANCH
  81. from searx.query import RawTextQuery
  82. from searx.plugins.oa_doi_rewrite import get_doi_resolver
  83. from searx.preferences import (
  84. Preferences,
  85. ClientPref,
  86. ValidationException,
  87. )
  88. import searx.answerers
  89. import searx.plugins
  90. from searx.metrics import get_engines_stats, get_engine_errors, get_reliabilities, histogram, counter, openmetrics
  91. from searx.flaskfix import patch_application
  92. from searx.locales import (
  93. LOCALE_NAMES,
  94. RTL_LOCALES,
  95. localeselector,
  96. locales_initialize,
  97. match_locale,
  98. )
  99. # renaming names from searx imports ...
  100. from searx.autocomplete import search_autocomplete, backends as autocomplete_backends
  101. from searx import favicons
  102. from searx.redisdb import initialize as redis_initialize
  103. from searx.sxng_locales import sxng_locales
  104. import searx.search
  105. from searx.network import stream as http_stream, set_context_network_name
  106. from searx.search.checker import get_result as checker_get_result
  107. logger = logger.getChild('webapp')
  108. warnings.simplefilter("always")
  109. # check secret_key
  110. if not searx_debug and settings['server']['secret_key'] == 'ultrasecretkey':
  111. logger.error('server.secret_key is not changed. Please use something else instead of ultrasecretkey.')
  112. sys.exit(1)
  113. # about static
  114. logger.debug('static directory is %s', settings['ui']['static_path'])
  115. static_files = get_static_files(settings['ui']['static_path'])
  116. # about templates
  117. logger.debug('templates directory is %s', settings['ui']['templates_path'])
  118. default_theme = settings['ui']['default_theme']
  119. templates_path = settings['ui']['templates_path']
  120. themes = get_themes(templates_path)
  121. result_templates = get_result_templates(templates_path)
  122. STATS_SORT_PARAMETERS = {
  123. 'name': (False, 'name', ''),
  124. 'score': (True, 'score_per_result', 0),
  125. 'result_count': (True, 'result_count', 0),
  126. 'time': (False, 'total', 0),
  127. 'reliability': (False, 'reliability', 100),
  128. }
  129. # Flask app
  130. app = Flask(__name__, static_folder=settings['ui']['static_path'], template_folder=templates_path)
  131. app.jinja_env.trim_blocks = True
  132. app.jinja_env.lstrip_blocks = True
  133. app.jinja_env.add_extension('jinja2.ext.loopcontrols') # pylint: disable=no-member
  134. app.jinja_env.filters['group_engines_in_tab'] = group_engines_in_tab # pylint: disable=no-member
  135. app.secret_key = settings['server']['secret_key']
  136. def get_locale():
  137. locale = localeselector()
  138. logger.debug("%s uses locale `%s`", urllib.parse.quote(sxng_request.url), locale)
  139. return locale
  140. babel = Babel(app, locale_selector=get_locale)
  141. def _get_browser_language(req, lang_list):
  142. client = ClientPref.from_http_request(req)
  143. locale = match_locale(client.locale_tag, lang_list, fallback='en')
  144. return locale
  145. def _get_locale_rfc5646(locale):
  146. """Get locale name for <html lang="...">
  147. Chrom* browsers don't detect the language when there is a subtag (ie a territory).
  148. For example "zh-TW" is detected but not "zh-Hant-TW".
  149. This function returns a locale without the subtag.
  150. """
  151. parts = locale.split('-')
  152. return parts[0].lower() + '-' + parts[-1].upper()
  153. # code-highlighter
  154. @app.template_filter('code_highlighter')
  155. def code_highlighter(codelines, language=None):
  156. if not language:
  157. language = 'text'
  158. try:
  159. # find lexer by programming language
  160. lexer = get_lexer_by_name(language, stripall=True)
  161. except Exception as e: # pylint: disable=broad-except
  162. logger.warning("pygments lexer: %s " % e)
  163. # if lexer is not found, using default one
  164. lexer = get_lexer_by_name('text', stripall=True)
  165. html_code = ''
  166. tmp_code = ''
  167. last_line = None
  168. line_code_start = None
  169. # parse lines
  170. for line, code in codelines:
  171. if not last_line:
  172. line_code_start = line
  173. # new codeblock is detected
  174. if last_line is not None and last_line + 1 != line:
  175. # highlight last codepart
  176. formatter = HtmlFormatter(linenos='inline', linenostart=line_code_start, cssclass="code-highlight")
  177. html_code = html_code + highlight(tmp_code, lexer, formatter)
  178. # reset conditions for next codepart
  179. tmp_code = ''
  180. line_code_start = line
  181. # add codepart
  182. tmp_code += code + '\n'
  183. # update line
  184. last_line = line
  185. # highlight last codepart
  186. formatter = HtmlFormatter(linenos='inline', linenostart=line_code_start, cssclass="code-highlight")
  187. html_code = html_code + highlight(tmp_code, lexer, formatter)
  188. return html_code
  189. def get_result_template(theme_name: str, template_name: str):
  190. themed_path = theme_name + '/result_templates/' + template_name
  191. if themed_path in result_templates:
  192. return themed_path
  193. return 'result_templates/' + template_name
  194. def custom_url_for(endpoint: str, **values):
  195. suffix = ""
  196. if endpoint == 'static' and values.get('filename'):
  197. file_hash = static_files.get(values['filename'])
  198. if not file_hash:
  199. # try file in the current theme
  200. theme_name = sxng_request.preferences.get_value('theme')
  201. filename_with_theme = "themes/{}/{}".format(theme_name, values['filename'])
  202. file_hash = static_files.get(filename_with_theme)
  203. if file_hash:
  204. values['filename'] = filename_with_theme
  205. if get_setting('ui.static_use_hash') and file_hash:
  206. suffix = "?" + file_hash
  207. if endpoint == 'info' and 'locale' not in values:
  208. locale = sxng_request.preferences.get_value('locale')
  209. if infopage.INFO_PAGES.get_page(values['pagename'], locale) is None:
  210. locale = infopage.INFO_PAGES.locale_default
  211. values['locale'] = locale
  212. return url_for(endpoint, **values) + suffix
  213. def morty_proxify(url: str):
  214. if url.startswith('//'):
  215. url = 'https:' + url
  216. if not settings['result_proxy']['url']:
  217. return url
  218. url_params = dict(mortyurl=url)
  219. if settings['result_proxy']['key']:
  220. url_params['mortyhash'] = hmac.new(settings['result_proxy']['key'], url.encode(), hashlib.sha256).hexdigest()
  221. return '{0}?{1}'.format(settings['result_proxy']['url'], urlencode(url_params))
  222. def image_proxify(url: str):
  223. if url.startswith('//'):
  224. url = 'https:' + url
  225. if not sxng_request.preferences.get_value('image_proxy'):
  226. return url
  227. if url.startswith('data:image/'):
  228. # 50 is an arbitrary number to get only the beginning of the image.
  229. partial_base64 = url[len('data:image/') : 50].split(';')
  230. if (
  231. len(partial_base64) == 2
  232. and partial_base64[0] in ['gif', 'png', 'jpeg', 'pjpeg', 'webp', 'tiff', 'bmp']
  233. and partial_base64[1].startswith('base64,')
  234. ):
  235. return url
  236. return None
  237. if settings['result_proxy']['url']:
  238. return morty_proxify(url)
  239. h = new_hmac(settings['server']['secret_key'], url.encode())
  240. return '{0}?{1}'.format(url_for('image_proxy'), urlencode(dict(url=url.encode(), h=h)))
  241. def get_translations():
  242. return {
  243. # when there is autocompletion
  244. 'no_item_found': gettext('No item found'),
  245. # /preferences: the source of the engine description (wikipedata, wikidata, website)
  246. 'Source': gettext('Source'),
  247. # infinite scroll
  248. 'error_loading_next_page': gettext('Error loading the next page'),
  249. }
  250. def get_enabled_categories(category_names: typing.Iterable[str]):
  251. """The categories in ``category_names```for which there is no active engine
  252. are filtered out and a reduced list is returned."""
  253. enabled_engines = [item[0] for item in sxng_request.preferences.engines.get_enabled()]
  254. enabled_categories = set()
  255. for engine_name in enabled_engines:
  256. enabled_categories.update(engines[engine_name].categories)
  257. return [x for x in category_names if x in enabled_categories]
  258. def get_pretty_url(parsed_url: urllib.parse.ParseResult):
  259. url_formatting_pref = sxng_request.preferences.get_value('url_formatting')
  260. if url_formatting_pref == 'full':
  261. return [parsed_url.geturl()]
  262. if url_formatting_pref == 'host':
  263. return [parsed_url.netloc]
  264. path = parsed_url.path
  265. path = path[:-1] if len(path) > 0 and path[-1] == '/' else path
  266. path = unquote(path.replace("/", " › "))
  267. return [parsed_url.scheme + "://" + parsed_url.netloc, path]
  268. def get_client_settings():
  269. req_pref = sxng_request.preferences
  270. return {
  271. 'autocomplete': req_pref.get_value('autocomplete'),
  272. 'autocomplete_min': get_setting('search.autocomplete_min'),
  273. 'method': req_pref.get_value('method'),
  274. 'infinite_scroll': req_pref.get_value('infinite_scroll'),
  275. 'translations': get_translations(),
  276. 'search_on_category_select': req_pref.get_value('search_on_category_select'),
  277. 'hotkeys': req_pref.get_value('hotkeys'),
  278. 'url_formatting': req_pref.get_value('url_formatting'),
  279. 'theme_static_path': custom_url_for('static', filename='themes/simple'),
  280. 'results_on_new_tab': req_pref.get_value('results_on_new_tab'),
  281. 'favicon_resolver': req_pref.get_value('favicon_resolver'),
  282. 'advanced_search': req_pref.get_value('advanced_search'),
  283. 'query_in_title': req_pref.get_value('query_in_title'),
  284. 'safesearch': str(req_pref.get_value('safesearch')),
  285. 'theme': req_pref.get_value('theme'),
  286. 'doi_resolver': get_doi_resolver(req_pref),
  287. }
  288. def render(template_name: str, **kwargs):
  289. # values from the preferences
  290. # pylint: disable=too-many-statements
  291. client_settings = get_client_settings()
  292. kwargs['client_settings'] = str(
  293. base64.b64encode(
  294. bytes(
  295. json.dumps(client_settings),
  296. encoding='utf-8',
  297. )
  298. ),
  299. encoding='utf-8',
  300. )
  301. kwargs['preferences'] = sxng_request.preferences
  302. kwargs.update(client_settings)
  303. # values from the HTTP requests
  304. kwargs['endpoint'] = 'results' if 'q' in kwargs else sxng_request.endpoint
  305. kwargs['cookies'] = sxng_request.cookies
  306. kwargs['errors'] = sxng_request.errors
  307. kwargs['link_token'] = link_token.get_token()
  308. kwargs['categories_as_tabs'] = list(settings['categories_as_tabs'].keys())
  309. kwargs['categories'] = get_enabled_categories(settings['categories_as_tabs'].keys())
  310. kwargs['DEFAULT_CATEGORY'] = DEFAULT_CATEGORY
  311. # i18n
  312. kwargs['sxng_locales'] = [l for l in sxng_locales if l[0] in settings['search']['languages']]
  313. locale = sxng_request.preferences.get_value('locale')
  314. kwargs['locale_rfc5646'] = _get_locale_rfc5646(locale)
  315. if locale in RTL_LOCALES and 'rtl' not in kwargs:
  316. kwargs['rtl'] = True
  317. if 'current_language' not in kwargs:
  318. kwargs['current_language'] = parse_lang(sxng_request.preferences, {}, RawTextQuery('', []))
  319. # values from settings
  320. kwargs['search_formats'] = [x for x in settings['search']['formats'] if x != 'html']
  321. kwargs['instance_name'] = get_setting('general.instance_name')
  322. kwargs['searx_version'] = VERSION_STRING
  323. kwargs['searx_git_url'] = GIT_URL
  324. kwargs['enable_metrics'] = get_setting('general.enable_metrics')
  325. kwargs['get_setting'] = get_setting
  326. kwargs['get_pretty_url'] = get_pretty_url
  327. # values from settings: donation_url
  328. donation_url = get_setting('general.donation_url')
  329. if donation_url is True:
  330. donation_url = custom_url_for('info', pagename='donate')
  331. kwargs['donation_url'] = donation_url
  332. # helpers to create links to other pages
  333. kwargs['url_for'] = custom_url_for # override url_for function in templates
  334. kwargs['image_proxify'] = image_proxify
  335. kwargs['favicon_url'] = favicons.favicon_url
  336. kwargs['proxify'] = morty_proxify if settings['result_proxy']['url'] is not None else None
  337. kwargs['proxify_results'] = settings['result_proxy']['proxify_results']
  338. kwargs['cache_url'] = settings['ui']['cache_url']
  339. kwargs['get_result_template'] = get_result_template
  340. kwargs['opensearch_url'] = (
  341. url_for('opensearch')
  342. + '?'
  343. + urlencode(
  344. {
  345. 'method': sxng_request.preferences.get_value('method'),
  346. 'autocomplete': sxng_request.preferences.get_value('autocomplete'),
  347. }
  348. )
  349. )
  350. kwargs['urlparse'] = urlparse
  351. start_time = default_timer()
  352. result = render_template('{}/{}'.format(kwargs['theme'], template_name), **kwargs)
  353. sxng_request.render_time += default_timer() - start_time # pylint: disable=assigning-non-slot
  354. return result
  355. @app.before_request
  356. def pre_request():
  357. sxng_request.start_time = default_timer() # pylint: disable=assigning-non-slot
  358. sxng_request.render_time = 0 # pylint: disable=assigning-non-slot
  359. sxng_request.timings = [] # pylint: disable=assigning-non-slot
  360. sxng_request.errors = [] # pylint: disable=assigning-non-slot
  361. client_pref = ClientPref.from_http_request(sxng_request)
  362. # pylint: disable=redefined-outer-name
  363. preferences = Preferences(themes, list(categories.keys()), engines, searx.plugins.STORAGE, client_pref)
  364. user_agent = sxng_request.headers.get('User-Agent', '').lower()
  365. if 'webkit' in user_agent and 'android' in user_agent:
  366. preferences.key_value_settings['method'].value = 'GET'
  367. sxng_request.preferences = preferences # pylint: disable=assigning-non-slot
  368. try:
  369. preferences.parse_dict(sxng_request.cookies)
  370. except Exception as e: # pylint: disable=broad-except
  371. logger.exception(e, exc_info=True)
  372. sxng_request.errors.append(gettext('Invalid settings, please edit your preferences'))
  373. # merge GET, POST vars
  374. # HINT request.form is of type werkzeug.datastructures.ImmutableMultiDict
  375. sxng_request.form = dict(sxng_request.form.items()) # type: ignore
  376. for k, v in sxng_request.args.items():
  377. if k not in sxng_request.form:
  378. sxng_request.form[k] = v
  379. if sxng_request.form.get('preferences'):
  380. preferences.parse_encoded_data(sxng_request.form['preferences'])
  381. else:
  382. try:
  383. preferences.parse_dict(sxng_request.form)
  384. except Exception as e: # pylint: disable=broad-except
  385. logger.exception(e, exc_info=True)
  386. sxng_request.errors.append(gettext('Invalid settings'))
  387. # language is defined neither in settings nor in preferences
  388. # use browser headers
  389. if not preferences.get_value("language"):
  390. language = _get_browser_language(sxng_request, settings['search']['languages'])
  391. preferences.parse_dict({"language": language})
  392. logger.debug('set language %s (from browser)', preferences.get_value("language"))
  393. # UI locale is defined neither in settings nor in preferences
  394. # use browser headers
  395. if not preferences.get_value("locale"):
  396. locale = _get_browser_language(sxng_request, LOCALE_NAMES.keys())
  397. preferences.parse_dict({"locale": locale})
  398. logger.debug('set locale %s (from browser)', preferences.get_value("locale"))
  399. # request.user_plugins
  400. sxng_request.user_plugins = [] # pylint: disable=assigning-non-slot
  401. allowed_plugins = preferences.plugins.get_enabled()
  402. disabled_plugins = preferences.plugins.get_disabled()
  403. for plugin in searx.plugins.STORAGE:
  404. if (plugin.id not in disabled_plugins) or plugin.id in allowed_plugins:
  405. sxng_request.user_plugins.append(plugin.id)
  406. @app.after_request
  407. def add_default_headers(response: flask.Response):
  408. # set default http headers
  409. for header, value in settings['server']['default_http_headers'].items():
  410. if header in response.headers:
  411. continue
  412. response.headers[header] = value
  413. return response
  414. @app.after_request
  415. def post_request(response: flask.Response):
  416. total_time = default_timer() - sxng_request.start_time
  417. timings_all = [
  418. 'total;dur=' + str(round(total_time * 1000, 3)),
  419. 'render;dur=' + str(round(sxng_request.render_time * 1000, 3)),
  420. ]
  421. if len(sxng_request.timings) > 0:
  422. timings = sorted(sxng_request.timings, key=lambda t: t.total)
  423. timings_total = [
  424. 'total_' + str(i) + '_' + t.engine + ';dur=' + str(round(t.total * 1000, 3)) for i, t in enumerate(timings)
  425. ]
  426. timings_load = [
  427. 'load_' + str(i) + '_' + t.engine + ';dur=' + str(round(t.load * 1000, 3))
  428. for i, t in enumerate(timings)
  429. if t.load
  430. ]
  431. timings_all = timings_all + timings_total + timings_load
  432. response.headers.add('Server-Timing', ', '.join(timings_all))
  433. return response
  434. def index_error(output_format: str, error_message: str):
  435. if output_format == 'json':
  436. return Response(json.dumps({'error': error_message}), mimetype='application/json')
  437. if output_format == 'csv':
  438. response = Response('', mimetype='application/csv')
  439. cont_disp = 'attachment;Filename=searx.csv'
  440. response.headers.add('Content-Disposition', cont_disp)
  441. return response
  442. if output_format == 'rss':
  443. response_rss = render(
  444. 'opensearch_response_rss.xml',
  445. results=[],
  446. q=sxng_request.form['q'] if 'q' in sxng_request.form else '',
  447. number_of_results=0,
  448. error_message=error_message,
  449. )
  450. return Response(response_rss, mimetype='text/xml')
  451. # html
  452. sxng_request.errors.append(gettext('search error'))
  453. return render(
  454. # fmt: off
  455. 'index.html',
  456. selected_categories=get_selected_categories(sxng_request.preferences, sxng_request.form),
  457. # fmt: on
  458. )
  459. @app.route('/', methods=['GET', 'POST'])
  460. def index():
  461. """Render index page."""
  462. # redirect to search if there's a query in the request
  463. if sxng_request.form.get('q'):
  464. query = ('?' + sxng_request.query_string.decode()) if sxng_request.query_string else ''
  465. return redirect(url_for('search') + query, 308)
  466. return render(
  467. # fmt: off
  468. 'index.html',
  469. selected_categories=get_selected_categories(sxng_request.preferences, sxng_request.form),
  470. current_locale = sxng_request.preferences.get_value("locale"),
  471. # fmt: on
  472. )
  473. @app.route('/healthz', methods=['GET'])
  474. def health():
  475. return Response('OK', mimetype='text/plain')
  476. @app.route('/client<token>.css', methods=['GET', 'POST'])
  477. def client_token(token=None):
  478. link_token.ping(sxng_request, token)
  479. return Response('', mimetype='text/css')
  480. @app.route('/rss.xsl', methods=['GET', 'POST'])
  481. def rss_xsl():
  482. return render_template(
  483. f"{sxng_request.preferences.get_value('theme')}/rss.xsl",
  484. url_for=custom_url_for,
  485. )
  486. @app.route('/search', methods=['GET', 'POST'])
  487. def search():
  488. """Search query in q and return results.
  489. Supported outputs: html, json, csv, rss.
  490. """
  491. # pylint: disable=too-many-locals, too-many-return-statements, too-many-branches
  492. # pylint: disable=too-many-statements
  493. # output_format
  494. output_format = sxng_request.form.get('format', 'html')
  495. if output_format not in OUTPUT_FORMATS:
  496. output_format = 'html'
  497. if output_format not in settings['search']['formats']:
  498. flask.abort(403)
  499. # check if there is query (not None and not an empty string)
  500. if not sxng_request.form.get('q'):
  501. if output_format == 'html':
  502. return render(
  503. # fmt: off
  504. 'index.html',
  505. selected_categories=get_selected_categories(sxng_request.preferences, sxng_request.form),
  506. # fmt: on
  507. )
  508. return index_error(output_format, 'No query'), 400
  509. # search
  510. search_query = None
  511. raw_text_query = None
  512. result_container = None
  513. try:
  514. search_query, raw_text_query, _, _, selected_locale = get_search_query_from_webapp(
  515. sxng_request.preferences, sxng_request.form
  516. )
  517. search_obj = searx.search.SearchWithPlugins(search_query, sxng_request, sxng_request.user_plugins)
  518. result_container = search_obj.search()
  519. except SearxParameterException as e:
  520. logger.exception('search error: SearxParameterException')
  521. return index_error(output_format, e.message), 400
  522. except Exception as e: # pylint: disable=broad-except
  523. logger.exception(e, exc_info=True)
  524. return index_error(output_format, gettext('search error')), 500
  525. # 1. check if the result is a redirect for an external bang
  526. if result_container.redirect_url:
  527. return redirect(result_container.redirect_url)
  528. # 2. add Server-Timing header for measuring performance characteristics of
  529. # web applications
  530. sxng_request.timings = result_container.get_timings() # pylint: disable=assigning-non-slot
  531. # 3. formats without a template
  532. if output_format == 'json':
  533. response = webutils.get_json_response(search_query, result_container)
  534. return Response(response, mimetype='application/json')
  535. if output_format == 'csv':
  536. csv = webutils.CSVWriter(StringIO())
  537. webutils.write_csv_response(csv, result_container)
  538. csv.stream.seek(0)
  539. response = Response(csv.stream.read(), mimetype='application/csv')
  540. cont_disp = 'attachment;Filename=searx_-_{0}.csv'.format(search_query.query)
  541. response.headers.add('Content-Disposition', cont_disp)
  542. return response
  543. # 4. formats rendered by a template / RSS & HTML
  544. current_template = None
  545. previous_result = None
  546. results = result_container.get_ordered_results()
  547. if search_query.redirect_to_first_result and results:
  548. return redirect(results[0]['url'], 302)
  549. for result in results:
  550. if output_format == 'html':
  551. if 'content' in result and result['content']:
  552. result['content'] = highlight_content(escape(result['content'][:1024]), search_query.query)
  553. if 'title' in result and result['title']:
  554. result['title'] = highlight_content(escape(result['title'] or ''), search_query.query)
  555. if getattr(result, 'publishedDate', None): # do not try to get a date from an empty string or a None type
  556. try: # test if publishedDate >= 1900 (datetime module bug)
  557. result['pubdate'] = result['publishedDate'].strftime('%Y-%m-%d %H:%M:%S%z')
  558. except ValueError:
  559. result['publishedDate'] = None
  560. else:
  561. result['publishedDate'] = webutils.searxng_l10n_timespan(result['publishedDate'])
  562. # set result['open_group'] = True when the template changes from the previous result
  563. # set result['close_group'] = True when the template changes on the next result
  564. if current_template != result.template:
  565. result.open_group = True
  566. if previous_result:
  567. previous_result.close_group = True # pylint: disable=unsupported-assignment-operation
  568. current_template = result.template
  569. previous_result = result
  570. if previous_result:
  571. previous_result.close_group = True
  572. # 4.a RSS
  573. if output_format == 'rss':
  574. response_rss = render(
  575. 'opensearch_response_rss.xml',
  576. results=results,
  577. q=sxng_request.form['q'],
  578. number_of_results=result_container.number_of_results,
  579. )
  580. return Response(response_rss, mimetype='text/xml')
  581. # 4.b HTML
  582. # suggestions: use RawTextQuery to get the suggestion URLs with the same bang
  583. suggestion_urls = list(
  584. map(
  585. lambda suggestion: {'url': raw_text_query.changeQuery(suggestion).getFullQuery(), 'title': suggestion},
  586. result_container.suggestions,
  587. )
  588. )
  589. correction_urls = list(
  590. map(
  591. lambda correction: {'url': raw_text_query.changeQuery(correction).getFullQuery(), 'title': correction},
  592. result_container.corrections,
  593. )
  594. )
  595. # engine_timings: get engine response times sorted from slowest to fastest
  596. engine_timings = sorted(result_container.get_timings(), reverse=True, key=lambda e: e.total)
  597. max_response_time = engine_timings[0].total if engine_timings else None
  598. engine_timings_pairs = [(timing.engine, timing.total) for timing in engine_timings]
  599. # search_query.lang contains the user choice (all, auto, en, ...)
  600. # when the user choice is "auto", search.search_query.lang contains the detected language
  601. # otherwise it is equals to search_query.lang
  602. return render(
  603. # fmt: off
  604. 'results.html',
  605. results = results,
  606. q=sxng_request.form['q'],
  607. selected_categories = search_query.categories,
  608. pageno = search_query.pageno,
  609. time_range = search_query.time_range or '',
  610. number_of_results = format_decimal(result_container.number_of_results),
  611. suggestions = suggestion_urls,
  612. answers = result_container.answers,
  613. corrections = correction_urls,
  614. infoboxes = result_container.infoboxes,
  615. engine_data = result_container.engine_data,
  616. paging = result_container.paging,
  617. unresponsive_engines = webutils.get_translated_errors(
  618. result_container.unresponsive_engines
  619. ),
  620. current_locale = sxng_request.preferences.get_value("locale"),
  621. current_language = selected_locale,
  622. search_language = match_locale(
  623. search_obj.search_query.lang,
  624. settings['search']['languages'],
  625. fallback=sxng_request.preferences.get_value("language")
  626. ),
  627. timeout_limit = sxng_request.form.get('timeout_limit', None),
  628. timings = engine_timings_pairs,
  629. max_response_time = max_response_time
  630. # fmt: on
  631. )
  632. @app.route('/about', methods=['GET'])
  633. def about():
  634. """Redirect to about page"""
  635. # custom_url_for is going to add the locale
  636. return redirect(custom_url_for('info', pagename='about'))
  637. @app.route('/info/<locale>/<pagename>', methods=['GET'])
  638. def info(pagename, locale):
  639. """Render page of online user documentation"""
  640. page = infopage.INFO_PAGES.get_page(pagename, locale)
  641. if page is None:
  642. flask.abort(404)
  643. user_locale = sxng_request.preferences.get_value('locale')
  644. return render(
  645. 'info.html',
  646. all_pages=infopage.INFO_PAGES.iter_pages(user_locale, fallback_to_default=True),
  647. active_page=page,
  648. active_pagename=pagename,
  649. )
  650. @app.route('/autocompleter', methods=['GET', 'POST'])
  651. def autocompleter():
  652. """Return autocompleter results"""
  653. # run autocompleter
  654. results = []
  655. # set blocked engines
  656. disabled_engines = sxng_request.preferences.engines.get_disabled()
  657. # parse query
  658. raw_text_query = RawTextQuery(sxng_request.form.get('q', ''), disabled_engines)
  659. sug_prefix = raw_text_query.getQuery()
  660. for obj in searx.answerers.STORAGE.ask(sug_prefix):
  661. if isinstance(obj, Answer):
  662. results.append(obj.answer)
  663. # normal autocompletion results only appear if no inner results returned
  664. # and there is a query part
  665. if len(raw_text_query.autocomplete_list) == 0 and len(sug_prefix) > 0:
  666. # get SearXNG's locale and autocomplete backend from cookie
  667. sxng_locale = sxng_request.preferences.get_value('language')
  668. backend_name = sxng_request.preferences.get_value('autocomplete')
  669. for result in search_autocomplete(backend_name, sug_prefix, sxng_locale):
  670. # attention: this loop will change raw_text_query object and this is
  671. # the reason why the sug_prefix was stored before (see above)
  672. if result != sug_prefix:
  673. results.append(raw_text_query.changeQuery(result).getFullQuery())
  674. if len(raw_text_query.autocomplete_list) > 0:
  675. for autocomplete_text in raw_text_query.autocomplete_list:
  676. results.append(raw_text_query.get_autocomplete_full_query(autocomplete_text))
  677. if sxng_request.headers.get('X-Requested-With') == 'XMLHttpRequest':
  678. # the suggestion request comes from the searx search form
  679. suggestions = json.dumps(results)
  680. mimetype = 'application/json'
  681. else:
  682. # the suggestion request comes from browser's URL bar
  683. suggestions = json.dumps([sug_prefix, results])
  684. mimetype = 'application/x-suggestions+json'
  685. suggestions = escape(suggestions, False)
  686. return Response(suggestions, mimetype=mimetype)
  687. @app.route('/preferences', methods=['GET', 'POST'])
  688. def preferences():
  689. """Render preferences page && save user preferences"""
  690. # pylint: disable=too-many-locals, too-many-return-statements, too-many-branches
  691. # pylint: disable=too-many-statements
  692. # save preferences using the link the /preferences?preferences=...
  693. if sxng_request.args.get('preferences') or sxng_request.form.get('preferences'):
  694. resp = make_response(redirect(url_for('index', _external=True)))
  695. return sxng_request.preferences.save(resp)
  696. # save preferences
  697. if sxng_request.method == 'POST':
  698. resp = make_response(redirect(url_for('index', _external=True)))
  699. try:
  700. sxng_request.preferences.parse_form(sxng_request.form)
  701. except ValidationException:
  702. sxng_request.errors.append(gettext('Invalid settings, please edit your preferences'))
  703. return resp
  704. return sxng_request.preferences.save(resp)
  705. # render preferences
  706. image_proxy = sxng_request.preferences.get_value('image_proxy') # pylint: disable=redefined-outer-name
  707. disabled_engines = sxng_request.preferences.engines.get_disabled()
  708. allowed_plugins = sxng_request.preferences.plugins.get_enabled()
  709. # stats for preferences page
  710. filtered_engines = dict(filter(lambda kv: sxng_request.preferences.validate_token(kv[1]), engines.items()))
  711. engines_by_category = {}
  712. for c in categories: # pylint: disable=consider-using-dict-items
  713. engines_by_category[c] = [e for e in categories[c] if e.name in filtered_engines]
  714. # sort the engines alphabetically since the order in settings.yml is meaningless.
  715. list.sort(engines_by_category[c], key=lambda e: e.name)
  716. # get first element [0], the engine time,
  717. # and then the second element [1] : the time (the first one is the label)
  718. stats = {} # pylint: disable=redefined-outer-name
  719. max_rate95 = 0
  720. for _, e in filtered_engines.items():
  721. h = histogram('engine', e.name, 'time', 'total')
  722. median = round(h.percentage(50), 1) if h.count > 0 else None
  723. rate80 = round(h.percentage(80), 1) if h.count > 0 else None
  724. rate95 = round(h.percentage(95), 1) if h.count > 0 else None
  725. max_rate95 = max(max_rate95, rate95 or 0)
  726. result_count_sum = histogram('engine', e.name, 'result', 'count').sum
  727. successful_count = counter('engine', e.name, 'search', 'count', 'successful')
  728. result_count = int(result_count_sum / float(successful_count)) if successful_count else 0
  729. stats[e.name] = {
  730. 'time': median,
  731. 'rate80': rate80,
  732. 'rate95': rate95,
  733. 'warn_timeout': e.timeout > settings['outgoing']['request_timeout'],
  734. 'supports_selected_language': e.traits.is_locale_supported(
  735. str(sxng_request.preferences.get_value('language') or 'all')
  736. ),
  737. 'result_count': result_count,
  738. }
  739. # end of stats
  740. # reliabilities
  741. reliabilities = {}
  742. engine_errors = get_engine_errors(filtered_engines)
  743. checker_results = checker_get_result()
  744. checker_results = (
  745. checker_results['engines'] if checker_results['status'] == 'ok' and 'engines' in checker_results else {}
  746. )
  747. for _, e in filtered_engines.items():
  748. checker_result = checker_results.get(e.name, {})
  749. checker_success = checker_result.get('success', True)
  750. errors = engine_errors.get(e.name) or []
  751. if counter('engine', e.name, 'search', 'count', 'sent') == 0:
  752. # no request
  753. reliability = None
  754. elif checker_success and not errors:
  755. reliability = 100
  756. elif 'simple' in checker_result.get('errors', {}):
  757. # the basic (simple) test doesn't work: the engine is broken according to the checker
  758. # even if there is no exception
  759. reliability = 0
  760. else:
  761. # pylint: disable=consider-using-generator
  762. reliability = 100 - sum([error['percentage'] for error in errors if not error.get('secondary')])
  763. reliabilities[e.name] = {
  764. 'reliability': reliability,
  765. 'errors': [],
  766. 'checker': checker_results.get(e.name, {}).get('errors', {}).keys(),
  767. }
  768. # keep the order of the list checker_results[e.name]['errors'] and deduplicate.
  769. # the first element has the highest percentage rate.
  770. reliabilities_errors = []
  771. for error in errors:
  772. error_user_text = None
  773. if error.get('secondary') or 'exception_classname' not in error:
  774. continue
  775. error_user_text = exception_classname_to_text.get(error.get('exception_classname'))
  776. if not error:
  777. error_user_text = exception_classname_to_text[None]
  778. if error_user_text not in reliabilities_errors:
  779. reliabilities_errors.append(error_user_text)
  780. reliabilities[e.name]['errors'] = reliabilities_errors
  781. # supports
  782. supports = {}
  783. for _, e in filtered_engines.items():
  784. supports_selected_language = e.traits.is_locale_supported(
  785. str(sxng_request.preferences.get_value('language') or 'all')
  786. )
  787. safesearch = e.safesearch
  788. time_range_support = e.time_range_support
  789. for checker_test_name in checker_results.get(e.name, {}).get('errors', {}):
  790. if supports_selected_language and checker_test_name.startswith('lang_'):
  791. supports_selected_language = '?'
  792. elif safesearch and checker_test_name == 'safesearch':
  793. safesearch = '?'
  794. elif time_range_support and checker_test_name == 'time_range':
  795. time_range_support = '?'
  796. supports[e.name] = {
  797. 'supports_selected_language': supports_selected_language,
  798. 'safesearch': safesearch,
  799. 'time_range_support': time_range_support,
  800. }
  801. return render(
  802. # fmt: off
  803. 'preferences.html',
  804. preferences = True,
  805. selected_categories = get_selected_categories(sxng_request.preferences, sxng_request.form),
  806. locales = LOCALE_NAMES,
  807. current_locale = sxng_request.preferences.get_value("locale"),
  808. image_proxy = image_proxy,
  809. engines_by_category = engines_by_category,
  810. stats = stats,
  811. max_rate95 = max_rate95,
  812. reliabilities = reliabilities,
  813. supports = supports,
  814. answer_storage = searx.answerers.STORAGE.info,
  815. disabled_engines = disabled_engines,
  816. autocomplete_backends = autocomplete_backends,
  817. favicon_resolver_names = favicons.proxy.CFG.resolver_map.keys(),
  818. shortcuts = {y: x for x, y in engine_shortcuts.items()},
  819. themes = themes,
  820. plugins_storage = searx.plugins.STORAGE.info,
  821. current_doi_resolver = get_doi_resolver(sxng_request.preferences),
  822. allowed_plugins = allowed_plugins,
  823. preferences_url_params = sxng_request.preferences.get_as_url_params(),
  824. locked_preferences = get_setting("preferences.lock", []),
  825. doi_resolvers = get_setting("doi_resolvers", {}),
  826. # fmt: on
  827. )
  828. app.add_url_rule('/favicon_proxy', methods=['GET'], endpoint="favicon_proxy", view_func=favicons.favicon_proxy)
  829. @app.route('/image_proxy', methods=['GET'])
  830. def image_proxy():
  831. # pylint: disable=too-many-return-statements, too-many-branches
  832. url = sxng_request.args.get('url')
  833. if not url:
  834. return '', 400
  835. if not is_hmac_of(settings['server']['secret_key'], url.encode(), sxng_request.args.get('h', '')):
  836. return '', 400
  837. maximum_size = 5 * 1024 * 1024
  838. forward_resp = False
  839. resp = None
  840. try:
  841. request_headers = {
  842. 'User-Agent': gen_useragent(),
  843. 'Accept': 'image/webp,*/*',
  844. 'Accept-Encoding': 'gzip, deflate',
  845. 'Sec-GPC': '1',
  846. 'DNT': '1',
  847. }
  848. set_context_network_name('image_proxy')
  849. resp, stream = http_stream(method='GET', url=url, headers=request_headers, allow_redirects=True)
  850. content_length = resp.headers.get('Content-Length')
  851. if content_length and content_length.isdigit() and int(content_length) > maximum_size:
  852. return 'Max size', 400
  853. if resp.status_code != 200:
  854. logger.debug('image-proxy: wrong response code: %i', resp.status_code)
  855. if resp.status_code >= 400:
  856. return '', resp.status_code
  857. return '', 400
  858. if not resp.headers.get('Content-Type', '').startswith('image/') and not resp.headers.get(
  859. 'Content-Type', ''
  860. ).startswith('binary/octet-stream'):
  861. logger.debug('image-proxy: wrong content-type: %s', resp.headers.get('Content-Type', ''))
  862. return '', 400
  863. forward_resp = True
  864. except httpx.HTTPError:
  865. logger.exception('HTTP error')
  866. return '', 400
  867. finally:
  868. if resp and not forward_resp:
  869. # the code is about to return an HTTP 400 error to the browser
  870. # we make sure to close the response between searxng and the HTTP server
  871. try:
  872. resp.close()
  873. except httpx.HTTPError:
  874. logger.exception('HTTP error on closing')
  875. def close_stream():
  876. nonlocal resp, stream
  877. try:
  878. if resp:
  879. resp.close()
  880. del resp
  881. del stream
  882. except httpx.HTTPError as e:
  883. logger.debug('Exception while closing response', e)
  884. try:
  885. headers = dict_subset(resp.headers, {'Content-Type', 'Content-Encoding', 'Content-Length', 'Length'})
  886. response = Response(stream, mimetype=resp.headers['Content-Type'], headers=headers, direct_passthrough=True)
  887. response.call_on_close(close_stream)
  888. return response
  889. except httpx.HTTPError:
  890. close_stream()
  891. return '', 400
  892. @app.route('/engine_descriptions.json', methods=['GET'])
  893. def engine_descriptions():
  894. locale = get_locale().split('_')[0]
  895. result = ENGINE_DESCRIPTIONS['en'].copy()
  896. if locale != 'en':
  897. for engine, description in ENGINE_DESCRIPTIONS.get(locale, {}).items():
  898. result[engine] = description
  899. for engine, description in result.items():
  900. if len(description) == 2 and description[1] == 'ref':
  901. ref_engine, ref_lang = description[0].split(':')
  902. description = ENGINE_DESCRIPTIONS[ref_lang][ref_engine]
  903. if isinstance(description, str):
  904. description = [description, 'wikipedia']
  905. result[engine] = description
  906. # overwrite by about:description (from settings)
  907. for engine_name, engine_mod in engines.items():
  908. descr = getattr(engine_mod, 'about', {}).get('description', None)
  909. if descr is not None:
  910. result[engine_name] = [descr, "SearXNG config"]
  911. return jsonify(result)
  912. @app.route('/stats', methods=['GET'])
  913. def stats():
  914. """Render engine statistics page."""
  915. sort_order = sxng_request.args.get('sort', default='name', type=str)
  916. selected_engine_name = sxng_request.args.get('engine', default=None, type=str)
  917. filtered_engines = dict(filter(lambda kv: sxng_request.preferences.validate_token(kv[1]), engines.items()))
  918. if selected_engine_name:
  919. if selected_engine_name not in filtered_engines:
  920. selected_engine_name = None
  921. else:
  922. filtered_engines = [selected_engine_name]
  923. checker_results = checker_get_result()
  924. checker_results = (
  925. checker_results['engines'] if checker_results['status'] == 'ok' and 'engines' in checker_results else {}
  926. )
  927. engine_stats = get_engines_stats(filtered_engines)
  928. engine_reliabilities = get_reliabilities(filtered_engines, checker_results)
  929. if sort_order not in STATS_SORT_PARAMETERS:
  930. sort_order = 'name'
  931. reverse, key_name, default_value = STATS_SORT_PARAMETERS[sort_order]
  932. def get_key(engine_stat):
  933. reliability = engine_reliabilities.get(engine_stat['name'], {}).get('reliability', 0)
  934. reliability_order = 0 if reliability else 1
  935. if key_name == 'reliability':
  936. key = reliability
  937. reliability_order = 0
  938. else:
  939. key = engine_stat.get(key_name) or default_value
  940. if reverse:
  941. reliability_order = 1 - reliability_order
  942. return (reliability_order, key, engine_stat['name'])
  943. technical_report = []
  944. for error in engine_reliabilities.get(selected_engine_name, {}).get('errors', []):
  945. technical_report.append(
  946. f"\
  947. Error: {error['exception_classname'] or error['log_message']} \
  948. Parameters: {error['log_parameters']} \
  949. File name: {error['filename'] }:{ error['line_no'] } \
  950. Error Function: {error['function']} \
  951. Code: {error['code']} \
  952. ".replace(
  953. ' ' * 12, ''
  954. ).strip()
  955. )
  956. technical_report = ' '.join(technical_report)
  957. engine_stats['time'] = sorted(engine_stats['time'], reverse=reverse, key=get_key)
  958. return render(
  959. # fmt: off
  960. 'stats.html',
  961. sort_order = sort_order,
  962. engine_stats = engine_stats,
  963. engine_reliabilities = engine_reliabilities,
  964. selected_engine_name = selected_engine_name,
  965. searx_git_branch = GIT_BRANCH,
  966. technical_report = technical_report,
  967. # fmt: on
  968. )
  969. @app.route('/stats/errors', methods=['GET'])
  970. def stats_errors():
  971. filtered_engines = dict(filter(lambda kv: sxng_request.preferences.validate_token(kv[1]), engines.items()))
  972. result = get_engine_errors(filtered_engines)
  973. return jsonify(result)
  974. @app.route('/stats/checker', methods=['GET'])
  975. def stats_checker():
  976. result = checker_get_result()
  977. return jsonify(result)
  978. @app.route('/metrics')
  979. def stats_open_metrics():
  980. password = settings['general'].get("open_metrics")
  981. if not (settings['general'].get("enable_metrics") and password):
  982. return Response('open metrics is disabled', status=404, mimetype='text/plain')
  983. if not sxng_request.authorization or sxng_request.authorization.password != password:
  984. return Response('access forbidden', status=401, mimetype='text/plain')
  985. filtered_engines = dict(filter(lambda kv: sxng_request.preferences.validate_token(kv[1]), engines.items()))
  986. checker_results = checker_get_result()
  987. checker_results = (
  988. checker_results['engines'] if checker_results['status'] == 'ok' and 'engines' in checker_results else {}
  989. )
  990. engine_stats = get_engines_stats(filtered_engines)
  991. engine_reliabilities = get_reliabilities(filtered_engines, checker_results)
  992. metrics_text = openmetrics(engine_stats, engine_reliabilities)
  993. return Response(metrics_text, mimetype='text/plain')
  994. @app.route('/robots.txt', methods=['GET'])
  995. def robots():
  996. return Response(
  997. """User-agent: *
  998. Allow: /info/en/about
  999. Disallow: /stats
  1000. Disallow: /image_proxy
  1001. Disallow: /preferences
  1002. Disallow: /*?*q=*
  1003. """,
  1004. mimetype='text/plain',
  1005. )
  1006. @app.route('/opensearch.xml', methods=['GET'])
  1007. def opensearch():
  1008. method = sxng_request.preferences.get_value('method')
  1009. autocomplete = sxng_request.preferences.get_value('autocomplete')
  1010. # chrome/chromium only supports HTTP GET....
  1011. if sxng_request.headers.get('User-Agent', '').lower().find('webkit') >= 0:
  1012. method = 'GET'
  1013. if method not in ('POST', 'GET'):
  1014. method = 'POST'
  1015. ret = render('opensearch.xml', opensearch_method=method, autocomplete=autocomplete)
  1016. resp = Response(response=ret, status=200, mimetype="application/opensearchdescription+xml")
  1017. return resp
  1018. @app.route('/favicon.ico')
  1019. def favicon():
  1020. theme = sxng_request.preferences.get_value("theme")
  1021. return send_from_directory(
  1022. os.path.join(app.root_path, settings['ui']['static_path'], 'themes', theme, 'img'), # type: ignore
  1023. 'favicon.png',
  1024. mimetype='image/vnd.microsoft.icon',
  1025. )
  1026. @app.route('/clear_cookies')
  1027. def clear_cookies():
  1028. resp = make_response(redirect(url_for('index', _external=True)))
  1029. for cookie_name in sxng_request.cookies:
  1030. resp.delete_cookie(cookie_name)
  1031. return resp
  1032. @app.route('/config')
  1033. def config():
  1034. """Return configuration in JSON format."""
  1035. _engines = []
  1036. for name, engine in engines.items():
  1037. if not sxng_request.preferences.validate_token(engine):
  1038. continue
  1039. _languages = engine.traits.languages.keys()
  1040. _engines.append(
  1041. {
  1042. 'name': name,
  1043. 'categories': engine.categories,
  1044. 'shortcut': engine.shortcut,
  1045. 'enabled': not engine.disabled,
  1046. 'paging': engine.paging,
  1047. 'language_support': engine.language_support,
  1048. 'languages': list(_languages),
  1049. 'regions': list(engine.traits.regions.keys()),
  1050. 'safesearch': engine.safesearch,
  1051. 'time_range_support': engine.time_range_support,
  1052. 'timeout': engine.timeout,
  1053. }
  1054. )
  1055. _plugins = []
  1056. for _ in searx.plugins.STORAGE:
  1057. _plugins.append({'name': _.id, 'enabled': _.default_on})
  1058. _limiter_cfg = limiter.get_cfg()
  1059. return jsonify(
  1060. {
  1061. 'categories': list(categories.keys()),
  1062. 'engines': _engines,
  1063. 'plugins': _plugins,
  1064. 'instance_name': settings['general']['instance_name'],
  1065. 'locales': LOCALE_NAMES,
  1066. 'default_locale': settings['ui']['default_locale'],
  1067. 'autocomplete': settings['search']['autocomplete'],
  1068. 'safe_search': settings['search']['safe_search'],
  1069. 'default_theme': settings['ui']['default_theme'],
  1070. 'version': VERSION_STRING,
  1071. 'brand': {
  1072. 'PRIVACYPOLICY_URL': get_setting('general.privacypolicy_url'),
  1073. 'CONTACT_URL': get_setting('general.contact_url'),
  1074. 'GIT_URL': GIT_URL,
  1075. 'GIT_BRANCH': GIT_BRANCH,
  1076. 'DOCS_URL': get_setting('brand.docs_url'),
  1077. },
  1078. 'limiter': {
  1079. 'enabled': limiter.is_installed(),
  1080. 'botdetection.ip_limit.link_token': _limiter_cfg.get('botdetection.ip_limit.link_token'),
  1081. 'botdetection.ip_lists.pass_searxng_org': _limiter_cfg.get('botdetection.ip_lists.pass_searxng_org'),
  1082. },
  1083. 'doi_resolvers': list(settings['doi_resolvers'].keys()),
  1084. 'default_doi_resolver': settings['default_doi_resolver'],
  1085. 'public_instance': settings['server']['public_instance'],
  1086. }
  1087. )
  1088. @app.errorhandler(404)
  1089. def page_not_found(_e):
  1090. return render('404.html'), 404
  1091. # see https://flask.palletsprojects.com/en/1.1.x/cli/
  1092. # True if "FLASK_APP=searx/webapp.py FLASK_ENV=development flask run"
  1093. flask_run_development = (
  1094. os.environ.get("FLASK_APP") is not None and os.environ.get("FLASK_ENV") == 'development' and is_flask_run_cmdline()
  1095. )
  1096. # True if reload feature is activated of werkzeug, False otherwise (including uwsgi, etc..)
  1097. # __name__ != "__main__" if searx.webapp is imported (make test, make docs, uwsgi...)
  1098. # see run() at the end of this file : searx_debug activates the reload feature.
  1099. werkzeug_reloader = flask_run_development or (searx_debug and __name__ == "__main__")
  1100. # initialize the engines except on the first run of the werkzeug server.
  1101. if not werkzeug_reloader or (werkzeug_reloader and os.environ.get("WERKZEUG_RUN_MAIN") == "true"):
  1102. locales_initialize()
  1103. redis_initialize()
  1104. searx.plugins.initialize(app)
  1105. searx.search.initialize(
  1106. enable_checker=True,
  1107. check_network=True,
  1108. enable_metrics=get_setting("general.enable_metrics"),
  1109. )
  1110. limiter.initialize(app, settings)
  1111. favicons.init()
  1112. def run():
  1113. logger.debug('starting webserver on %s:%s', settings['server']['bind_address'], settings['server']['port'])
  1114. app.run(
  1115. debug=searx_debug,
  1116. use_debugger=searx_debug,
  1117. port=settings['server']['port'],
  1118. host=settings['server']['bind_address'],
  1119. threaded=True,
  1120. extra_files=[DEFAULT_SETTINGS_FILE],
  1121. )
  1122. application = app
  1123. patch_application(app)
  1124. if __name__ == "__main__":
  1125. run()