-
Notifications
You must be signed in to change notification settings - Fork 1
/
Copy pathsave.php
executable file
·86 lines (66 loc) · 1.73 KB
/
save.php
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
<?php
require __DIR__ . '/vendor/autoload.php';
$dotenv = new Dotenv\Dotenv(__DIR__);
$dotenv->load();
$phantomjscloud_api_key = getenv('PHANTOMJSCLOUD_API_KEY');
$hostname = getenv('HOSTNAME');
function outputImage($image) {
header('Content-type: image/png');
header('Content-Disposition: attachment; filename="secretbase.png"');
echo $image;
}
function generateImage() {
global $phantomjscloud_api_key;
$data = json_decode(file_get_contents('php://input'), true);
if(isset($data['html'])) {
$html = $data['html'];
$width = $data['width'];
$height = $data['height'];
$json = array(
'url' => 'about:blank',
'content' => $html,
'renderType' => 'png',
'renderSettings' => array(
'clipRectangle' => array(
'top' => 0,
'left' => 0,
'height' => $height,
'width' => $width
)
)
);
$options = array(
'http' => array(
'header' => "Content-Type: application/json\r\n",
'method' => 'POST',
'content' => json_encode($json)
)
);
$url = "http://api.phantomjscloud.com/api/browser/v2/{$phantomjscloud_api_key}/";
$context = stream_context_create($options);
$result = file_get_contents($url, false, $context);
if ($result === FALSE) {
http_response_code(500);
echo 'Request failed';
}
outputImage($result);
} else {
echo 'Missing payload';
}
}
function unauthorized() {
http_response_code(401);
echo 'Unauthorized';
}
if (!isset($_SERVER['HTTP_REFERER'])) {
unauthorized();
} else {
$referer = parse_url($_SERVER['HTTP_REFERER']);
$host = $referer['host'];
if ($host === $hostname) {
generateImage();
} else {
unauthorized();
}
}
?>