PlaylistsController.cs 20 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524
  1. using System;
  2. using System.Collections.Generic;
  3. using System.ComponentModel.DataAnnotations;
  4. using System.Linq;
  5. using System.Threading.Tasks;
  6. using Jellyfin.Api.Attributes;
  7. using Jellyfin.Api.Extensions;
  8. using Jellyfin.Api.Helpers;
  9. using Jellyfin.Api.ModelBinders;
  10. using Jellyfin.Api.Models.PlaylistDtos;
  11. using Jellyfin.Data.Enums;
  12. using Jellyfin.Extensions;
  13. using MediaBrowser.Controller.Dto;
  14. using MediaBrowser.Controller.Library;
  15. using MediaBrowser.Controller.Playlists;
  16. using MediaBrowser.Model.Dto;
  17. using MediaBrowser.Model.Entities;
  18. using MediaBrowser.Model.Playlists;
  19. using MediaBrowser.Model.Querying;
  20. using Microsoft.AspNetCore.Authorization;
  21. using Microsoft.AspNetCore.Http;
  22. using Microsoft.AspNetCore.Mvc;
  23. using Microsoft.AspNetCore.Mvc.ModelBinding;
  24. namespace Jellyfin.Api.Controllers;
  25. /// <summary>
  26. /// Playlists controller.
  27. /// </summary>
  28. [Authorize]
  29. public class PlaylistsController : BaseJellyfinApiController
  30. {
  31. private readonly IPlaylistManager _playlistManager;
  32. private readonly IDtoService _dtoService;
  33. private readonly IUserManager _userManager;
  34. private readonly ILibraryManager _libraryManager;
  35. /// <summary>
  36. /// Initializes a new instance of the <see cref="PlaylistsController"/> class.
  37. /// </summary>
  38. /// <param name="dtoService">Instance of the <see cref="IDtoService"/> interface.</param>
  39. /// <param name="playlistManager">Instance of the <see cref="IPlaylistManager"/> interface.</param>
  40. /// <param name="userManager">Instance of the <see cref="IUserManager"/> interface.</param>
  41. /// <param name="libraryManager">Instance of the <see cref="ILibraryManager"/> interface.</param>
  42. public PlaylistsController(
  43. IDtoService dtoService,
  44. IPlaylistManager playlistManager,
  45. IUserManager userManager,
  46. ILibraryManager libraryManager)
  47. {
  48. _dtoService = dtoService;
  49. _playlistManager = playlistManager;
  50. _userManager = userManager;
  51. _libraryManager = libraryManager;
  52. }
  53. /// <summary>
  54. /// Creates a new playlist.
  55. /// </summary>
  56. /// <remarks>
  57. /// For backwards compatibility parameters can be sent via Query or Body, with Query having higher precedence.
  58. /// Query parameters are obsolete.
  59. /// </remarks>
  60. /// <param name="name">The playlist name.</param>
  61. /// <param name="ids">The item ids.</param>
  62. /// <param name="userId">The user id.</param>
  63. /// <param name="mediaType">The media type.</param>
  64. /// <param name="createPlaylistRequest">The create playlist payload.</param>
  65. /// <response code="200">Playlist created.</response>
  66. /// <returns>
  67. /// A <see cref="Task" /> that represents the asynchronous operation to create a playlist.
  68. /// The task result contains an <see cref="OkResult"/> indicating success.
  69. /// </returns>
  70. [HttpPost]
  71. [ProducesResponseType(StatusCodes.Status200OK)]
  72. public async Task<ActionResult<PlaylistCreationResult>> CreatePlaylist(
  73. [FromQuery, ParameterObsolete] string? name,
  74. [FromQuery, ModelBinder(typeof(CommaDelimitedArrayModelBinder)), ParameterObsolete] IReadOnlyList<Guid> ids,
  75. [FromQuery, ParameterObsolete] Guid? userId,
  76. [FromQuery, ParameterObsolete] MediaType? mediaType,
  77. [FromBody(EmptyBodyBehavior = EmptyBodyBehavior.Allow)] CreatePlaylistDto? createPlaylistRequest)
  78. {
  79. if (ids.Count == 0)
  80. {
  81. ids = createPlaylistRequest?.Ids ?? Array.Empty<Guid>();
  82. }
  83. userId ??= createPlaylistRequest?.UserId ?? default;
  84. userId = RequestHelpers.GetUserId(User, userId);
  85. var result = await _playlistManager.CreatePlaylist(new PlaylistCreationRequest
  86. {
  87. Name = name ?? createPlaylistRequest?.Name,
  88. ItemIdList = ids,
  89. UserId = userId.Value,
  90. MediaType = mediaType ?? createPlaylistRequest?.MediaType,
  91. Users = createPlaylistRequest?.Users.ToArray() ?? [],
  92. Public = createPlaylistRequest?.IsPublic
  93. }).ConfigureAwait(false);
  94. return result;
  95. }
  96. /// <summary>
  97. /// Updates a playlist.
  98. /// </summary>
  99. /// <param name="playlistId">The playlist id.</param>
  100. /// <param name="updatePlaylistRequest">The <see cref="UpdatePlaylistDto"/> id.</param>
  101. /// <response code="204">Playlist updated.</response>
  102. /// <response code="403">Access forbidden.</response>
  103. /// <response code="404">Playlist not found.</response>
  104. /// <returns>
  105. /// A <see cref="Task" /> that represents the asynchronous operation to update a playlist.
  106. /// The task result contains an <see cref="OkResult"/> indicating success.
  107. /// </returns>
  108. [HttpPost("{playlistId}")]
  109. [ProducesResponseType(StatusCodes.Status204NoContent)]
  110. [ProducesResponseType(StatusCodes.Status403Forbidden)]
  111. [ProducesResponseType(StatusCodes.Status404NotFound)]
  112. public async Task<ActionResult> UpdatePlaylist(
  113. [FromRoute, Required] Guid playlistId,
  114. [FromBody, Required] UpdatePlaylistDto updatePlaylistRequest)
  115. {
  116. var callingUserId = User.GetUserId();
  117. var playlist = _playlistManager.GetPlaylistForUser(playlistId, callingUserId);
  118. if (playlist is null)
  119. {
  120. return NotFound("Playlist not found");
  121. }
  122. var isPermitted = playlist.OwnerUserId.Equals(callingUserId)
  123. || playlist.Shares.Any(s => s.CanEdit && s.UserId.Equals(callingUserId));
  124. if (!isPermitted)
  125. {
  126. return Forbid();
  127. }
  128. await _playlistManager.UpdatePlaylist(new PlaylistUpdateRequest
  129. {
  130. UserId = callingUserId,
  131. Id = playlistId,
  132. Name = updatePlaylistRequest.Name,
  133. Ids = updatePlaylistRequest.Ids,
  134. Users = updatePlaylistRequest.Users,
  135. Public = updatePlaylistRequest.IsPublic
  136. }).ConfigureAwait(false);
  137. return NoContent();
  138. }
  139. /// <summary>
  140. /// Get a playlist's users.
  141. /// </summary>
  142. /// <param name="playlistId">The playlist id.</param>
  143. /// <response code="200">Found shares.</response>
  144. /// <response code="403">Access forbidden.</response>
  145. /// <response code="404">Playlist not found.</response>
  146. /// <returns>
  147. /// A list of <see cref="PlaylistUserPermissions"/> objects.
  148. /// </returns>
  149. [HttpGet("{playlistId}/Users")]
  150. [ProducesResponseType(StatusCodes.Status200OK)]
  151. [ProducesResponseType(StatusCodes.Status403Forbidden)]
  152. [ProducesResponseType(StatusCodes.Status404NotFound)]
  153. public ActionResult<IReadOnlyList<PlaylistUserPermissions>> GetPlaylistUsers(
  154. [FromRoute, Required] Guid playlistId)
  155. {
  156. var userId = User.GetUserId();
  157. var playlist = _playlistManager.GetPlaylistForUser(playlistId, userId);
  158. if (playlist is null)
  159. {
  160. return NotFound("Playlist not found");
  161. }
  162. var isPermitted = playlist.OwnerUserId.Equals(userId);
  163. return isPermitted ? playlist.Shares.ToList() : Forbid();
  164. }
  165. /// <summary>
  166. /// Get a playlist user.
  167. /// </summary>
  168. /// <param name="playlistId">The playlist id.</param>
  169. /// <param name="userId">The user id.</param>
  170. /// <response code="200">User permission found.</response>
  171. /// <response code="403">Access forbidden.</response>
  172. /// <response code="404">Playlist not found.</response>
  173. /// <returns>
  174. /// <see cref="PlaylistUserPermissions"/>.
  175. /// </returns>
  176. [HttpGet("{playlistId}/Users/{userId}")]
  177. [ProducesResponseType(StatusCodes.Status200OK)]
  178. [ProducesResponseType(StatusCodes.Status403Forbidden)]
  179. [ProducesResponseType(StatusCodes.Status404NotFound)]
  180. public ActionResult<PlaylistUserPermissions?> GetPlaylistUser(
  181. [FromRoute, Required] Guid playlistId,
  182. [FromRoute, Required] Guid userId)
  183. {
  184. var callingUserId = User.GetUserId();
  185. var playlist = _playlistManager.GetPlaylistForUser(playlistId, callingUserId);
  186. if (playlist is null)
  187. {
  188. return NotFound("Playlist not found");
  189. }
  190. if (playlist.OwnerUserId.Equals(callingUserId))
  191. {
  192. return new PlaylistUserPermissions(callingUserId, true);
  193. }
  194. var userPermission = playlist.Shares.FirstOrDefault(s => s.UserId.Equals(userId));
  195. var isPermitted = playlist.Shares.Any(s => s.CanEdit && s.UserId.Equals(callingUserId))
  196. || userId.Equals(callingUserId);
  197. if (!isPermitted)
  198. {
  199. return Forbid();
  200. }
  201. if (userPermission is not null)
  202. {
  203. return userPermission;
  204. }
  205. return NotFound("User permissions not found");
  206. }
  207. /// <summary>
  208. /// Modify a user of a playlist's users.
  209. /// </summary>
  210. /// <param name="playlistId">The playlist id.</param>
  211. /// <param name="userId">The user id.</param>
  212. /// <param name="updatePlaylistUserRequest">The <see cref="UpdatePlaylistUserDto"/>.</param>
  213. /// <response code="204">User's permissions modified.</response>
  214. /// <response code="403">Access forbidden.</response>
  215. /// <response code="404">Playlist not found.</response>
  216. /// <returns>
  217. /// A <see cref="Task" /> that represents the asynchronous operation to modify an user's playlist permissions.
  218. /// The task result contains an <see cref="OkResult"/> indicating success.
  219. /// </returns>
  220. [HttpPost("{playlistId}/Users/{userId}")]
  221. [ProducesResponseType(StatusCodes.Status204NoContent)]
  222. [ProducesResponseType(StatusCodes.Status403Forbidden)]
  223. [ProducesResponseType(StatusCodes.Status404NotFound)]
  224. public async Task<ActionResult> UpdatePlaylistUser(
  225. [FromRoute, Required] Guid playlistId,
  226. [FromRoute, Required] Guid userId,
  227. [FromBody(EmptyBodyBehavior = EmptyBodyBehavior.Allow), Required] UpdatePlaylistUserDto updatePlaylistUserRequest)
  228. {
  229. var callingUserId = User.GetUserId();
  230. var playlist = _playlistManager.GetPlaylistForUser(playlistId, callingUserId);
  231. if (playlist is null)
  232. {
  233. return NotFound("Playlist not found");
  234. }
  235. var isPermitted = playlist.OwnerUserId.Equals(callingUserId);
  236. if (!isPermitted)
  237. {
  238. return Forbid();
  239. }
  240. await _playlistManager.AddUserToShares(new PlaylistUserUpdateRequest
  241. {
  242. Id = playlistId,
  243. UserId = userId,
  244. CanEdit = updatePlaylistUserRequest.CanEdit
  245. }).ConfigureAwait(false);
  246. return NoContent();
  247. }
  248. /// <summary>
  249. /// Remove a user from a playlist's users.
  250. /// </summary>
  251. /// <param name="playlistId">The playlist id.</param>
  252. /// <param name="userId">The user id.</param>
  253. /// <response code="204">User permissions removed from playlist.</response>
  254. /// <response code="401">Unauthorized access.</response>
  255. /// <response code="404">No playlist or user permissions found.</response>
  256. /// <returns>
  257. /// A <see cref="Task" /> that represents the asynchronous operation to delete a user from a playlist's shares.
  258. /// The task result contains an <see cref="OkResult"/> indicating success.
  259. /// </returns>
  260. [HttpDelete("{playlistId}/Users/{userId}")]
  261. [ProducesResponseType(StatusCodes.Status204NoContent)]
  262. [ProducesResponseType(StatusCodes.Status403Forbidden)]
  263. [ProducesResponseType(StatusCodes.Status404NotFound)]
  264. public async Task<ActionResult> RemoveUserFromPlaylist(
  265. [FromRoute, Required] Guid playlistId,
  266. [FromRoute, Required] Guid userId)
  267. {
  268. var callingUserId = User.GetUserId();
  269. var playlist = _playlistManager.GetPlaylistForUser(playlistId, callingUserId);
  270. if (playlist is null)
  271. {
  272. return NotFound("Playlist not found");
  273. }
  274. var isPermitted = playlist.OwnerUserId.Equals(callingUserId)
  275. || playlist.Shares.Any(s => s.CanEdit && s.UserId.Equals(callingUserId));
  276. if (!isPermitted)
  277. {
  278. return Forbid();
  279. }
  280. var share = playlist.Shares.FirstOrDefault(s => s.UserId.Equals(userId));
  281. if (share is null)
  282. {
  283. return NotFound("User permissions not found");
  284. }
  285. await _playlistManager.RemoveUserFromShares(playlistId, callingUserId, share).ConfigureAwait(false);
  286. return NoContent();
  287. }
  288. /// <summary>
  289. /// Adds items to a playlist.
  290. /// </summary>
  291. /// <param name="playlistId">The playlist id.</param>
  292. /// <param name="ids">Item id, comma delimited.</param>
  293. /// <param name="userId">The userId.</param>
  294. /// <response code="204">Items added to playlist.</response>
  295. /// <response code="403">Access forbidden.</response>
  296. /// <response code="404">Playlist not found.</response>
  297. /// <returns>An <see cref="NoContentResult"/> on success.</returns>
  298. [HttpPost("{playlistId}/Items")]
  299. [ProducesResponseType(StatusCodes.Status204NoContent)]
  300. [ProducesResponseType(StatusCodes.Status403Forbidden)]
  301. [ProducesResponseType(StatusCodes.Status404NotFound)]
  302. public async Task<ActionResult> AddItemToPlaylist(
  303. [FromRoute, Required] Guid playlistId,
  304. [FromQuery, ModelBinder(typeof(CommaDelimitedArrayModelBinder))] Guid[] ids,
  305. [FromQuery] Guid? userId)
  306. {
  307. userId = RequestHelpers.GetUserId(User, userId);
  308. var playlist = _playlistManager.GetPlaylistForUser(playlistId, userId.Value);
  309. if (playlist is null)
  310. {
  311. return NotFound("Playlist not found");
  312. }
  313. var isPermitted = playlist.OwnerUserId.Equals(userId.Value)
  314. || playlist.Shares.Any(s => s.CanEdit && s.UserId.Equals(userId.Value));
  315. if (!isPermitted)
  316. {
  317. return Forbid();
  318. }
  319. await _playlistManager.AddItemToPlaylistAsync(playlistId, ids, userId.Value).ConfigureAwait(false);
  320. return NoContent();
  321. }
  322. /// <summary>
  323. /// Moves a playlist item.
  324. /// </summary>
  325. /// <param name="playlistId">The playlist id.</param>
  326. /// <param name="itemId">The item id.</param>
  327. /// <param name="newIndex">The new index.</param>
  328. /// <response code="204">Item moved to new index.</response>
  329. /// <response code="403">Access forbidden.</response>
  330. /// <response code="404">Playlist not found.</response>
  331. /// <returns>An <see cref="NoContentResult"/> on success.</returns>
  332. [HttpPost("{playlistId}/Items/{itemId}/Move/{newIndex}")]
  333. [ProducesResponseType(StatusCodes.Status204NoContent)]
  334. [ProducesResponseType(StatusCodes.Status403Forbidden)]
  335. [ProducesResponseType(StatusCodes.Status404NotFound)]
  336. public async Task<ActionResult> MoveItem(
  337. [FromRoute, Required] string playlistId,
  338. [FromRoute, Required] string itemId,
  339. [FromRoute, Required] int newIndex)
  340. {
  341. var callingUserId = User.GetUserId();
  342. var playlist = _playlistManager.GetPlaylistForUser(Guid.Parse(playlistId), callingUserId);
  343. if (playlist is null)
  344. {
  345. return NotFound("Playlist not found");
  346. }
  347. var isPermitted = playlist.OwnerUserId.Equals(callingUserId)
  348. || playlist.Shares.Any(s => s.CanEdit && s.UserId.Equals(callingUserId));
  349. if (!isPermitted)
  350. {
  351. return Forbid();
  352. }
  353. await _playlistManager.MoveItemAsync(playlistId, itemId, newIndex).ConfigureAwait(false);
  354. return NoContent();
  355. }
  356. /// <summary>
  357. /// Removes items from a playlist.
  358. /// </summary>
  359. /// <param name="playlistId">The playlist id.</param>
  360. /// <param name="entryIds">The item ids, comma delimited.</param>
  361. /// <response code="204">Items removed.</response>
  362. /// <response code="403">Access forbidden.</response>
  363. /// <response code="404">Playlist not found.</response>
  364. /// <returns>An <see cref="NoContentResult"/> on success.</returns>
  365. [HttpDelete("{playlistId}/Items")]
  366. [ProducesResponseType(StatusCodes.Status204NoContent)]
  367. [ProducesResponseType(StatusCodes.Status403Forbidden)]
  368. [ProducesResponseType(StatusCodes.Status404NotFound)]
  369. public async Task<ActionResult> RemoveItemFromPlaylist(
  370. [FromRoute, Required] string playlistId,
  371. [FromQuery, ModelBinder(typeof(CommaDelimitedArrayModelBinder))] string[] entryIds)
  372. {
  373. var callingUserId = User.GetUserId();
  374. var playlist = _playlistManager.GetPlaylistForUser(Guid.Parse(playlistId), callingUserId);
  375. if (playlist is null)
  376. {
  377. return NotFound("Playlist not found");
  378. }
  379. var isPermitted = playlist.OwnerUserId.Equals(callingUserId)
  380. || playlist.Shares.Any(s => s.CanEdit && s.UserId.Equals(callingUserId));
  381. if (!isPermitted)
  382. {
  383. return Forbid();
  384. }
  385. await _playlistManager.RemoveItemFromPlaylistAsync(playlistId, entryIds).ConfigureAwait(false);
  386. return NoContent();
  387. }
  388. /// <summary>
  389. /// Gets the original items of a playlist.
  390. /// </summary>
  391. /// <param name="playlistId">The playlist id.</param>
  392. /// <param name="userId">User id.</param>
  393. /// <param name="startIndex">Optional. The record index to start at. All items with a lower index will be dropped from the results.</param>
  394. /// <param name="limit">Optional. The maximum number of records to return.</param>
  395. /// <param name="fields">Optional. Specify additional fields of information to return in the output.</param>
  396. /// <param name="enableImages">Optional. Include image information in output.</param>
  397. /// <param name="enableUserData">Optional. Include user data.</param>
  398. /// <param name="imageTypeLimit">Optional. The max number of images to return, per image type.</param>
  399. /// <param name="enableImageTypes">Optional. The image types to include in the output.</param>
  400. /// <response code="200">Original playlist returned.</response>
  401. /// <response code="404">Access forbidden.</response>
  402. /// <response code="404">Playlist not found.</response>
  403. /// <returns>The original playlist items.</returns>
  404. [HttpGet("{playlistId}/Items")]
  405. [ProducesResponseType(StatusCodes.Status200OK)]
  406. [ProducesResponseType(StatusCodes.Status403Forbidden)]
  407. [ProducesResponseType(StatusCodes.Status404NotFound)]
  408. public ActionResult<QueryResult<BaseItemDto>> GetPlaylistItems(
  409. [FromRoute, Required] Guid playlistId,
  410. [FromQuery] Guid? userId,
  411. [FromQuery] int? startIndex,
  412. [FromQuery] int? limit,
  413. [FromQuery, ModelBinder(typeof(CommaDelimitedArrayModelBinder))] ItemFields[] fields,
  414. [FromQuery] bool? enableImages,
  415. [FromQuery] bool? enableUserData,
  416. [FromQuery] int? imageTypeLimit,
  417. [FromQuery, ModelBinder(typeof(CommaDelimitedArrayModelBinder))] ImageType[] enableImageTypes)
  418. {
  419. userId = RequestHelpers.GetUserId(User, userId);
  420. var playlist = _playlistManager.GetPlaylistForUser(playlistId, userId.Value);
  421. if (playlist is null)
  422. {
  423. return NotFound("Playlist not found");
  424. }
  425. var isPermitted = playlist.OpenAccess
  426. || playlist.OwnerUserId.Equals(userId.Value)
  427. || playlist.Shares.Any(s => s.UserId.Equals(userId.Value));
  428. if (!isPermitted)
  429. {
  430. return Forbid();
  431. }
  432. var user = userId.IsNullOrEmpty()
  433. ? null
  434. : _userManager.GetUserById(userId.Value);
  435. var item = _libraryManager.GetItemById<Playlist>(playlistId, user);
  436. if (item is null)
  437. {
  438. return NotFound();
  439. }
  440. var items = item.GetManageableItems().ToArray();
  441. var count = items.Length;
  442. if (startIndex.HasValue)
  443. {
  444. items = items.Skip(startIndex.Value).ToArray();
  445. }
  446. if (limit.HasValue)
  447. {
  448. items = items.Take(limit.Value).ToArray();
  449. }
  450. var dtoOptions = new DtoOptions { Fields = fields }
  451. .AddClientFields(User)
  452. .AddAdditionalDtoOptions(enableImages, enableUserData, imageTypeLimit, enableImageTypes);
  453. var dtos = _dtoService.GetBaseItemDtos(items.Select(i => i.Item2).ToList(), dtoOptions, user);
  454. for (int index = 0; index < dtos.Count; index++)
  455. {
  456. dtos[index].PlaylistItemId = items[index].Item1.Id;
  457. }
  458. var result = new QueryResult<BaseItemDto>(
  459. startIndex,
  460. count,
  461. dtos);
  462. return result;
  463. }
  464. }