1 # -*- coding: utf-8 -*-
3 # common.py - part of the FDroid server tools
4 # Copyright (C) 2010-13, Ciaran Gultnieks, ciaran@ciarang.com
5 # Copyright (C) 2013-2014 Daniel Martà <mvdan@mvdan.cc>
7 # This program is free software: you can redistribute it and/or modify
8 # it under the terms of the GNU Affero General Public License as published by
9 # the Free Software Foundation, either version 3 of the License, or
10 # (at your option) any later version.
12 # This program is distributed in the hope that it will be useful,
13 # but WITHOUT ANY WARRANTY; without even the implied warranty of
14 # MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
15 # GNU Affero General Public License for more details.
17 # You should have received a copy of the GNU Affero General Public License
18 # along with this program. If not, see <http://www.gnu.org/licenses/>.
37 def get_default_config():
39 'sdk_path': os.getenv("ANDROID_HOME"),
40 'ndk_path': "$ANDROID_NDK",
41 'build_tools': "19.0.3",
46 'update_stats': False,
47 'stats_to_carbon': False,
49 'build_server_always': False,
50 'keystore': '$HOME/.local/share/fdroidserver/keystore.jks',
51 'smartcardoptions': [],
59 def read_config(opts, config_file='config.py'):
60 """Read the repository config
62 The config is read from config_file, which is in the current directory when
63 any of the repo management commands are used.
65 global config, options
67 if config is not None:
69 if not os.path.isfile(config_file):
70 logging.critical("Missing config file - is this a repo directory?")
77 logging.debug("Reading %s" % config_file)
78 execfile(config_file, config)
80 # smartcardoptions must be a list since its command line args for Popen
81 if 'smartcardoptions' in config:
82 config['smartcardoptions'] = config['smartcardoptions'].split(' ')
83 elif 'keystore' in config and config['keystore'] == 'NONE':
84 # keystore='NONE' means use smartcard, these are required defaults
85 config['smartcardoptions'] = ['-storetype', 'PKCS11', '-providerName',
86 'SunPKCS11-OpenSC', '-providerClass',
87 'sun.security.pkcs11.SunPKCS11',
88 '-providerArg', 'opensc-fdroid.cfg']
90 defconfig = get_default_config()
91 for k, v in defconfig.items():
95 # Expand environment variables
96 for k, v in config.items():
99 v = os.path.expanduser(v)
100 config[k] = os.path.expandvars(v)
102 if not test_sdk_exists(config):
105 if any(k in config for k in ["keystore", "keystorepass", "keypass"]):
106 st = os.stat(config_file)
107 if st.st_mode & stat.S_IRWXG or st.st_mode & stat.S_IRWXO:
108 logging.warn("unsafe permissions on {0} (should be 0600)!".format(config_file))
110 for k in ["keystorepass", "keypass"]:
112 write_password_file(k)
114 # since this is used with rsync, where trailing slashes have meaning,
115 # ensure there is always a trailing slash
116 if 'serverwebroot' in config:
117 if config['serverwebroot'][-1] != '/':
118 config['serverwebroot'] += '/'
119 config['serverwebroot'] = config['serverwebroot'].replace('//', '/')
123 def test_sdk_exists(c):
124 if c['sdk_path'] == None:
125 # c['sdk_path'] is set to the value of ANDROID_HOME by default
126 logging.critical("Neither ANDROID_HOME nor sdk_path is set, no Android SDK found!")
127 logging.info('Set ANDROID_HOME to the path to your SDK, i.e.:')
128 logging.info('\texport ANDROID_HOME=/opt/android-sdk')
130 if not os.path.exists(c['sdk_path']):
131 logging.critical('Android SDK path "' + c['sdk_path'] + '" does not exist!')
133 if not os.path.isdir(c['sdk_path']):
134 logging.critical('Android SDK path "' + c['sdk_path'] + '" is not a directory!')
138 def write_password_file(pwtype, password=None):
140 writes out passwords to a protected file instead of passing passwords as
141 command line argments
143 filename = '.fdroid.' + pwtype + '.txt'
144 fd = os.open(filename, os.O_CREAT | os.O_TRUNC | os.O_WRONLY, 0600)
146 os.write(fd, config[pwtype])
148 os.write(fd, password)
150 config[pwtype + 'file'] = filename
152 # Given the arguments in the form of multiple appid:[vc] strings, this returns
153 # a dictionary with the set of vercodes specified for each package.
154 def read_pkg_args(args, allow_vercodes=False):
161 if allow_vercodes and ':' in p:
162 package, vercode = p.split(':')
164 package, vercode = p, None
165 if package not in vercodes:
166 vercodes[package] = [vercode] if vercode else []
168 elif vercode and vercode not in vercodes[package]:
169 vercodes[package] += [vercode] if vercode else []
173 # On top of what read_pkg_args does, this returns the whole app metadata, but
174 # limiting the builds list to the builds matching the vercodes specified.
175 def read_app_args(args, allapps, allow_vercodes=False):
177 vercodes = read_pkg_args(args, allow_vercodes)
182 apps = [app for app in allapps if app['id'] in vercodes]
184 if len(apps) != len(vercodes):
185 allids = [app["id"] for app in allapps]
188 logging.critical("No such package: %s" % p)
189 raise Exception("Found invalid app ids in arguments")
191 raise Exception("No packages specified")
195 vc = vercodes[app['id']]
198 app['builds'] = [b for b in app['builds'] if b['vercode'] in vc]
199 if len(app['builds']) != len(vercodes[app['id']]):
201 allvcs = [b['vercode'] for b in app['builds']]
202 for v in vercodes[app['id']]:
204 logging.critical("No such vercode %s for app %s" % (v, app['id']))
207 raise Exception("Found invalid vercodes for some apps")
211 def has_extension(filename, extension):
212 name, ext = os.path.splitext(filename)
213 ext = ext.lower()[1:]
214 return ext == extension
218 def apknameinfo(filename):
220 filename = os.path.basename(filename)
221 if apk_regex is None:
222 apk_regex = re.compile(r"^(.+)_([0-9]+)\.apk$")
223 m = apk_regex.match(filename)
225 result = (m.group(1), m.group(2))
226 except AttributeError:
227 raise Exception("Invalid apk name: %s" % filename)
230 def getapkname(app, build):
231 return "%s_%s.apk" % (app['id'], build['vercode'])
233 def getsrcname(app, build):
234 return "%s_%s_src.tar.gz" % (app['id'], build['vercode'])
240 return app['Auto Name']
244 return '%s (%s)' % (app['Current Version'], app['Current Version Code'])
246 def getvcs(vcstype, remote, local):
248 return vcs_git(remote, local)
250 return vcs_svn(remote, local)
251 if vcstype == 'git-svn':
252 return vcs_gitsvn(remote, local)
254 return vcs_hg(remote, local)
256 return vcs_bzr(remote, local)
257 if vcstype == 'srclib':
258 if local != 'build/srclib/' + remote:
259 raise VCSException("Error: srclib paths are hard-coded!")
260 return getsrclib(remote, 'build/srclib', raw=True)
261 raise VCSException("Invalid vcs type " + vcstype)
263 def getsrclibvcs(name):
264 srclib_path = os.path.join('srclibs', name + ".txt")
265 if not os.path.exists(srclib_path):
266 raise VCSException("Missing srclib " + name)
267 return metadata.parse_srclib(srclib_path)['Repo Type']
270 def __init__(self, remote, local):
272 # svn, git-svn and bzr may require auth
274 if self.repotype() in ('svn', 'git-svn', 'bzr'):
276 self.username, remote = remote.split('@')
277 if ':' not in self.username:
278 raise VCSException("Password required with username")
279 self.username, self.password = self.username.split(':')
283 self.refreshed = False
289 # Take the local repository to a clean version of the given revision, which
290 # is specificed in the VCS's native format. Beforehand, the repository can
291 # be dirty, or even non-existent. If the repository does already exist
292 # locally, it will be updated from the origin, but only once in the
293 # lifetime of the vcs object.
294 # None is acceptable for 'rev' if you know you are cloning a clean copy of
295 # the repo - otherwise it must specify a valid revision.
296 def gotorevision(self, rev):
298 # The .fdroidvcs-id file for a repo tells us what VCS type
299 # and remote that directory was created from, allowing us to drop it
300 # automatically if either of those things changes.
301 fdpath = os.path.join(self.local, '..',
302 '.fdroidvcs-' + os.path.basename(self.local))
303 cdata = self.repotype() + ' ' + self.remote
306 if os.path.exists(self.local):
307 if os.path.exists(fdpath):
308 with open(fdpath, 'r') as f:
309 fsdata = f.read().strip()
314 logging.info("Repository details changed - deleting")
317 logging.info("Repository details missing - deleting")
319 shutil.rmtree(self.local)
321 self.gotorevisionx(rev)
323 # If necessary, write the .fdroidvcs file.
325 with open(fdpath, 'w') as f:
328 # Derived classes need to implement this. It's called once basic checking
329 # has been performend.
330 def gotorevisionx(self, rev):
331 raise VCSException("This VCS type doesn't define gotorevisionx")
333 # Initialise and update submodules
334 def initsubmodules(self):
335 raise VCSException('Submodules not supported for this vcs type')
337 # Get a list of all known tags
339 raise VCSException('gettags not supported for this vcs type')
341 # Get a list of latest number tags
342 def latesttags(self, number):
343 raise VCSException('latesttags not supported for this vcs type')
345 # Get current commit reference (hash, revision, etc)
347 raise VCSException('getref not supported for this vcs type')
349 # Returns the srclib (name, path) used in setting up the current
359 # If the local directory exists, but is somehow not a git repository, git
360 # will traverse up the directory tree until it finds one that is (i.e.
361 # fdroidserver) and then we'll proceed to destroy it! This is called as
364 p = SilentPopen(['git', 'rev-parse', '--show-toplevel'], cwd=self.local)
365 result = p.stdout.rstrip()
366 if not result.endswith(self.local):
367 raise VCSException('Repository mismatch')
369 def gotorevisionx(self, rev):
370 if not os.path.exists(self.local):
372 p = FDroidPopen(['git', 'clone', self.remote, self.local])
373 if p.returncode != 0:
374 raise VCSException("Git clone failed")
378 # Discard any working tree changes
379 p = SilentPopen(['git', 'reset', '--hard'], cwd=self.local)
380 if p.returncode != 0:
381 raise VCSException("Git reset failed")
382 # Remove untracked files now, in case they're tracked in the target
383 # revision (it happens!)
384 p = SilentPopen(['git', 'clean', '-dffx'], cwd=self.local)
385 if p.returncode != 0:
386 raise VCSException("Git clean failed")
387 if not self.refreshed:
388 # Get latest commits and tags from remote
389 p = FDroidPopen(['git', 'fetch', 'origin'], cwd=self.local)
390 if p.returncode != 0:
391 raise VCSException("Git fetch failed")
392 p = SilentPopen(['git', 'fetch', '--prune', '--tags', 'origin'], cwd=self.local)
393 if p.returncode != 0:
394 raise VCSException("Git fetch failed")
395 self.refreshed = True
396 # Check out the appropriate revision
397 rev = str(rev if rev else 'origin/master')
398 p = SilentPopen(['git', 'checkout', '-f', rev], cwd=self.local)
399 if p.returncode != 0:
400 raise VCSException("Git checkout failed")
401 # Get rid of any uncontrolled files left behind
402 p = SilentPopen(['git', 'clean', '-dffx'], cwd=self.local)
403 if p.returncode != 0:
404 raise VCSException("Git clean failed")
406 def initsubmodules(self):
408 submfile = os.path.join(self.local, '.gitmodules')
409 if not os.path.isfile(submfile):
410 raise VCSException("No git submodules available")
412 # fix submodules not accessible without an account and public key auth
413 with open(submfile, 'r') as f:
414 lines = f.readlines()
415 with open(submfile, 'w') as f:
417 if 'git@github.com' in line:
418 line = line.replace('git@github.com:', 'https://github.com/')
422 ['git', 'reset', '--hard'],
423 ['git', 'clean', '-dffx'],
425 p = SilentPopen(['git', 'submodule', 'foreach', '--recursive'] + cmd, cwd=self.local)
426 if p.returncode != 0:
427 raise VCSException("Git submodule reset failed")
428 p = FDroidPopen(['git', 'submodule', 'update', '--init', '--force', '--recursive'], cwd=self.local)
429 if p.returncode != 0:
430 raise VCSException("Git submodule update failed")
434 p = SilentPopen(['git', 'tag'], cwd=self.local)
435 return p.stdout.splitlines()
437 def latesttags(self, alltags, number):
439 p = SilentPopen(['echo "'+'\n'.join(alltags)+'" | \
440 xargs -I@ git log --format=format:"%at @%n" -1 @ | \
441 sort -n | awk \'{print $2}\''],
442 cwd=self.local, shell=True)
443 return p.stdout.splitlines()[-number:]
446 class vcs_gitsvn(vcs):
451 # Damn git-svn tries to use a graphical password prompt, so we have to
452 # trick it into taking the password from stdin
454 if self.username is None:
456 return ('echo "%s" | DISPLAY="" ' % self.password, ' --username "%s"' % self.username)
458 # If the local directory exists, but is somehow not a git repository, git
459 # will traverse up the directory tree until it finds one that is (i.e.
460 # fdroidserver) and then we'll proceed to destory it! This is called as
463 p = SilentPopen(['git', 'rev-parse', '--show-toplevel'], cwd=self.local)
464 result = p.stdout.rstrip()
465 if not result.endswith(self.local):
466 raise VCSException('Repository mismatch')
468 def gotorevisionx(self, rev):
469 if not os.path.exists(self.local):
471 gitsvn_cmd = '%sgit svn clone%s' % self.userargs()
472 if ';' in self.remote:
473 remote_split = self.remote.split(';')
474 for i in remote_split[1:]:
475 if i.startswith('trunk='):
476 gitsvn_cmd += ' -T %s' % i[6:]
477 elif i.startswith('tags='):
478 gitsvn_cmd += ' -t %s' % i[5:]
479 elif i.startswith('branches='):
480 gitsvn_cmd += ' -b %s' % i[9:]
481 p = SilentPopen([gitsvn_cmd + " %s %s" % (remote_split[0], self.local)], shell=True)
482 if p.returncode != 0:
483 raise VCSException("Git clone failed")
485 p = SilentPopen([gitsvn_cmd + " %s %s" % (self.remote, self.local)], shell=True)
486 if p.returncode != 0:
487 raise VCSException("Git clone failed")
491 # Discard any working tree changes
492 p = SilentPopen(['git', 'reset', '--hard'], cwd=self.local)
493 if p.returncode != 0:
494 raise VCSException("Git reset failed")
495 # Remove untracked files now, in case they're tracked in the target
496 # revision (it happens!)
497 p = SilentPopen(['git', 'clean', '-dffx'], cwd=self.local)
498 if p.returncode != 0:
499 raise VCSException("Git clean failed")
500 if not self.refreshed:
501 # Get new commits, branches and tags from repo
502 p = SilentPopen(['%sgit svn fetch %s' % self.userargs()], cwd=self.local, shell=True)
503 if p.returncode != 0:
504 raise VCSException("Git svn fetch failed")
505 p = SilentPopen(['%sgit svn rebase %s' % self.userargs()], cwd=self.local, shell=True)
506 if p.returncode != 0:
507 raise VCSException("Git svn rebase failed")
508 self.refreshed = True
510 rev = str(rev if rev else 'master')
512 nospaces_rev = rev.replace(' ', '%20')
513 # Try finding a svn tag
514 p = SilentPopen(['git', 'checkout', 'tags/' + nospaces_rev], cwd=self.local)
515 if p.returncode != 0:
516 # No tag found, normal svn rev translation
517 # Translate svn rev into git format
518 rev_split = rev.split('/')
519 if len(rev_split) > 1:
520 treeish = rev_split[0]
521 svn_rev = rev_split[1]
524 # if no branch is specified, then assume trunk (ie. 'master'
529 p = SilentPopen(['git', 'svn', 'find-rev', 'r' + svn_rev, treeish], cwd=self.local)
530 git_rev = p.stdout.rstrip()
532 if p.returncode != 0 or not git_rev:
533 # Try a plain git checkout as a last resort
534 p = SilentPopen(['git', 'checkout', rev], cwd=self.local)
535 if p.returncode != 0:
536 raise VCSException("No git treeish found and direct git checkout failed")
538 # Check out the git rev equivalent to the svn rev
539 p = SilentPopen(['git', 'checkout', git_rev], cwd=self.local)
540 if p.returncode != 0:
541 raise VCSException("Git svn checkout failed")
543 # Get rid of any uncontrolled files left behind
544 p = SilentPopen(['git', 'clean', '-dffx'], cwd=self.local)
545 if p.returncode != 0:
546 raise VCSException("Git clean failed")
550 return os.listdir(os.path.join(self.local, '.git/svn/refs/remotes/tags'))
554 p = SilentPopen(['git', 'svn', 'find-rev', 'HEAD'], cwd=self.local)
555 if p.returncode != 0:
557 return p.stdout.strip()
565 if self.username is None:
566 return ['--non-interactive']
567 return ['--username', self.username,
568 '--password', self.password,
571 def gotorevisionx(self, rev):
572 if not os.path.exists(self.local):
573 p = SilentPopen(['svn', 'checkout', self.remote, self.local] + self.userargs())
574 if p.returncode != 0:
575 raise VCSException("Svn checkout failed")
579 r"svn status | awk '/\?/ {print $2}' | xargs rm -rf"):
580 p = SilentPopen([svncommand], cwd=self.local, shell=True)
581 if p.returncode != 0:
582 raise VCSException("Svn reset ({0}) failed in {1}".format(svncommand, self.local))
583 if not self.refreshed:
584 p = SilentPopen(['svn', 'update'] + self.userargs(), cwd=self.local)
585 if p.returncode != 0:
586 raise VCSException("Svn update failed")
587 self.refreshed = True
589 revargs = list(['-r', rev] if rev else [])
590 p = SilentPopen(['svn', 'update', '--force'] + revargs + self.userargs(), cwd=self.local)
591 if p.returncode != 0:
592 raise VCSException("Svn update failed")
595 p = SilentPopen(['svn', 'info'], cwd=self.local)
596 for line in p.stdout.splitlines():
597 if line and line.startswith('Last Changed Rev: '):
606 def gotorevisionx(self, rev):
607 if not os.path.exists(self.local):
608 p = SilentPopen(['hg', 'clone', self.remote, self.local])
609 if p.returncode != 0:
610 raise VCSException("Hg clone failed")
612 p = SilentPopen(['hg status -uS | xargs rm -rf'], cwd=self.local, shell=True)
613 if p.returncode != 0:
614 raise VCSException("Hg clean failed")
615 if not self.refreshed:
616 p = SilentPopen(['hg', 'pull'], cwd=self.local)
617 if p.returncode != 0:
618 raise VCSException("Hg pull failed")
619 self.refreshed = True
621 rev = str(rev if rev else 'default')
624 p = SilentPopen(['hg', 'update', '-C', rev], cwd=self.local)
625 if p.returncode != 0:
626 raise VCSException("Hg checkout failed")
627 p = SilentPopen(['hg', 'purge', '--all'], cwd=self.local)
628 # Also delete untracked files, we have to enable purge extension for that:
629 if "'purge' is provided by the following extension" in p.stdout:
630 with open(self.local+"/.hg/hgrc", "a") as myfile:
631 myfile.write("\n[extensions]\nhgext.purge=\n")
632 p = SilentPopen(['hg', 'purge', '--all'], cwd=self.local)
633 if p.returncode != 0:
634 raise VCSException("HG purge failed")
635 elif p.returncode != 0:
636 raise VCSException("HG purge failed")
639 p = SilentPopen(['hg', 'tags', '-q'], cwd=self.local)
640 return p.stdout.splitlines()[1:]
648 def gotorevisionx(self, rev):
649 if not os.path.exists(self.local):
650 p = SilentPopen(['bzr', 'branch', self.remote, self.local])
651 if p.returncode != 0:
652 raise VCSException("Bzr branch failed")
654 p = SilentPopen(['bzr', 'clean-tree', '--force', '--unknown', '--ignored'], cwd=self.local)
655 if p.returncode != 0:
656 raise VCSException("Bzr revert failed")
657 if not self.refreshed:
658 p = SilentPopen(['bzr', 'pull'], cwd=self.local)
659 if p.returncode != 0:
660 raise VCSException("Bzr update failed")
661 self.refreshed = True
663 revargs = list(['-r', rev] if rev else [])
664 p = SilentPopen(['bzr', 'revert'] + revargs, cwd=self.local)
665 if p.returncode != 0:
666 raise VCSException("Bzr revert failed")
669 p = SilentPopen(['bzr', 'tags'], cwd=self.local)
670 return [tag.split(' ')[0].strip() for tag in
671 p.stdout.splitlines()]
673 def retrieve_string(app_dir, string, xmlfiles=None):
676 os.path.join(app_dir, 'res'),
677 os.path.join(app_dir, 'src/main'),
682 for res_dir in res_dirs:
683 for r,d,f in os.walk(res_dir):
684 if r.endswith('/values'):
685 xmlfiles += [os.path.join(r,x) for x in f if x.endswith('.xml')]
688 if string.startswith('@string/'):
689 string_search = re.compile(r'.*"'+string[8:]+'".*?>([^<]+?)<.*').search
690 elif string.startswith('&') and string.endswith(';'):
691 string_search = re.compile(r'.*<!ENTITY.*'+string[1:-1]+'.*?"([^"]+?)".*>').search
693 if string_search is not None:
694 for xmlfile in xmlfiles:
695 for line in file(xmlfile):
696 matches = string_search(line)
698 return retrieve_string(app_dir, matches.group(1), xmlfiles)
701 return string.replace("\\'","'")
703 # Return list of existing files that will be used to find the highest vercode
704 def manifest_paths(app_dir, flavour):
706 possible_manifests = [ os.path.join(app_dir, 'AndroidManifest.xml'),
707 os.path.join(app_dir, 'src', 'main', 'AndroidManifest.xml'),
708 os.path.join(app_dir, 'src', 'AndroidManifest.xml'),
709 os.path.join(app_dir, 'build.gradle') ]
712 possible_manifests.append(
713 os.path.join(app_dir, 'src', flavour, 'AndroidManifest.xml'))
715 return [path for path in possible_manifests if os.path.isfile(path)]
717 # Retrieve the package name. Returns the name, or None if not found.
718 def fetch_real_name(app_dir, flavour):
719 app_search = re.compile(r'.*<application.*').search
720 name_search = re.compile(r'.*android:label="([^"]+)".*').search
722 for f in manifest_paths(app_dir, flavour):
723 if not has_extension(f, 'xml'):
725 logging.debug("fetch_real_name: Checking manifest at " + f)
731 matches = name_search(line)
733 stringname = matches.group(1)
734 logging.debug("fetch_real_name: using string " + stringname)
735 result = retrieve_string(app_dir, stringname)
737 result = result.strip()
741 # Retrieve the version name
742 def version_name(original, app_dir, flavour):
743 for f in manifest_paths(app_dir, flavour):
744 if not has_extension(f, 'xml'):
746 string = retrieve_string(app_dir, original)
751 def get_library_references(root_dir):
753 proppath = os.path.join(root_dir, 'project.properties')
754 if not os.path.isfile(proppath):
756 with open(proppath) as f:
757 for line in f.readlines():
758 if not line.startswith('android.library.reference.'):
760 path = line.split('=')[1].strip()
761 relpath = os.path.join(root_dir, path)
762 if not os.path.isdir(relpath):
764 logging.info("Found subproject at %s" % path)
765 libraries.append(path)
768 def ant_subprojects(root_dir):
769 subprojects = get_library_references(root_dir)
770 for subpath in subprojects:
771 subrelpath = os.path.join(root_dir, subpath)
772 for p in get_library_references(subrelpath):
773 relp = os.path.normpath(os.path.join(subpath,p))
774 if relp not in subprojects:
775 subprojects.insert(0, relp)
778 def remove_debuggable_flags(root_dir):
779 # Remove forced debuggable flags
780 logging.info("Removing debuggable flags")
781 for root, dirs, files in os.walk(root_dir):
782 if 'AndroidManifest.xml' in files:
783 path = os.path.join(root, 'AndroidManifest.xml')
784 p = FDroidPopen(['sed','-i', 's/android:debuggable="[^"]*"//g', path])
785 if p.returncode != 0:
786 raise BuildException("Failed to remove debuggable flags of %s" % path)
788 # Extract some information from the AndroidManifest.xml at the given path.
789 # Returns (version, vercode, package), any or all of which might be None.
790 # All values returned are strings.
791 def parse_androidmanifests(paths):
794 return (None, None, None)
796 vcsearch = re.compile(r'.*:versionCode="([0-9]+?)".*').search
797 vnsearch = re.compile(r'.*:versionName="([^"]+?)".*').search
798 psearch = re.compile(r'.*package="([^"]+)".*').search
800 vcsearch_g = re.compile(r'.*versionCode *=* *["\']*([0-9]+)["\']*').search
801 vnsearch_g = re.compile(r'.*versionName *=* *(["\'])((?:(?=(\\?))\3.)*?)\1.*').search
802 psearch_g = re.compile(r'.*packageName *=* *["\']([^"]+)["\'].*').search
810 gradle = has_extension(path, 'gradle')
813 # Remember package name, may be defined separately from version+vercode
814 package = max_package
816 for line in file(path):
819 matches = psearch_g(line)
821 matches = psearch(line)
823 package = matches.group(1)
826 matches = vnsearch_g(line)
828 matches = vnsearch(line)
830 version = matches.group(2 if gradle else 1)
833 matches = vcsearch_g(line)
835 matches = vcsearch(line)
837 vercode = matches.group(1)
839 # Better some package name than nothing
840 if max_package is None:
841 max_package = package
843 if max_vercode is None or (vercode is not None and vercode > max_vercode):
844 max_version = version
845 max_vercode = vercode
846 max_package = package
848 if max_version is None:
849 max_version = "Unknown"
851 return (max_version, max_vercode, max_package)
853 class BuildException(Exception):
854 def __init__(self, value, detail = None):
858 def get_wikitext(self):
859 ret = repr(self.value) + "\n"
863 txt = self.detail[-8192:] if len(self.detail) > 8192 else self.detail
869 ret = repr(self.value)
871 ret += "\n==== detail begin ====\n%s\n==== detail end ====" % self.detail.strip()
874 class VCSException(Exception):
875 def __init__(self, value):
879 return repr(self.value)
881 # Get the specified source library.
882 # Returns the path to it. Normally this is the path to be used when referencing
883 # it, which may be a subdirectory of the actual project. If you want the base
884 # directory of the project, pass 'basepath=True'.
885 def getsrclib(spec, srclib_dir, srclibpaths=[], subdir=None,
886 basepath=False, raw=False, prepare=True, preponly=False):
894 name, ref = spec.split('@')
896 number, name = name.split(':', 1)
898 name, subdir = name.split('/',1)
900 srclib_path = os.path.join('srclibs', name + ".txt")
902 if not os.path.exists(srclib_path):
903 raise BuildException('srclib ' + name + ' not found.')
905 srclib = metadata.parse_srclib(srclib_path)
907 sdir = os.path.join(srclib_dir, name)
910 vcs = getvcs(srclib["Repo Type"], srclib["Repo"], sdir)
911 vcs.srclib = (name, number, sdir)
913 vcs.gotorevision(ref)
920 libdir = os.path.join(sdir, subdir)
921 elif srclib["Subdir"]:
922 for subdir in srclib["Subdir"]:
923 libdir_candidate = os.path.join(sdir, subdir)
924 if os.path.exists(libdir_candidate):
925 libdir = libdir_candidate
931 if srclib["Srclibs"]:
933 for lib in srclib["Srclibs"].replace(';',',').split(','):
935 for t in srclibpaths:
940 raise BuildException('Missing recursive srclib %s for %s' % (
942 place_srclib(libdir, n, s_tuple[2])
945 remove_signing_keys(sdir)
946 remove_debuggable_flags(sdir)
950 if srclib["Prepare"]:
951 cmd = replace_config_vars(srclib["Prepare"])
953 p = FDroidPopen(['bash', '-x', '-c', cmd], cwd=libdir)
954 if p.returncode != 0:
955 raise BuildException("Error running prepare command for srclib %s"
961 return (name, number, libdir)
964 # Prepare the source code for a particular build
965 # 'vcs' - the appropriate vcs object for the application
966 # 'app' - the application details from the metadata
967 # 'build' - the build details from the metadata
968 # 'build_dir' - the path to the build directory, usually
970 # 'srclib_dir' - the path to the source libraries directory, usually
972 # 'extlib_dir' - the path to the external libraries directory, usually
974 # Returns the (root, srclibpaths) where:
975 # 'root' is the root directory, which may be the same as 'build_dir' or may
976 # be a subdirectory of it.
977 # 'srclibpaths' is information on the srclibs being used
978 def prepare_source(vcs, app, build, build_dir, srclib_dir, extlib_dir, onserver=False):
980 # Optionally, the actual app source can be in a subdirectory
981 if 'subdir' in build:
982 root_dir = os.path.join(build_dir, build['subdir'])
986 # Get a working copy of the right revision
987 logging.info("Getting source for revision " + build['commit'])
988 vcs.gotorevision(build['commit'])
990 # Initialise submodules if requred
991 if build['submodules']:
992 logging.info("Initialising submodules")
995 # Check that a subdir (if we're using one) exists. This has to happen
996 # after the checkout, since it might not exist elsewhere
997 if not os.path.exists(root_dir):
998 raise BuildException('Missing subdir ' + root_dir)
1000 # Run an init command if one is required
1002 cmd = replace_config_vars(build['init'])
1003 logging.info("Running 'init' commands in %s" % root_dir)
1005 p = FDroidPopen(['bash', '-x', '-c', cmd], cwd=root_dir)
1006 if p.returncode != 0:
1007 raise BuildException("Error running init command for %s:%s" %
1008 (app['id'], build['version']), p.stdout)
1010 # Apply patches if any
1011 if 'patch' in build:
1012 for patch in build['patch']:
1013 patch = patch.strip()
1014 logging.info("Applying " + patch)
1015 patch_path = os.path.join('metadata', app['id'], patch)
1016 p = FDroidPopen(['patch', '-p1', '-i', os.path.abspath(patch_path)], cwd=build_dir)
1017 if p.returncode != 0:
1018 raise BuildException("Failed to apply patch %s" % patch_path)
1020 # Get required source libraries
1022 if 'srclibs' in build:
1023 logging.info("Collecting source libraries")
1024 for lib in build['srclibs']:
1025 srclibpaths.append(getsrclib(lib, srclib_dir, srclibpaths,
1028 for name, number, libpath in srclibpaths:
1029 place_srclib(root_dir, int(number) if number else None, libpath)
1031 basesrclib = vcs.getsrclib()
1032 # If one was used for the main source, add that too.
1034 srclibpaths.append(basesrclib)
1036 # Update the local.properties file
1037 localprops = [ os.path.join(build_dir, 'local.properties') ]
1038 if 'subdir' in build:
1039 localprops += [ os.path.join(root_dir, 'local.properties') ]
1040 for path in localprops:
1041 if not os.path.isfile(path):
1043 logging.info("Updating properties file at %s" % path)
1048 # Fix old-fashioned 'sdk-location' by copying
1049 # from sdk.dir, if necessary
1050 if build['oldsdkloc']:
1051 sdkloc = re.match(r".*^sdk.dir=(\S+)$.*", props,
1053 props += "sdk-location=%s\n" % sdkloc
1055 props += "sdk.dir=%s\n" % config['sdk_path']
1056 props += "sdk-location=%s\n" % config['sdk_path']
1057 if 'ndk_path' in config:
1059 props += "ndk.dir=%s\n" % config['ndk_path']
1060 props += "ndk-location=%s\n" % config['ndk_path']
1061 # Add java.encoding if necessary
1062 if 'encoding' in build:
1063 props += "java.encoding=%s\n" % build['encoding']
1069 if build['type'] == 'gradle':
1070 flavour = build['gradle'].split('@')[0]
1071 if flavour in ['main', 'yes', '']:
1074 if 'target' in build:
1075 n = build["target"].split('-')[1]
1076 FDroidPopen(['sed', '-i',
1077 's@compileSdkVersion *[0-9]*@compileSdkVersion '+n+'@g',
1078 'build.gradle'], cwd=root_dir)
1079 if '@' in build['gradle']:
1080 gradle_dir = os.path.join(root_dir, build['gradle'].split('@',1)[1])
1081 gradle_dir = os.path.normpath(gradle_dir)
1082 FDroidPopen(['sed', '-i',
1083 's@compileSdkVersion *[0-9]*@compileSdkVersion '+n+'@g',
1084 'build.gradle'], cwd=gradle_dir)
1086 # Remove forced debuggable flags
1087 remove_debuggable_flags(root_dir)
1089 # Insert version code and number into the manifest if necessary
1090 if build['forceversion']:
1091 logging.info("Changing the version name")
1092 for path in manifest_paths(root_dir, flavour):
1093 if not os.path.isfile(path):
1095 if has_extension(path, 'xml'):
1096 p = SilentPopen(['sed', '-i',
1097 's/android:versionName="[^"]*"/android:versionName="' + build['version'] + '"/g',
1099 if p.returncode != 0:
1100 raise BuildException("Failed to amend manifest")
1101 elif has_extension(path, 'gradle'):
1102 p = SilentPopen(['sed', '-i',
1103 's/versionName *=* *"[^"]*"/versionName = "' + build['version'] + '"/g',
1105 if p.returncode != 0:
1106 raise BuildException("Failed to amend build.gradle")
1107 if build['forcevercode']:
1108 logging.info("Changing the version code")
1109 for path in manifest_paths(root_dir, flavour):
1110 if not os.path.isfile(path):
1112 if has_extension(path, 'xml'):
1113 p = SilentPopen(['sed', '-i',
1114 's/android:versionCode="[^"]*"/android:versionCode="' + build['vercode'] + '"/g',
1116 if p.returncode != 0:
1117 raise BuildException("Failed to amend manifest")
1118 elif has_extension(path, 'gradle'):
1119 p = SilentPopen(['sed', '-i',
1120 's/versionCode *=* *[0-9]*/versionCode = ' + build['vercode'] + '/g',
1122 if p.returncode != 0:
1123 raise BuildException("Failed to amend build.gradle")
1125 # Delete unwanted files
1127 for part in getpaths(build_dir, build, 'rm'):
1128 dest = os.path.join(build_dir, part)
1129 logging.info("Removing {0}".format(part))
1130 if os.path.lexists(dest):
1131 if os.path.islink(dest):
1132 SilentPopen(['unlink ' + dest], shell=True)
1134 SilentPopen(['rm -rf ' + dest], shell=True)
1136 logging.info("...but it didn't exist")
1138 remove_signing_keys(build_dir)
1140 # Add required external libraries
1141 if 'extlibs' in build:
1142 logging.info("Collecting prebuilt libraries")
1143 libsdir = os.path.join(root_dir, 'libs')
1144 if not os.path.exists(libsdir):
1146 for lib in build['extlibs']:
1148 logging.info("...installing extlib {0}".format(lib))
1149 libf = os.path.basename(lib)
1150 libsrc = os.path.join(extlib_dir, lib)
1151 if not os.path.exists(libsrc):
1152 raise BuildException("Missing extlib file {0}".format(libsrc))
1153 shutil.copyfile(libsrc, os.path.join(libsdir, libf))
1155 # Run a pre-build command if one is required
1156 if 'prebuild' in build:
1157 cmd = replace_config_vars(build['prebuild'])
1159 # Substitute source library paths into prebuild commands
1160 for name, number, libpath in srclibpaths:
1161 libpath = os.path.relpath(libpath, root_dir)
1162 cmd = cmd.replace('$$' + name + '$$', libpath)
1164 logging.info("Running 'prebuild' commands in %s" % root_dir)
1166 p = FDroidPopen(['bash', '-x', '-c', cmd], cwd=root_dir)
1167 if p.returncode != 0:
1168 raise BuildException("Error running prebuild command for %s:%s" %
1169 (app['id'], build['version']), p.stdout)
1171 updatemode = build.get('update', ['auto'])
1172 # Generate (or update) the ant build file, build.xml...
1173 if updatemode != ['no'] and build['type'] == 'ant':
1174 parms = [os.path.join(config['sdk_path'], 'tools', 'android'), 'update']
1175 lparms = parms + ['lib-project']
1176 parms = parms + ['project']
1178 if 'target' in build and build['target']:
1179 parms += ['-t', build['target']]
1180 lparms += ['-t', build['target']]
1181 if updatemode == ['auto']:
1182 update_dirs = ant_subprojects(root_dir) + ['.']
1184 update_dirs = updatemode
1186 for d in update_dirs:
1187 subdir = os.path.join(root_dir, d)
1189 print("Updating main project")
1190 cmd = parms + ['-p', d]
1192 print("Updating subproject %s" % d)
1193 cmd = lparms + ['-p', d]
1194 p = FDroidPopen(cmd, cwd=root_dir)
1195 # Check to see whether an error was returned without a proper exit
1196 # code (this is the case for the 'no target set or target invalid'
1198 if p.returncode != 0 or p.stdout.startswith("Error: "):
1199 raise BuildException("Failed to update project at %s" % d, p.stdout)
1200 # Clean update dirs via ant
1202 logging.info("Cleaning subproject %s" % d)
1203 p = FDroidPopen(['ant', 'clean'], cwd=subdir)
1205 return (root_dir, srclibpaths)
1207 # Split and extend via globbing the paths from a field
1208 def getpaths(build_dir, build, field):
1210 if field not in build:
1212 for p in build[field]:
1214 full_path = os.path.join(build_dir, p)
1215 full_path = os.path.normpath(full_path)
1216 paths += [r[len(build_dir)+1:] for r in glob.glob(full_path)]
1219 # Scan the source code in the given directory (and all subdirectories)
1220 # and return the number of fatal problems encountered
1221 def scan_source(build_dir, root_dir, thisbuild):
1225 # Common known non-free blobs (always lower case):
1227 re.compile(r'flurryagent', re.IGNORECASE),
1228 re.compile(r'paypal.*mpl', re.IGNORECASE),
1229 re.compile(r'libgoogleanalytics', re.IGNORECASE),
1230 re.compile(r'admob.*sdk.*android', re.IGNORECASE),
1231 re.compile(r'googleadview', re.IGNORECASE),
1232 re.compile(r'googleadmobadssdk', re.IGNORECASE),
1233 re.compile(r'google.*play.*services', re.IGNORECASE),
1234 re.compile(r'crittercism', re.IGNORECASE),
1235 re.compile(r'heyzap', re.IGNORECASE),
1236 re.compile(r'jpct.*ae', re.IGNORECASE),
1237 re.compile(r'youtubeandroidplayerapi', re.IGNORECASE),
1238 re.compile(r'bugsense', re.IGNORECASE),
1239 re.compile(r'crashlytics', re.IGNORECASE),
1240 re.compile(r'ouya.*sdk', re.IGNORECASE),
1243 scanignore = getpaths(build_dir, thisbuild, 'scanignore')
1244 scandelete = getpaths(build_dir, thisbuild, 'scandelete')
1247 ms = magic.open(magic.MIME_TYPE)
1249 except AttributeError:
1253 for i in scanignore:
1254 if fd.startswith(i):
1259 for i in scandelete:
1260 if fd.startswith(i):
1264 def removeproblem(what, fd, fp):
1265 logging.info('Removing %s at %s' % (what, fd))
1268 def warnproblem(what, fd):
1269 logging.warn('Found %s at %s' % (what, fd))
1271 def handleproblem(what, fd, fp):
1273 removeproblem(what, fd, fp)
1275 logging.error('Found %s at %s' % (what, fd))
1279 def insidedir(path, dirname):
1280 return path.endswith('/%s' % dirname) or '/%s/' % dirname in path
1282 # Iterate through all files in the source code
1283 for r,d,f in os.walk(build_dir):
1285 if any(insidedir(r, d) for d in ('.hg', '.git', '.svn', '.bzr')):
1290 # Path (relative) to the file
1291 fp = os.path.join(r, curfile)
1292 fd = fp[len(build_dir)+1:]
1294 # Check if this file has been explicitly excluded from scanning
1298 mime = magic.from_file(fp, mime=True) if ms is None else ms.file(fp)
1300 if mime == 'application/x-sharedlib':
1301 count += handleproblem('shared library', fd, fp)
1303 elif mime == 'application/x-archive':
1304 count += handleproblem('static library', fd, fp)
1306 elif mime == 'application/x-executable':
1307 count += handleproblem('binary executable', fd, fp)
1309 elif mime == 'application/x-java-applet':
1310 count += handleproblem('Java compiled class', fd, fp)
1315 'application/java-archive',
1316 'application/octet-stream',
1320 if has_extension(fp, 'apk'):
1321 removeproblem('APK file', fd, fp)
1323 elif has_extension(fp, 'jar'):
1325 if any(suspect.match(curfile) for suspect in usual_suspects):
1326 count += handleproblem('usual supect', fd, fp)
1328 warnproblem('JAR file', fd)
1330 elif has_extension(fp, 'zip'):
1331 warnproblem('ZIP file', fd)
1334 warnproblem('unknown compressed or binary file', fd)
1336 elif has_extension(fp, 'java'):
1337 for line in file(fp):
1338 if 'DexClassLoader' in line:
1339 count += handleproblem('DexClassLoader', fd, fp)
1344 # Presence of a jni directory without buildjni=yes might
1345 # indicate a problem (if it's not a problem, explicitly use
1346 # buildjni=no to bypass this check)
1347 if (os.path.exists(os.path.join(root_dir, 'jni')) and
1348 thisbuild.get('buildjni') is None):
1349 logging.warn('Found jni directory, but buildjni is not enabled')
1358 self.path = os.path.join('stats', 'known_apks.txt')
1360 if os.path.exists(self.path):
1361 for line in file( self.path):
1362 t = line.rstrip().split(' ')
1364 self.apks[t[0]] = (t[1], None)
1366 self.apks[t[0]] = (t[1], time.strptime(t[2], '%Y-%m-%d'))
1367 self.changed = False
1369 def writeifchanged(self):
1371 if not os.path.exists('stats'):
1373 f = open(self.path, 'w')
1375 for apk, app in self.apks.iteritems():
1377 line = apk + ' ' + appid
1379 line += ' ' + time.strftime('%Y-%m-%d', added)
1381 for line in sorted(lst):
1382 f.write(line + '\n')
1385 # Record an apk (if it's new, otherwise does nothing)
1386 # Returns the date it was added.
1387 def recordapk(self, apk, app):
1388 if not apk in self.apks:
1389 self.apks[apk] = (app, time.gmtime(time.time()))
1391 _, added = self.apks[apk]
1394 # Look up information - given the 'apkname', returns (app id, date added/None).
1395 # Or returns None for an unknown apk.
1396 def getapp(self, apkname):
1397 if apkname in self.apks:
1398 return self.apks[apkname]
1401 # Get the most recent 'num' apps added to the repo, as a list of package ids
1402 # with the most recent first.
1403 def getlatest(self, num):
1405 for apk, app in self.apks.iteritems():
1409 if apps[appid] > added:
1413 sortedapps = sorted(apps.iteritems(), key=operator.itemgetter(1))[-num:]
1414 lst = [app for app,_ in sortedapps]
1418 def isApkDebuggable(apkfile, config):
1419 """Returns True if the given apk file is debuggable
1421 :param apkfile: full path to the apk to check"""
1423 p = SilentPopen([os.path.join(config['sdk_path'],
1424 'build-tools', config['build_tools'], 'aapt'),
1425 'dump', 'xmltree', apkfile, 'AndroidManifest.xml'])
1426 if p.returncode != 0:
1427 logging.critical("Failed to get apk manifest information")
1429 for line in p.stdout.splitlines():
1430 if 'android:debuggable' in line and not line.endswith('0x0'):
1435 class AsynchronousFileReader(threading.Thread):
1437 Helper class to implement asynchronous reading of a file
1438 in a separate thread. Pushes read lines on a queue to
1439 be consumed in another thread.
1442 def __init__(self, fd, queue):
1443 assert isinstance(queue, Queue.Queue)
1444 assert callable(fd.readline)
1445 threading.Thread.__init__(self)
1450 '''The body of the tread: read lines and put them on the queue.'''
1451 for line in iter(self._fd.readline, ''):
1452 self._queue.put(line)
1455 '''Check whether there is no more content to expect.'''
1456 return not self.is_alive() and self._queue.empty()
1462 def SilentPopen(commands, cwd=None, shell=False):
1463 return FDroidPopen(commands, cwd=cwd, shell=shell, output=False)
1465 def FDroidPopen(commands, cwd=None, shell=False, output=True):
1467 Run a command and capture the possibly huge output.
1469 :param commands: command and argument list like in subprocess.Popen
1470 :param cwd: optionally specifies a working directory
1471 :returns: A PopenResult.
1476 cwd = os.path.normpath(cwd)
1477 logging.info("Directory: %s" % cwd)
1478 logging.info("> %s" % ' '.join(commands))
1480 result = PopenResult()
1481 p = subprocess.Popen(commands, cwd=cwd, shell=shell,
1482 stdout=subprocess.PIPE, stderr=subprocess.STDOUT)
1484 stdout_queue = Queue.Queue()
1485 stdout_reader = AsynchronousFileReader(p.stdout, stdout_queue)
1486 stdout_reader.start()
1488 # Check the queue for output (until there is no more to get)
1489 while not stdout_reader.eof():
1490 while not stdout_queue.empty():
1491 line = stdout_queue.get()
1492 if output and options.verbose:
1493 # Output directly to console
1494 sys.stdout.write(line)
1496 result.stdout += line
1501 result.returncode = p.returncode
1504 def remove_signing_keys(build_dir):
1505 comment = re.compile(r'[ ]*//')
1506 signing_configs = re.compile(r'^[\t ]*signingConfigs[ \t]*{[ \t]*$')
1508 re.compile(r'^[\t ]*signingConfig [^ ]*$'),
1509 re.compile(r'.*android\.signingConfigs\..*'),
1510 re.compile(r'.*variant\.outputFile = .*'),
1511 re.compile(r'.*\.readLine\(.*'),
1513 for root, dirs, files in os.walk(build_dir):
1514 if 'build.gradle' in files:
1515 path = os.path.join(root, 'build.gradle')
1517 with open(path, "r") as o:
1518 lines = o.readlines()
1521 with open(path, "w") as o:
1523 if comment.match(line):
1527 opened += line.count('{')
1528 opened -= line.count('}')
1531 if signing_configs.match(line):
1535 if any(s.match(line) for s in line_matches):
1541 logging.info("Cleaned build.gradle of keysigning configs at %s" % path)
1544 'project.properties',
1546 'default.properties',
1549 if propfile in files:
1550 path = os.path.join(root, propfile)
1552 with open(path, "r") as o:
1553 lines = o.readlines()
1555 with open(path, "w") as o:
1557 if line.startswith('key.store'):
1559 if line.startswith('key.alias'):
1563 logging.info("Cleaned %s of keysigning configs at %s" % (propfile,path))
1565 def replace_config_vars(cmd):
1566 cmd = cmd.replace('$$SDK$$', config['sdk_path'])
1567 cmd = cmd.replace('$$NDK$$', config['ndk_path'])
1568 cmd = cmd.replace('$$MVN3$$', config['mvn3'])
1571 def place_srclib(root_dir, number, libpath):
1574 relpath = os.path.relpath(libpath, root_dir)
1575 proppath = os.path.join(root_dir, 'project.properties')
1578 if os.path.isfile(proppath):
1579 with open(proppath, "r") as o:
1580 lines = o.readlines()
1582 with open(proppath, "w") as o:
1585 if line.startswith('android.library.reference.%d=' % number):
1586 o.write('android.library.reference.%d=%s\n' % (number,relpath))
1591 o.write('android.library.reference.%d=%s\n' % (number,relpath))