Files
ImpTune/imptune/config.py
T
kawaandClaude Opus 5 2c06806814 feat: driver rename, driver icons, web image + driver search
Driver rename and icons: `Driver.display_name` plus a `DriverIcon` table, both
global/shared like the `Driver` row they hang off, so a rename or an icon is
what every Owner sees. The rename/icon dialog keeps its forms as siblings
(nested forms are invalid HTML) and the icon routes return an `hx-swap-oob`
thumbnail refresh rather than re-rendering the table, which would tear the open
`<dialog>` out of the DOM.

Web image picker: `GET /web/images` renders a pickable grid for a printer or a
driver icon, with the search term prefilled from the entity name and editable.
Picking one downloads it server-side and normalizes it.

Driver download search: `GET /web/drivers` searches for a vendor-wide driver
(the term is rewritten into the vendor's real product name for 15 brands) or for
the exact model as typed. Links only — nothing is downloaded, and the fragment
says the results are unvetted.

Icon uploads no longer reject off-size or non-PNG files: `normalize_icon()`
letterboxes any decodable raster into a 256x256 PNG. An already-exact 256x256
PNG is returned byte-identical, because icon storage is content-addressed and
re-encoding would move the file on every save.

`fetch_image()` makes the request from the server, so `assert_fetchable()`
refuses any URL resolving to a private, loopback, or link-local address, and
re-runs on every redirect. ImpTune sits on the same LAN as the printers it
configures; an unguarded fetcher would be a port scanner for anyone who can
reach the UI.

DuckDuckGo is scraped, not called through an API — no key needed, but fragile,
so both search functions swallow parse failures and return [] instead of 500ing
a page. `WEB_SEARCH=false` disables every outbound request and hides the
controls, for air-gapped installs.

Also: one shared `Jinja2Templates` in `templating.py` instead of five per-router
instances, so a template global is declared once; `_add_missing_columns()` in
`database.py` adds new nullable columns to a pre-existing table, which
`create_tables(safe=True)` skips; `db_env` in test_db.py now closes its
connection on teardown, or the next test's ORM writes land in the previous
test's DB file.

Co-Authored-By: Claude Opus 5 (1M context) <noreply@anthropic.com>
2026-08-05 10:44:47 +02:00

41 lines
1.5 KiB
Python

import os
from pathlib import Path
from dotenv import load_dotenv
load_dotenv()
DATA_DIR = os.environ.get("DATA_DIR", "/data")
PORT = int(os.environ.get("PORT", "8000"))
_SINGLE_USER_VALUES = frozenset({"single_user", "single-user", "singleuser", "single"})
def parse_cookie_mode(raw: str) -> tuple[bool, bool]:
"""Read `COOKIE_SECURE` as a three-way mode → `(cookie_secure, single_user)`.
- `true` (default): cookie-scoped Owners, `Secure` + persistent cookie.
- `false`: cookie-scoped Owners over plain HTTP, memory-only cookie —
browsers drop `Secure` cookies on HTTP, so the flag has to come off.
- `single_user`: no cookie at all. Every request shares one Owner, so a
test box or a local single-person deployment needs no session plumbing.
Anyone who can reach the app gets that data — there is no separation
left to enforce, which is the point.
"""
value = raw.strip().lower()
if value in _SINGLE_USER_VALUES:
return False, True
return value != "false", False
COOKIE_SECURE, SINGLE_USER = parse_cookie_mode(os.environ.get("COOKIE_SECURE", "true"))
# Outbound lookups (image search, driver-page search, image download). The only
# feature that leaves the box — set false for an air-gapped deployment and the
# UI hides every search control instead of timing out on each one.
WEB_SEARCH = os.environ.get("WEB_SEARCH", "true").strip().lower() != "false"
DB_PATH = str(Path(DATA_DIR) / "imptune.db")
DRIVERS_DIR = str(Path(DATA_DIR) / "drivers")
ICONS_DIR = str(Path(DATA_DIR) / "icons")