project.rb 64.7 KB
Newer Older
1 2
# frozen_string_literal: true

3 4
require 'carrierwave/orm/activerecord'

G
gitlabhq 已提交
5
class Project < ActiveRecord::Base
6
  include Gitlab::ConfigHelper
7
  include Gitlab::ShellAdapter
8
  include Gitlab::VisibilityLevel
R
Rémy Coutable 已提交
9
  include AccessRequestable
10
  include Avatarable
11
  include CacheMarkdownField
12 13
  include Referable
  include Sortable
14
  include AfterCommitQueue
15
  include CaseSensitivity
16
  include TokenAuthenticatable
17
  include ValidAttribute
F
Felipe Artur 已提交
18
  include ProjectFeaturesCompatibility
19
  include SelectForProjectAuthorization
20
  include Presentable
21
  include Routable
22
  include GroupDescendant
23
  include Gitlab::SQL::Pattern
24
  include DeploymentPlatform
25
  include ::Gitlab::Utils::StrongMemoize
26
  include ChronicDurationAttribute
27
  include FastDestroyAll::Helpers
J
Jan Provaznik 已提交
28
  include WithUploads
29
  include BatchDestroyDependentAssociations
30
  include FeatureGate
Y
Yorick Peterse 已提交
31
  include OptionallySearch
32
  include FromUnion
33
  include IgnorableColumn
34
  extend Gitlab::Cache::RequestCache
R
Robert Speicher 已提交
35

36
  extend Gitlab::ConfigHelper
37

38
  BoardLimitExceeded = Class.new(StandardError)
39

40
  STATISTICS_ATTRIBUTE = 'repositories_count'.freeze
41
  NUMBER_OF_PERMITTED_BOARDS = 1
D
Douwe Maan 已提交
42
  UNKNOWN_IMPORT_URL = 'http://unknown.git'.freeze
43 44
  # Hashed Storage versions handle rolling out new storage to project and dependents models:
  # nil: legacy
45 46 47
  # 1: repository
  # 2: attachments
  LATEST_STORAGE_VERSION = 2
48 49 50 51
  HASHED_STORAGE_FEATURES = {
    repository: 1,
    attachments: 2
  }.freeze
J
Jared Szechy 已提交
52

53 54 55 56 57
  VALID_IMPORT_PORTS = [80, 443].freeze
  VALID_IMPORT_PROTOCOLS = %w(http https git).freeze

  VALID_MIRROR_PORTS = [22, 80, 443].freeze
  VALID_MIRROR_PROTOCOLS = %w(http https ssh git).freeze
58

59 60
  ignore_column :import_status, :import_jid, :import_error

61 62
  cache_markdown_field :description, pipeline: :description

63
  delegate :feature_available?, :builds_enabled?, :wiki_enabled?,
64 65
           :merge_requests_enabled?, :issues_enabled?, :pages_enabled?, :public_pages?,
           to: :project_feature, allow_nil: true
F
Felipe Artur 已提交
66

67
  delegate :base_dir, :disk_path, :ensure_storage_path_exists, to: :storage
68

69 70 71 72 73 74
  delegate :scheduled?, :started?, :in_progress?,
    :failed?, :finished?,
    prefix: :import, to: :import_state, allow_nil: true

  delegate :no_import?, to: :import_state, allow_nil: true

75
  default_value_for :archived, false
76
  default_value_for :visibility_level, gitlab_config_features.visibility_level
77
  default_value_for :resolve_outdated_diff_discussions, false
78
  default_value_for :container_registry_enabled, gitlab_config_features.container_registry
79 80
  default_value_for(:repository_storage) { Gitlab::CurrentSettings.pick_repository_storage }
  default_value_for(:shared_runners_enabled) { Gitlab::CurrentSettings.shared_runners_enabled }
F
Felipe Artur 已提交
81 82 83 84 85
  default_value_for :issues_enabled, gitlab_config_features.issues
  default_value_for :merge_requests_enabled, gitlab_config_features.merge_requests
  default_value_for :builds_enabled, gitlab_config_features.builds
  default_value_for :wiki_enabled, gitlab_config_features.wiki
  default_value_for :snippets_enabled, gitlab_config_features.snippets
86
  default_value_for :only_allow_merge_if_all_discussions_are_resolved, false
87

88
  add_authentication_token_field :runners_token, encrypted: true, migrating: true
89

90
  before_validation :mark_remote_mirrors_for_removal, if: -> { RemoteMirror.table_exists? }
91

92
  before_save :ensure_runners_token
93

94
  after_save :update_project_statistics, if: :namespace_id_changed?
95 96 97

  after_save :create_import_state, if: ->(project) { project.import? && project.import_state.nil? }

98
  after_create :create_project_feature, unless: :project_feature
99 100 101 102 103

  after_create :create_ci_cd_settings,
    unless: :ci_cd_settings,
    if: proc { ProjectCiCdSetting.available? }

M
Mark Chao 已提交
104
  after_create :set_timestamps_for_create
105
  after_update :update_forks_visibility_level
106

107
  before_destroy :remove_private_deploy_keys
108

109
  use_fast_destroy :build_trace_chunks
110

111
  after_destroy -> { run_after_commit { remove_pages } }
112
  after_destroy :remove_exports
K
Kamil Trzcinski 已提交
113

114 115
  after_validation :check_pending_delete

116
  # Storage specific hooks
117
  after_initialize :use_hashed_storage
118
  after_create :check_repository_absence!
119 120
  after_create :ensure_storage_path_exists
  after_save :ensure_storage_path_exists, if: :namespace_id_changed?
121

122
  acts_as_ordered_taggable
D
Dmitriy Zaporozhets 已提交
123

124
  attr_accessor :old_path_with_namespace
125
  attr_accessor :template_name
126
  attr_writer :pipeline_status
S
Stan Hu 已提交
127
  attr_accessor :skip_disk_validation
128

129 130
  alias_attribute :title, :name

131
  # Relations
N
Nick Thomas 已提交
132
  belongs_to :pool_repository
133
  belongs_to :creator, class_name: 'User'
134
  belongs_to :group, -> { where(type: 'Group') }, foreign_key: 'namespace_id'
135
  belongs_to :namespace
136 137
  alias_method :parent, :namespace
  alias_attribute :parent_id, :namespace_id
138

139
  has_one :last_event, -> {order 'events.created_at DESC'}, class_name: 'Event'
140
  has_many :boards, before_add: :validate_board_limit
F
Felipe Artur 已提交
141

142
  # Project services
143
  has_one :campfire_service
B
blackst0ne 已提交
144
  has_one :discord_service
145 146 147 148 149 150 151 152 153 154 155 156 157 158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173
  has_one :drone_ci_service
  has_one :emails_on_push_service
  has_one :pipelines_email_service
  has_one :irker_service
  has_one :pivotaltracker_service
  has_one :hipchat_service
  has_one :flowdock_service
  has_one :assembla_service
  has_one :asana_service
  has_one :mattermost_slash_commands_service
  has_one :mattermost_service
  has_one :slack_slash_commands_service
  has_one :slack_service
  has_one :buildkite_service
  has_one :bamboo_service
  has_one :teamcity_service
  has_one :pushover_service
  has_one :jira_service
  has_one :redmine_service
  has_one :custom_issue_tracker_service
  has_one :bugzilla_service
  has_one :gitlab_issue_tracker_service, inverse_of: :project
  has_one :external_wiki_service
  has_one :kubernetes_service, inverse_of: :project
  has_one :prometheus_service, inverse_of: :project
  has_one :mock_ci_service
  has_one :mock_deployment_service
  has_one :mock_monitoring_service
  has_one :microsoft_teams_service
M
Matt Coleman 已提交
174
  has_one :packagist_service
175
  has_one :hangouts_chat_service
176

177 178 179 180 181
  has_one :root_of_fork_network,
          foreign_key: 'root_project_id',
          inverse_of: :root_project,
          class_name: 'ForkNetwork'
  has_one :fork_network_member
182
  has_one :fork_network, through: :fork_network_member
183 184 185
  has_one :forked_from_project, through: :fork_network_member
  has_many :forked_to_members, class_name: 'ForkNetworkMember', foreign_key: 'forked_from_project_id'
  has_many :forks, through: :forked_to_members, source: :project, inverse_of: :forked_from_project
186

187
  has_one :import_state, autosave: true, class_name: 'ProjectImportState', inverse_of: :project
188
  has_one :import_export_upload, dependent: :destroy # rubocop:disable Cop/ActiveRecordDependent
189
  has_one :project_repository, inverse_of: :project
190

191
  # Merge Requests for target project should be removed with it
192
  has_many :merge_requests, foreign_key: 'target_project_id', inverse_of: :target_project
193
  has_many :source_of_merge_requests, foreign_key: 'source_project_id', class_name: 'MergeRequest'
194 195 196 197 198 199 200 201 202 203
  has_many :issues
  has_many :labels, class_name: 'ProjectLabel'
  has_many :services
  has_many :events
  has_many :milestones
  has_many :notes
  has_many :snippets, class_name: 'ProjectSnippet'
  has_many :hooks, class_name: 'ProjectHook'
  has_many :protected_branches
  has_many :protected_tags
204
  has_many :repository_languages, -> { order "share DESC" }
205

206
  has_many :project_authorizations
207
  has_many :authorized_users, through: :project_authorizations, source: :user, class_name: 'User'
208
  has_many :project_members, -> { where(requested_at: nil) },
209
    as: :source, dependent: :delete_all # rubocop:disable Cop/ActiveRecordDependent
210

R
Rémy Coutable 已提交
211
  alias_method :members, :project_members
212
  has_many :users, through: :project_members
213

214
  has_many :requesters, -> { where.not(requested_at: nil) },
215
    as: :source, class_name: 'ProjectMember', dependent: :delete_all # rubocop:disable Cop/ActiveRecordDependent
216
  has_many :members_and_requesters, as: :source, class_name: 'ProjectMember'
217

218
  has_many :deploy_keys_projects
219
  has_many :deploy_keys, through: :deploy_keys_projects
220
  has_many :users_star_projects
221
  has_many :starrers, through: :users_star_projects, source: :user
222
  has_many :releases
223
  has_many :lfs_objects_projects, dependent: :destroy # rubocop:disable Cop/ActiveRecordDependent
224
  has_many :lfs_objects, through: :lfs_objects_projects
225
  has_many :lfs_file_locks
226
  has_many :project_group_links
227
  has_many :invited_groups, through: :project_group_links, source: :group
228 229
  has_many :pages_domains
  has_many :todos
230
  has_many :notification_settings, as: :source, dependent: :delete_all # rubocop:disable Cop/ActiveRecordDependent
231

232 233
  has_many :internal_ids

234
  has_one :import_data, class_name: 'ProjectImportData', inverse_of: :project, autosave: true
235
  has_one :project_feature, inverse_of: :project
236
  has_one :statistics, class_name: 'ProjectStatistics'
237

S
Shinya Maeda 已提交
238
  has_one :cluster_project, class_name: 'Clusters::Project'
239
  has_many :clusters, through: :cluster_project, class_name: 'Clusters::Cluster'
240
  has_many :cluster_ingresses, through: :clusters, source: :application_ingress, class_name: 'Clusters::Applications::Ingress'
241
  has_many :kubernetes_namespaces, class_name: 'Clusters::KubernetesNamespace'
242

243 244
  has_many :prometheus_metrics

245 246 247
  # Container repositories need to remove data from the container registry,
  # which is not managed by the DB. Hence we're still using dependent: :destroy
  # here.
248
  has_many :container_repositories, dependent: :destroy # rubocop:disable Cop/ActiveRecordDependent
K
Kamil Trzcinski 已提交
249

250
  has_many :commit_statuses
251 252 253 254 255 256 257 258 259 260 261
  # The relation :all_pipelines is intented to be used when we want to get the
  # whole list of pipelines associated to the project
  has_many :all_pipelines, class_name: 'Ci::Pipeline', inverse_of: :project
  # The relation :ci_pipelines is intented to be used when we want to get only
  # those pipeline which are directly related to CI. There are
  # other pipelines, like webide ones, that we won't retrieve
  # if we use this relation.
  has_many :ci_pipelines,
          -> { Feature.enabled?(:pipeline_ci_sources_only, default_enabled: true) ? ci_sources : all },
          class_name: 'Ci::Pipeline',
          inverse_of: :project
262
  has_many :stages, class_name: 'Ci::Stage', inverse_of: :project
263 264 265 266 267

  # Ci::Build objects store data on the file system such as artifact files and
  # build traces. Currently there's no efficient way of removing this data in
  # bulk that doesn't involve loading the rows into memory. As a result we're
  # still using `dependent: :destroy` here.
268
  has_many :builds, class_name: 'Ci::Build', inverse_of: :project, dependent: :destroy # rubocop:disable Cop/ActiveRecordDependent
269
  has_many :build_trace_section_names, class_name: 'Ci::BuildTraceSectionName'
270
  has_many :build_trace_chunks, class_name: 'Ci::BuildTraceChunk', through: :builds, source: :trace_chunks
K
Kamil Trzciński 已提交
271
  has_many :runner_projects, class_name: 'Ci::RunnerProject', inverse_of: :project
272
  has_many :runners, through: :runner_projects, source: :runner, class_name: 'Ci::Runner'
273
  has_many :variables, class_name: 'Ci::Variable'
274 275
  has_many :triggers, class_name: 'Ci::Trigger'
  has_many :environments
S
Shinya Maeda 已提交
276
  has_many :deployments, -> { success }
277
  has_many :pipeline_schedules, class_name: 'Ci::PipelineSchedule'
M
Mayra Cabrera 已提交
278
  has_many :project_deploy_tokens
279
  has_many :deploy_tokens, through: :project_deploy_tokens
K
Kamil Trzcinski 已提交
280

281
  has_one :auto_devops, class_name: 'ProjectAutoDevops'
282
  has_many :custom_attributes, class_name: 'ProjectCustomAttribute'
283

284
  has_many :project_badges, class_name: 'ProjectBadge'
285
  has_one :ci_cd_settings, class_name: 'ProjectCiCdSetting', inverse_of: :project, autosave: true, dependent: :destroy # rubocop:disable Cop/ActiveRecordDependent
286

287 288
  has_many :remote_mirrors, inverse_of: :project

289
  accepts_nested_attributes_for :variables, allow_destroy: true
290
  accepts_nested_attributes_for :project_feature, update_only: true
291
  accepts_nested_attributes_for :import_data
292
  accepts_nested_attributes_for :auto_devops, update_only: true
293

294 295 296 297
  accepts_nested_attributes_for :remote_mirrors,
                                allow_destroy: true,
                                reject_if: ->(attrs) { attrs[:id].blank? && attrs[:url].blank? }

298
  delegate :name, to: :owner, allow_nil: true, prefix: true
299
  delegate :members, to: :team, prefix: true
300
  delegate :add_user, :add_users, to: :team
301 302
  delegate :add_guest, :add_reporter, :add_developer, :add_maintainer, :add_role, to: :team
  delegate :add_master, to: :team # @deprecated
303
  delegate :group_runners_enabled, :group_runners_enabled=, :group_runners_enabled?, to: :ci_cd_settings
304 305
  delegate :group_clusters_enabled?, to: :group, allow_nil: true
  delegate :root_ancestor, to: :namespace, allow_nil: true
306

A
Andrey Kumanyaev 已提交
307
  # Validations
308
  validates :creator, presence: true, on: :create
309
  validates :description, length: { maximum: 2000 }, allow_blank: true
310
  validates :ci_config_path,
311
    format: { without: %r{(\.{2}|\A/)},
312
              message: 'cannot include leading slash or directory traversal.' },
313 314
    length: { maximum: 255 },
    allow_blank: true
315 316
  validates :name,
    presence: true,
317
    length: { maximum: 255 },
318
    format: { with: Gitlab::Regex.project_name_regex,
D
Douwe Maan 已提交
319
              message: Gitlab::Regex.project_name_regex_message }
320 321
  validates :path,
    presence: true,
322
    project_path: true,
323
    length: { maximum: 255 }
324

325
  validates :namespace, presence: true
D
Douwe Maan 已提交
326
  validates :name, uniqueness: { scope: :namespace_id }
327 328
  validates :import_url, url: { protocols: ->(project) { project.persisted? ? VALID_MIRROR_PROTOCOLS : VALID_IMPORT_PROTOCOLS },
                                ports: ->(project) { project.persisted? ? VALID_MIRROR_PORTS : VALID_IMPORT_PORTS },
329
                                allow_localhost: false,
330
                                enforce_user: true }, if: [:external_import?, :import_url_changed?]
331
  validates :star_count, numericality: { greater_than_or_equal_to: 0 }
332
  validate :check_limit, on: :create
333
  validate :check_repository_path_availability, on: :update, if: ->(project) { project.renamed? }
D
Douwe Maan 已提交
334
  validate :visibility_level_allowed_by_group
D
Douwe Maan 已提交
335
  validate :visibility_level_allowed_as_fork
336
  validate :check_wiki_path_conflict
R
Rob Watson 已提交
337
  validate :validate_pages_https_only, if: -> { changes.has_key?(:pages_https_only) }
338 339 340
  validates :repository_storage,
    presence: true,
    inclusion: { in: ->(_object) { Gitlab.config.repositories.storages.keys } }
341
  validates :variables, variable_duplicates: { scope: :environment_scope }
342
  validates :bfg_object_map, file_size: { maximum: :max_attachment_size }
343

344
  # Scopes
345
  scope :pending_delete, -> { where(pending_delete: true) }
346
  scope :without_deleted, -> { where(pending_delete: false) }
347

348 349 350
  scope :with_storage_feature, ->(feature) { where('storage_version >= :version', version: HASHED_STORAGE_FEATURES[feature]) }
  scope :without_storage_feature, ->(feature) { where('storage_version < :version OR storage_version IS NULL', version: HASHED_STORAGE_FEATURES[feature]) }
  scope :with_unmigrated_storage, -> { where('storage_version < :version OR storage_version IS NULL', version: LATEST_STORAGE_VERSION) }
351

352 353
  # last_activity_at is throttled every minute, but last_repository_updated_at is updated with every push
  scope :sorted_by_activity, -> { reorder("GREATEST(COALESCE(last_activity_at, '1970-01-01'), COALESCE(last_repository_updated_at, '1970-01-01')) DESC") }
354
  scope :sorted_by_stars, -> { reorder(star_count: :desc) }
355

356
  scope :in_namespace, ->(namespace_ids) { where(namespace_id: namespace_ids) }
D
Dmitriy Zaporozhets 已提交
357
  scope :personal, ->(user) { where(namespace_id: user.namespace_id) }
358
  scope :joined, ->(user) { where('namespace_id != ?', user.namespace_id) }
T
Toon Claes 已提交
359
  scope :starred_by, ->(user) { joins(:users_star_projects).where('users_star_projects.user_id': user.id) }
R
Rémy Coutable 已提交
360
  scope :visible_to_user, ->(user) { where(id: user.authorized_projects.select(:id).reorder(nil)) }
361
  scope :visible_to_user_and_access_level, ->(user, access_level) { where(id: user.authorized_projects.where('project_authorizations.access_level >= ?', access_level).select(:id).reorder(nil)) }
362
  scope :archived, -> { where(archived: true) }
363
  scope :non_archived, -> { where(archived: false) }
R
Rubén Dávila 已提交
364
  scope :for_milestones, ->(ids) { joins(:milestones).where('milestones.id' => ids).distinct }
R
Rémy Coutable 已提交
365
  scope :with_push, -> { joins(:events).where('events.action = ?', Event::PUSHED) }
366
  scope :with_project_feature, -> { joins('LEFT JOIN project_features ON projects.id = project_features.project_id') }
M
Markus Koller 已提交
367
  scope :with_statistics, -> { includes(:statistics) }
368
  scope :with_shared_runners, -> { where(shared_runners_enabled: true) }
369 370 371
  scope :inside_path, ->(path) do
    # We need routes alias rs for JOIN so it does not conflict with
    # includes(:route) which we use in ProjectsFinder.
372 373
    joins("INNER JOIN routes rs ON rs.source_id = projects.id AND rs.source_type = 'Project'")
      .where('rs.path LIKE ?', "#{sanitize_sql_like(path)}/%")
374
  end
375 376 377 378

  # "enabled" here means "not disabled". It includes private features!
  scope :with_feature_enabled, ->(feature) {
    access_level_attribute = ProjectFeature.access_level_attribute(feature)
379
    with_project_feature.where(project_features: { access_level_attribute => [nil, ProjectFeature::PRIVATE, ProjectFeature::ENABLED, ProjectFeature::PUBLIC] })
380 381 382 383 384 385 386 387 388 389
  }

  # Picks a feature where the level is exactly that given.
  scope :with_feature_access_level, ->(feature, level) {
    access_level_attribute = ProjectFeature.access_level_attribute(feature)
    with_project_feature.where(project_features: { access_level_attribute => level })
  }

  scope :with_builds_enabled, -> { with_feature_enabled(:builds) }
  scope :with_issues_enabled, -> { with_feature_enabled(:issues) }
390
  scope :with_issues_available_for_user, ->(current_user) { with_feature_available_for_user(:issues, current_user) }
391
  scope :with_merge_requests_enabled, -> { with_feature_enabled(:merge_requests) }
392
  scope :with_remote_mirrors, -> { joins(:remote_mirrors).where(remote_mirrors: { enabled: true }).distinct }
393

394 395 396 397 398
  scope :with_group_runners_enabled, -> do
    joins(:ci_cd_settings)
    .where(project_ci_cd_settings: { group_runners_enabled: true })
  end

399 400 401 402 403 404
  scope :missing_kubernetes_namespace, -> (kubernetes_namespaces) do
    subquery = kubernetes_namespaces.select('1').where('clusters_kubernetes_namespaces.project_id = projects.id')

    where('NOT EXISTS (?)', subquery)
  end

405
  enum auto_cancel_pending_pipelines: { disabled: 0, enabled: 1 }
406

407 408
  chronic_duration_attr :build_timeout_human_readable, :build_timeout,
    default: 3600, error_message: 'Maximum job timeout has a value which could not be accepted'
409 410

  validates :build_timeout, allow_nil: true,
411 412 413 414
                            numericality: { greater_than_or_equal_to: 10.minutes,
                                            less_than: 1.month,
                                            only_integer: true,
                                            message: 'needs to be beetween 10 minutes and 1 month' }
415

416 417 418
  # Used by Projects::CleanupService to hold a map of rewritten object IDs
  mount_uploader :bfg_object_map, AttachmentUploader

419 420 421 422 423 424 425
  # Returns a project, if it is not about to be removed.
  #
  # id - The ID of the project to retrieve.
  def self.find_without_deleted(id)
    without_deleted.find_by_id(id)
  end

Y
Yorick Peterse 已提交
426 427 428 429 430 431 432 433 434 435 436 437 438 439 440 441 442 443 444 445
  # Paginates a collection using a `WHERE id < ?` condition.
  #
  # before - A project ID to use for filtering out projects with an equal or
  #      greater ID. If no ID is given, all projects are included.
  #
  # limit - The maximum number of rows to include.
  def self.paginate_in_descending_order_using_id(
    before: nil,
    limit: Kaminari.config.default_per_page
  )
    relation = order_id_desc.limit(limit)
    relation = relation.where('projects.id < ?', before) if before

    relation
  end

  def self.eager_load_namespace_and_owner
    includes(namespace: :owner)
  end

446 447
  # Returns a collection of projects that is either public or visible to the
  # logged in user.
448 449
  def self.public_or_visible_to_user(user = nil)
    if user
450 451 452
      where('EXISTS (?) OR projects.visibility_level IN (?)',
            user.authorizations_for_projects,
            Gitlab::VisibilityLevel.levels_for_user(user))
453
    else
454
      public_to_user
455 456 457
    end
  end

458
  # project features may be "disabled", "internal", "enabled" or "public". If "internal",
459
  # they are only available to team members. This scope returns projects where
460
  # the feature is either public, enabled, or internal with permission for the user.
461 462 463 464
  #
  # This method uses an optimised version of `with_feature_access_level` for
  # logged in users to more efficiently get private projects with the given
  # feature.
465
  def self.with_feature_available_for_user(feature, user)
466
    visible = [nil, ProjectFeature::ENABLED, ProjectFeature::PUBLIC]
467 468 469 470 471 472

    if user&.admin?
      with_feature_enabled(feature)
    elsif user
      column = ProjectFeature.quoted_access_level_column(feature)

473 474
      with_project_feature
        .where("#{column} IN (?) OR (#{column} = ? AND EXISTS (?))",
475 476
              visible,
              ProjectFeature::PRIVATE,
477
              user.authorizations_for_projects)
478 479 480
    else
      with_feature_access_level(feature, visible)
    end
481
  end
F
Felipe Artur 已提交
482

R
Rémy Coutable 已提交
483 484
  scope :active, -> { joins(:issues, :notes, :merge_requests).order('issues.created_at, notes.created_at, merge_requests.created_at DESC') }
  scope :abandoned, -> { where('projects.last_activity_at < ?', 6.months.ago) }
485

486 487
  scope :excluding_project, ->(project) { where.not(id: project) }

488 489
  # We require an alias to the project_mirror_data_table in order to use import_state in our queries
  scope :joins_import_state, -> { joins("INNER JOIN project_mirror_data import_state ON import_state.project_id = projects.id") }
490
  scope :for_group, -> (group) { where(group: group) }
491

A
Andrey Kumanyaev 已提交
492
  class << self
493 494 495 496 497 498 499
    # Searches for a list of projects based on the query given in `query`.
    #
    # On PostgreSQL this method uses "ILIKE" to perform a case-insensitive
    # search. On MySQL a regular "LIKE" is used as it's already
    # case-insensitive.
    #
    # query - The search query as a String.
500
    def search(query)
501
      fuzzy_search(query, [:path, :name, :description])
A
Andrey Kumanyaev 已提交
502
    end
503

504
    def search_by_title(query)
505
      non_archived.fuzzy_search(query, [:name])
506 507
    end

508 509 510
    def visibility_levels
      Gitlab::VisibilityLevel.options
    end
511

512
    def sort_by_attribute(method)
513 514
      case method.to_s
      when 'storage_size_desc'
M
Markus Koller 已提交
515 516 517
        # storage_size is a joined column so we need to
        # pass a string to avoid AR adding the table name
        reorder('project_statistics.storage_size DESC, projects.id DESC')
518 519 520 521
      when 'latest_activity_desc'
        reorder(last_activity_at: :desc)
      when 'latest_activity_asc'
        reorder(last_activity_at: :asc)
522 523
      when 'stars_desc'
        sorted_by_stars
524 525
      else
        order_by(method)
526 527
      end
    end
528 529

    def reference_pattern
530
      %r{
531 532
        ((?<namespace>#{Gitlab::PathRegex::FULL_NAMESPACE_FORMAT_REGEX})\/)?
        (?<project>#{Gitlab::PathRegex::PROJECT_PATH_FORMAT_REGEX})
533
      }x
534
    end
Y
Yorick Peterse 已提交
535

536 537 538 539
    def reference_postfix
      '>'
    end

540 541 542 543
    def reference_postfix_escaped
      '&gt;'
    end

544
    # Pattern used to extract `namespace/project>` project references from text.
545 546
    # '>' or its escaped form ('&gt;') are checked for because '>' is sometimes escaped
    # when the reference comes from an external source.
547 548 549
    def markdown_reference_pattern
      %r{
        #{reference_pattern}
550
        (#{reference_postfix}|#{reference_postfix_escaped})
551 552 553
      }x
    end

Y
Yorick Peterse 已提交
554
    def trending
555 556
      joins('INNER JOIN trending_projects ON projects.id = trending_projects.project_id')
        .reorder('trending_projects.id ASC')
Y
Yorick Peterse 已提交
557
    end
558 559 560 561 562 563

    def cached_count
      Rails.cache.fetch('total_project_count', expires_in: 5.minutes) do
        Project.count
      end
    end
564 565

    def group_ids
566
      joins(:namespace).where(namespaces: { type: 'Group' }).select(:namespace_id)
567
    end
568 569
  end

570 571
  # returns all ancestor-groups upto but excluding the given namespace
  # when no namespace is given, all ancestors upto the top are returned
572
  def ancestors_upto(top = nil, hierarchy_order: nil)
573
    Gitlab::GroupHierarchy.new(Group.where(id: namespace_id))
574
      .base_and_ancestors(upto: top, hierarchy_order: hierarchy_order)
575 576
  end

577 578
  alias_method :ancestors, :ancestors_upto

579
  def lfs_enabled?
580
    return namespace.lfs_enabled? if self[:lfs_enabled].nil?
P
Patricio Cano 已提交
581

582
    self[:lfs_enabled] && Gitlab.config.lfs.enabled
583 584
  end

C
Cindy Pallares 已提交
585 586
  alias_method :lfs_enabled, :lfs_enabled?

587
  def auto_devops_enabled?
588
    if auto_devops&.enabled.nil?
589
      has_auto_devops_implicitly_enabled?
590 591
    else
      auto_devops.enabled?
Z
Zeger-Jan van de Weg 已提交
592
    end
593 594
  end

595
  def has_auto_devops_implicitly_enabled?
596 597
    auto_devops&.enabled.nil? &&
      (Gitlab::CurrentSettings.auto_devops_enabled? || Feature.enabled?(:force_autodevops_on_by_default, self))
598 599
  end

600
  def has_auto_devops_implicitly_disabled?
601
    auto_devops&.enabled.nil? && !(Gitlab::CurrentSettings.auto_devops_enabled? || Feature.enabled?(:force_autodevops_on_by_default, self))
602 603
  end

604 605 606 607
  def empty_repo?
    repository.empty?
  end

D
Dmitriy Zaporozhets 已提交
608
  def team
609
    @team ||= ProjectTeam.new(self)
D
Dmitriy Zaporozhets 已提交
610 611 612
  end

  def repository
613
    @repository ||= Repository.new(full_path, self, disk_path: disk_path)
614 615
  end

616
  def cleanup
617 618 619
    @repository = nil
  end

620 621
  alias_method :reload_repository!, :cleanup

A
Andre Guedes 已提交
622
  def container_registry_url
K
Kamil Trzcinski 已提交
623
    if Gitlab.config.registry.enabled
624
      "#{Gitlab.config.registry.host_port}/#{full_path.downcase}"
625
    end
626 627
  end

628
  def has_container_registry_tags?
629 630 631
    return @images if defined?(@images)

    @images = container_repositories.to_a.any?(&:has_tags?) ||
632
      has_root_container_repository_tags?
633 634
  end

635 636
  def commit(ref = 'HEAD')
    repository.commit(ref)
D
Dmitriy Zaporozhets 已提交
637 638
  end

639 640 641 642
  def commit_by(oid:)
    repository.commit_by(oid: oid)
  end

643 644 645 646
  def commits_by(oids:)
    repository.commits_by(oids: oids)
  end

647
  # ref can't be HEAD, can only be branch/tag name or SHA
648
  def latest_successful_builds_for(ref = default_branch)
649
    latest_pipeline = ci_pipelines.latest_successful_for(ref)
650 651

    if latest_pipeline
652
      latest_pipeline.builds.latest.with_artifacts_archive
653 654 655
    else
      builds.none
    end
656 657
  end

658 659 660 661 662
  def latest_successful_build_for(job_name, ref = default_branch)
    builds = latest_successful_builds_for(ref)
    builds.find_by!(name: job_name)
  end

663
  def merge_base_commit(first_commit_id, second_commit_id)
D
Douwe Maan 已提交
664
    sha = repository.merge_base(first_commit_id, second_commit_id)
665
    commit_by(oid: sha) if sha
666 667
  end

668
  def saved?
669
    id && persisted?
670 671
  end

672 673 674 675 676 677 678 679
  def import_status
    import_state&.status || 'none'
  end

  def human_import_status_name
    import_state&.human_status_name || 'none'
  end

680
  def add_import_job
D
Douwe Maan 已提交
681 682
    job_id =
      if forked?
683
        RepositoryForkWorker.perform_async(id)
684
      elsif gitlab_project_import?
J
James Lopez 已提交
685
        # Do not retry on Import/Export until https://gitlab.com/gitlab-org/gitlab-ce/issues/26189 is solved.
686
        RepositoryImportWorker.set(retry: false).perform_async(self.id)
D
Douwe Maan 已提交
687 688 689
      else
        RepositoryImportWorker.perform_async(self.id)
      end
690

691 692 693 694 695 696 697 698
    log_import_activity(job_id)

    job_id
  end

  def log_import_activity(job_id, type: :import)
    job_type = type.to_s.capitalize

699
    if job_id
700
      Rails.logger.info("#{job_type} job scheduled for #{full_path} with job ID #{job_id}.")
701
    else
702
      Rails.logger.error("#{job_type} job failed to create for #{full_path}.")
703
    end
704 705
  end

706 707 708 709 710
  def reset_cache_and_import_attrs
    run_after_commit do
      ProjectCacheWorker.perform_async(self.id)
    end

711
    import_state.update(last_error: nil)
712 713 714
    remove_import_data
  end

G
George Tsiolis 已提交
715
  # This method is overridden in EE::Project model
716
  def remove_import_data
717
    import_data&.destroy
718 719
  end

720
  def ci_config_path=(value)
721
    # Strip all leading slashes so that //foo -> foo
722
    super(value&.delete("\0"))
723 724
  end

J
James Lopez 已提交
725
  def import_url=(value)
J
James Lopez 已提交
726 727
    return super(value) unless Gitlab::UrlSanitizer.valid?(value)

728
    import_url = Gitlab::UrlSanitizer.new(value)
J
James Lopez 已提交
729
    super(import_url.sanitized_url)
730
    create_or_update_import_data(credentials: import_url.credentials)
J
James Lopez 已提交
731 732 733
  end

  def import_url
J
James Lopez 已提交
734
    if import_data && super.present?
735
      import_url = Gitlab::UrlSanitizer.new(super, credentials: import_data.credentials)
J
James Lopez 已提交
736 737 738
      import_url.full_url
    else
      super
J
James Lopez 已提交
739
    end
740 741
  rescue
    super
J
James Lopez 已提交
742
  end
J
James Lopez 已提交
743

J
James Lopez 已提交
744
  def valid_import_url?
745
    valid?(:import_url) || errors.messages[:import_url].nil?
J
James Lopez 已提交
746 747
  end

748
  def create_or_update_import_data(data: nil, credentials: nil)
749
    return if data.nil? && credentials.nil?
750

J
James Lopez 已提交
751
    project_import_data = import_data || build_import_data
752

753 754
    project_import_data.merge_data(data.to_h)
    project_import_data.merge_credentials(credentials.to_h)
755 756

    project_import_data
J
James Lopez 已提交
757
  end
J
James Lopez 已提交
758

759
  def import?
J
James Lopez 已提交
760
    external_import? || forked? || gitlab_project_import? || bare_repository_import?
761 762 763
  end

  def external_import?
764 765 766
    import_url.present?
  end

D
Douwe Maan 已提交
767
  def safe_import_url
768
    Gitlab::UrlSanitizer.new(import_url).masked_url
D
Douwe Maan 已提交
769 770
  end

771 772 773 774
  def bare_repository_import?
    import_type == 'bare_repository'
  end

775 776 777 778
  def gitlab_project_import?
    import_type == 'gitlab_project'
  end

R
Rémy Coutable 已提交
779 780 781 782
  def gitea_import?
    import_type == 'gitea'
  end

783 784 785 786 787 788 789 790 791 792 793 794 795 796 797 798 799 800 801 802 803 804 805 806 807 808 809 810 811 812 813
  def has_remote_mirror?
    remote_mirror_available? && remote_mirrors.enabled.exists?
  end

  def updating_remote_mirror?
    remote_mirrors.enabled.started.exists?
  end

  def update_remote_mirrors
    return unless remote_mirror_available?

    remote_mirrors.enabled.each(&:sync)
  end

  def mark_stuck_remote_mirrors_as_failed!
    remote_mirrors.stuck.update_all(
      update_status: :failed,
      last_error: 'The remote mirror took to long to complete.',
      last_update_at: Time.now
    )
  end

  def mark_remote_mirrors_for_removal
    remote_mirrors.each(&:mark_for_delete_if_blank_url)
  end

  def remote_mirror_available?
    remote_mirror_available_overridden ||
      ::Gitlab::CurrentSettings.mirror_available
  end

814
  def check_limit
D
Douwe Maan 已提交
815
    unless creator.can_create_project? || namespace.kind == 'group'
816 817 818
      projects_limit = creator.projects_limit

      if projects_limit == 0
P
Phil Hughes 已提交
819
        self.errors.add(:limit_reached, "Personal project creation is not allowed. Please contact your administrator with questions")
820
      else
P
Phil Hughes 已提交
821
        self.errors.add(:limit_reached, "Your project limit is #{projects_limit} projects! Please contact your administrator to increase it")
822
      end
823 824
    end
  rescue
D
Douwe Maan 已提交
825
    self.errors.add(:base, "Can't check your ability to create project")
G
gitlabhq 已提交
826 827
  end

D
Douwe Maan 已提交
828 829 830 831 832 833 834 835 836 837 838 839 840
  def visibility_level_allowed_by_group
    return if visibility_level_allowed_by_group?

    level_name = Gitlab::VisibilityLevel.level_name(self.visibility_level).downcase
    group_level_name = Gitlab::VisibilityLevel.level_name(self.group.visibility_level).downcase
    self.errors.add(:visibility_level, "#{level_name} is not allowed in a #{group_level_name} group.")
  end

  def visibility_level_allowed_as_fork
    return if visibility_level_allowed_as_fork?

    level_name = Gitlab::VisibilityLevel.level_name(self.visibility_level).downcase
    self.errors.add(:visibility_level, "#{level_name} is not allowed since the fork source project has lower visibility.")
841 842
  end

843 844 845 846 847 848 849 850 851 852
  def check_wiki_path_conflict
    return if path.blank?

    path_to_check = path.ends_with?('.wiki') ? path.chomp('.wiki') : "#{path}.wiki"

    if Project.where(namespace_id: namespace_id, path: path_to_check).exists?
      errors.add(:name, 'has already been taken')
    end
  end

R
Rob Watson 已提交
853 854 855 856 857 858 859 860 861 862 863 864 865 866 867 868 869 870 871 872
  def pages_https_only
    return false unless Gitlab.config.pages.external_https

    super
  end

  def pages_https_only?
    return false unless Gitlab.config.pages.external_https

    super
  end

  def validate_pages_https_only
    return unless pages_https_only?

    unless pages_domains.all?(&:https?)
      errors.add(:pages_https_only, "cannot be enabled unless all domains have TLS certificates")
    end
  end

873
  def to_param
874 875 876 877 878
    if persisted? && errors.include?(:path)
      path_was
    else
      path
    end
879 880
  end

881 882 883 884
  def to_reference_with_postfix
    "#{to_reference(full: true)}#{self.class.reference_postfix}"
  end

885
  # `from` argument can be a Namespace or Project.
886 887
  def to_reference(from = nil, full: false)
    if full || cross_namespace_reference?(from)
888
      full_path
889 890 891
    elsif cross_project_reference?(from)
      path
    end
892 893
  end

J
Jarka Kadlecova 已提交
894 895
  def to_human_reference(from = nil)
    if cross_namespace_reference?(from)
896
      name_with_namespace
J
Jarka Kadlecova 已提交
897
    elsif cross_project_reference?(from)
898 899
      name
    end
900 901
  end

902
  def web_url
903
    Gitlab::Routing.url_helpers.project_url(self)
904 905
  end

I
Imre Farkas 已提交
906
  def readme_url
907 908 909
    readme_path = repository.readme_path
    if readme_path
      Gitlab::Routing.url_helpers.project_blob_url(self, File.join(default_branch, readme_path))
I
Imre Farkas 已提交
910 911 912
    end
  end

J
Jan Provaznik 已提交
913
  def new_issuable_address(author, address_type)
914
    return unless Gitlab::IncomingEmail.supports_issue_creation? && author
915

916 917
    author.ensure_incoming_email_token!

J
Jan Provaznik 已提交
918
    suffix = address_type == 'merge_request' ? '+merge-request' : ''
919
    Gitlab::IncomingEmail.reply_address(
J
Jan Provaznik 已提交
920
      "#{full_path}#{suffix}+#{author.incoming_email_token}")
921 922
  end

923
  def build_commit_note(commit)
924
    notes.new(commit_id: commit.id, noteable_type: 'Commit')
G
gitlabhq 已提交
925
  end
N
Nihad Abbasov 已提交
926

N
Nihad Abbasov 已提交
927
  def last_activity
928
    last_event
G
gitlabhq 已提交
929 930 931
  end

  def last_activity_date
932
    [last_activity_at, last_repository_updated_at, updated_at].compact.max
D
Dmitriy Zaporozhets 已提交
933
  end
934

D
Dmitriy Zaporozhets 已提交
935 936 937
  def project_id
    self.id
  end
R
randx 已提交
938

939
  def get_issue(issue_id, current_user)
940 941 942 943 944
    issue = IssuesFinder.new(current_user, project_id: id).find_by(iid: issue_id) if issues_enabled?

    if issue
      issue
    elsif external_issue_tracker
R
Robert Speicher 已提交
945
      ExternalIssue.new(issue_id, self)
946 947 948
    end
  end

R
Robert Speicher 已提交
949
  def issue_exists?(issue_id)
950
    get_issue(issue_id)
R
Robert Speicher 已提交
951 952
  end

953
  def default_issue_tracker
954
    gitlab_issue_tracker_service || create_gitlab_issue_tracker_service
955 956 957 958 959 960 961 962 963 964
  end

  def issues_tracker
    if external_issue_tracker
      external_issue_tracker
    else
      default_issue_tracker
    end
  end

965
  def external_issue_reference_pattern
966
    external_issue_tracker.class.reference_pattern(only_long: issues_enabled?)
967 968
  end

969
  def default_issues_tracker?
970
    !external_issue_tracker
971 972 973
  end

  def external_issue_tracker
974 975 976 977 978 979 980 981 982 983 984 985 986 987
    if has_external_issue_tracker.nil? # To populate existing projects
      cache_has_external_issue_tracker
    end

    if has_external_issue_tracker?
      return @external_issue_tracker if defined?(@external_issue_tracker)

      @external_issue_tracker = services.external_issue_trackers.first
    else
      nil
    end
  end

  def cache_has_external_issue_tracker
T
Toon Claes 已提交
988
    update_column(:has_external_issue_tracker, services.external_issue_trackers.any?) if Gitlab::Database.read_write?
989 990
  end

991 992 993 994
  def has_wiki?
    wiki_enabled? || has_external_wiki?
  end

995 996 997 998 999 1000 1001 1002 1003 1004 1005 1006 1007
  def external_wiki
    if has_external_wiki.nil?
      cache_has_external_wiki # Populate
    end

    if has_external_wiki
      @external_wiki ||= services.external_wikis.first
    else
      nil
    end
  end

  def cache_has_external_wiki
T
Toon Claes 已提交
1008
    update_column(:has_external_wiki, services.external_wikis.any?) if Gitlab::Database.read_write?
1009 1010
  end

1011 1012 1013
  def find_or_initialize_services(exceptions: [])
    available_services_names = Service.available_services_names - exceptions

1014
    available_services = available_services_names.map do |service_name|
1015
      find_or_initialize_service(service_name)
1016
    end
1017

1018
    available_services.compact
1019 1020 1021 1022
  end

  def disabled_services
    []
1023 1024
  end

1025
  def find_or_initialize_service(name)
1026 1027
    return if disabled_services.include?(name)

1028 1029 1030 1031 1032 1033 1034 1035 1036 1037 1038 1039
    service = find_service(services, name)
    return service if service

    # We should check if template for the service exists
    template = find_service(services_templates, name)

    if template
      Service.build_from_template(id, template)
    else
      # If no template, we should create an instance. Ex `build_gitlab_ci_service`
      public_send("build_#{name}_service") # rubocop:disable GitlabSecurity/PublicSend
    end
1040 1041
  end

1042
  # rubocop: disable CodeReuse/ServiceClass
V
Valery Sizov 已提交
1043 1044
  def create_labels
    Label.templates.each do |label|
1045
      params = label.attributes.except('id', 'template', 'created_at', 'updated_at')
1046
      Labels::FindOrCreateService.new(nil, self, params).execute(skip_authorization: true)
V
Valery Sizov 已提交
1047 1048
    end
  end
1049
  # rubocop: enable CodeReuse/ServiceClass
V
Valery Sizov 已提交
1050

M
Marin Jankovski 已提交
1051 1052 1053
  def find_service(list, name)
    list.find { |service| service.to_param == name }
  end
D
Dmitriy Zaporozhets 已提交
1054

1055
  def ci_services
Y
Yorick Peterse 已提交
1056
    services.where(category: :ci)
1057 1058 1059
  end

  def ci_service
1060
    @ci_service ||= ci_services.reorder(nil).find_by(active: true)
1061 1062
  end

1063 1064 1065 1066 1067
  def monitoring_services
    services.where(category: :monitoring)
  end

  def monitoring_service
1068
    @monitoring_service ||= monitoring_services.reorder(nil).find_by(active: true)
1069 1070
  end

D
Drew Blessing 已提交
1071 1072 1073 1074
  def jira_tracker?
    issues_tracker.to_param == 'jira'
  end

1075
  def avatar_in_git
1076
    repository.avatar
1077 1078
  end

1079
  def avatar_url(**args)
1080
    Gitlab::Routing.url_helpers.project_avatar_url(self) if avatar_in_git
S
sue445 已提交
1081 1082
  end

1083 1084 1085 1086 1087
  # For compatibility with old code
  def code
    path
  end

T
Thong Kuah 已提交
1088 1089 1090 1091 1092 1093
  def all_clusters
    group_clusters = Clusters::Cluster.joins(:groups).where(cluster_groups: { group_id: ancestors_upto } )

    Clusters::Cluster.from_union([clusters, group_clusters])
  end

1094
  def items_for(entity)
D
Dmitriy Zaporozhets 已提交
1095 1096 1097 1098 1099 1100 1101
    case entity
    when 'issue' then
      issues
    when 'merge_request' then
      merge_requests
    end
  end
1102

1103
  # rubocop: disable CodeReuse/ServiceClass
1104
  def send_move_instructions(old_path_with_namespace)
1105 1106
    # New project path needs to be committed to the DB or notification will
    # retrieve stale information
1107 1108 1109
    run_after_commit do
      NotificationService.new.project_was_moved(self, old_path_with_namespace)
    end
1110
  end
1111
  # rubocop: enable CodeReuse/ServiceClass
1112 1113

  def owner
1114 1115
    if group
      group
1116
    else
1117
      namespace.try(:owner)
1118 1119
    end
  end
D
Dmitriy Zaporozhets 已提交
1120

1121
  # rubocop: disable CodeReuse/ServiceClass
1122
  def execute_hooks(data, hooks_scope = :push_hooks)
1123
    run_after_commit_or_now do
1124
      hooks.hooks_for(hooks_scope).select_active(hooks_scope, data).each do |hook|
1125 1126
        hook.async_execute(data, hooks_scope.to_s)
      end
1127 1128
      SystemHooksService.new.execute_hooks(data, hooks_scope)
    end
D
Dmitriy Zaporozhets 已提交
1129
  end
1130
  # rubocop: enable CodeReuse/ServiceClass
D
Dmitriy Zaporozhets 已提交
1131

1132 1133
  def execute_services(data, hooks_scope = :push_hooks)
    # Call only service hooks that are active for this scope
1134 1135 1136 1137
    run_after_commit_or_now do
      services.public_send(hooks_scope).each do |service| # rubocop:disable GitlabSecurity/PublicSend
        service.async_execute(data)
      end
D
Dmitriy Zaporozhets 已提交
1138 1139 1140 1141
    end
  end

  def valid_repo?
1142
    repository.exists?
D
Dmitriy Zaporozhets 已提交
1143
  rescue
1144
    errors.add(:path, 'Invalid repository path')
D
Dmitriy Zaporozhets 已提交
1145 1146 1147 1148
    false
  end

  def url_to_repo
1149
    gitlab_shell.url_to_repo(full_path)
D
Dmitriy Zaporozhets 已提交
1150 1151 1152
  end

  def repo_exists?
1153 1154 1155 1156 1157 1158 1159
    strong_memoize(:repo_exists) do
      begin
        repository.exists?
      rescue
        false
      end
    end
D
Dmitriy Zaporozhets 已提交
1160 1161 1162
  end

  def root_ref?(branch)
D
Dmitriy Zaporozhets 已提交
1163
    repository.root_ref == branch
D
Dmitriy Zaporozhets 已提交
1164 1165 1166 1167 1168 1169
  end

  def ssh_url_to_repo
    url_to_repo
  end

1170 1171
  def http_url_to_repo
    "#{web_url}.git"
D
Dmitriy Zaporozhets 已提交
1172 1173
  end

1174 1175 1176 1177 1178
  # Is overriden in EE
  def lfs_http_url_to_repo(_)
    http_url_to_repo
  end

1179
  def forked?
1180
    fork_network && fork_network.root_project != self
1181
  end
D
Dmitriy Zaporozhets 已提交
1182

1183
  def fork_source
1184 1185
    return nil unless forked?

1186 1187 1188
    forked_from_project || fork_network&.root_project
  end

1189 1190 1191 1192 1193 1194 1195 1196 1197 1198 1199 1200
  def lfs_storage_project
    @lfs_storage_project ||= begin
      result = self

      # TODO: Make this go to the fork_network root immeadiatly
      # dependant on the discussion in: https://gitlab.com/gitlab-org/gitlab-ce/issues/39769
      result = result.fork_source while result&.forked?

      result || self
    end
  end

1201 1202 1203 1204 1205 1206 1207 1208 1209 1210
  # This will return all `lfs_objects` that are accessible to the project.
  # So this might be `self.lfs_objects` if the project is not part of a fork
  # network, or it is the base of the fork network.
  #
  # TODO: refactor this to get the correct lfs objects when implementing
  #       https://gitlab.com/gitlab-org/gitlab-ce/issues/39769
  def all_lfs_objects
    lfs_storage_project.lfs_objects
  end

1211 1212 1213 1214
  def personal?
    !group
  end

1215 1216 1217 1218 1219 1220
  # Expires various caches before a project is renamed.
  def expire_caches_before_rename(old_path)
    repo = Repository.new(old_path, self)
    wiki = Repository.new("#{old_path}.wiki", self)

    if repo.exists?
1221
      repo.before_delete
1222 1223 1224
    end

    if wiki.exists?
1225
      wiki.before_delete
1226 1227 1228
    end
  end

1229
  # Check if repository already exists on disk
S
Stan Hu 已提交
1230 1231
  def check_repository_path_availability
    return true if skip_disk_validation
1232
    return false unless repository_storage
1233

1234 1235 1236
    # Check if repository with same path already exists on disk we can
    # skip this for the hashed storage because the path does not change
    if legacy_storage? && repository_with_same_path_already_exists?
1237 1238 1239 1240 1241
      errors.add(:base, 'There is already a repository with that name on disk')
      return false
    end

    true
1242 1243
  rescue GRPC::Internal # if the path is too long
    false
1244 1245
  end

1246 1247 1248 1249 1250 1251 1252
  def track_project_repository
    return unless hashed_storage?(:repository)

    project_repo = project_repository || build_project_repository
    project_repo.update!(shard_name: repository_storage, disk_path: disk_path)
  end

1253 1254 1255 1256
  def create_repository(force: false)
    # Forked import is handled asynchronously
    return if forked? && !force

1257
    if gitlab_shell.create_repository(repository_storage, disk_path)
1258 1259 1260 1261 1262 1263 1264 1265
      repository.after_create
      true
    else
      errors.add(:base, 'Failed to create repository via gitlab-shell')
      false
    end
  end

1266 1267
  def hook_attrs(backward: true)
    attrs = {
J
Jacopo 已提交
1268
      id: id,
K
Kirill Zaitsev 已提交
1269
      name: name,
1270
      description: description,
K
Kirilll Zaitsev 已提交
1271
      web_url: web_url,
1272
      avatar_url: avatar_url(only_path: false),
1273 1274
      git_ssh_url: ssh_url_to_repo,
      git_http_url: http_url_to_repo,
K
Kirill Zaitsev 已提交
1275
      namespace: namespace.name,
1276
      visibility_level: visibility_level,
1277
      path_with_namespace: full_path,
1278
      default_branch: default_branch,
1279
      ci_config_path: ci_config_path
K
Kirill Zaitsev 已提交
1280
    }
1281 1282 1283 1284 1285 1286 1287 1288 1289 1290 1291 1292

    # Backward compatibility
    if backward
      attrs.merge!({
                    homepage: web_url,
                    url: url_to_repo,
                    ssh_url: ssh_url_to_repo,
                    http_url: http_url_to_repo
                  })
    end

    attrs
K
Kirill Zaitsev 已提交
1293 1294
  end

1295
  def project_member(user)
1296 1297 1298 1299 1300
    if project_members.loaded?
      project_members.find { |member| member.user_id == user.id }
    else
      project_members.find_by(user_id: user)
    end
1301
  end
1302

1303 1304 1305 1306 1307 1308 1309 1310 1311 1312 1313 1314
  # Filters `users` to return only authorized users of the project
  def members_among(users)
    if users.is_a?(ActiveRecord::Relation) && !users.loaded?
      authorized_users.merge(users)
    else
      return [] if users.empty?

      user_ids = authorized_users.where(users: { id: users.map(&:id) }).pluck(:id)
      users.select { |user| user_ids.include?(user.id) }
    end
  end

1315 1316 1317
  def default_branch
    @default_branch ||= repository.root_ref if repository.exists?
  end
1318 1319 1320 1321 1322

  def reload_default_branch
    @default_branch = nil
    default_branch
  end
1323

1324
  def visibility_level_field
1325
    :visibility_level
1326
  end
1327

1328
  def change_head(branch)
1329 1330
    if repository.branch_exists?(branch)
      repository.before_change_head
1331
      repository.raw_repository.write_ref('HEAD', "refs/heads/#{branch}")
1332 1333 1334 1335 1336 1337 1338
      repository.copy_gitattributes(branch)
      repository.after_change_head
      reload_default_branch
    else
      errors.add(:base, "Could not change HEAD: branch '#{branch}' does not exist")
      false
    end
1339
  end
1340

1341 1342 1343 1344 1345 1346 1347 1348 1349 1350 1351 1352 1353
  def forked_from?(other_project)
    forked? && forked_from_project == other_project
  end

  def in_fork_network_of?(other_project)
    # TODO: Remove this in a next release when all fork_networks are populated
    # This makes sure all MergeRequests remain valid while the projects don't
    # have a fork_network yet.
    return true if forked_from?(other_project)

    return false if fork_network.nil? || other_project.fork_network.nil?

    fork_network == other_project.fork_network
1354
  end
1355

1356 1357 1358
  def origin_merge_requests
    merge_requests.where(source_project_id: self.id)
  end
1359

1360
  def ensure_repository
1361
    create_repository(force: true) unless repository_exists?
1362 1363
  end

1364 1365 1366 1367
  def repository_exists?
    !!repository.exists?
  end

1368 1369 1370 1371
  def wiki_repository_exists?
    wiki.repository_exists?
  end

1372
  # update visibility_level of forks
1373 1374 1375 1376 1377 1378 1379 1380 1381 1382 1383
  def update_forks_visibility_level
    return unless visibility_level < visibility_level_was

    forks.each do |forked_project|
      if forked_project.visibility_level > visibility_level
        forked_project.visibility_level = visibility_level
        forked_project.save!
      end
    end
  end

1384 1385 1386
  def create_wiki
    ProjectWiki.new(self, self.owner).wiki
    true
G
Guilherme Garnier 已提交
1387
  rescue ProjectWiki::CouldNotCreateWikiError
1388
    errors.add(:base, 'Failed create wiki')
1389 1390
    false
  end
1391

1392 1393 1394 1395
  def wiki
    @wiki ||= ProjectWiki.new(self, self.owner)
  end

D
Drew Blessing 已提交
1396 1397 1398 1399
  def jira_tracker_active?
    jira_tracker? && jira_service.active
  end

1400
  def allowed_to_share_with_group?
1401
    !namespace.share_with_group_lock
1402 1403
  end

1404 1405 1406
  def pipeline_for(ref, sha = nil)
    sha ||= commit(ref).try(:sha)

1407
    return unless sha
1408

1409
    ci_pipelines.order(id: :desc).find_by(sha: sha, ref: ref)
K
Kamil Trzcinski 已提交
1410 1411
  end

1412 1413 1414 1415 1416 1417
  def latest_successful_pipeline_for_default_branch
    if defined?(@latest_successful_pipeline_for_default_branch)
      return @latest_successful_pipeline_for_default_branch
    end

    @latest_successful_pipeline_for_default_branch =
1418
      ci_pipelines.latest_successful_for(default_branch)
1419 1420 1421 1422
  end

  def latest_successful_pipeline_for(ref = nil)
    if ref && ref != default_branch
1423
      ci_pipelines.latest_successful_for(ref)
1424 1425 1426 1427 1428
    else
      latest_successful_pipeline_for_default_branch
    end
  end

1429
  def enable_ci
F
Felipe Artur 已提交
1430
    project_feature.update_attribute(:builds_access_level, ProjectFeature::ENABLED)
1431
  end
M
Marin Jankovski 已提交
1432

1433 1434 1435 1436 1437
  def shared_runners_available?
    shared_runners_enabled?
  end

  def shared_runners
1438
    @shared_runners ||= shared_runners_available? ? Ci::Runner.instance_type : Ci::Runner.none
1439 1440
  end

1441
  def group_runners
1442
    @group_runners ||= group_runners_enabled? ? Ci::Runner.belonging_to_parent_group_of_project(self.id) : Ci::Runner.none
1443 1444
  end

1445
  def all_runners
1446
    Ci::Runner.from_union([runners, group_runners, shared_runners])
1447
  end
K
Kamil Trzcinski 已提交
1448

1449 1450 1451 1452 1453
  def active_runners
    strong_memoize(:active_runners) do
      all_runners.active
    end
  end
1454

1455 1456
  def any_runners?(&block)
    active_runners.any?(&block)
K
Kamil Trzcinski 已提交
1457 1458
  end

1459
  def valid_runners_token?(token)
J
James Lopez 已提交
1460
    self.runners_token && ActiveSupport::SecurityUtils.variable_size_secure_compare(token, self.runners_token)
K
Kamil Trzcinski 已提交
1461 1462
  end

1463
  # rubocop: disable CodeReuse/ServiceClass
F
Felipe Artur 已提交
1464 1465
  def open_issues_count(current_user = nil)
    Projects::OpenIssuesCountService.new(self, current_user).count
1466
  end
1467
  # rubocop: enable CodeReuse/ServiceClass
1468

1469
  # rubocop: disable CodeReuse/ServiceClass
1470 1471
  def open_merge_requests_count
    Projects::OpenMergeRequestsCountService.new(self).count
S
Stan Hu 已提交
1472
  end
1473
  # rubocop: enable CodeReuse/ServiceClass
1474

D
Douwe Maan 已提交
1475
  def visibility_level_allowed_as_fork?(level = self.visibility_level)
D
Douwe Maan 已提交
1476
    return true unless forked?
D
Douwe Maan 已提交
1477

1478
    original_project = fork_source
D
Douwe Maan 已提交
1479 1480 1481
    return true unless original_project

    level <= original_project.visibility_level
D
Douwe Maan 已提交
1482
  end
1483

D
Douwe Maan 已提交
1484 1485
  def visibility_level_allowed_by_group?(level = self.visibility_level)
    return true unless group
1486

D
Douwe Maan 已提交
1487
    level <= group.visibility_level
M
Marin Jankovski 已提交
1488
  end
1489

D
Douwe Maan 已提交
1490 1491
  def visibility_level_allowed?(level = self.visibility_level)
    visibility_level_allowed_as_fork?(level) && visibility_level_allowed_by_group?(level)
F
Felipe Artur 已提交
1492 1493
  end

1494 1495 1496
  def runners_token
    ensure_runners_token!
  end
V
Valery Sizov 已提交
1497

1498 1499 1500
  def pages_deployed?
    Dir.exist?(public_pages_path)
  end
1501

1502
  def pages_group_url
K
Kamil Trzcinski 已提交
1503
    # The host in URL always needs to be downcased
1504 1505
    Gitlab.config.pages.url.sub(%r{^https?://}) do |prefix|
      "#{prefix}#{pages_subdomain}."
K
Kamil Trzcinski 已提交
1506
    end.downcase
1507 1508 1509 1510 1511
  end

  def pages_url
    url = pages_group_url
    url_path = full_path.partition('/').last
1512

K
Kamil Trzcinski 已提交
1513
    # If the project path is the same as host, we serve it as group page
1514
    return url if url == "#{Settings.pages.protocol}://#{url_path}"
1515 1516 1517

    "#{url}/#{url_path}"
  end
1518

1519 1520
  def pages_subdomain
    full_path.partition('/').first
1521
  end
K
Kamil Trzcinski 已提交
1522 1523

  def pages_path
1524 1525
    # TODO: when we migrate Pages to work with new storage types, change here to use disk_path
    File.join(Settings.pages.path, full_path)
K
Kamil Trzcinski 已提交
1526 1527 1528 1529 1530 1531
  end

  def public_pages_path
    File.join(pages_path, 'public')
  end

1532 1533 1534 1535
  def pages_available?
    Gitlab.config.pages.enabled && !namespace.subgroup?
  end

1536
  def remove_private_deploy_keys
1537 1538 1539 1540 1541 1542 1543 1544 1545 1546 1547 1548
    exclude_keys_linked_to_other_projects = <<-SQL
      NOT EXISTS (
        SELECT 1
        FROM deploy_keys_projects dkp2
        WHERE dkp2.deploy_key_id = deploy_keys_projects.deploy_key_id
        AND dkp2.project_id != deploy_keys_projects.project_id
      )
    SQL

    deploy_keys.where(public: false)
               .where(exclude_keys_linked_to_other_projects)
               .delete_all
1549 1550
  end

1551
  # TODO: what to do here when not using Legacy Storage? Do we still need to rename and delay removal?
1552
  # rubocop: disable CodeReuse/ServiceClass
K
Kamil Trzcinski 已提交
1553
  def remove_pages
1554 1555 1556
    # Projects with a missing namespace cannot have their pages removed
    return unless namespace

1557 1558
    ::Projects::UpdatePagesConfigurationService.new(self).execute

1559 1560 1561
    # 1. We rename pages to temporary directory
    # 2. We wait 5 minutes, due to NFS caching
    # 3. We asynchronously remove pages with force
K
Kamil Trzcinski 已提交
1562
    temp_path = "#{path}.#{SecureRandom.hex}.deleted"
K
Kamil Trzcinski 已提交
1563

1564 1565
    if Gitlab::PagesTransfer.new.rename_project(path, temp_path, namespace.full_path)
      PagesWorker.perform_in(5.minutes, :remove, namespace.full_path, temp_path)
K
Kamil Trzcinski 已提交
1566
    end
K
Kamil Trzcinski 已提交
1567
  end
1568
  # rubocop: enable CodeReuse/ServiceClass
K
Kamil Trzcinski 已提交
1569

1570 1571 1572 1573
  def write_repository_config(gl_full_path: full_path)
    # We'd need to keep track of project full path otherwise directory tree
    # created with hashed storage enabled cannot be usefully imported using
    # the import rake task.
1574
    repository.raw_repository.write_config(full_path: gl_full_path)
1575
  rescue Gitlab::Git::Repository::NoRepository => e
1576
    Rails.logger.error("Error writing to .git/config for project #{full_path} (#{id}): #{e.message}.")
1577
    nil
1578 1579
  end

1580 1581
  def after_import
    repository.after_import
1582
    wiki.repository.after_import
1583 1584
    import_state.finish
    import_state.remove_jid
1585
    update_project_counter_caches
1586
    after_create_default_branch
1587
    join_pool_repository
1588
    refresh_markdown_cache!
1589 1590 1591 1592 1593 1594 1595 1596 1597 1598 1599 1600 1601
  end

  def update_project_counter_caches
    classes = [
      Projects::OpenIssuesCountService,
      Projects::OpenMergeRequestsCountService
    ]

    classes.each do |klass|
      klass.new(self).refresh_cache
    end
  end

1602
  # rubocop: disable CodeReuse/ServiceClass
1603 1604 1605 1606 1607 1608
  def after_create_default_branch
    return unless default_branch

    # Ensure HEAD points to the default branch in case it is not master
    change_head(default_branch)

1609
    if Gitlab::CurrentSettings.default_branch_protection != Gitlab::Access::PROTECTION_NONE && !ProtectedBranch.protected?(self, default_branch)
1610 1611 1612
      params = {
        name: default_branch,
        push_access_levels_attributes: [{
1613
          access_level: Gitlab::CurrentSettings.default_branch_protection == Gitlab::Access::PROTECTION_DEV_CAN_PUSH ? Gitlab::Access::DEVELOPER : Gitlab::Access::MAINTAINER
1614 1615
        }],
        merge_access_levels_attributes: [{
1616
          access_level: Gitlab::CurrentSettings.default_branch_protection == Gitlab::Access::PROTECTION_DEV_CAN_MERGE ? Gitlab::Access::DEVELOPER : Gitlab::Access::MAINTAINER
1617 1618 1619 1620 1621 1622
        }]
      }

      ProtectedBranches::CreateService.new(self, creator, params).execute(skip_authorization: true)
    end
  end
1623
  # rubocop: enable CodeReuse/ServiceClass
1624

1625
  # Lazy loading of the `pipeline_status` attribute
1626
  def pipeline_status
1627
    @pipeline_status ||= Gitlab::Cache::Ci::ProjectPipelineStatus.load_for_project(self)
1628 1629
  end

1630 1631
  def add_export_job(current_user:, after_export_strategy: nil, params: {})
    job_id = ProjectExportWorker.perform_async(current_user.id, self.id, after_export_strategy, params)
1632 1633 1634 1635 1636 1637 1638

    if job_id
      Rails.logger.info "Export job started for project ID #{self.id} with job ID #{job_id}"
    else
      Rails.logger.error "Export job failed to start for project ID #{self.id}"
    end
  end
J
James Lopez 已提交
1639

1640 1641
  def import_export_shared
    @import_export_shared ||= Gitlab::ImportExport::Shared.new(self)
1642 1643
  end

J
James Lopez 已提交
1644
  def export_path
1645 1646
    return nil unless namespace.present? || hashed_storage?(:repository)

1647
    import_export_shared.archive_path
J
James Lopez 已提交
1648
  end
1649

T
Travis Miller 已提交
1650 1651 1652
  def export_status
    if export_in_progress?
      :started
1653 1654
    elsif after_export_in_progress?
      :after_export_action
J
James Lopez 已提交
1655
    elsif export_file_exists?
T
Travis Miller 已提交
1656 1657 1658 1659 1660 1661 1662
      :finished
    else
      :none
    end
  end

  def export_in_progress?
1663
    import_export_shared.active_export_count > 0
T
Travis Miller 已提交
1664 1665
  end

1666 1667 1668 1669
  def after_export_in_progress?
    import_export_shared.after_export_in_progress?
  end

1670
  def remove_exports
J
James Lopez 已提交
1671
    return unless export_file_exists?
1672

1673
    import_export_upload.remove_export_file!
1674
    import_export_upload.save unless import_export_upload.destroyed?
1675
  end
1676

J
James Lopez 已提交
1677
  def export_file_exists?
J
James Lopez 已提交
1678
    export_file&.file
1679
  end
1680

J
James Lopez 已提交
1681 1682
  def export_file
    import_export_upload&.export_file
1683 1684
  end

V
vanadium23 已提交
1685 1686 1687 1688
  def full_path_slug
    Gitlab::Utils.slugify(full_path.to_s)
  end

K
Kamil Trzcinski 已提交
1689
  def has_ci?
1690
    repository.gitlab_ci_yml || auto_devops_enabled?
K
Kamil Trzcinski 已提交
1691 1692
  end

1693
  def predefined_variables
1694 1695
    visibility = Gitlab::VisibilityLevel.string_level(visibility_level)

1696 1697 1698 1699 1700 1701 1702 1703 1704 1705
    Gitlab::Ci::Variables::Collection.new
      .append(key: 'CI_PROJECT_ID', value: id.to_s)
      .append(key: 'CI_PROJECT_NAME', value: path)
      .append(key: 'CI_PROJECT_PATH', value: full_path)
      .append(key: 'CI_PROJECT_PATH_SLUG', value: full_path_slug)
      .append(key: 'CI_PROJECT_NAMESPACE', value: namespace.full_path)
      .append(key: 'CI_PROJECT_URL', value: web_url)
      .append(key: 'CI_PROJECT_VISIBILITY', value: visibility)
      .concat(container_registry_variables)
      .concat(auto_devops_variables)
1706 1707 1708
  end

  def container_registry_variables
1709
    Gitlab::Ci::Variables::Collection.new.tap do |variables|
1710
      break variables unless Gitlab.config.registry.enabled
1711

1712
      variables.append(key: 'CI_REGISTRY', value: Gitlab.config.registry.host_port)
1713

1714
      if container_registry_enabled?
1715
        variables.append(key: 'CI_REGISTRY_IMAGE', value: container_registry_url)
1716
      end
K
Kamil Trzcinski 已提交
1717
    end
1718 1719
  end

1720 1721 1722 1723 1724 1725 1726 1727 1728
  def default_environment
    production_first = "(CASE WHEN name = 'production' THEN 0 ELSE 1 END), id ASC"

    environments
      .with_state(:available)
      .reorder(production_first)
      .first
  end

1729
  def ci_variables_for(ref:, environment: nil)
L
Lin Jen-Shin 已提交
1730
    # EE would use the environment
1731 1732 1733 1734 1735 1736
    if protected_for?(ref)
      variables
    else
      variables.unprotected
    end
  end
1737

1738
  def protected_for?(ref)
1739 1740 1741
    if repository.branch_exists?(ref)
      ProtectedBranch.protected?(self, ref)
    elsif repository.tag_exists?(ref)
1742
      ProtectedTag.protected?(self, ref)
1743
    end
1744
  end
1745

1746
  def deployment_variables(environment: nil)
1747
    deployment_platform(environment: environment)&.predefined_variables(project: self) || []
1748 1749
  end

1750 1751 1752
  def auto_devops_variables
    return [] unless auto_devops_enabled?

1753
    (auto_devops || build_auto_devops)&.predefined_variables
1754 1755
  end

1756
  def append_or_update_attribute(name, value)
1757
    old_values = public_send(name.to_s) # rubocop:disable GitlabSecurity/PublicSend
1758 1759 1760 1761 1762 1763

    if Project.reflect_on_association(name).try(:macro) == :has_many && old_values.any?
      update_attribute(name, old_values + value)
    else
      update_attribute(name, value)
    end
1764 1765 1766

  rescue ActiveRecord::RecordNotSaved => e
    handle_update_attribute_error(e, value)
1767 1768
  end

Y
Yorick Peterse 已提交
1769
  def pushes_since_gc
1770
    Gitlab::Redis::SharedState.with { |redis| redis.get(pushes_since_gc_redis_shared_state_key).to_i }
Y
Yorick Peterse 已提交
1771 1772 1773
  end

  def increment_pushes_since_gc
1774
    Gitlab::Redis::SharedState.with { |redis| redis.incr(pushes_since_gc_redis_shared_state_key) }
Y
Yorick Peterse 已提交
1775 1776 1777
  end

  def reset_pushes_since_gc
1778
    Gitlab::Redis::SharedState.with { |redis| redis.del(pushes_since_gc_redis_shared_state_key) }
Y
Yorick Peterse 已提交
1779 1780
  end

D
Douwe Maan 已提交
1781
  def route_map_for(commit_sha)
1782 1783
    @route_maps_by_commit ||= Hash.new do |h, sha|
      h[sha] = begin
D
Douwe Maan 已提交
1784
        data = repository.route_map_for(sha)
1785 1786
        next unless data

D
Douwe Maan 已提交
1787 1788 1789
        Gitlab::RouteMap.new(data)
      rescue Gitlab::RouteMap::FormatError
        nil
1790 1791 1792 1793 1794 1795 1796
      end
    end

    @route_maps_by_commit[commit_sha]
  end

  def public_path_for_source_path(path, commit_sha)
D
Douwe Maan 已提交
1797
    map = route_map_for(commit_sha)
1798 1799
    return unless map

D
Douwe Maan 已提交
1800
    map.public_path_for_source_path(path)
1801 1802
  end

1803 1804 1805 1806
  def parent_changed?
    namespace_id_changed?
  end

1807 1808 1809 1810 1811 1812 1813 1814
  def default_merge_request_target
    if forked_from_project&.merge_requests_enabled?
      forked_from_project
    else
      self
    end
  end

F
Felipe Artur 已提交
1815 1816 1817
  # Overridden on EE module
  def multiple_issue_boards_available?
    false
F
Felipe Artur 已提交
1818 1819
  end

1820 1821 1822 1823
  def full_path_was
    File.join(namespace.full_path, previous_changes['path'].first)
  end

1824 1825
  alias_method :name_with_namespace, :full_name
  alias_method :human_name, :full_name
1826
  # @deprecated cannot remove yet because it has an index with its name in elasticsearch
1827 1828
  alias_method :path_with_namespace, :full_path

1829
  # rubocop: disable CodeReuse/ServiceClass
1830 1831 1832
  def forks_count
    Projects::ForksCountService.new(self).count
  end
1833
  # rubocop: enable CodeReuse/ServiceClass
1834

1835
  def legacy_storage?
1836 1837 1838
    [nil, 0].include?(self.storage_version)
  end

1839 1840 1841 1842
  # Check if Hashed Storage is enabled for the project with at least informed feature rolled out
  #
  # @param [Symbol] feature that needs to be rolled out for the project (:repository, :attachments)
  def hashed_storage?(feature)
1843 1844 1845
    raise ArgumentError, "Invalid feature" unless HASHED_STORAGE_FEATURES.include?(feature)

    self.storage_version && self.storage_version >= HASHED_STORAGE_FEATURES[feature]
1846 1847
  end

1848 1849 1850 1851
  def renamed?
    persisted? && path_changed?
  end

1852 1853 1854
  def merge_method
    if self.merge_requests_ff_only_enabled
      :ff
1855 1856
    elsif self.merge_requests_rebase_enabled
      :rebase_merge
1857 1858 1859 1860 1861 1862
    else
      :merge
    end
  end

  def merge_method=(method)
1863 1864 1865 1866 1867 1868 1869 1870 1871 1872 1873
    case method.to_s
    when "ff"
      self.merge_requests_ff_only_enabled = true
      self.merge_requests_rebase_enabled = true
    when "rebase_merge"
      self.merge_requests_ff_only_enabled = false
      self.merge_requests_rebase_enabled = true
    when "merge"
      self.merge_requests_ff_only_enabled = false
      self.merge_requests_rebase_enabled = false
    end
1874 1875 1876
  end

  def ff_merge_must_be_possible?
1877
    self.merge_requests_ff_only_enabled || self.merge_requests_rebase_enabled
1878 1879
  end

1880
  def migrate_to_hashed_storage!
1881
    return unless storage_upgradable?
1882 1883 1884 1885 1886 1887 1888 1889 1890 1891 1892 1893 1894 1895 1896 1897 1898 1899 1900 1901

    update!(repository_read_only: true)

    if repo_reference_count > 0 || wiki_reference_count > 0
      ProjectMigrateHashedStorageWorker.perform_in(Gitlab::ReferenceCounter::REFERENCE_EXPIRE_TIME, id)
    else
      ProjectMigrateHashedStorageWorker.perform_async(id)
    end
  end

  def storage_version=(value)
    super

    @storage = nil if storage_version_changed?
  end

  def gl_repository(is_wiki:)
    Gitlab::GlRepository.gl_repository(self, is_wiki)
  end

1902 1903 1904 1905
  def reference_counter(wiki: false)
    Gitlab::ReferenceCounter.new(gl_repository(is_wiki: wiki))
  end

1906 1907 1908
  def badges
    return project_badges unless group

1909 1910 1911 1912
    Badge.from_union([
      project_badges,
      GroupBadge.where(group: group.self_and_ancestors)
    ])
1913 1914
  end

1915 1916 1917 1918 1919 1920 1921 1922 1923
  def merge_requests_allowing_push_to_user(user)
    return MergeRequest.none unless user

    developer_access_exists = user.project_authorizations
                                .where('access_level >= ? ', Gitlab::Access::DEVELOPER)
                                .where('project_authorizations.project_id = merge_requests.target_project_id')
                                .limit(1)
                                .select(1)
    source_of_merge_requests.opened
1924
      .where(allow_collaboration: true)
1925 1926 1927
      .where('EXISTS (?)', developer_access_exists)
  end

1928
  def branch_allows_collaboration?(user, branch_name)
1929 1930 1931 1932
    return false unless user

    cache_key = "user:#{user.id}:#{branch_name}:branch_allows_push"

1933
    memoized_results = strong_memoize(:branch_allows_collaboration) do
1934
      Hash.new do |result, cache_key|
1935
        result[cache_key] = fetch_branch_allows_collaboration?(user, branch_name)
1936
      end
1937 1938
    end

1939
    memoized_results[cache_key]
1940 1941
  end

1942 1943 1944 1945
  def licensed_features
    []
  end

1946 1947
  def toggle_ci_cd_settings!(settings_attribute)
    ci_cd_settings.toggle!(settings_attribute)
1948 1949
  end

1950
  def gitlab_deploy_token
1951
    @gitlab_deploy_token ||= deploy_tokens.gitlab_deploy_token
1952 1953
  end

1954 1955 1956 1957 1958
  def any_lfs_file_locks?
    lfs_file_locks.any?
  end
  request_cache(:any_lfs_file_locks?) { self.id }

1959 1960 1961 1962
  def auto_cancel_pending_pipelines?
    auto_cancel_pending_pipelines == 'enabled'
  end

1963 1964
  def storage
    @storage ||=
1965
      if hashed_storage?(:repository)
1966 1967 1968 1969 1970
        Storage::HashedProject.new(self)
      else
        Storage::LegacyProject.new(self)
      end
  end
1971

1972 1973 1974 1975
  def storage_upgradable?
    storage_version != LATEST_STORAGE_VERSION
  end

1976 1977 1978 1979
  def snippets_visible?(user = nil)
    Ability.allowed?(user, :read_project_snippet, self)
  end

1980 1981 1982 1983
  def max_attachment_size
    Gitlab::CurrentSettings.max_attachment_size.megabytes.to_i
  end

1984 1985 1986 1987 1988 1989 1990 1991 1992 1993 1994 1995 1996 1997 1998 1999 2000 2001 2002 2003 2004 2005 2006
  def object_pool_params
    return {} unless !forked? && git_objects_poolable?

    {
      repository_storage: repository_storage,
      pool_repository:    pool_repository || create_new_pool_repository
    }
  end

  # Git objects are only poolable when the project is or has:
  # - Hashed storage -> The object pool will have a remote to its members, using relative paths.
  #                     If the repository path changes we would have to update the remote.
  # - Public         -> User will be able to fetch Git objects that might not exist
  #                     in their own repository.
  # - Repository     -> Else the disk path will be empty, and there's nothing to pool
  def git_objects_poolable?
    hashed_storage?(:repository) &&
      public? &&
      repository_exists? &&
      Gitlab::CurrentSettings.hashed_storage_enabled &&
      Feature.enabled?(:object_pools, self)
  end

2007 2008
  private

2009 2010
  def create_new_pool_repository
    pool = begin
2011
             create_pool_repository!(shard: Shard.by_name(repository_storage), source_project: self)
2012
           rescue ActiveRecord::RecordNotUnique
2013
             pool_repository(true)
2014 2015
           end

2016
    pool.schedule unless pool.scheduled?
2017 2018 2019 2020 2021 2022 2023 2024 2025
    pool
  end

  def join_pool_repository
    return unless pool_repository

    ObjectPool::JoinWorker.perform_async(pool_repository.id, self.id)
  end

2026
  def use_hashed_storage
2027
    if self.new_record? && Gitlab::CurrentSettings.hashed_storage_enabled
2028
      self.storage_version = LATEST_STORAGE_VERSION
G
Gabriel Mazetto 已提交
2029 2030 2031
    end
  end

2032
  def repo_reference_count
2033
    reference_counter.value
2034 2035 2036
  end

  def wiki_reference_count
2037
    reference_counter(wiki: true).value
2038 2039
  end

2040 2041 2042
  def check_repository_absence!
    return if skip_disk_validation

2043
    if repository_storage.blank? || repository_with_same_path_already_exists?
2044 2045 2046 2047 2048 2049
      errors.add(:base, 'There is already a repository with that name on disk')
      throw :abort
    end
  end

  def repository_with_same_path_already_exists?
2050
    gitlab_shell.exists?(repository_storage, "#{disk_path}.git")
2051 2052
  end

M
Mark Chao 已提交
2053 2054
  def set_timestamps_for_create
    update_columns(last_activity_at: self.created_at, last_repository_updated_at: self.created_at)
2055 2056
  end

2057
  def cross_namespace_reference?(from)
2058 2059 2060 2061 2062
    case from
    when Project
      namespace != from.namespace
    when Namespace
      namespace != from
2063 2064 2065
    end
  end

2066
  # Check if a reference is being done cross-project
2067 2068 2069 2070
  def cross_project_reference?(from)
    return true if from.is_a?(Namespace)

    from && self != from
2071 2072
  end

2073
  def pushes_since_gc_redis_shared_state_key
Y
Yorick Peterse 已提交
2074 2075 2076
    "projects/#{id}/pushes_since_gc"
  end

2077 2078 2079 2080 2081 2082 2083
  # Similar to the normal callbacks that hook into the life cycle of an
  # Active Record object, you can also define callbacks that get triggered
  # when you add an object to an association collection. If any of these
  # callbacks throw an exception, the object will not be added to the
  # collection. Before you add a new board to the boards collection if you
  # already have 1, 2, or n it will fail, but it if you have 0 that is lower
  # than the number of permitted boards per project it won't fail.
2084
  def validate_board_limit(board)
2085
    raise BoardLimitExceeded, 'Number of permitted boards exceeded' if boards.size >= NUMBER_OF_PERMITTED_BOARDS
2086
  end
2087

M
Markus Koller 已提交
2088 2089 2090 2091
  def update_project_statistics
    stats = statistics || build_statistics
    stats.update(namespace_id: namespace_id)
  end
2092 2093 2094 2095 2096 2097 2098 2099 2100 2101 2102 2103 2104 2105 2106

  def check_pending_delete
    return if valid_attribute?(:name) && valid_attribute?(:path)
    return unless pending_delete_twin

    %i[route route.path name path].each do |error|
      errors.delete(error)
    end

    errors.add(:base, "The project is still being deleted. Please try again later.")
  end

  def pending_delete_twin
    return false unless path

2107
    Project.pending_delete.find_by_full_path(full_path)
2108
  end
2109 2110 2111 2112 2113 2114 2115 2116 2117

  ##
  # This method is here because of support for legacy container repository
  # which has exactly the same path like project does, but which might not be
  # persisted in `container_repositories` table.
  #
  def has_root_container_repository_tags?
    return false unless Gitlab.config.registry.enabled

2118
    ContainerRepository.build_root_repository(self).has_tags?
2119
  end
2120 2121 2122 2123 2124 2125 2126 2127 2128 2129 2130 2131

  def handle_update_attribute_error(ex, value)
    if ex.message.start_with?('Failed to replace')
      if value.respond_to?(:each)
        invalid = value.detect(&:invalid?)

        raise ex, ([ex.message] + invalid.errors.full_messages).join(' ') if invalid
      end
    end

    raise ex
  end
2132

2133
  def fetch_branch_allows_collaboration?(user, branch_name)
2134
    check_access = -> do
2135 2136
      next false if empty_repo?

2137 2138 2139
      merge_requests = source_of_merge_requests.opened
                         .where(allow_collaboration: true)

J
Jacob Vosmaer 已提交
2140
      # Issue for N+1: https://gitlab.com/gitlab-org/gitlab-ce/issues/49322
2141 2142 2143 2144 2145 2146
      Gitlab::GitalyClient.allow_n_plus_1_calls do
        if branch_name
          merge_requests.find_by(source_branch: branch_name)&.can_be_merged_by?(user)
        else
          merge_requests.any? { |merge_request| merge_request.can_be_merged_by?(user) }
        end
2147
      end
2148 2149
    end

2150
    Gitlab::SafeRequestStore.fetch("project-#{id}:branch-#{branch_name}:user-#{user.id}:branch_allows_collaboration") do
2151
      check_access.call
2152 2153
    end
  end
2154 2155 2156 2157

  def services_templates
    @services_templates ||= Service.where(template: true)
  end
G
gitlabhq 已提交
2158
end