survey.php 16 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303
  1. <?php
  2. /* For licensing terms, see /license.txt */
  3. /**
  4. * @package chamilo.survey
  5. * @author Patrick Cool <patrick.cool@UGent.be>, Ghent University: cleanup, refactoring and rewriting large parts of the code
  6. * @version $Id: survey.php 22573 2009-08-03 03:38:13Z yannoo $
  7. *
  8. * @todo use quickforms for the forms
  9. */
  10. // Language file that needs to be included
  11. $language_file = 'survey';
  12. // Including the global initialization file
  13. require_once '../inc/global.inc.php';
  14. $this_section = SECTION_COURSES;
  15. $current_course_tool = TOOL_SURVEY;
  16. api_protect_course_script(true);
  17. // Including additional libraries
  18. require_once 'survey.lib.php';
  19. /** @todo this has to be moved to a more appropriate place (after the display_header of the code)*/
  20. // Coach can't view this page
  21. $extend_rights_for_coachs = api_get_setting('extend_rights_for_coach_on_survey');
  22. $isDrhOfCourse = CourseManager::isUserSubscribedInCourseAsDrh(
  23. api_get_user_id(),
  24. api_get_course_info()
  25. );
  26. if ($isDrhOfCourse) {
  27. header('Location: '.api_get_path(WEB_CODE_PATH).'survey/survey_list.php?'.api_get_cidreq());
  28. exit;
  29. }
  30. if (!api_is_allowed_to_edit(false, true) ||
  31. (api_is_course_coach() && $extend_rights_for_coachs == 'false')
  32. ) {
  33. Display :: display_header(get_lang('ToolSurvey'));
  34. Display :: display_error_message(get_lang('NotAllowed'), false);
  35. Display :: display_footer();
  36. exit;
  37. }
  38. // Database table definitions
  39. $table_survey = Database :: get_course_table(TABLE_SURVEY);
  40. $table_survey_question = Database :: get_course_table(TABLE_SURVEY_QUESTION);
  41. $table_survey_question_option = Database :: get_course_table(TABLE_SURVEY_QUESTION_OPTION);
  42. $table_survey_question_group = Database :: get_course_table(TABLE_SURVEY_QUESTION_GROUP);
  43. $table_course = Database :: get_main_table(TABLE_MAIN_COURSE);
  44. $table_user = Database :: get_main_table(TABLE_MAIN_USER);
  45. $survey_id = intval($_GET['survey_id']);
  46. $course_id = api_get_course_int_id();
  47. $action = isset($_GET['action']) ? $_GET['action'] : null;
  48. // Breadcrumbs
  49. $interbreadcrumb[] = array ('url' => api_get_path(WEB_CODE_PATH).'survey/survey_list.php', 'name' => get_lang('SurveyList'));
  50. // Getting the survey information
  51. if (isset($_GET['survey_id'])) {
  52. $course_code = api_get_course_id();
  53. if ($course_code!=-1) {
  54. $survey_data = survey_manager::get_survey($survey_id);
  55. } else {
  56. Display :: display_header(get_lang('ToolSurvey'));
  57. Display :: display_error_message(get_lang('NotAllowed'), false);
  58. Display :: display_footer();
  59. exit;
  60. }
  61. }
  62. $tool_name = strip_tags($survey_data['title']);
  63. $is_survey_type_1 = $survey_data['survey_type'] == 1;
  64. if (api_strlen(strip_tags($survey_data['title'])) > 40) {
  65. $tool_name .= '...';
  66. }
  67. if ($is_survey_type_1 && ($action == 'addgroup' || $action == 'deletegroup')) {
  68. $_POST['name'] = trim($_POST['name']);
  69. if ($action == 'addgroup') {
  70. if (!empty($_POST['group_id'])) {
  71. Database::query('UPDATE '.$table_survey_question_group.' SET description = \''.Database::escape_string($_POST['description']).'\'
  72. WHERE c_id = '.$course_id.' AND id = \''.Database::escape_string($_POST['group_id']).'\'');
  73. $sendmsg = 'GroupUpdatedSuccessfully';
  74. } elseif(!empty($_POST['name'])) {
  75. Database::query('INSERT INTO '.$table_survey_question_group.' (c_id, name,description,survey_id) values ('.$course_id.', \''.Database::escape_string($_POST['name']).'\',\''.Database::escape_string($_POST['description']).'\',\''.Database::escape_string($survey_id).'\') ');
  76. $sendmsg = 'GroupCreatedSuccessfully';
  77. } else {
  78. $sendmsg = 'GroupNeedName';
  79. }
  80. }
  81. if ($action == 'deletegroup') {
  82. Database::query('DELETE FROM '.$table_survey_question_group.' WHERE c_id = '.$course_id.' AND id = '.intval($_GET['gid']).' and survey_id = '.intval($survey_id));
  83. $sendmsg = 'GroupDeletedSuccessfully';
  84. }
  85. header('Location: '.api_get_path(WEB_CODE_PATH).'survey/survey.php?survey_id='.$survey_id.'&sendmsg='.$sendmsg);
  86. exit;
  87. }
  88. // Displaying the header
  89. Display::display_header($tool_name, 'Survey');
  90. // Action handling
  91. $my_action_survey = Security::remove_XSS($action);
  92. $my_question_id_survey = isset($_GET['question_id']) ? Security::remove_XSS($_GET['question_id']) : null;
  93. $my_survey_id_survey = Security::remove_XSS($_GET['survey_id']);
  94. $message_information = isset($_GET['message']) ? Security::remove_XSS($_GET['message']) : null;
  95. if (isset($action)) {
  96. if (($action == 'moveup' || $action == 'movedown') && isset($_GET['question_id'])) {
  97. survey_manager::move_survey_question($my_action_survey,$my_question_id_survey,$my_survey_id_survey);
  98. Display::display_confirmation_message(get_lang('SurveyQuestionMoved'));
  99. }
  100. if ($action == 'delete' AND is_numeric($_GET['question_id'])) {
  101. survey_manager::delete_survey_question($my_survey_id_survey, $my_question_id_survey, $survey_data['is_shared']);
  102. }
  103. }
  104. if (isset($_GET['message'])) {
  105. // We have created the survey or updated the survey
  106. if (in_array($_GET['message'], array('SurveyUpdatedSuccesfully','SurveyCreatedSuccesfully'))) {
  107. Display::display_confirmation_message(get_lang($message_information).', '.PHP_EOL.api_strtolower(get_lang('YouCanNowAddQuestionToYourSurvey')));
  108. }
  109. // We have added a question
  110. if (in_array($_GET['message'], array('QuestionAdded', 'QuestionUpdated'))) {
  111. Display::display_confirmation_message(get_lang($message_information));
  112. }
  113. if (in_array($_GET['message'], array('YouNeedToCreateGroups'))) {
  114. Display::display_warning_message(get_lang($message_information), false);
  115. }
  116. }
  117. if (!empty($survey_data['survey_version'])) echo '<b>'.get_lang('Version').': '.$survey_data['survey_version'].'</b>';
  118. // We exit here is the first or last question is a pagebreak (which causes errors)
  119. SurveyUtil::check_first_last_question($_GET['survey_id']);
  120. // Action links
  121. $survey_actions = '<a href="'.api_get_path(WEB_CODE_PATH).'survey/create_new_survey.php?'.api_get_cidreq().'&amp;action=edit&amp;survey_id='.$survey_id.'">'.Display::return_icon('edit.png', get_lang('EditSurvey'),'',ICON_SIZE_MEDIUM).'</a>';
  122. $survey_actions .= '<a href="'.api_get_path(WEB_CODE_PATH).'survey/survey_list.php?'.api_get_cidreq().'&amp;action=delete&amp;survey_id='.$survey_id.'" onclick="javascript:if(!confirm(\''.addslashes(api_htmlentities(get_lang('DeleteSurvey').'?', ENT_QUOTES)).'\')) return false;">'.Display::return_icon('delete.png', get_lang('DeleteSurvey'),'',ICON_SIZE_MEDIUM).'</a>';
  123. //$survey_actions .= '<a href="'.api_get_path(WEB_CODE_PATH).'survey/create_survey_in_another_language.php?id_survey='.$survey_id.'">'.Display::return_icon('copy.gif', get_lang('Copy')).'</a>';
  124. $survey_actions .= '<a href="'.api_get_path(WEB_CODE_PATH).'survey/preview.php?'.api_get_cidreq().'&amp;survey_id='.$survey_id.'">'.Display::return_icon('preview_view.png', get_lang('Preview'),'',ICON_SIZE_MEDIUM).'</a>';
  125. $survey_actions .= '<a href="'.api_get_path(WEB_CODE_PATH).'survey/survey_invite.php?'.api_get_cidreq().'&amp;survey_id='.$survey_id.'">'.Display::return_icon('mail_send.png', get_lang('Publish'),'',ICON_SIZE_MEDIUM).'</a>';
  126. $survey_actions .= '<a href="'.api_get_path(WEB_CODE_PATH).'survey/reporting.php?'.api_get_cidreq().'&amp;survey_id='.$survey_id.'">'.Display::return_icon('stats.png', get_lang('Reporting'),'',ICON_SIZE_MEDIUM).'</a>';
  127. echo '<div class="actions">'.$survey_actions.'</div>';
  128. if ($survey_data['survey_type'] == 0) {
  129. echo '<div class="actionsbig">';
  130. echo '<a style="padding-left:0px;" href="'.api_get_path(WEB_CODE_PATH).'survey/question.php?'.api_get_cidreq().'&amp;action=add&type=yesno&amp;survey_id='.$survey_id.'">'.Display::return_icon('yesno.png', get_lang('YesNo'), null, ICON_SIZE_BIG).'</a>';
  131. echo '<a href="'.api_get_path(WEB_CODE_PATH).'survey/question.php?'.api_get_cidreq().'&amp;action=add&type=multiplechoice&amp;survey_id='.$survey_id.'">'.Display::return_icon('mcua.png', get_lang('UniqueSelect'), null, ICON_SIZE_BIG).'<br /></a>';
  132. echo '<a href="'.api_get_path(WEB_CODE_PATH).'survey/question.php?'.api_get_cidreq().'&amp;action=add&type=multipleresponse&amp;survey_id='.$survey_id.'">'.Display::return_icon('mcma.png', get_lang('MultipleResponse'), null, ICON_SIZE_BIG).'</a>';
  133. echo '<a href="'.api_get_path(WEB_CODE_PATH).'survey/question.php?'.api_get_cidreq().'&amp;action=add&type=open&amp;survey_id='.$survey_id.'">'.Display::return_icon('open_answer.png', get_lang('Open'), null, ICON_SIZE_BIG).'<br /></a>';
  134. echo '<a href="'.api_get_path(WEB_CODE_PATH).'survey/question.php?'.api_get_cidreq().'&amp;action=add&type=dropdown&amp;survey_id='.$survey_id.'">'.Display::return_icon('dropdown.png', get_lang('Dropdown'), null, ICON_SIZE_BIG).'<br /></a>';
  135. echo '<a href="'.api_get_path(WEB_CODE_PATH).'survey/question.php?'.api_get_cidreq().'&amp;action=add&type=percentage&amp;survey_id='.$survey_id.'">'.Display::return_icon('percentagequestion.png', get_lang('Percentage'), null, ICON_SIZE_BIG).'<br /></a>';
  136. echo '<a href="'.api_get_path(WEB_CODE_PATH).'survey/question.php?'.api_get_cidreq().'&amp;action=add&type=score&amp;survey_id='.$survey_id.'">'.Display::return_icon('scorequestion.png', get_lang('Score'), null, ICON_SIZE_BIG).'</a>';
  137. echo '<a href="'.api_get_path(WEB_CODE_PATH).'survey/question.php?'.api_get_cidreq().'&amp;action=add&type=comment&amp;survey_id='.$survey_id.'">'.Display::return_icon('commentquestion.png', get_lang('Comment'), null, ICON_SIZE_BIG).'</a>';
  138. echo '<a href="'.api_get_path(WEB_CODE_PATH).'survey/question.php?'.api_get_cidreq().'&amp;action=add&type=pagebreak&amp;survey_id='.$survey_id.'">'.Display::return_icon('page_end.png', get_lang('Pagebreak'), null, ICON_SIZE_BIG).'</a>';
  139. echo '</div>';
  140. } else {
  141. echo '<div class="actionsbig">';
  142. echo '<a style="padding-left:0px;" href="'.api_get_path(WEB_CODE_PATH).'survey/question.php?'.api_get_cidreq().'&amp;action=add&type=personality&amp;survey_id='.$survey_id.'"><img src="../img/yesno.gif" /></a></div>';
  143. echo '</div>';
  144. }
  145. // Displaying the table header with all the questions
  146. echo '<table class="data_table">';
  147. echo ' <tr class="row_odd">';
  148. echo ' <th width="15">'.get_lang('QuestionNumber').'</th>';
  149. echo ' <th>'.get_lang('Title').'</th>';
  150. echo ' <th>'.get_lang('Type').'</th>';
  151. echo ' <th width="50" >'.get_lang('NumberOfOptions').'</th>';
  152. echo ' <th width="100">'.get_lang('Modify').'</th>';
  153. if ($is_survey_type_1) {
  154. echo '<th width="100">'.get_lang('Condition').'</th>';
  155. echo '<th width="40">'.get_lang('Group').'</th>';
  156. }
  157. echo ' </tr>';
  158. // Displaying the table contents with all the questions
  159. $question_counter = 1;
  160. $sql = "SELECT * FROM $table_survey_question_group
  161. WHERE c_id = '.$course_id.' AND survey_id = ".intval($survey_id)." ORDER BY id";
  162. $result = Database::query($sql);
  163. $groups = array();
  164. while ($row = Database::fetch_array($result)) {
  165. $groups[$row['id']] = $row['name'];
  166. }
  167. $sql = "SELECT survey_question.*, count(survey_question_option.question_option_id) as number_of_options
  168. FROM $table_survey_question survey_question
  169. LEFT JOIN $table_survey_question_option survey_question_option
  170. ON survey_question.question_id = survey_question_option.question_id AND survey_question_option.c_id = $course_id
  171. WHERE
  172. survey_question.survey_id = ".intval($survey_id)." AND
  173. survey_question.c_id = $course_id
  174. GROUP BY survey_question.question_id
  175. ORDER BY survey_question.sort ASC";
  176. $result = Database::query($sql);
  177. $question_counter_max = Database::num_rows($result);
  178. while ($row = Database::fetch_array($result, 'ASSOC')) {
  179. echo '<tr>';
  180. echo ' <td>'.$question_counter.'</td>';
  181. echo ' <td>';
  182. if (api_strlen($row['survey_question']) > 100) {
  183. echo api_substr(strip_tags($row['survey_question']), 0, 100).' ... ';
  184. } else {
  185. echo $row['survey_question'];
  186. }
  187. if ($row['type'] == 'yesno') {
  188. $tool_name = get_lang('YesNo');
  189. } else if ($row['type'] == 'multiplechoice') {
  190. $tool_name = get_lang('UniqueSelect');
  191. } else {
  192. $tool_name = get_lang(api_ucfirst(Security::remove_XSS($row['type'])));
  193. }
  194. echo '</td>';
  195. echo ' <td>'.$tool_name.'</td>';
  196. echo ' <td>'.$row['number_of_options'].'</td>';
  197. echo ' <td>';
  198. echo ' <a href="'.api_get_path(WEB_CODE_PATH).'survey/question.php?'.api_get_cidreq().'&amp;action=edit&amp;type='.$row['type'].'&amp;survey_id='.$survey_id.'&amp;question_id='.$row['question_id'].'">'.Display::return_icon('edit.png', get_lang('Edit'),'',ICON_SIZE_SMALL).'</a>';
  199. echo ' <a href="'.api_get_path(WEB_CODE_PATH).'survey/survey.php?'.api_get_cidreq().'&amp;action=delete&amp;survey_id='.$survey_id.'&amp;question_id='.$row['question_id'].'" onclick="javascript:if(!confirm(\''.addslashes(api_htmlentities(get_lang("DeleteSurveyQuestion").'?',ENT_QUOTES,$charset)).'\')) return false;">'.Display::return_icon('delete.png', get_lang('Delete'),'',ICON_SIZE_SMALL).'</a>';
  200. if ($question_counter > 1) {
  201. echo ' <a href="'.api_get_path(WEB_CODE_PATH).'survey/survey.php?'.api_get_cidreq().'&amp;action=moveup&amp;survey_id='.$survey_id.'&amp;question_id='.$row['question_id'].'">'.Display::return_icon('up.png', get_lang('MoveUp'),'',ICON_SIZE_SMALL).'</a>';
  202. } else {
  203. Display::display_icon('up_na.png','&nbsp;','',ICON_SIZE_SMALL);
  204. }
  205. if ($question_counter < $question_counter_max) {
  206. echo ' <a href="'.api_get_path(WEB_CODE_PATH).'survey/survey.php?'.api_get_cidreq().'&amp;action=movedown&amp;survey_id='.$survey_id.'&amp;question_id='.$row['question_id'].'">'.Display::return_icon('down.png', get_lang('MoveDown'),'',ICON_SIZE_SMALL).'</a>';
  207. } else {
  208. Display::display_icon('down_na.png','&nbsp;','',ICON_SIZE_SMALL);
  209. }
  210. echo ' </td>';
  211. $question_counter++;
  212. if ($is_survey_type_1) {
  213. echo '<td>'.(($row['survey_group_pri']==0)?get_lang('Secondary'):get_lang('Primary')).'</td>';
  214. echo '<td>'.(($row['survey_group_pri']==0)?$groups[$row['survey_group_sec1']].'-'.$groups[$row['survey_group_sec2']]:$groups[$row['survey_group_pri']]).'</td>';
  215. }
  216. echo '</tr>';
  217. }
  218. echo '</table>';
  219. if ($is_survey_type_1) {
  220. echo '<br /><br /><b>'.get_lang('ManageGroups').'</b><br /><br />';
  221. if (in_array($_GET['sendmsg'], array('GroupUpdatedSuccessfully', 'GroupDeletedSuccessfully', 'GroupCreatedSuccessfully'))) {
  222. echo Display::display_confirmation_message(get_lang($_GET['sendmsg']), false);
  223. }
  224. if (in_array($_GET['sendmsg'], array('GroupNeedName'))){
  225. echo Display::display_warning_message(get_lang($_GET['sendmsg']), false);
  226. }
  227. echo '<table border="0"><tr><td width="100">'.get_lang('Name').'</td><td>'.get_lang('Description').'</td></tr></table>';
  228. echo '<form action="'.api_get_path(WEB_CODE_PATH).'survey/survey.php?action=addgroup&survey_id='.$survey_id.'" method="post">';
  229. if ($_GET['action'] == 'editgroup') {
  230. $sql = 'SELECT name,description FROM '.$table_survey_question_group.' WHERE id = '.intval($_GET['gid']).' AND survey_id = '.intval($survey_id).' limit 1';
  231. $rs = Database::query($sql);
  232. $editedrow = Database::fetch_array($rs,'ASSOC');
  233. echo '<input type="text" maxlength="20" name="name" value="'.$editedrow['name'].'" size="10" disabled>';
  234. echo '<input type="text" maxlength="150" name="description" value="'.$editedrow['description'].'" size="40">';
  235. echo '<input type="hidden" name="group_id" value="'.Security::remove_XSS($_GET['gid']).'">';
  236. echo '<input type="submit" value="'.get_lang('Save').'"'.'<input type="button" value="'.get_lang('Cancel').'" onclick="window.location.href = \'survey.php?survey_id='.Security::remove_XSS($survey_id).'\';" />';
  237. } else {
  238. echo '<input type="text" maxlength="20" name="name" value="" size="10">';
  239. echo '<input type="text" maxlength="250" name="description" value="" size="80">';
  240. echo '<input type="submit" value="'.get_lang('Create').'"';
  241. }
  242. echo '</form><br />';
  243. echo '<table class="data_table">';
  244. echo ' <tr class="row_odd">';
  245. echo ' <th width="200">'.get_lang('Name').'</th>';
  246. echo ' <th>'.get_lang('Description').'</th>';
  247. echo ' <th width="100">'.get_lang('Modify').'</th>';
  248. echo ' </tr>';
  249. $sql = 'SELECT id,name,description FROM '.$table_survey_question_group.' WHERE c_id = '.$course_id.' AND survey_id = '.intval($survey_id).' ORDER BY name';
  250. $rs = Database::query($sql);
  251. while($row = Database::fetch_array($rs,ASSOC)){
  252. $grouplist .= '<tr><td>'.$row['name'].'</td><td>'.$row['description'].'</td><td>'.
  253. '<a href="'.api_get_path(WEB_CODE_PATH).'survey/survey.php?survey_id='.$survey_id.'&gid='.$row['id'].'&action=editgroup">'.
  254. Display::return_icon('edit.png', get_lang('Edit'),'',ICON_SIZE_SMALL).'</a> '.
  255. '<a href="'.api_get_path(WEB_CODE_PATH).'survey/survey.php?survey_id='.$survey_id.'&gid='.$row['id'].'&action=deletegroup" onclick="javascript:if(!confirm(\''.addslashes(api_htmlentities(sprintf(get_lang('DeleteSurveyGroup'),$row['name']).'?',ENT_QUOTES)).'\')) return false;">'.
  256. Display::return_icon('delete.png', get_lang('Delete'),'',ICON_SIZE_SMALL).'</a>'.
  257. '</td></tr>';
  258. }
  259. echo $grouplist.'</table>';
  260. }
  261. // Footer
  262. Display :: display_footer();