survey.php 16 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297
  1. <?php
  2. /* For licensing terms, see /license.txt */
  3. /**
  4. * @package chamilo.survey
  5. * @author Patrick Cool <patrick.cool@UGent.be>, Ghent University: cleanup, refactoring and rewriting large parts of the code
  6. * @author Julio Montoya
  7. */
  8. use ChamiloSession as Session;
  9. // Including the global initialization file
  10. require_once '../inc/global.inc.php';
  11. $this_section = SECTION_COURSES;
  12. $current_course_tool = TOOL_SURVEY;
  13. api_protect_course_script(true);
  14. /** @todo this has to be moved to a more appropriate place (after the display_header of the code)*/
  15. // Coach can't view this page
  16. $extend_rights_for_coachs = api_get_setting('extend_rights_for_coach_on_survey');
  17. $isDrhOfCourse = CourseManager::isUserSubscribedInCourseAsDrh(
  18. api_get_user_id(),
  19. api_get_course_info()
  20. );
  21. if ($isDrhOfCourse) {
  22. header('Location: '.api_get_path(WEB_CODE_PATH).'survey/survey_list.php?'.api_get_cidreq());
  23. exit;
  24. }
  25. if (!api_is_allowed_to_edit(false, true) ||
  26. (api_is_course_coach() && $extend_rights_for_coachs == 'false')
  27. ) {
  28. Display :: display_header(get_lang('ToolSurvey'));
  29. Display :: display_error_message(get_lang('NotAllowed'), false);
  30. Display :: display_footer();
  31. exit;
  32. }
  33. // Database table definitions
  34. $table_survey = Database:: get_course_table(TABLE_SURVEY);
  35. $table_survey_question = Database:: get_course_table(TABLE_SURVEY_QUESTION);
  36. $table_survey_question_option = Database:: get_course_table(TABLE_SURVEY_QUESTION_OPTION);
  37. $table_survey_question_group = Database:: get_course_table(TABLE_SURVEY_QUESTION_GROUP);
  38. $table_course = Database:: get_main_table(TABLE_MAIN_COURSE);
  39. $table_user = Database:: get_main_table(TABLE_MAIN_USER);
  40. $survey_id = intval($_GET['survey_id']);
  41. $course_id = api_get_course_int_id();
  42. $action = isset($_GET['action']) ? $_GET['action'] : null;
  43. // Breadcrumbs
  44. $interbreadcrumb[] = array(
  45. 'url' => api_get_path(WEB_CODE_PATH).'survey/survey_list.php',
  46. 'name' => get_lang('SurveyList'),
  47. );
  48. // Getting the survey information
  49. if (!empty($_GET['survey_id'])) {
  50. $course_code = api_get_course_id();
  51. if ($course_code!=-1) {
  52. $survey_data = SurveyManager::get_survey($survey_id);
  53. } else {
  54. Display :: display_header(get_lang('ToolSurvey'));
  55. Display :: display_error_message(get_lang('NotAllowed'), false);
  56. Display :: display_footer();
  57. exit;
  58. }
  59. } else {
  60. Display :: display_header(get_lang('ToolSurvey'));
  61. Display :: display_error_message(get_lang('NotAllowed'), false);
  62. Display :: display_footer();
  63. exit;
  64. }
  65. $tool_name = strip_tags($survey_data['title']);
  66. $is_survey_type_1 = $survey_data['survey_type'] == 1;
  67. if (api_strlen(strip_tags($survey_data['title'])) > 40) {
  68. $tool_name .= '...';
  69. }
  70. if ($is_survey_type_1 && ($action == 'addgroup' || $action == 'deletegroup')) {
  71. $_POST['name'] = trim($_POST['name']);
  72. if ($action == 'addgroup') {
  73. if (!empty($_POST['group_id'])) {
  74. Database::query('UPDATE '.$table_survey_question_group.' SET description = \''.Database::escape_string($_POST['description']).'\'
  75. WHERE c_id = '.$course_id.' AND id = \''.Database::escape_string($_POST['group_id']).'\'');
  76. $sendmsg = 'GroupUpdatedSuccessfully';
  77. } elseif(!empty($_POST['name'])) {
  78. Database::query('INSERT INTO '.$table_survey_question_group.' (c_id, name,description,survey_id) values ('.$course_id.', \''.Database::escape_string($_POST['name']).'\',\''.Database::escape_string($_POST['description']).'\',\''.Database::escape_string($survey_id).'\') ');
  79. $sendmsg = 'GroupCreatedSuccessfully';
  80. } else {
  81. $sendmsg = 'GroupNeedName';
  82. }
  83. }
  84. if ($action == 'deletegroup') {
  85. Database::query('DELETE FROM '.$table_survey_question_group.' WHERE c_id = '.$course_id.' AND id = '.intval($_GET['gid']).' and survey_id = '.intval($survey_id));
  86. $sendmsg = 'GroupDeletedSuccessfully';
  87. }
  88. header('Location: '.api_get_path(WEB_CODE_PATH).'survey/survey.php?survey_id='.$survey_id.'&sendmsg='.$sendmsg);
  89. exit;
  90. }
  91. // Displaying the header
  92. Display::display_header($tool_name, 'Survey');
  93. // Action handling
  94. $my_action_survey = Security::remove_XSS($action);
  95. $my_question_id_survey = isset($_GET['question_id']) ? Security::remove_XSS($_GET['question_id']) : null;
  96. $my_survey_id_survey = Security::remove_XSS($_GET['survey_id']);
  97. $message_information = isset($_GET['message']) ? Security::remove_XSS($_GET['message']) : null;
  98. if (isset($action)) {
  99. if (($action == 'moveup' || $action == 'movedown') && isset($_GET['question_id'])) {
  100. SurveyManager::move_survey_question($my_action_survey,$my_question_id_survey,$my_survey_id_survey);
  101. Display::display_confirmation_message(get_lang('SurveyQuestionMoved'));
  102. }
  103. if ($action == 'delete' AND is_numeric($_GET['question_id'])) {
  104. SurveyManager::delete_survey_question($my_survey_id_survey, $my_question_id_survey, $survey_data['is_shared']);
  105. }
  106. }
  107. if (!empty($survey_data['survey_version'])) echo '<b>'.get_lang('Version').': '.$survey_data['survey_version'].'</b>';
  108. // We exit here is the first or last question is a pagebreak (which causes errors)
  109. SurveyUtil::check_first_last_question($_GET['survey_id']);
  110. // Action links
  111. $survey_actions = '<a href="'.api_get_path(WEB_CODE_PATH).'survey/create_new_survey.php?'.api_get_cidreq().'&amp;action=edit&amp;survey_id='.$survey_id.'">'.Display::return_icon('edit.png', get_lang('EditSurvey'),'',ICON_SIZE_MEDIUM).'</a>';
  112. $survey_actions .= '<a href="'.api_get_path(WEB_CODE_PATH).'survey/survey_list.php?'.api_get_cidreq().'&amp;action=delete&amp;survey_id='.$survey_id.'" onclick="javascript:if(!confirm(\''.addslashes(api_htmlentities(get_lang('DeleteSurvey').'?', ENT_QUOTES)).'\')) return false;">'.Display::return_icon('delete.png', get_lang('DeleteSurvey'),'',ICON_SIZE_MEDIUM).'</a>';
  113. //$survey_actions .= '<a href="'.api_get_path(WEB_CODE_PATH).'survey/create_survey_in_another_language.php?id_survey='.$survey_id.'">'.Display::return_icon('copy.gif', get_lang('Copy')).'</a>';
  114. $survey_actions .= '<a href="'.api_get_path(WEB_CODE_PATH).'survey/preview.php?'.api_get_cidreq().'&amp;survey_id='.$survey_id.'">'.Display::return_icon('preview_view.png', get_lang('Preview'),'',ICON_SIZE_MEDIUM).'</a>';
  115. $survey_actions .= '<a href="'.api_get_path(WEB_CODE_PATH).'survey/survey_invite.php?'.api_get_cidreq().'&amp;survey_id='.$survey_id.'">'.Display::return_icon('mail_send.png', get_lang('Publish'),'',ICON_SIZE_MEDIUM).'</a>';
  116. $survey_actions .= '<a href="'.api_get_path(WEB_CODE_PATH).'survey/reporting.php?'.api_get_cidreq().'&amp;survey_id='.$survey_id.'">'.Display::return_icon('stats.png', get_lang('Reporting'),'',ICON_SIZE_MEDIUM).'</a>';
  117. echo '<div class="actions">'.$survey_actions.'</div>';
  118. if ($survey_data['survey_type'] == 0) {
  119. echo '<div class="panel panel-default">';
  120. echo '<div class="panel-body">';
  121. echo '<a href="'.api_get_path(WEB_CODE_PATH).'survey/question.php?'.api_get_cidreq().'&amp;action=add&type=yesno&amp;survey_id='.$survey_id.'">'.Display::return_icon('yesno.png', get_lang('YesNo'), null, ICON_SIZE_BIG).'</a>';
  122. echo '<a href="'.api_get_path(WEB_CODE_PATH).'survey/question.php?'.api_get_cidreq().'&amp;action=add&type=multiplechoice&amp;survey_id='.$survey_id.'">'.Display::return_icon('mcua.png', get_lang('UniqueSelect'), null, ICON_SIZE_BIG).'</a>';
  123. echo '<a href="'.api_get_path(WEB_CODE_PATH).'survey/question.php?'.api_get_cidreq().'&amp;action=add&type=multipleresponse&amp;survey_id='.$survey_id.'">'.Display::return_icon('mcma.png', get_lang('MultipleResponse'), null, ICON_SIZE_BIG).'</a>';
  124. echo '<a href="'.api_get_path(WEB_CODE_PATH).'survey/question.php?'.api_get_cidreq().'&amp;action=add&type=open&amp;survey_id='.$survey_id.'">'.Display::return_icon('open_answer.png', get_lang('Open'), null, ICON_SIZE_BIG).'</a>';
  125. echo '<a href="'.api_get_path(WEB_CODE_PATH).'survey/question.php?'.api_get_cidreq().'&amp;action=add&type=dropdown&amp;survey_id='.$survey_id.'">'.Display::return_icon('dropdown.png', get_lang('Dropdown'), null, ICON_SIZE_BIG).'</a>';
  126. echo '<a href="'.api_get_path(WEB_CODE_PATH).'survey/question.php?'.api_get_cidreq().'&amp;action=add&type=percentage&amp;survey_id='.$survey_id.'">'.Display::return_icon('percentagequestion.png', get_lang('Percentage'), null, ICON_SIZE_BIG).'</a>';
  127. echo '<a href="'.api_get_path(WEB_CODE_PATH).'survey/question.php?'.api_get_cidreq().'&amp;action=add&type=score&amp;survey_id='.$survey_id.'">'.Display::return_icon('scorequestion.png', get_lang('Score'), null, ICON_SIZE_BIG).'</a>';
  128. echo '<a href="'.api_get_path(WEB_CODE_PATH).'survey/question.php?'.api_get_cidreq().'&amp;action=add&type=comment&amp;survey_id='.$survey_id.'">'.Display::return_icon('commentquestion.png', get_lang('Comment'), null, ICON_SIZE_BIG).'</a>';
  129. echo '<a href="'.api_get_path(WEB_CODE_PATH).'survey/question.php?'.api_get_cidreq().'&amp;action=add&type=pagebreak&amp;survey_id='.$survey_id.'">'.Display::return_icon('page_end.png', get_lang('Pagebreak'), null, ICON_SIZE_BIG).'</a>';
  130. echo '</div>';
  131. echo '</div>';
  132. } else {
  133. echo '<div class="panel panel-default">';
  134. echo '<div class="panel-body">';
  135. echo '<a href="'.api_get_path(WEB_CODE_PATH).'survey/question.php?'.api_get_cidreq().'&amp;action=add&type=personality&amp;survey_id='.$survey_id.'">';
  136. echo Display::return_icon("yesno.png");
  137. echo '</a></div>';
  138. echo '</div>';
  139. echo '</div>';
  140. }
  141. // Displaying the table header with all the questions
  142. echo '<table class="data_table">';
  143. echo ' <tr class="row_odd">';
  144. echo ' <th width="15">'.get_lang('QuestionNumber').'</th>';
  145. echo ' <th>'.get_lang('Title').'</th>';
  146. echo ' <th>'.get_lang('Type').'</th>';
  147. echo ' <th width="50" >'.get_lang('NumberOfOptions').'</th>';
  148. echo ' <th width="100">'.get_lang('Modify').'</th>';
  149. if ($is_survey_type_1) {
  150. echo '<th width="100">'.get_lang('Condition').'</th>';
  151. echo '<th width="40">'.get_lang('Group').'</th>';
  152. }
  153. echo ' </tr>';
  154. // Displaying the table contents with all the questions
  155. $question_counter = 1;
  156. $sql = "SELECT * FROM $table_survey_question_group
  157. WHERE c_id = '.$course_id.' AND survey_id = ".intval($survey_id)." ORDER BY id";
  158. $result = Database::query($sql);
  159. $groups = array();
  160. while ($row = Database::fetch_array($result)) {
  161. $groups[$row['id']] = $row['name'];
  162. }
  163. $sql = "SELECT survey_question.*, count(survey_question_option.question_option_id) as number_of_options
  164. FROM $table_survey_question survey_question
  165. LEFT JOIN $table_survey_question_option survey_question_option
  166. ON survey_question.question_id = survey_question_option.question_id AND survey_question_option.c_id = $course_id
  167. WHERE
  168. survey_question.survey_id = ".intval($survey_id)." AND
  169. survey_question.c_id = $course_id
  170. GROUP BY survey_question.question_id
  171. ORDER BY survey_question.sort ASC";
  172. $result = Database::query($sql);
  173. $question_counter_max = Database::num_rows($result);
  174. while ($row = Database::fetch_array($result, 'ASSOC')) {
  175. echo '<tr>';
  176. echo ' <td>'.$question_counter.'</td>';
  177. echo ' <td>';
  178. if (api_strlen($row['survey_question']) > 100) {
  179. echo api_substr(strip_tags($row['survey_question']), 0, 100).' ... ';
  180. } else {
  181. echo $row['survey_question'];
  182. }
  183. if ($row['type'] == 'yesno') {
  184. $tool_name = get_lang('YesNo');
  185. } else if ($row['type'] == 'multiplechoice') {
  186. $tool_name = get_lang('UniqueSelect');
  187. } else {
  188. $tool_name = get_lang(api_ucfirst(Security::remove_XSS($row['type'])));
  189. }
  190. echo '</td>';
  191. echo ' <td>'.$tool_name.'</td>';
  192. echo ' <td>'.$row['number_of_options'].'</td>';
  193. echo ' <td>';
  194. echo ' <a href="'.api_get_path(WEB_CODE_PATH).'survey/question.php?'.api_get_cidreq().'&amp;action=edit&amp;type='.$row['type'].'&amp;survey_id='.$survey_id.'&amp;question_id='.$row['question_id'].'">'.Display::return_icon('edit.png', get_lang('Edit'),'',ICON_SIZE_SMALL).'</a>';
  195. echo ' <a href="'.api_get_path(WEB_CODE_PATH).'survey/survey.php?'.api_get_cidreq().'&amp;action=delete&amp;survey_id='.$survey_id.'&amp;question_id='.$row['question_id'].'" onclick="javascript:if(!confirm(\''.addslashes(api_htmlentities(get_lang("DeleteSurveyQuestion").'?',ENT_QUOTES,$charset)).'\')) return false;">'.Display::return_icon('delete.png', get_lang('Delete'),'',ICON_SIZE_SMALL).'</a>';
  196. if ($question_counter > 1) {
  197. echo ' <a href="'.api_get_path(WEB_CODE_PATH).'survey/survey.php?'.api_get_cidreq().'&amp;action=moveup&amp;survey_id='.$survey_id.'&amp;question_id='.$row['question_id'].'">'.Display::return_icon('up.png', get_lang('MoveUp'),'',ICON_SIZE_SMALL).'</a>';
  198. } else {
  199. Display::display_icon('up_na.png','&nbsp;','',ICON_SIZE_SMALL);
  200. }
  201. if ($question_counter < $question_counter_max) {
  202. echo ' <a href="'.api_get_path(WEB_CODE_PATH).'survey/survey.php?'.api_get_cidreq().'&amp;action=movedown&amp;survey_id='.$survey_id.'&amp;question_id='.$row['question_id'].'">'.Display::return_icon('down.png', get_lang('MoveDown'),'',ICON_SIZE_SMALL).'</a>';
  203. } else {
  204. Display::display_icon('down_na.png','&nbsp;','',ICON_SIZE_SMALL);
  205. }
  206. echo ' </td>';
  207. $question_counter++;
  208. if ($is_survey_type_1) {
  209. echo '<td>'.(($row['survey_group_pri']==0)?get_lang('Secondary'):get_lang('Primary')).'</td>';
  210. echo '<td>'.(($row['survey_group_pri']==0)?$groups[$row['survey_group_sec1']].'-'.$groups[$row['survey_group_sec2']]:$groups[$row['survey_group_pri']]).'</td>';
  211. }
  212. echo '</tr>';
  213. }
  214. echo '</table>';
  215. if ($is_survey_type_1) {
  216. echo '<br /><br /><b>'.get_lang('ManageGroups').'</b><br /><br />';
  217. if (in_array($_GET['sendmsg'], array('GroupUpdatedSuccessfully', 'GroupDeletedSuccessfully', 'GroupCreatedSuccessfully'))) {
  218. echo Display::display_confirmation_message(get_lang($_GET['sendmsg']), false);
  219. }
  220. if (in_array($_GET['sendmsg'], array('GroupNeedName'))){
  221. echo Display::display_warning_message(get_lang($_GET['sendmsg']), false);
  222. }
  223. echo '<table border="0"><tr><td width="100">'.get_lang('Name').'</td><td>'.get_lang('Description').'</td></tr></table>';
  224. echo '<form action="'.api_get_path(WEB_CODE_PATH).'survey/survey.php?action=addgroup&survey_id='.$survey_id.'" method="post">';
  225. if ($_GET['action'] == 'editgroup') {
  226. $sql = 'SELECT name,description FROM '.$table_survey_question_group.' WHERE id = '.intval($_GET['gid']).' AND survey_id = '.intval($survey_id).' limit 1';
  227. $rs = Database::query($sql);
  228. $editedrow = Database::fetch_array($rs,'ASSOC');
  229. echo '<input type="text" maxlength="20" name="name" value="'.$editedrow['name'].'" size="10" disabled>';
  230. echo '<input type="text" maxlength="150" name="description" value="'.$editedrow['description'].'" size="40">';
  231. echo '<input type="hidden" name="group_id" value="'.Security::remove_XSS($_GET['gid']).'">';
  232. echo '<input type="submit" value="'.get_lang('Save').'"'.'<input type="button" value="'.get_lang('Cancel').'" onclick="window.location.href = \'survey.php?survey_id='.Security::remove_XSS($survey_id).'\';" />';
  233. } else {
  234. echo '<input type="text" maxlength="20" name="name" value="" size="10">';
  235. echo '<input type="text" maxlength="250" name="description" value="" size="80">';
  236. echo '<input type="submit" value="'.get_lang('Create').'"';
  237. }
  238. echo '</form><br />';
  239. echo '<table class="data_table">';
  240. echo ' <tr class="row_odd">';
  241. echo ' <th width="200">'.get_lang('Name').'</th>';
  242. echo ' <th>'.get_lang('Description').'</th>';
  243. echo ' <th width="100">'.get_lang('Modify').'</th>';
  244. echo ' </tr>';
  245. $sql = 'SELECT id,name,description FROM '.$table_survey_question_group.' WHERE c_id = '.$course_id.' AND survey_id = '.intval($survey_id).' ORDER BY name';
  246. $rs = Database::query($sql);
  247. while($row = Database::fetch_array($rs,ASSOC)){
  248. $grouplist .= '<tr><td>'.$row['name'].'</td><td>'.$row['description'].'</td><td>'.
  249. '<a href="'.api_get_path(WEB_CODE_PATH).'survey/survey.php?survey_id='.$survey_id.'&gid='.$row['id'].'&action=editgroup">'.
  250. Display::return_icon('edit.png', get_lang('Edit'),'',ICON_SIZE_SMALL).'</a> '.
  251. '<a href="'.api_get_path(WEB_CODE_PATH).'survey/survey.php?survey_id='.$survey_id.'&gid='.$row['id'].'&action=deletegroup" onclick="javascript:if(!confirm(\''.addslashes(api_htmlentities(sprintf(get_lang('DeleteSurveyGroup'),$row['name']).'?',ENT_QUOTES)).'\')) return false;">'.
  252. Display::return_icon('delete.png', get_lang('Delete'),'',ICON_SIZE_SMALL).'</a>'.
  253. '</td></tr>';
  254. }
  255. echo $grouplist.'</table>';
  256. }
  257. Session::erase('answer_count');
  258. // Footer
  259. Display :: display_footer();