teampanfu / oauth2-discord
PHP League OAuth2-Client 的 Discord OAuth 2.0 客户端提供者
v1.0.3
2023-10-17 23:17 UTC
Requires
- php: ^7.2|^8.0
- league/oauth2-client: ^2.0
Requires (Dev)
- ext-json: *
- mockery/mockery: ^1.5
- phpunit/phpunit: ^10.0
README
此包为 PHP League 的 OAuth 2.0 客户端 提供了 Discord OAuth 2.0 支持。
安装
要安装,请使用 Composer
composer require teampanfu/oauth2-discord
使用方法
实现 OAuth2 的第一步是 注册开发者应用程序 并获取您的客户端 ID 和客户端密钥。
授权码流
<?php require __DIR__.'/vendor/autoload.php'; use Panfu\OAuth2\Client\Provider\Discord; session_start(); $provider = new Discord([ 'clientId' => 'YOUR_CLIENT_ID', 'clientSecret' => 'YOUR_CLIENT_SECRET', 'redirectUri' => 'https:///callback-url', ]); if (!empty($_GET['error'])) { // Got an error, probably user denied access exit('Got error: '.htmlspecialchars($_GET['error'], ENT_QUOTES, 'UTF-8')); } else if (empty($_GET['code'])) { // If we don't have an authorization code then get one $authUrl = $provider->getAuthorizationUrl(); $_SESSION['oauth2state'] = $provider->getState(); header('Location: '.$authUrl); exit; } else if (empty($_GET['state']) || ($_GET['state'] !== $_SESSION['oauth2state'])) { // State is invalid, possible CSRF attack in progress unset($_SESSION['oauth2state']); exit('Invalid state'); } else { // Try to get an access token (using the authorization code grant) $token = $provider->getAccessToken('authorization_code', [ 'code' => $_GET['code'], ]); // Now that you have a token, you can retrieve a user's data try { $user = $provider->getResourceOwner($token); // Depending on which scope you use, you now have access to the user data printf('Hello %s#%s!', $user->getUsername(), $user->getDiscriminator()); } catch (Exception $e) { // Failed to get user data exit('Something went wrong:'.$e->getMessage()); } }
获取用户数据
当使用 getResourceOwner()
方法获取用户节点时,它将作为 DiscordUser
实体返回。
$user = $provider->getResourceOwner($token); $id = $user->getId(); var_dump($id); # string(17) "80351110224678912" $username = $user->getUsername(); var_dump($username); # string(5) "Nelly" $discriminator = $user->getDiscriminator(); var_dump($discriminator); # string(4) "1337" $avatar = $user->getAvatar(); var_dump($avatar); # string(32) "8342729096ea3675442027381ff50dfe" $isBot = $user->getBot(); var_dump($isBot); # boolean false $isSystem = $user->getSystem(); var_dump($isSystem); # boolean false $isMfaEnabled = $user->getMfaEnabled(); var_dump($isMfaEnabled); # boolean true $banner = $user->getBanner(); var_dump($banner); # string(32) "06c16474723fe537c283b8efa61a30c8" $accentColor = $user->getAccentColor(); var_dump($accentColor); # int 16711680 $locale = $user->getLocale(); var_dump($locale); # string(5) "en-GB" $verified = $user->getVerified(); var_dump($verified); # boolean true $email = $user->getEmail(); var_dump($email); # string(17) "nelly@discord.com" $flags = $user->getFlags(); var_dump($flags); # int 64 $premiumType = $user->getPremiumType(); var_dump($premiumType); # int 1 $publicFlags = $user->getPublicFlags(); var_dump($publicFlags); # int 64
您还可以使用 toArray()
方法将用户节点中的所有数据作为一个普通的 PHP 数组获取。
$userData = $user->toArray();
管理作用域
在创建授权 URL 时,您可以指定不同的作用域。
$options = [ 'scope' => ['identify', 'email', 'guilds.join'], ]; $authUrl = $provider->getAuthorizationUrl($options);
您可以在 Discord API 文档中找到 所有可用作用域 的列表。
客户端凭证授权
Discord 为机器人开发者提供了客户端凭证流,以便在测试目的下获取自己的 bearer 令牌。这将为机器人所有者返回访问令牌
$provider = new Discord(...); try { $accessToken = $provider->getAccessToken('client_credentials'); } catch (Exception $e) { exit('Something went wrong: '.$e->getMessage()); }
机器人授权
要授权一个机器人,请指定 bot
作用域并适当设置权限
$provider = new Discord(...); $options = [ 'scope' => ['bot'], 'permissions' => 1, ]; $authUrl = $provider->getAuthorizationUrl($options); header('Location: '.$authUrl);
测试
$ ./vendor/bin/phpunit
贡献
如果您发现了一个错误或对功能有建议,请随意创建一个新问题或发起一个 pull request。
我们非常欢迎每个贡献!
许可证
此包是开源软件,在 MIT 许可证 下授权。