main.py 73 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980818283848586878889909192939495969798991001011021031041051061071081091101111121131141151161171181191201211221231241251261271281291301311321331341351361371381391401411421431441451461471481491501511521531541551561571581591601611621631641651661671681691701711721731741751761771781791801811821831841851861871881891901911921931941951961971981992002012022032042052062072082092102112122132142152162172182192202212222232242252262272282292302312322332342352362372382392402412422432442452462472482492502512522532542552562572582592602612622632642652662672682692702712722732742752762772782792802812822832842852862872882892902912922932942952962972982993003013023033043053063073083093103113123133143153163173183193203213223233243253263273283293303313323333343353363373383393403413423433443453463473483493503513523533543553563573583593603613623633643653663673683693703713723733743753763773783793803813823833843853863873883893903913923933943953963973983994004014024034044054064074084094104114124134144154164174184194204214224234244254264274284294304314324334344354364374384394404414424434444454464474484494504514524534544554564574584594604614624634644654664674684694704714724734744754764774784794804814824834844854864874884894904914924934944954964974984995005015025035045055065075085095105115125135145155165175185195205215225235245255265275285295305315325335345355365375385395405415425435445455465475485495505515525535545555565575585595605615625635645655665675685695705715725735745755765775785795805815825835845855865875885895905915925935945955965975985996006016026036046056066076086096106116126136146156166176186196206216226236246256266276286296306316326336346356366376386396406416426436446456466476486496506516526536546556566576586596606616626636646656666676686696706716726736746756766776786796806816826836846856866876886896906916926936946956966976986997007017027037047057067077087097107117127137147157167177187197207217227237247257267277287297307317327337347357367377387397407417427437447457467477487497507517527537547557567577587597607617627637647657667677687697707717727737747757767777787797807817827837847857867877887897907917927937947957967977987998008018028038048058068078088098108118128138148158168178188198208218228238248258268278288298308318328338348358368378388398408418428438448458468478488498508518528538548558568578588598608618628638648658668678688698708718728738748758768778788798808818828838848858868878888898908918928938948958968978988999009019029039049059069079089099109119129139149159169179189199209219229239249259269279289299309319329339349359369379389399409419429439449459469479489499509519529539549559569579589599609619629639649659669679689699709719729739749759769779789799809819829839849859869879889899909919929939949959969979989991000100110021003100410051006100710081009101010111012101310141015101610171018101910201021102210231024102510261027102810291030103110321033103410351036103710381039104010411042104310441045104610471048104910501051105210531054105510561057105810591060106110621063106410651066106710681069107010711072107310741075107610771078107910801081108210831084108510861087108810891090109110921093109410951096109710981099110011011102110311041105110611071108110911101111111211131114111511161117111811191120112111221123112411251126112711281129113011311132113311341135113611371138113911401141114211431144114511461147114811491150115111521153115411551156115711581159116011611162116311641165116611671168116911701171117211731174117511761177117811791180118111821183118411851186118711881189119011911192119311941195119611971198119912001201120212031204120512061207120812091210121112121213121412151216121712181219122012211222122312241225122612271228122912301231123212331234123512361237123812391240124112421243124412451246124712481249125012511252125312541255125612571258125912601261126212631264126512661267126812691270127112721273127412751276127712781279128012811282128312841285128612871288128912901291129212931294129512961297129812991300130113021303130413051306130713081309131013111312131313141315131613171318131913201321132213231324132513261327132813291330133113321333133413351336133713381339134013411342134313441345134613471348134913501351135213531354135513561357135813591360136113621363136413651366136713681369137013711372137313741375137613771378137913801381138213831384138513861387138813891390139113921393139413951396139713981399140014011402140314041405140614071408140914101411141214131414141514161417141814191420142114221423142414251426142714281429143014311432143314341435143614371438143914401441144214431444144514461447144814491450145114521453145414551456145714581459146014611462146314641465146614671468146914701471147214731474147514761477147814791480148114821483148414851486148714881489149014911492149314941495149614971498149915001501150215031504150515061507150815091510151115121513151415151516151715181519152015211522152315241525152615271528152915301531153215331534153515361537153815391540154115421543154415451546154715481549155015511552155315541555155615571558155915601561156215631564156515661567156815691570157115721573157415751576157715781579158015811582158315841585158615871588158915901591159215931594159515961597159815991600160116021603160416051606160716081609161016111612161316141615161616171618161916201621162216231624162516261627162816291630163116321633163416351636163716381639164016411642164316441645164616471648164916501651165216531654165516561657165816591660166116621663166416651666166716681669167016711672167316741675167616771678167916801681168216831684168516861687168816891690169116921693169416951696169716981699170017011702170317041705170617071708170917101711171217131714171517161717171817191720172117221723172417251726172717281729173017311732173317341735173617371738173917401741174217431744174517461747174817491750175117521753175417551756175717581759176017611762176317641765176617671768176917701771177217731774177517761777177817791780178117821783178417851786178717881789179017911792179317941795179617971798179918001801180218031804180518061807180818091810181118121813181418151816181718181819182018211822182318241825182618271828182918301831183218331834183518361837183818391840184118421843184418451846184718481849185018511852185318541855185618571858185918601861186218631864186518661867186818691870187118721873187418751876187718781879188018811882188318841885188618871888188918901891189218931894189518961897189818991900190119021903190419051906190719081909191019111912191319141915191619171918191919201921192219231924192519261927192819291930193119321933193419351936193719381939194019411942194319441945194619471948194919501951195219531954195519561957195819591960196119621963196419651966196719681969197019711972197319741975197619771978197919801981198219831984198519861987198819891990199119921993199419951996199719981999200020012002200320042005200620072008200920102011201220132014201520162017201820192020202120222023202420252026202720282029203020312032203320342035203620372038203920402041204220432044204520462047204820492050205120522053205420552056205720582059206020612062206320642065206620672068206920702071207220732074207520762077207820792080208120822083208420852086208720882089209020912092209320942095209620972098209921002101210221032104210521062107210821092110211121122113211421152116211721182119212021212122212321242125212621272128212921302131213221332134213521362137213821392140214121422143214421452146214721482149215021512152215321542155215621572158215921602161216221632164216521662167216821692170217121722173217421752176217721782179218021812182218321842185218621872188218921902191219221932194219521962197219821992200220122022203220422052206220722082209221022112212221322142215221622172218221922202221222222232224222522262227222822292230223122322233223422352236223722382239224022412242224322442245224622472248224922502251225222532254225522562257225822592260226122622263226422652266226722682269227022712272227322742275227622772278227922802281228222832284228522862287228822892290229122922293229422952296229722982299230023012302230323042305230623072308230923102311231223132314231523162317231823192320232123222323232423252326232723282329
  1. import base64
  2. import uuid
  3. from contextlib import asynccontextmanager
  4. from authlib.integrations.starlette_client import OAuth
  5. from authlib.oidc.core import UserInfo
  6. import json
  7. import time
  8. import os
  9. import sys
  10. import logging
  11. import aiohttp
  12. import requests
  13. import mimetypes
  14. import shutil
  15. import inspect
  16. from fastapi import FastAPI, Request, Depends, status, UploadFile, File, Form
  17. from fastapi.staticfiles import StaticFiles
  18. from fastapi.responses import JSONResponse
  19. from fastapi import HTTPException
  20. from fastapi.middleware.cors import CORSMiddleware
  21. from sqlalchemy import text
  22. from starlette.exceptions import HTTPException as StarletteHTTPException
  23. from starlette.middleware.base import BaseHTTPMiddleware
  24. from starlette.middleware.sessions import SessionMiddleware
  25. from starlette.responses import StreamingResponse, Response, RedirectResponse
  26. from apps.socket.main import app as socket_app, get_event_emitter, get_event_call
  27. from apps.ollama.main import (
  28. app as ollama_app,
  29. get_all_models as get_ollama_models,
  30. generate_openai_chat_completion as generate_ollama_chat_completion,
  31. )
  32. from apps.openai.main import (
  33. app as openai_app,
  34. get_all_models as get_openai_models,
  35. generate_chat_completion as generate_openai_chat_completion,
  36. )
  37. from apps.audio.main import app as audio_app
  38. from apps.images.main import app as images_app
  39. from apps.rag.main import app as rag_app
  40. from apps.webui.main import (
  41. app as webui_app,
  42. get_pipe_models,
  43. generate_function_chat_completion,
  44. )
  45. from apps.webui.internal.db import Session
  46. from pydantic import BaseModel
  47. from typing import Optional
  48. from apps.webui.models.auths import Auths
  49. from apps.webui.models.models import Models
  50. from apps.webui.models.tools import Tools
  51. from apps.webui.models.functions import Functions
  52. from apps.webui.models.users import Users
  53. from apps.webui.utils import load_toolkit_module_by_id, load_function_module_by_id
  54. from utils.utils import (
  55. get_admin_user,
  56. get_verified_user,
  57. get_current_user,
  58. get_http_authorization_cred,
  59. get_password_hash,
  60. create_token,
  61. )
  62. from utils.task import (
  63. title_generation_template,
  64. search_query_generation_template,
  65. tools_function_calling_generation_template,
  66. )
  67. from utils.misc import (
  68. get_last_user_message,
  69. add_or_update_system_message,
  70. prepend_to_first_user_message_content,
  71. parse_duration,
  72. )
  73. from apps.rag.utils import get_rag_context, rag_template
  74. from config import (
  75. WEBUI_NAME,
  76. WEBUI_URL,
  77. WEBUI_AUTH,
  78. ENV,
  79. VERSION,
  80. CHANGELOG,
  81. FRONTEND_BUILD_DIR,
  82. CACHE_DIR,
  83. STATIC_DIR,
  84. DEFAULT_LOCALE,
  85. ENABLE_OPENAI_API,
  86. ENABLE_OLLAMA_API,
  87. ENABLE_MODEL_FILTER,
  88. MODEL_FILTER_LIST,
  89. GLOBAL_LOG_LEVEL,
  90. SRC_LOG_LEVELS,
  91. WEBHOOK_URL,
  92. ENABLE_ADMIN_EXPORT,
  93. WEBUI_BUILD_HASH,
  94. TASK_MODEL,
  95. TASK_MODEL_EXTERNAL,
  96. TITLE_GENERATION_PROMPT_TEMPLATE,
  97. SEARCH_QUERY_GENERATION_PROMPT_TEMPLATE,
  98. SEARCH_QUERY_PROMPT_LENGTH_THRESHOLD,
  99. TOOLS_FUNCTION_CALLING_PROMPT_TEMPLATE,
  100. SAFE_MODE,
  101. OAUTH_PROVIDERS,
  102. ENABLE_OAUTH_SIGNUP,
  103. OAUTH_MERGE_ACCOUNTS_BY_EMAIL,
  104. WEBUI_SECRET_KEY,
  105. WEBUI_SESSION_COOKIE_SAME_SITE,
  106. WEBUI_SESSION_COOKIE_SECURE,
  107. ENABLE_ADMIN_CHAT_ACCESS,
  108. AppConfig,
  109. )
  110. from constants import ERROR_MESSAGES, WEBHOOK_MESSAGES, TASKS
  111. from utils.webhook import post_webhook
  112. if SAFE_MODE:
  113. print("SAFE MODE ENABLED")
  114. Functions.deactivate_all_functions()
  115. logging.basicConfig(stream=sys.stdout, level=GLOBAL_LOG_LEVEL)
  116. log = logging.getLogger(__name__)
  117. log.setLevel(SRC_LOG_LEVELS["MAIN"])
  118. class SPAStaticFiles(StaticFiles):
  119. async def get_response(self, path: str, scope):
  120. try:
  121. return await super().get_response(path, scope)
  122. except (HTTPException, StarletteHTTPException) as ex:
  123. if ex.status_code == 404:
  124. return await super().get_response("index.html", scope)
  125. else:
  126. raise ex
  127. print(
  128. rf"""
  129. ___ __ __ _ _ _ ___
  130. / _ \ _ __ ___ _ __ \ \ / /__| |__ | | | |_ _|
  131. | | | | '_ \ / _ \ '_ \ \ \ /\ / / _ \ '_ \| | | || |
  132. | |_| | |_) | __/ | | | \ V V / __/ |_) | |_| || |
  133. \___/| .__/ \___|_| |_| \_/\_/ \___|_.__/ \___/|___|
  134. |_|
  135. v{VERSION} - building the best open-source AI user interface.
  136. {f"Commit: {WEBUI_BUILD_HASH}" if WEBUI_BUILD_HASH != "dev-build" else ""}
  137. https://github.com/open-webui/open-webui
  138. """
  139. )
  140. def run_migrations():
  141. try:
  142. from alembic.config import Config
  143. from alembic import command
  144. alembic_cfg = Config("alembic.ini")
  145. command.upgrade(alembic_cfg, "head")
  146. except Exception as e:
  147. print(f"Error: {e}")
  148. @asynccontextmanager
  149. async def lifespan(app: FastAPI):
  150. run_migrations()
  151. yield
  152. app = FastAPI(
  153. docs_url="/docs" if ENV == "dev" else None, redoc_url=None, lifespan=lifespan
  154. )
  155. app.state.config = AppConfig()
  156. app.state.config.ENABLE_OPENAI_API = ENABLE_OPENAI_API
  157. app.state.config.ENABLE_OLLAMA_API = ENABLE_OLLAMA_API
  158. app.state.config.ENABLE_MODEL_FILTER = ENABLE_MODEL_FILTER
  159. app.state.config.MODEL_FILTER_LIST = MODEL_FILTER_LIST
  160. app.state.config.WEBHOOK_URL = WEBHOOK_URL
  161. app.state.config.TASK_MODEL = TASK_MODEL
  162. app.state.config.TASK_MODEL_EXTERNAL = TASK_MODEL_EXTERNAL
  163. app.state.config.TITLE_GENERATION_PROMPT_TEMPLATE = TITLE_GENERATION_PROMPT_TEMPLATE
  164. app.state.config.SEARCH_QUERY_GENERATION_PROMPT_TEMPLATE = (
  165. SEARCH_QUERY_GENERATION_PROMPT_TEMPLATE
  166. )
  167. app.state.config.SEARCH_QUERY_PROMPT_LENGTH_THRESHOLD = (
  168. SEARCH_QUERY_PROMPT_LENGTH_THRESHOLD
  169. )
  170. app.state.config.TOOLS_FUNCTION_CALLING_PROMPT_TEMPLATE = (
  171. TOOLS_FUNCTION_CALLING_PROMPT_TEMPLATE
  172. )
  173. app.state.MODELS = {}
  174. origins = ["*"]
  175. ##################################
  176. #
  177. # ChatCompletion Middleware
  178. #
  179. ##################################
  180. async def get_body_and_model_and_user(request):
  181. # Read the original request body
  182. body = await request.body()
  183. body_str = body.decode("utf-8")
  184. body = json.loads(body_str) if body_str else {}
  185. model_id = body["model"]
  186. if model_id not in app.state.MODELS:
  187. raise Exception("Model not found")
  188. model = app.state.MODELS[model_id]
  189. user = get_current_user(
  190. request,
  191. get_http_authorization_cred(request.headers.get("Authorization")),
  192. )
  193. return body, model, user
  194. def get_task_model_id(default_model_id):
  195. # Set the task model
  196. task_model_id = default_model_id
  197. # Check if the user has a custom task model and use that model
  198. if app.state.MODELS[task_model_id]["owned_by"] == "ollama":
  199. if (
  200. app.state.config.TASK_MODEL
  201. and app.state.config.TASK_MODEL in app.state.MODELS
  202. ):
  203. task_model_id = app.state.config.TASK_MODEL
  204. else:
  205. if (
  206. app.state.config.TASK_MODEL_EXTERNAL
  207. and app.state.config.TASK_MODEL_EXTERNAL in app.state.MODELS
  208. ):
  209. task_model_id = app.state.config.TASK_MODEL_EXTERNAL
  210. return task_model_id
  211. def get_filter_function_ids(model):
  212. def get_priority(function_id):
  213. function = Functions.get_function_by_id(function_id)
  214. if function is not None and hasattr(function, "valves"):
  215. return (function.valves if function.valves else {}).get("priority", 0)
  216. return 0
  217. filter_ids = [function.id for function in Functions.get_global_filter_functions()]
  218. if "info" in model and "meta" in model["info"]:
  219. filter_ids.extend(model["info"]["meta"].get("filterIds", []))
  220. filter_ids = list(set(filter_ids))
  221. enabled_filter_ids = [
  222. function.id
  223. for function in Functions.get_functions_by_type("filter", active_only=True)
  224. ]
  225. filter_ids = [
  226. filter_id for filter_id in filter_ids if filter_id in enabled_filter_ids
  227. ]
  228. filter_ids.sort(key=get_priority)
  229. return filter_ids
  230. async def get_function_call_response(
  231. messages,
  232. files,
  233. tool_id,
  234. template,
  235. task_model_id,
  236. user,
  237. __event_emitter__=None,
  238. __event_call__=None,
  239. ):
  240. tool = Tools.get_tool_by_id(tool_id)
  241. tools_specs = json.dumps(tool.specs, indent=2)
  242. content = tools_function_calling_generation_template(template, tools_specs)
  243. user_message = get_last_user_message(messages)
  244. prompt = (
  245. "History:\n"
  246. + "\n".join(
  247. [
  248. f"{message['role'].upper()}: \"\"\"{message['content']}\"\"\""
  249. for message in messages[::-1][:4]
  250. ]
  251. )
  252. + f"\nQuery: {user_message}"
  253. )
  254. print(prompt)
  255. payload = {
  256. "model": task_model_id,
  257. "messages": [
  258. {"role": "system", "content": content},
  259. {"role": "user", "content": f"Query: {prompt}"},
  260. ],
  261. "stream": False,
  262. "task": str(TASKS.FUNCTION_CALLING),
  263. }
  264. try:
  265. payload = filter_pipeline(payload, user)
  266. except Exception as e:
  267. raise e
  268. model = app.state.MODELS[task_model_id]
  269. response = None
  270. try:
  271. response = await generate_chat_completions(form_data=payload, user=user)
  272. content = None
  273. if hasattr(response, "body_iterator"):
  274. async for chunk in response.body_iterator:
  275. data = json.loads(chunk.decode("utf-8"))
  276. content = data["choices"][0]["message"]["content"]
  277. # Cleanup any remaining background tasks if necessary
  278. if response.background is not None:
  279. await response.background()
  280. else:
  281. content = response["choices"][0]["message"]["content"]
  282. if content is None:
  283. return None, None, False
  284. # Parse the function response
  285. print(f"content: {content}")
  286. result = json.loads(content)
  287. print(result)
  288. citation = None
  289. if "name" not in result:
  290. return None, None, False
  291. # Call the function
  292. if tool_id in webui_app.state.TOOLS:
  293. toolkit_module = webui_app.state.TOOLS[tool_id]
  294. else:
  295. toolkit_module, _ = load_toolkit_module_by_id(tool_id)
  296. webui_app.state.TOOLS[tool_id] = toolkit_module
  297. file_handler = False
  298. # check if toolkit_module has file_handler self variable
  299. if hasattr(toolkit_module, "file_handler"):
  300. file_handler = True
  301. print("file_handler: ", file_handler)
  302. if hasattr(toolkit_module, "valves") and hasattr(toolkit_module, "Valves"):
  303. valves = Tools.get_tool_valves_by_id(tool_id)
  304. toolkit_module.valves = toolkit_module.Valves(**(valves if valves else {}))
  305. function = getattr(toolkit_module, result["name"])
  306. function_result = None
  307. try:
  308. # Get the signature of the function
  309. sig = inspect.signature(function)
  310. params = result["parameters"]
  311. # Extra parameters to be passed to the function
  312. extra_params = {
  313. "__model__": model,
  314. "__id__": tool_id,
  315. "__messages__": messages,
  316. "__files__": files,
  317. "__event_emitter__": __event_emitter__,
  318. "__event_call__": __event_call__,
  319. }
  320. # Add extra params in contained in function signature
  321. for key, value in extra_params.items():
  322. if key in sig.parameters:
  323. params[key] = value
  324. if "__user__" in sig.parameters:
  325. # Call the function with the '__user__' parameter included
  326. __user__ = {
  327. "id": user.id,
  328. "email": user.email,
  329. "name": user.name,
  330. "role": user.role,
  331. }
  332. try:
  333. if hasattr(toolkit_module, "UserValves"):
  334. __user__["valves"] = toolkit_module.UserValves(
  335. **Tools.get_user_valves_by_id_and_user_id(tool_id, user.id)
  336. )
  337. except Exception as e:
  338. print(e)
  339. params = {**params, "__user__": __user__}
  340. if inspect.iscoroutinefunction(function):
  341. function_result = await function(**params)
  342. else:
  343. function_result = function(**params)
  344. if hasattr(toolkit_module, "citation") and toolkit_module.citation:
  345. citation = {
  346. "source": {"name": f"TOOL:{tool.name}/{result['name']}"},
  347. "document": [function_result],
  348. "metadata": [{"source": result["name"]}],
  349. }
  350. except Exception as e:
  351. print(e)
  352. # Add the function result to the system prompt
  353. if function_result is not None:
  354. return function_result, citation, file_handler
  355. except Exception as e:
  356. print(f"Error: {e}")
  357. return None, None, False
  358. async def chat_completion_functions_handler(
  359. body, model, user, __event_emitter__, __event_call__
  360. ):
  361. skip_files = None
  362. filter_ids = get_filter_function_ids(model)
  363. for filter_id in filter_ids:
  364. filter = Functions.get_function_by_id(filter_id)
  365. if not filter:
  366. continue
  367. if filter_id in webui_app.state.FUNCTIONS:
  368. function_module = webui_app.state.FUNCTIONS[filter_id]
  369. else:
  370. function_module, _, _ = load_function_module_by_id(filter_id)
  371. webui_app.state.FUNCTIONS[filter_id] = function_module
  372. # Check if the function has a file_handler variable
  373. if hasattr(function_module, "file_handler"):
  374. skip_files = function_module.file_handler
  375. if hasattr(function_module, "valves") and hasattr(function_module, "Valves"):
  376. valves = Functions.get_function_valves_by_id(filter_id)
  377. function_module.valves = function_module.Valves(
  378. **(valves if valves else {})
  379. )
  380. if not hasattr(function_module, "inlet"):
  381. continue
  382. try:
  383. inlet = function_module.inlet
  384. # Get the signature of the function
  385. sig = inspect.signature(inlet)
  386. params = {"body": body}
  387. # Extra parameters to be passed to the function
  388. extra_params = {
  389. "__model__": model,
  390. "__id__": filter_id,
  391. "__event_emitter__": __event_emitter__,
  392. "__event_call__": __event_call__,
  393. }
  394. # Add extra params in contained in function signature
  395. for key, value in extra_params.items():
  396. if key in sig.parameters:
  397. params[key] = value
  398. if "__user__" in sig.parameters:
  399. __user__ = {
  400. "id": user.id,
  401. "email": user.email,
  402. "name": user.name,
  403. "role": user.role,
  404. }
  405. try:
  406. if hasattr(function_module, "UserValves"):
  407. __user__["valves"] = function_module.UserValves(
  408. **Functions.get_user_valves_by_id_and_user_id(
  409. filter_id, user.id
  410. )
  411. )
  412. except Exception as e:
  413. print(e)
  414. params = {**params, "__user__": __user__}
  415. if inspect.iscoroutinefunction(inlet):
  416. body = await inlet(**params)
  417. else:
  418. body = inlet(**params)
  419. except Exception as e:
  420. print(f"Error: {e}")
  421. raise e
  422. if skip_files:
  423. if "files" in body:
  424. del body["files"]
  425. return body, {}
  426. async def chat_completion_tools_handler(body, user, __event_emitter__, __event_call__):
  427. skip_files = None
  428. contexts = []
  429. citations = None
  430. task_model_id = get_task_model_id(body["model"])
  431. # If tool_ids field is present, call the functions
  432. if "tool_ids" in body:
  433. print(body["tool_ids"])
  434. for tool_id in body["tool_ids"]:
  435. print(tool_id)
  436. try:
  437. response, citation, file_handler = await get_function_call_response(
  438. messages=body["messages"],
  439. files=body.get("files", []),
  440. tool_id=tool_id,
  441. template=app.state.config.TOOLS_FUNCTION_CALLING_PROMPT_TEMPLATE,
  442. task_model_id=task_model_id,
  443. user=user,
  444. __event_emitter__=__event_emitter__,
  445. __event_call__=__event_call__,
  446. )
  447. print(file_handler)
  448. if isinstance(response, str):
  449. contexts.append(response)
  450. if citation:
  451. if citations is None:
  452. citations = [citation]
  453. else:
  454. citations.append(citation)
  455. if file_handler:
  456. skip_files = True
  457. except Exception as e:
  458. print(f"Error: {e}")
  459. del body["tool_ids"]
  460. print(f"tool_contexts: {contexts}")
  461. if skip_files:
  462. if "files" in body:
  463. del body["files"]
  464. return body, {
  465. **({"contexts": contexts} if contexts is not None else {}),
  466. **({"citations": citations} if citations is not None else {}),
  467. }
  468. async def chat_completion_files_handler(body):
  469. contexts = []
  470. citations = None
  471. if "files" in body:
  472. files = body["files"]
  473. del body["files"]
  474. contexts, citations = get_rag_context(
  475. files=files,
  476. messages=body["messages"],
  477. embedding_function=rag_app.state.EMBEDDING_FUNCTION,
  478. k=rag_app.state.config.TOP_K,
  479. reranking_function=rag_app.state.sentence_transformer_rf,
  480. r=rag_app.state.config.RELEVANCE_THRESHOLD,
  481. hybrid_search=rag_app.state.config.ENABLE_RAG_HYBRID_SEARCH,
  482. )
  483. log.debug(f"rag_contexts: {contexts}, citations: {citations}")
  484. return body, {
  485. **({"contexts": contexts} if contexts is not None else {}),
  486. **({"citations": citations} if citations is not None else {}),
  487. }
  488. class ChatCompletionMiddleware(BaseHTTPMiddleware):
  489. async def dispatch(self, request: Request, call_next):
  490. if request.method == "POST" and any(
  491. endpoint in request.url.path
  492. for endpoint in ["/ollama/api/chat", "/chat/completions"]
  493. ):
  494. log.debug(f"request.url.path: {request.url.path}")
  495. try:
  496. body, model, user = await get_body_and_model_and_user(request)
  497. except Exception as e:
  498. return JSONResponse(
  499. status_code=status.HTTP_400_BAD_REQUEST,
  500. content={"detail": str(e)},
  501. )
  502. metadata = {
  503. "chat_id": body.pop("chat_id", None),
  504. "message_id": body.pop("id", None),
  505. "session_id": body.pop("session_id", None),
  506. "valves": body.pop("valves", None),
  507. }
  508. __event_emitter__ = get_event_emitter(metadata)
  509. __event_call__ = get_event_call(metadata)
  510. # Initialize data_items to store additional data to be sent to the client
  511. data_items = []
  512. # Initialize context, and citations
  513. contexts = []
  514. citations = []
  515. try:
  516. body, flags = await chat_completion_functions_handler(
  517. body, model, user, __event_emitter__, __event_call__
  518. )
  519. except Exception as e:
  520. return JSONResponse(
  521. status_code=status.HTTP_400_BAD_REQUEST,
  522. content={"detail": str(e)},
  523. )
  524. try:
  525. body, flags = await chat_completion_tools_handler(
  526. body, user, __event_emitter__, __event_call__
  527. )
  528. contexts.extend(flags.get("contexts", []))
  529. citations.extend(flags.get("citations", []))
  530. except Exception as e:
  531. print(e)
  532. pass
  533. try:
  534. body, flags = await chat_completion_files_handler(body)
  535. contexts.extend(flags.get("contexts", []))
  536. citations.extend(flags.get("citations", []))
  537. except Exception as e:
  538. print(e)
  539. pass
  540. # If context is not empty, insert it into the messages
  541. if len(contexts) > 0:
  542. context_string = "/n".join(contexts).strip()
  543. prompt = get_last_user_message(body["messages"])
  544. # Workaround for Ollama 2.0+ system prompt issue
  545. # TODO: replace with add_or_update_system_message
  546. if model["owned_by"] == "ollama":
  547. body["messages"] = prepend_to_first_user_message_content(
  548. rag_template(
  549. rag_app.state.config.RAG_TEMPLATE, context_string, prompt
  550. ),
  551. body["messages"],
  552. )
  553. else:
  554. body["messages"] = add_or_update_system_message(
  555. rag_template(
  556. rag_app.state.config.RAG_TEMPLATE, context_string, prompt
  557. ),
  558. body["messages"],
  559. )
  560. # If there are citations, add them to the data_items
  561. if len(citations) > 0:
  562. data_items.append({"citations": citations})
  563. body["metadata"] = metadata
  564. modified_body_bytes = json.dumps(body).encode("utf-8")
  565. # Replace the request body with the modified one
  566. request._body = modified_body_bytes
  567. # Set custom header to ensure content-length matches new body length
  568. request.headers.__dict__["_list"] = [
  569. (b"content-length", str(len(modified_body_bytes)).encode("utf-8")),
  570. *[
  571. (k, v)
  572. for k, v in request.headers.raw
  573. if k.lower() != b"content-length"
  574. ],
  575. ]
  576. response = await call_next(request)
  577. if isinstance(response, StreamingResponse):
  578. # If it's a streaming response, inject it as SSE event or NDJSON line
  579. content_type = response.headers.get("Content-Type")
  580. if "text/event-stream" in content_type:
  581. return StreamingResponse(
  582. self.openai_stream_wrapper(response.body_iterator, data_items),
  583. )
  584. if "application/x-ndjson" in content_type:
  585. return StreamingResponse(
  586. self.ollama_stream_wrapper(response.body_iterator, data_items),
  587. )
  588. return response
  589. else:
  590. return response
  591. # If it's not a chat completion request, just pass it through
  592. response = await call_next(request)
  593. return response
  594. async def _receive(self, body: bytes):
  595. return {"type": "http.request", "body": body, "more_body": False}
  596. async def openai_stream_wrapper(self, original_generator, data_items):
  597. for item in data_items:
  598. yield f"data: {json.dumps(item)}\n\n"
  599. async for data in original_generator:
  600. yield data
  601. async def ollama_stream_wrapper(self, original_generator, data_items):
  602. for item in data_items:
  603. yield f"{json.dumps(item)}\n"
  604. async for data in original_generator:
  605. yield data
  606. app.add_middleware(ChatCompletionMiddleware)
  607. ##################################
  608. #
  609. # Pipeline Middleware
  610. #
  611. ##################################
  612. def get_sorted_filters(model_id):
  613. filters = [
  614. model
  615. for model in app.state.MODELS.values()
  616. if "pipeline" in model
  617. and "type" in model["pipeline"]
  618. and model["pipeline"]["type"] == "filter"
  619. and (
  620. model["pipeline"]["pipelines"] == ["*"]
  621. or any(
  622. model_id == target_model_id
  623. for target_model_id in model["pipeline"]["pipelines"]
  624. )
  625. )
  626. ]
  627. sorted_filters = sorted(filters, key=lambda x: x["pipeline"]["priority"])
  628. return sorted_filters
  629. def filter_pipeline(payload, user):
  630. user = {"id": user.id, "email": user.email, "name": user.name, "role": user.role}
  631. model_id = payload["model"]
  632. sorted_filters = get_sorted_filters(model_id)
  633. model = app.state.MODELS[model_id]
  634. if "pipeline" in model:
  635. sorted_filters.append(model)
  636. for filter in sorted_filters:
  637. r = None
  638. try:
  639. urlIdx = filter["urlIdx"]
  640. url = openai_app.state.config.OPENAI_API_BASE_URLS[urlIdx]
  641. key = openai_app.state.config.OPENAI_API_KEYS[urlIdx]
  642. if key != "":
  643. headers = {"Authorization": f"Bearer {key}"}
  644. r = requests.post(
  645. f"{url}/{filter['id']}/filter/inlet",
  646. headers=headers,
  647. json={
  648. "user": user,
  649. "body": payload,
  650. },
  651. )
  652. r.raise_for_status()
  653. payload = r.json()
  654. except Exception as e:
  655. # Handle connection error here
  656. print(f"Connection error: {e}")
  657. if r is not None:
  658. res = r.json()
  659. if "detail" in res:
  660. raise Exception(r.status_code, res["detail"])
  661. return payload
  662. class PipelineMiddleware(BaseHTTPMiddleware):
  663. async def dispatch(self, request: Request, call_next):
  664. if request.method == "POST" and (
  665. "/ollama/api/chat" in request.url.path
  666. or "/chat/completions" in request.url.path
  667. ):
  668. log.debug(f"request.url.path: {request.url.path}")
  669. # Read the original request body
  670. body = await request.body()
  671. # Decode body to string
  672. body_str = body.decode("utf-8")
  673. # Parse string to JSON
  674. data = json.loads(body_str) if body_str else {}
  675. user = get_current_user(
  676. request,
  677. get_http_authorization_cred(request.headers.get("Authorization")),
  678. )
  679. try:
  680. data = filter_pipeline(data, user)
  681. except Exception as e:
  682. return JSONResponse(
  683. status_code=e.args[0],
  684. content={"detail": e.args[1]},
  685. )
  686. modified_body_bytes = json.dumps(data).encode("utf-8")
  687. # Replace the request body with the modified one
  688. request._body = modified_body_bytes
  689. # Set custom header to ensure content-length matches new body length
  690. request.headers.__dict__["_list"] = [
  691. (b"content-length", str(len(modified_body_bytes)).encode("utf-8")),
  692. *[
  693. (k, v)
  694. for k, v in request.headers.raw
  695. if k.lower() != b"content-length"
  696. ],
  697. ]
  698. response = await call_next(request)
  699. return response
  700. async def _receive(self, body: bytes):
  701. return {"type": "http.request", "body": body, "more_body": False}
  702. app.add_middleware(PipelineMiddleware)
  703. app.add_middleware(
  704. CORSMiddleware,
  705. allow_origins=origins,
  706. allow_credentials=True,
  707. allow_methods=["*"],
  708. allow_headers=["*"],
  709. )
  710. @app.middleware("http")
  711. async def commit_session_after_request(request: Request, call_next):
  712. response = await call_next(request)
  713. log.debug("Commit session after request")
  714. Session.commit()
  715. return response
  716. @app.middleware("http")
  717. async def check_url(request: Request, call_next):
  718. if len(app.state.MODELS) == 0:
  719. await get_all_models()
  720. else:
  721. pass
  722. start_time = int(time.time())
  723. response = await call_next(request)
  724. process_time = int(time.time()) - start_time
  725. response.headers["X-Process-Time"] = str(process_time)
  726. return response
  727. @app.middleware("http")
  728. async def update_embedding_function(request: Request, call_next):
  729. response = await call_next(request)
  730. if "/embedding/update" in request.url.path:
  731. webui_app.state.EMBEDDING_FUNCTION = rag_app.state.EMBEDDING_FUNCTION
  732. return response
  733. app.mount("/ws", socket_app)
  734. app.mount("/ollama", ollama_app)
  735. app.mount("/openai", openai_app)
  736. app.mount("/images/api/v1", images_app)
  737. app.mount("/audio/api/v1", audio_app)
  738. app.mount("/rag/api/v1", rag_app)
  739. app.mount("/api/v1", webui_app)
  740. webui_app.state.EMBEDDING_FUNCTION = rag_app.state.EMBEDDING_FUNCTION
  741. async def get_all_models():
  742. # TODO: Optimize this function
  743. pipe_models = []
  744. openai_models = []
  745. ollama_models = []
  746. pipe_models = await get_pipe_models()
  747. if app.state.config.ENABLE_OPENAI_API:
  748. openai_models = await get_openai_models()
  749. openai_models = openai_models["data"]
  750. if app.state.config.ENABLE_OLLAMA_API:
  751. ollama_models = await get_ollama_models()
  752. ollama_models = [
  753. {
  754. "id": model["model"],
  755. "name": model["name"],
  756. "object": "model",
  757. "created": int(time.time()),
  758. "owned_by": "ollama",
  759. "ollama": model,
  760. }
  761. for model in ollama_models["models"]
  762. ]
  763. models = pipe_models + openai_models + ollama_models
  764. global_action_ids = [
  765. function.id for function in Functions.get_global_action_functions()
  766. ]
  767. enabled_action_ids = [
  768. function.id
  769. for function in Functions.get_functions_by_type("action", active_only=True)
  770. ]
  771. custom_models = Models.get_all_models()
  772. for custom_model in custom_models:
  773. if custom_model.base_model_id is None:
  774. for model in models:
  775. if (
  776. custom_model.id == model["id"]
  777. or custom_model.id == model["id"].split(":")[0]
  778. ):
  779. model["name"] = custom_model.name
  780. model["info"] = custom_model.model_dump()
  781. action_ids = []
  782. if "info" in model and "meta" in model["info"]:
  783. action_ids.extend(model["info"]["meta"].get("actionIds", []))
  784. model["action_ids"] = action_ids
  785. else:
  786. owned_by = "openai"
  787. pipe = None
  788. action_ids = []
  789. for model in models:
  790. if (
  791. custom_model.base_model_id == model["id"]
  792. or custom_model.base_model_id == model["id"].split(":")[0]
  793. ):
  794. owned_by = model["owned_by"]
  795. if "pipe" in model:
  796. pipe = model["pipe"]
  797. if "info" in model and "meta" in model["info"]:
  798. action_ids.extend(model["info"]["meta"].get("actionIds", []))
  799. break
  800. models.append(
  801. {
  802. "id": custom_model.id,
  803. "name": custom_model.name,
  804. "object": "model",
  805. "created": custom_model.created_at,
  806. "owned_by": owned_by,
  807. "info": custom_model.model_dump(),
  808. "preset": True,
  809. **({"pipe": pipe} if pipe is not None else {}),
  810. "action_ids": action_ids,
  811. }
  812. )
  813. for model in models:
  814. action_ids = []
  815. if "action_ids" in model:
  816. action_ids = model["action_ids"]
  817. del model["action_ids"]
  818. action_ids = action_ids + global_action_ids
  819. action_ids = list(set(action_ids))
  820. action_ids = [
  821. action_id for action_id in action_ids if action_id in enabled_action_ids
  822. ]
  823. model["actions"] = []
  824. for action_id in action_ids:
  825. action = Functions.get_function_by_id(action_id)
  826. if action_id in webui_app.state.FUNCTIONS:
  827. function_module = webui_app.state.FUNCTIONS[action_id]
  828. else:
  829. function_module, _, _ = load_function_module_by_id(action_id)
  830. webui_app.state.FUNCTIONS[action_id] = function_module
  831. __webui__ = False
  832. if hasattr(function_module, "__webui__"):
  833. __webui__ = function_module.__webui__
  834. if hasattr(function_module, "actions"):
  835. actions = function_module.actions
  836. model["actions"].extend(
  837. [
  838. {
  839. "id": f"{action_id}.{_action['id']}",
  840. "name": _action.get(
  841. "name", f"{action.name} ({_action['id']})"
  842. ),
  843. "description": action.meta.description,
  844. "icon_url": _action.get(
  845. "icon_url", action.meta.manifest.get("icon_url", None)
  846. ),
  847. **({"__webui__": __webui__} if __webui__ else {}),
  848. }
  849. for _action in actions
  850. ]
  851. )
  852. else:
  853. model["actions"].append(
  854. {
  855. "id": action_id,
  856. "name": action.name,
  857. "description": action.meta.description,
  858. "icon_url": action.meta.manifest.get("icon_url", None),
  859. **({"__webui__": __webui__} if __webui__ else {}),
  860. }
  861. )
  862. app.state.MODELS = {model["id"]: model for model in models}
  863. webui_app.state.MODELS = app.state.MODELS
  864. return models
  865. @app.get("/api/models")
  866. async def get_models(user=Depends(get_verified_user)):
  867. models = await get_all_models()
  868. # Filter out filter pipelines
  869. models = [
  870. model
  871. for model in models
  872. if "pipeline" not in model or model["pipeline"].get("type", None) != "filter"
  873. ]
  874. if app.state.config.ENABLE_MODEL_FILTER:
  875. if user.role == "user":
  876. models = list(
  877. filter(
  878. lambda model: model["id"] in app.state.config.MODEL_FILTER_LIST,
  879. models,
  880. )
  881. )
  882. return {"data": models}
  883. return {"data": models}
  884. @app.post("/api/chat/completions")
  885. async def generate_chat_completions(form_data: dict, user=Depends(get_verified_user)):
  886. model_id = form_data["model"]
  887. if model_id not in app.state.MODELS:
  888. raise HTTPException(
  889. status_code=status.HTTP_404_NOT_FOUND,
  890. detail="Model not found",
  891. )
  892. model = app.state.MODELS[model_id]
  893. # `task` field is used to determine the type of the request, e.g. `title_generation`, `query_generation`, etc.
  894. task = None
  895. if "task" in form_data:
  896. task = form_data["task"]
  897. del form_data["task"]
  898. if task:
  899. if "metadata" in form_data:
  900. form_data["metadata"]["task"] = task
  901. else:
  902. form_data["metadata"] = {"task": task}
  903. if model.get("pipe"):
  904. return await generate_function_chat_completion(form_data, user=user)
  905. if model["owned_by"] == "ollama":
  906. print("generate_ollama_chat_completion")
  907. return await generate_ollama_chat_completion(form_data, user=user)
  908. else:
  909. return await generate_openai_chat_completion(form_data, user=user)
  910. @app.post("/api/chat/completed")
  911. async def chat_completed(form_data: dict, user=Depends(get_verified_user)):
  912. data = form_data
  913. model_id = data["model"]
  914. if model_id not in app.state.MODELS:
  915. raise HTTPException(
  916. status_code=status.HTTP_404_NOT_FOUND,
  917. detail="Model not found",
  918. )
  919. model = app.state.MODELS[model_id]
  920. sorted_filters = get_sorted_filters(model_id)
  921. if "pipeline" in model:
  922. sorted_filters = [model] + sorted_filters
  923. for filter in sorted_filters:
  924. r = None
  925. try:
  926. urlIdx = filter["urlIdx"]
  927. url = openai_app.state.config.OPENAI_API_BASE_URLS[urlIdx]
  928. key = openai_app.state.config.OPENAI_API_KEYS[urlIdx]
  929. if key != "":
  930. headers = {"Authorization": f"Bearer {key}"}
  931. r = requests.post(
  932. f"{url}/{filter['id']}/filter/outlet",
  933. headers=headers,
  934. json={
  935. "user": {
  936. "id": user.id,
  937. "name": user.name,
  938. "email": user.email,
  939. "role": user.role,
  940. },
  941. "body": data,
  942. },
  943. )
  944. r.raise_for_status()
  945. data = r.json()
  946. except Exception as e:
  947. # Handle connection error here
  948. print(f"Connection error: {e}")
  949. if r is not None:
  950. try:
  951. res = r.json()
  952. if "detail" in res:
  953. return JSONResponse(
  954. status_code=r.status_code,
  955. content=res,
  956. )
  957. except Exception:
  958. pass
  959. else:
  960. pass
  961. __event_emitter__ = get_event_emitter(
  962. {
  963. "chat_id": data["chat_id"],
  964. "message_id": data["id"],
  965. "session_id": data["session_id"],
  966. }
  967. )
  968. __event_call__ = get_event_call(
  969. {
  970. "chat_id": data["chat_id"],
  971. "message_id": data["id"],
  972. "session_id": data["session_id"],
  973. }
  974. )
  975. def get_priority(function_id):
  976. function = Functions.get_function_by_id(function_id)
  977. if function is not None and hasattr(function, "valves"):
  978. return (function.valves if function.valves else {}).get("priority", 0)
  979. return 0
  980. filter_ids = [function.id for function in Functions.get_global_filter_functions()]
  981. if "info" in model and "meta" in model["info"]:
  982. filter_ids.extend(model["info"]["meta"].get("filterIds", []))
  983. filter_ids = list(set(filter_ids))
  984. enabled_filter_ids = [
  985. function.id
  986. for function in Functions.get_functions_by_type("filter", active_only=True)
  987. ]
  988. filter_ids = [
  989. filter_id for filter_id in filter_ids if filter_id in enabled_filter_ids
  990. ]
  991. # Sort filter_ids by priority, using the get_priority function
  992. filter_ids.sort(key=get_priority)
  993. for filter_id in filter_ids:
  994. filter = Functions.get_function_by_id(filter_id)
  995. if not filter:
  996. continue
  997. if filter_id in webui_app.state.FUNCTIONS:
  998. function_module = webui_app.state.FUNCTIONS[filter_id]
  999. else:
  1000. function_module, _, _ = load_function_module_by_id(filter_id)
  1001. webui_app.state.FUNCTIONS[filter_id] = function_module
  1002. if hasattr(function_module, "valves") and hasattr(function_module, "Valves"):
  1003. valves = Functions.get_function_valves_by_id(filter_id)
  1004. function_module.valves = function_module.Valves(
  1005. **(valves if valves else {})
  1006. )
  1007. if not hasattr(function_module, "outlet"):
  1008. continue
  1009. try:
  1010. outlet = function_module.outlet
  1011. # Get the signature of the function
  1012. sig = inspect.signature(outlet)
  1013. params = {"body": data}
  1014. # Extra parameters to be passed to the function
  1015. extra_params = {
  1016. "__model__": model,
  1017. "__id__": filter_id,
  1018. "__event_emitter__": __event_emitter__,
  1019. "__event_call__": __event_call__,
  1020. }
  1021. # Add extra params in contained in function signature
  1022. for key, value in extra_params.items():
  1023. if key in sig.parameters:
  1024. params[key] = value
  1025. if "__user__" in sig.parameters:
  1026. __user__ = {
  1027. "id": user.id,
  1028. "email": user.email,
  1029. "name": user.name,
  1030. "role": user.role,
  1031. }
  1032. try:
  1033. if hasattr(function_module, "UserValves"):
  1034. __user__["valves"] = function_module.UserValves(
  1035. **Functions.get_user_valves_by_id_and_user_id(
  1036. filter_id, user.id
  1037. )
  1038. )
  1039. except Exception as e:
  1040. print(e)
  1041. params = {**params, "__user__": __user__}
  1042. if inspect.iscoroutinefunction(outlet):
  1043. data = await outlet(**params)
  1044. else:
  1045. data = outlet(**params)
  1046. except Exception as e:
  1047. print(f"Error: {e}")
  1048. return JSONResponse(
  1049. status_code=status.HTTP_400_BAD_REQUEST,
  1050. content={"detail": str(e)},
  1051. )
  1052. return data
  1053. @app.post("/api/chat/actions/{action_id}")
  1054. async def chat_action(action_id: str, form_data: dict, user=Depends(get_verified_user)):
  1055. if "." in action_id:
  1056. action_id, sub_action_id = action_id.split(".")
  1057. else:
  1058. sub_action_id = None
  1059. action = Functions.get_function_by_id(action_id)
  1060. if not action:
  1061. raise HTTPException(
  1062. status_code=status.HTTP_404_NOT_FOUND,
  1063. detail="Action not found",
  1064. )
  1065. data = form_data
  1066. model_id = data["model"]
  1067. if model_id not in app.state.MODELS:
  1068. raise HTTPException(
  1069. status_code=status.HTTP_404_NOT_FOUND,
  1070. detail="Model not found",
  1071. )
  1072. model = app.state.MODELS[model_id]
  1073. __event_emitter__ = get_event_emitter(
  1074. {
  1075. "chat_id": data["chat_id"],
  1076. "message_id": data["id"],
  1077. "session_id": data["session_id"],
  1078. }
  1079. )
  1080. __event_call__ = get_event_call(
  1081. {
  1082. "chat_id": data["chat_id"],
  1083. "message_id": data["id"],
  1084. "session_id": data["session_id"],
  1085. }
  1086. )
  1087. if action_id in webui_app.state.FUNCTIONS:
  1088. function_module = webui_app.state.FUNCTIONS[action_id]
  1089. else:
  1090. function_module, _, _ = load_function_module_by_id(action_id)
  1091. webui_app.state.FUNCTIONS[action_id] = function_module
  1092. if hasattr(function_module, "valves") and hasattr(function_module, "Valves"):
  1093. valves = Functions.get_function_valves_by_id(action_id)
  1094. function_module.valves = function_module.Valves(**(valves if valves else {}))
  1095. if hasattr(function_module, "action"):
  1096. try:
  1097. action = function_module.action
  1098. # Get the signature of the function
  1099. sig = inspect.signature(action)
  1100. params = {"body": data}
  1101. # Extra parameters to be passed to the function
  1102. extra_params = {
  1103. "__model__": model,
  1104. "__id__": sub_action_id if sub_action_id is not None else action_id,
  1105. "__event_emitter__": __event_emitter__,
  1106. "__event_call__": __event_call__,
  1107. }
  1108. # Add extra params in contained in function signature
  1109. for key, value in extra_params.items():
  1110. if key in sig.parameters:
  1111. params[key] = value
  1112. if "__user__" in sig.parameters:
  1113. __user__ = {
  1114. "id": user.id,
  1115. "email": user.email,
  1116. "name": user.name,
  1117. "role": user.role,
  1118. }
  1119. try:
  1120. if hasattr(function_module, "UserValves"):
  1121. __user__["valves"] = function_module.UserValves(
  1122. **Functions.get_user_valves_by_id_and_user_id(
  1123. action_id, user.id
  1124. )
  1125. )
  1126. except Exception as e:
  1127. print(e)
  1128. params = {**params, "__user__": __user__}
  1129. if inspect.iscoroutinefunction(action):
  1130. data = await action(**params)
  1131. else:
  1132. data = action(**params)
  1133. except Exception as e:
  1134. print(f"Error: {e}")
  1135. return JSONResponse(
  1136. status_code=status.HTTP_400_BAD_REQUEST,
  1137. content={"detail": str(e)},
  1138. )
  1139. return data
  1140. ##################################
  1141. #
  1142. # Task Endpoints
  1143. #
  1144. ##################################
  1145. # TODO: Refactor task API endpoints below into a separate file
  1146. @app.get("/api/task/config")
  1147. async def get_task_config(user=Depends(get_verified_user)):
  1148. return {
  1149. "TASK_MODEL": app.state.config.TASK_MODEL,
  1150. "TASK_MODEL_EXTERNAL": app.state.config.TASK_MODEL_EXTERNAL,
  1151. "TITLE_GENERATION_PROMPT_TEMPLATE": app.state.config.TITLE_GENERATION_PROMPT_TEMPLATE,
  1152. "SEARCH_QUERY_GENERATION_PROMPT_TEMPLATE": app.state.config.SEARCH_QUERY_GENERATION_PROMPT_TEMPLATE,
  1153. "SEARCH_QUERY_PROMPT_LENGTH_THRESHOLD": app.state.config.SEARCH_QUERY_PROMPT_LENGTH_THRESHOLD,
  1154. "TOOLS_FUNCTION_CALLING_PROMPT_TEMPLATE": app.state.config.TOOLS_FUNCTION_CALLING_PROMPT_TEMPLATE,
  1155. }
  1156. class TaskConfigForm(BaseModel):
  1157. TASK_MODEL: Optional[str]
  1158. TASK_MODEL_EXTERNAL: Optional[str]
  1159. TITLE_GENERATION_PROMPT_TEMPLATE: str
  1160. SEARCH_QUERY_GENERATION_PROMPT_TEMPLATE: str
  1161. SEARCH_QUERY_PROMPT_LENGTH_THRESHOLD: int
  1162. TOOLS_FUNCTION_CALLING_PROMPT_TEMPLATE: str
  1163. @app.post("/api/task/config/update")
  1164. async def update_task_config(form_data: TaskConfigForm, user=Depends(get_admin_user)):
  1165. app.state.config.TASK_MODEL = form_data.TASK_MODEL
  1166. app.state.config.TASK_MODEL_EXTERNAL = form_data.TASK_MODEL_EXTERNAL
  1167. app.state.config.TITLE_GENERATION_PROMPT_TEMPLATE = (
  1168. form_data.TITLE_GENERATION_PROMPT_TEMPLATE
  1169. )
  1170. app.state.config.SEARCH_QUERY_GENERATION_PROMPT_TEMPLATE = (
  1171. form_data.SEARCH_QUERY_GENERATION_PROMPT_TEMPLATE
  1172. )
  1173. app.state.config.SEARCH_QUERY_PROMPT_LENGTH_THRESHOLD = (
  1174. form_data.SEARCH_QUERY_PROMPT_LENGTH_THRESHOLD
  1175. )
  1176. app.state.config.TOOLS_FUNCTION_CALLING_PROMPT_TEMPLATE = (
  1177. form_data.TOOLS_FUNCTION_CALLING_PROMPT_TEMPLATE
  1178. )
  1179. return {
  1180. "TASK_MODEL": app.state.config.TASK_MODEL,
  1181. "TASK_MODEL_EXTERNAL": app.state.config.TASK_MODEL_EXTERNAL,
  1182. "TITLE_GENERATION_PROMPT_TEMPLATE": app.state.config.TITLE_GENERATION_PROMPT_TEMPLATE,
  1183. "SEARCH_QUERY_GENERATION_PROMPT_TEMPLATE": app.state.config.SEARCH_QUERY_GENERATION_PROMPT_TEMPLATE,
  1184. "SEARCH_QUERY_PROMPT_LENGTH_THRESHOLD": app.state.config.SEARCH_QUERY_PROMPT_LENGTH_THRESHOLD,
  1185. "TOOLS_FUNCTION_CALLING_PROMPT_TEMPLATE": app.state.config.TOOLS_FUNCTION_CALLING_PROMPT_TEMPLATE,
  1186. }
  1187. @app.post("/api/task/title/completions")
  1188. async def generate_title(form_data: dict, user=Depends(get_verified_user)):
  1189. print("generate_title")
  1190. model_id = form_data["model"]
  1191. if model_id not in app.state.MODELS:
  1192. raise HTTPException(
  1193. status_code=status.HTTP_404_NOT_FOUND,
  1194. detail="Model not found",
  1195. )
  1196. # Check if the user has a custom task model
  1197. # If the user has a custom task model, use that model
  1198. model_id = get_task_model_id(model_id)
  1199. print(model_id)
  1200. template = app.state.config.TITLE_GENERATION_PROMPT_TEMPLATE
  1201. content = title_generation_template(
  1202. template,
  1203. form_data["prompt"],
  1204. {
  1205. "name": user.name,
  1206. "location": user.info.get("location") if user.info else None,
  1207. },
  1208. )
  1209. payload = {
  1210. "model": model_id,
  1211. "messages": [{"role": "user", "content": content}],
  1212. "stream": False,
  1213. "max_tokens": 50,
  1214. "chat_id": form_data.get("chat_id", None),
  1215. "task": str(TASKS.TITLE_GENERATION),
  1216. }
  1217. log.debug(payload)
  1218. try:
  1219. payload = filter_pipeline(payload, user)
  1220. except Exception as e:
  1221. return JSONResponse(
  1222. status_code=e.args[0],
  1223. content={"detail": e.args[1]},
  1224. )
  1225. if "chat_id" in payload:
  1226. del payload["chat_id"]
  1227. return await generate_chat_completions(form_data=payload, user=user)
  1228. @app.post("/api/task/query/completions")
  1229. async def generate_search_query(form_data: dict, user=Depends(get_verified_user)):
  1230. print("generate_search_query")
  1231. if len(form_data["prompt"]) < app.state.config.SEARCH_QUERY_PROMPT_LENGTH_THRESHOLD:
  1232. raise HTTPException(
  1233. status_code=status.HTTP_400_BAD_REQUEST,
  1234. detail=f"Skip search query generation for short prompts (< {app.state.config.SEARCH_QUERY_PROMPT_LENGTH_THRESHOLD} characters)",
  1235. )
  1236. model_id = form_data["model"]
  1237. if model_id not in app.state.MODELS:
  1238. raise HTTPException(
  1239. status_code=status.HTTP_404_NOT_FOUND,
  1240. detail="Model not found",
  1241. )
  1242. # Check if the user has a custom task model
  1243. # If the user has a custom task model, use that model
  1244. model_id = get_task_model_id(model_id)
  1245. print(model_id)
  1246. template = app.state.config.SEARCH_QUERY_GENERATION_PROMPT_TEMPLATE
  1247. content = search_query_generation_template(
  1248. template, form_data["prompt"], {"name": user.name}
  1249. )
  1250. payload = {
  1251. "model": model_id,
  1252. "messages": [{"role": "user", "content": content}],
  1253. "stream": False,
  1254. "max_tokens": 30,
  1255. "task": str(TASKS.QUERY_GENERATION),
  1256. }
  1257. print(payload)
  1258. try:
  1259. payload = filter_pipeline(payload, user)
  1260. except Exception as e:
  1261. return JSONResponse(
  1262. status_code=e.args[0],
  1263. content={"detail": e.args[1]},
  1264. )
  1265. if "chat_id" in payload:
  1266. del payload["chat_id"]
  1267. return await generate_chat_completions(form_data=payload, user=user)
  1268. @app.post("/api/task/emoji/completions")
  1269. async def generate_emoji(form_data: dict, user=Depends(get_verified_user)):
  1270. print("generate_emoji")
  1271. model_id = form_data["model"]
  1272. if model_id not in app.state.MODELS:
  1273. raise HTTPException(
  1274. status_code=status.HTTP_404_NOT_FOUND,
  1275. detail="Model not found",
  1276. )
  1277. # Check if the user has a custom task model
  1278. # If the user has a custom task model, use that model
  1279. model_id = get_task_model_id(model_id)
  1280. print(model_id)
  1281. template = '''
  1282. Your task is to reflect the speaker's likely facial expression through a fitting emoji. Interpret emotions from the message and reflect their facial expression using fitting, diverse emojis (e.g., 😊, 😢, 😡, 😱).
  1283. Message: """{{prompt}}"""
  1284. '''
  1285. content = title_generation_template(
  1286. template,
  1287. form_data["prompt"],
  1288. {
  1289. "name": user.name,
  1290. "location": user.info.get("location") if user.info else None,
  1291. },
  1292. )
  1293. payload = {
  1294. "model": model_id,
  1295. "messages": [{"role": "user", "content": content}],
  1296. "stream": False,
  1297. "max_tokens": 4,
  1298. "chat_id": form_data.get("chat_id", None),
  1299. "task": str(TASKS.EMOJI_GENERATION),
  1300. }
  1301. log.debug(payload)
  1302. try:
  1303. payload = filter_pipeline(payload, user)
  1304. except Exception as e:
  1305. return JSONResponse(
  1306. status_code=e.args[0],
  1307. content={"detail": e.args[1]},
  1308. )
  1309. if "chat_id" in payload:
  1310. del payload["chat_id"]
  1311. return await generate_chat_completions(form_data=payload, user=user)
  1312. @app.post("/api/task/tools/completions")
  1313. async def get_tools_function_calling(form_data: dict, user=Depends(get_verified_user)):
  1314. print("get_tools_function_calling")
  1315. model_id = form_data["model"]
  1316. if model_id not in app.state.MODELS:
  1317. raise HTTPException(
  1318. status_code=status.HTTP_404_NOT_FOUND,
  1319. detail="Model not found",
  1320. )
  1321. # Check if the user has a custom task model
  1322. # If the user has a custom task model, use that model
  1323. model_id = get_task_model_id(model_id)
  1324. print(model_id)
  1325. template = app.state.config.TOOLS_FUNCTION_CALLING_PROMPT_TEMPLATE
  1326. try:
  1327. context, _, _ = await get_function_call_response(
  1328. form_data["messages"],
  1329. form_data.get("files", []),
  1330. form_data["tool_id"],
  1331. template,
  1332. model_id,
  1333. user,
  1334. )
  1335. return context
  1336. except Exception as e:
  1337. return JSONResponse(
  1338. status_code=e.args[0],
  1339. content={"detail": e.args[1]},
  1340. )
  1341. ##################################
  1342. #
  1343. # Pipelines Endpoints
  1344. #
  1345. ##################################
  1346. # TODO: Refactor pipelines API endpoints below into a separate file
  1347. @app.get("/api/pipelines/list")
  1348. async def get_pipelines_list(user=Depends(get_admin_user)):
  1349. responses = await get_openai_models(raw=True)
  1350. print(responses)
  1351. urlIdxs = [
  1352. idx
  1353. for idx, response in enumerate(responses)
  1354. if response is not None and "pipelines" in response
  1355. ]
  1356. return {
  1357. "data": [
  1358. {
  1359. "url": openai_app.state.config.OPENAI_API_BASE_URLS[urlIdx],
  1360. "idx": urlIdx,
  1361. }
  1362. for urlIdx in urlIdxs
  1363. ]
  1364. }
  1365. @app.post("/api/pipelines/upload")
  1366. async def upload_pipeline(
  1367. urlIdx: int = Form(...), file: UploadFile = File(...), user=Depends(get_admin_user)
  1368. ):
  1369. print("upload_pipeline", urlIdx, file.filename)
  1370. # Check if the uploaded file is a python file
  1371. if not file.filename.endswith(".py"):
  1372. raise HTTPException(
  1373. status_code=status.HTTP_400_BAD_REQUEST,
  1374. detail="Only Python (.py) files are allowed.",
  1375. )
  1376. upload_folder = f"{CACHE_DIR}/pipelines"
  1377. os.makedirs(upload_folder, exist_ok=True)
  1378. file_path = os.path.join(upload_folder, file.filename)
  1379. r = None
  1380. try:
  1381. # Save the uploaded file
  1382. with open(file_path, "wb") as buffer:
  1383. shutil.copyfileobj(file.file, buffer)
  1384. url = openai_app.state.config.OPENAI_API_BASE_URLS[urlIdx]
  1385. key = openai_app.state.config.OPENAI_API_KEYS[urlIdx]
  1386. headers = {"Authorization": f"Bearer {key}"}
  1387. with open(file_path, "rb") as f:
  1388. files = {"file": f}
  1389. r = requests.post(f"{url}/pipelines/upload", headers=headers, files=files)
  1390. r.raise_for_status()
  1391. data = r.json()
  1392. return {**data}
  1393. except Exception as e:
  1394. # Handle connection error here
  1395. print(f"Connection error: {e}")
  1396. detail = "Pipeline not found"
  1397. status_code = status.HTTP_404_NOT_FOUND
  1398. if r is not None:
  1399. status_code = r.status_code
  1400. try:
  1401. res = r.json()
  1402. if "detail" in res:
  1403. detail = res["detail"]
  1404. except Exception:
  1405. pass
  1406. raise HTTPException(
  1407. status_code=status_code,
  1408. detail=detail,
  1409. )
  1410. finally:
  1411. # Ensure the file is deleted after the upload is completed or on failure
  1412. if os.path.exists(file_path):
  1413. os.remove(file_path)
  1414. class AddPipelineForm(BaseModel):
  1415. url: str
  1416. urlIdx: int
  1417. @app.post("/api/pipelines/add")
  1418. async def add_pipeline(form_data: AddPipelineForm, user=Depends(get_admin_user)):
  1419. r = None
  1420. try:
  1421. urlIdx = form_data.urlIdx
  1422. url = openai_app.state.config.OPENAI_API_BASE_URLS[urlIdx]
  1423. key = openai_app.state.config.OPENAI_API_KEYS[urlIdx]
  1424. headers = {"Authorization": f"Bearer {key}"}
  1425. r = requests.post(
  1426. f"{url}/pipelines/add", headers=headers, json={"url": form_data.url}
  1427. )
  1428. r.raise_for_status()
  1429. data = r.json()
  1430. return {**data}
  1431. except Exception as e:
  1432. # Handle connection error here
  1433. print(f"Connection error: {e}")
  1434. detail = "Pipeline not found"
  1435. if r is not None:
  1436. try:
  1437. res = r.json()
  1438. if "detail" in res:
  1439. detail = res["detail"]
  1440. except Exception:
  1441. pass
  1442. raise HTTPException(
  1443. status_code=(r.status_code if r is not None else status.HTTP_404_NOT_FOUND),
  1444. detail=detail,
  1445. )
  1446. class DeletePipelineForm(BaseModel):
  1447. id: str
  1448. urlIdx: int
  1449. @app.delete("/api/pipelines/delete")
  1450. async def delete_pipeline(form_data: DeletePipelineForm, user=Depends(get_admin_user)):
  1451. r = None
  1452. try:
  1453. urlIdx = form_data.urlIdx
  1454. url = openai_app.state.config.OPENAI_API_BASE_URLS[urlIdx]
  1455. key = openai_app.state.config.OPENAI_API_KEYS[urlIdx]
  1456. headers = {"Authorization": f"Bearer {key}"}
  1457. r = requests.delete(
  1458. f"{url}/pipelines/delete", headers=headers, json={"id": form_data.id}
  1459. )
  1460. r.raise_for_status()
  1461. data = r.json()
  1462. return {**data}
  1463. except Exception as e:
  1464. # Handle connection error here
  1465. print(f"Connection error: {e}")
  1466. detail = "Pipeline not found"
  1467. if r is not None:
  1468. try:
  1469. res = r.json()
  1470. if "detail" in res:
  1471. detail = res["detail"]
  1472. except Exception:
  1473. pass
  1474. raise HTTPException(
  1475. status_code=(r.status_code if r is not None else status.HTTP_404_NOT_FOUND),
  1476. detail=detail,
  1477. )
  1478. @app.get("/api/pipelines")
  1479. async def get_pipelines(urlIdx: Optional[int] = None, user=Depends(get_admin_user)):
  1480. r = None
  1481. try:
  1482. url = openai_app.state.config.OPENAI_API_BASE_URLS[urlIdx]
  1483. key = openai_app.state.config.OPENAI_API_KEYS[urlIdx]
  1484. headers = {"Authorization": f"Bearer {key}"}
  1485. r = requests.get(f"{url}/pipelines", headers=headers)
  1486. r.raise_for_status()
  1487. data = r.json()
  1488. return {**data}
  1489. except Exception as e:
  1490. # Handle connection error here
  1491. print(f"Connection error: {e}")
  1492. detail = "Pipeline not found"
  1493. if r is not None:
  1494. try:
  1495. res = r.json()
  1496. if "detail" in res:
  1497. detail = res["detail"]
  1498. except Exception:
  1499. pass
  1500. raise HTTPException(
  1501. status_code=(r.status_code if r is not None else status.HTTP_404_NOT_FOUND),
  1502. detail=detail,
  1503. )
  1504. @app.get("/api/pipelines/{pipeline_id}/valves")
  1505. async def get_pipeline_valves(
  1506. urlIdx: Optional[int],
  1507. pipeline_id: str,
  1508. user=Depends(get_admin_user),
  1509. ):
  1510. r = None
  1511. try:
  1512. url = openai_app.state.config.OPENAI_API_BASE_URLS[urlIdx]
  1513. key = openai_app.state.config.OPENAI_API_KEYS[urlIdx]
  1514. headers = {"Authorization": f"Bearer {key}"}
  1515. r = requests.get(f"{url}/{pipeline_id}/valves", headers=headers)
  1516. r.raise_for_status()
  1517. data = r.json()
  1518. return {**data}
  1519. except Exception as e:
  1520. # Handle connection error here
  1521. print(f"Connection error: {e}")
  1522. detail = "Pipeline not found"
  1523. if r is not None:
  1524. try:
  1525. res = r.json()
  1526. if "detail" in res:
  1527. detail = res["detail"]
  1528. except Exception:
  1529. pass
  1530. raise HTTPException(
  1531. status_code=(r.status_code if r is not None else status.HTTP_404_NOT_FOUND),
  1532. detail=detail,
  1533. )
  1534. @app.get("/api/pipelines/{pipeline_id}/valves/spec")
  1535. async def get_pipeline_valves_spec(
  1536. urlIdx: Optional[int],
  1537. pipeline_id: str,
  1538. user=Depends(get_admin_user),
  1539. ):
  1540. r = None
  1541. try:
  1542. url = openai_app.state.config.OPENAI_API_BASE_URLS[urlIdx]
  1543. key = openai_app.state.config.OPENAI_API_KEYS[urlIdx]
  1544. headers = {"Authorization": f"Bearer {key}"}
  1545. r = requests.get(f"{url}/{pipeline_id}/valves/spec", headers=headers)
  1546. r.raise_for_status()
  1547. data = r.json()
  1548. return {**data}
  1549. except Exception as e:
  1550. # Handle connection error here
  1551. print(f"Connection error: {e}")
  1552. detail = "Pipeline not found"
  1553. if r is not None:
  1554. try:
  1555. res = r.json()
  1556. if "detail" in res:
  1557. detail = res["detail"]
  1558. except Exception:
  1559. pass
  1560. raise HTTPException(
  1561. status_code=(r.status_code if r is not None else status.HTTP_404_NOT_FOUND),
  1562. detail=detail,
  1563. )
  1564. @app.post("/api/pipelines/{pipeline_id}/valves/update")
  1565. async def update_pipeline_valves(
  1566. urlIdx: Optional[int],
  1567. pipeline_id: str,
  1568. form_data: dict,
  1569. user=Depends(get_admin_user),
  1570. ):
  1571. r = None
  1572. try:
  1573. url = openai_app.state.config.OPENAI_API_BASE_URLS[urlIdx]
  1574. key = openai_app.state.config.OPENAI_API_KEYS[urlIdx]
  1575. headers = {"Authorization": f"Bearer {key}"}
  1576. r = requests.post(
  1577. f"{url}/{pipeline_id}/valves/update",
  1578. headers=headers,
  1579. json={**form_data},
  1580. )
  1581. r.raise_for_status()
  1582. data = r.json()
  1583. return {**data}
  1584. except Exception as e:
  1585. # Handle connection error here
  1586. print(f"Connection error: {e}")
  1587. detail = "Pipeline not found"
  1588. if r is not None:
  1589. try:
  1590. res = r.json()
  1591. if "detail" in res:
  1592. detail = res["detail"]
  1593. except Exception:
  1594. pass
  1595. raise HTTPException(
  1596. status_code=(r.status_code if r is not None else status.HTTP_404_NOT_FOUND),
  1597. detail=detail,
  1598. )
  1599. ##################################
  1600. #
  1601. # Config Endpoints
  1602. #
  1603. ##################################
  1604. @app.get("/api/config")
  1605. async def get_app_config():
  1606. return {
  1607. "status": True,
  1608. "name": WEBUI_NAME,
  1609. "version": VERSION,
  1610. "default_locale": str(DEFAULT_LOCALE),
  1611. "default_models": webui_app.state.config.DEFAULT_MODELS,
  1612. "default_prompt_suggestions": webui_app.state.config.DEFAULT_PROMPT_SUGGESTIONS,
  1613. "features": {
  1614. "auth": WEBUI_AUTH,
  1615. "auth_trusted_header": bool(webui_app.state.AUTH_TRUSTED_EMAIL_HEADER),
  1616. "enable_signup": webui_app.state.config.ENABLE_SIGNUP,
  1617. "enable_login_form": webui_app.state.config.ENABLE_LOGIN_FORM,
  1618. "enable_web_search": rag_app.state.config.ENABLE_RAG_WEB_SEARCH,
  1619. "enable_image_generation": images_app.state.config.ENABLED,
  1620. "enable_community_sharing": webui_app.state.config.ENABLE_COMMUNITY_SHARING,
  1621. "enable_admin_export": ENABLE_ADMIN_EXPORT,
  1622. "enable_admin_chat_access": ENABLE_ADMIN_CHAT_ACCESS,
  1623. },
  1624. "audio": {
  1625. "tts": {
  1626. "engine": audio_app.state.config.TTS_ENGINE,
  1627. "voice": audio_app.state.config.TTS_VOICE,
  1628. },
  1629. "stt": {
  1630. "engine": audio_app.state.config.STT_ENGINE,
  1631. },
  1632. },
  1633. "oauth": {
  1634. "providers": {
  1635. name: config.get("name", name)
  1636. for name, config in OAUTH_PROVIDERS.items()
  1637. }
  1638. },
  1639. }
  1640. @app.get("/api/config/model/filter")
  1641. async def get_model_filter_config(user=Depends(get_admin_user)):
  1642. return {
  1643. "enabled": app.state.config.ENABLE_MODEL_FILTER,
  1644. "models": app.state.config.MODEL_FILTER_LIST,
  1645. }
  1646. class ModelFilterConfigForm(BaseModel):
  1647. enabled: bool
  1648. models: list[str]
  1649. @app.post("/api/config/model/filter")
  1650. async def update_model_filter_config(
  1651. form_data: ModelFilterConfigForm, user=Depends(get_admin_user)
  1652. ):
  1653. app.state.config.ENABLE_MODEL_FILTER = form_data.enabled
  1654. app.state.config.MODEL_FILTER_LIST = form_data.models
  1655. return {
  1656. "enabled": app.state.config.ENABLE_MODEL_FILTER,
  1657. "models": app.state.config.MODEL_FILTER_LIST,
  1658. }
  1659. # TODO: webhook endpoint should be under config endpoints
  1660. @app.get("/api/webhook")
  1661. async def get_webhook_url(user=Depends(get_admin_user)):
  1662. return {
  1663. "url": app.state.config.WEBHOOK_URL,
  1664. }
  1665. class UrlForm(BaseModel):
  1666. url: str
  1667. @app.post("/api/webhook")
  1668. async def update_webhook_url(form_data: UrlForm, user=Depends(get_admin_user)):
  1669. app.state.config.WEBHOOK_URL = form_data.url
  1670. webui_app.state.WEBHOOK_URL = app.state.config.WEBHOOK_URL
  1671. return {"url": app.state.config.WEBHOOK_URL}
  1672. @app.get("/api/version")
  1673. async def get_app_version():
  1674. return {
  1675. "version": VERSION,
  1676. }
  1677. @app.get("/api/changelog")
  1678. async def get_app_changelog():
  1679. return {key: CHANGELOG[key] for idx, key in enumerate(CHANGELOG) if idx < 5}
  1680. @app.get("/api/version/updates")
  1681. async def get_app_latest_release_version():
  1682. try:
  1683. async with aiohttp.ClientSession(trust_env=True) as session:
  1684. async with session.get(
  1685. "https://api.github.com/repos/open-webui/open-webui/releases/latest"
  1686. ) as response:
  1687. response.raise_for_status()
  1688. data = await response.json()
  1689. latest_version = data["tag_name"]
  1690. return {"current": VERSION, "latest": latest_version[1:]}
  1691. except aiohttp.ClientError:
  1692. raise HTTPException(
  1693. status_code=status.HTTP_503_SERVICE_UNAVAILABLE,
  1694. detail=ERROR_MESSAGES.RATE_LIMIT_EXCEEDED,
  1695. )
  1696. ############################
  1697. # OAuth Login & Callback
  1698. ############################
  1699. oauth = OAuth()
  1700. for provider_name, provider_config in OAUTH_PROVIDERS.items():
  1701. oauth.register(
  1702. name=provider_name,
  1703. client_id=provider_config["client_id"],
  1704. client_secret=provider_config["client_secret"],
  1705. server_metadata_url=provider_config["server_metadata_url"],
  1706. client_kwargs={
  1707. "scope": provider_config["scope"],
  1708. },
  1709. redirect_uri=provider_config["redirect_uri"],
  1710. )
  1711. # SessionMiddleware is used by authlib for oauth
  1712. if len(OAUTH_PROVIDERS) > 0:
  1713. app.add_middleware(
  1714. SessionMiddleware,
  1715. secret_key=WEBUI_SECRET_KEY,
  1716. session_cookie="oui-session",
  1717. same_site=WEBUI_SESSION_COOKIE_SAME_SITE,
  1718. https_only=WEBUI_SESSION_COOKIE_SECURE,
  1719. )
  1720. @app.get("/oauth/{provider}/login")
  1721. async def oauth_login(provider: str, request: Request):
  1722. if provider not in OAUTH_PROVIDERS:
  1723. raise HTTPException(404)
  1724. # If the provider has a custom redirect URL, use that, otherwise automatically generate one
  1725. redirect_uri = OAUTH_PROVIDERS[provider].get("redirect_uri") or request.url_for(
  1726. "oauth_callback", provider=provider
  1727. )
  1728. return await oauth.create_client(provider).authorize_redirect(request, redirect_uri)
  1729. # OAuth login logic is as follows:
  1730. # 1. Attempt to find a user with matching subject ID, tied to the provider
  1731. # 2. If OAUTH_MERGE_ACCOUNTS_BY_EMAIL is true, find a user with the email address provided via OAuth
  1732. # - This is considered insecure in general, as OAuth providers do not always verify email addresses
  1733. # 3. If there is no user, and ENABLE_OAUTH_SIGNUP is true, create a user
  1734. # - Email addresses are considered unique, so we fail registration if the email address is alreayd taken
  1735. @app.get("/oauth/{provider}/callback")
  1736. async def oauth_callback(provider: str, request: Request, response: Response):
  1737. if provider not in OAUTH_PROVIDERS:
  1738. raise HTTPException(404)
  1739. client = oauth.create_client(provider)
  1740. try:
  1741. token = await client.authorize_access_token(request)
  1742. except Exception as e:
  1743. log.warning(f"OAuth callback error: {e}")
  1744. raise HTTPException(400, detail=ERROR_MESSAGES.INVALID_CRED)
  1745. user_data: UserInfo = token["userinfo"]
  1746. sub = user_data.get("sub")
  1747. if not sub:
  1748. log.warning(f"OAuth callback failed, sub is missing: {user_data}")
  1749. raise HTTPException(400, detail=ERROR_MESSAGES.INVALID_CRED)
  1750. provider_sub = f"{provider}@{sub}"
  1751. email_claim = webui_app.state.config.OAUTH_EMAIL_CLAIM
  1752. email = user_data.get(email_claim, "").lower()
  1753. # We currently mandate that email addresses are provided
  1754. if not email:
  1755. log.warning(f"OAuth callback failed, email is missing: {user_data}")
  1756. raise HTTPException(400, detail=ERROR_MESSAGES.INVALID_CRED)
  1757. # Check if the user exists
  1758. user = Users.get_user_by_oauth_sub(provider_sub)
  1759. if not user:
  1760. # If the user does not exist, check if merging is enabled
  1761. if OAUTH_MERGE_ACCOUNTS_BY_EMAIL.value:
  1762. # Check if the user exists by email
  1763. user = Users.get_user_by_email(email)
  1764. if user:
  1765. # Update the user with the new oauth sub
  1766. Users.update_user_oauth_sub_by_id(user.id, provider_sub)
  1767. if not user:
  1768. # If the user does not exist, check if signups are enabled
  1769. if ENABLE_OAUTH_SIGNUP.value:
  1770. # Check if an existing user with the same email already exists
  1771. existing_user = Users.get_user_by_email(user_data.get("email", "").lower())
  1772. if existing_user:
  1773. raise HTTPException(400, detail=ERROR_MESSAGES.EMAIL_TAKEN)
  1774. picture_claim = webui_app.state.config.OAUTH_PICTURE_CLAIM
  1775. picture_url = user_data.get(picture_claim, "")
  1776. if picture_url:
  1777. # Download the profile image into a base64 string
  1778. try:
  1779. async with aiohttp.ClientSession() as session:
  1780. async with session.get(picture_url) as resp:
  1781. picture = await resp.read()
  1782. base64_encoded_picture = base64.b64encode(picture).decode(
  1783. "utf-8"
  1784. )
  1785. guessed_mime_type = mimetypes.guess_type(picture_url)[0]
  1786. if guessed_mime_type is None:
  1787. # assume JPG, browsers are tolerant enough of image formats
  1788. guessed_mime_type = "image/jpeg"
  1789. picture_url = f"data:{guessed_mime_type};base64,{base64_encoded_picture}"
  1790. except Exception as e:
  1791. log.error(f"Error downloading profile image '{picture_url}': {e}")
  1792. picture_url = ""
  1793. if not picture_url:
  1794. picture_url = "/user.png"
  1795. username_claim = webui_app.state.config.OAUTH_USERNAME_CLAIM
  1796. role = (
  1797. "admin"
  1798. if Users.get_num_users() == 0
  1799. else webui_app.state.config.DEFAULT_USER_ROLE
  1800. )
  1801. user = Auths.insert_new_auth(
  1802. email=email,
  1803. password=get_password_hash(
  1804. str(uuid.uuid4())
  1805. ), # Random password, not used
  1806. name=user_data.get(username_claim, "User"),
  1807. profile_image_url=picture_url,
  1808. role=role,
  1809. oauth_sub=provider_sub,
  1810. )
  1811. if webui_app.state.config.WEBHOOK_URL:
  1812. post_webhook(
  1813. webui_app.state.config.WEBHOOK_URL,
  1814. WEBHOOK_MESSAGES.USER_SIGNUP(user.name),
  1815. {
  1816. "action": "signup",
  1817. "message": WEBHOOK_MESSAGES.USER_SIGNUP(user.name),
  1818. "user": user.model_dump_json(exclude_none=True),
  1819. },
  1820. )
  1821. else:
  1822. raise HTTPException(
  1823. status.HTTP_403_FORBIDDEN, detail=ERROR_MESSAGES.ACCESS_PROHIBITED
  1824. )
  1825. jwt_token = create_token(
  1826. data={"id": user.id},
  1827. expires_delta=parse_duration(webui_app.state.config.JWT_EXPIRES_IN),
  1828. )
  1829. # Set the cookie token
  1830. response.set_cookie(
  1831. key="token",
  1832. value=jwt_token,
  1833. httponly=True, # Ensures the cookie is not accessible via JavaScript
  1834. )
  1835. # Redirect back to the frontend with the JWT token
  1836. redirect_url = f"{request.base_url}auth#token={jwt_token}"
  1837. return RedirectResponse(url=redirect_url)
  1838. @app.get("/manifest.json")
  1839. async def get_manifest_json():
  1840. return {
  1841. "name": WEBUI_NAME,
  1842. "short_name": WEBUI_NAME,
  1843. "start_url": "/",
  1844. "display": "standalone",
  1845. "background_color": "#343541",
  1846. "orientation": "portrait-primary",
  1847. "icons": [
  1848. {
  1849. "src": "/static/logo.png",
  1850. "type": "image/png",
  1851. "sizes": "500x500",
  1852. "purpose": "any",
  1853. },
  1854. {
  1855. "src": "/static/logo.png",
  1856. "type": "image/png",
  1857. "sizes": "500x500",
  1858. "purpose": "maskable",
  1859. },
  1860. ],
  1861. }
  1862. @app.get("/opensearch.xml")
  1863. async def get_opensearch_xml():
  1864. xml_content = rf"""
  1865. <OpenSearchDescription xmlns="http://a9.com/-/spec/opensearch/1.1/" xmlns:moz="http://www.mozilla.org/2006/browser/search/">
  1866. <ShortName>{WEBUI_NAME}</ShortName>
  1867. <Description>Search {WEBUI_NAME}</Description>
  1868. <InputEncoding>UTF-8</InputEncoding>
  1869. <Image width="16" height="16" type="image/x-icon">{WEBUI_URL}/static/favicon.png</Image>
  1870. <Url type="text/html" method="get" template="{WEBUI_URL}/?q={"{searchTerms}"}"/>
  1871. <moz:SearchForm>{WEBUI_URL}</moz:SearchForm>
  1872. </OpenSearchDescription>
  1873. """
  1874. return Response(content=xml_content, media_type="application/xml")
  1875. @app.get("/health")
  1876. async def healthcheck():
  1877. return {"status": True}
  1878. @app.get("/health/db")
  1879. async def healthcheck_with_db():
  1880. Session.execute(text("SELECT 1;")).all()
  1881. return {"status": True}
  1882. app.mount("/static", StaticFiles(directory=STATIC_DIR), name="static")
  1883. app.mount("/cache", StaticFiles(directory=CACHE_DIR), name="cache")
  1884. if os.path.exists(FRONTEND_BUILD_DIR):
  1885. mimetypes.add_type("text/javascript", ".js")
  1886. app.mount(
  1887. "/",
  1888. SPAStaticFiles(directory=FRONTEND_BUILD_DIR, html=True),
  1889. name="spa-static-files",
  1890. )
  1891. else:
  1892. log.warning(
  1893. f"Frontend build directory not found at '{FRONTEND_BUILD_DIR}'. Serving API only."
  1894. )