]> git.agnieray.net Git - galette.git/blobdiff - galette/lib/Galette/Controllers/Crud/MembersController.php
Do not override members list filters on member display or edit; closes #1803
[galette.git] / galette / lib / Galette / Controllers / Crud / MembersController.php
index 152920fd3f354ce779e6a746d22274b441b60b65..8ee229f58904c249c45e6a2073eed11ae06c5e18 100644 (file)
@@ -7,7 +7,7 @@
  *
  * PHP version 5
  *
- * Copyright © 2019-2020 The Galette Team
+ * Copyright © 2019-2023 The Galette Team
  *
  * This file is part of Galette (http://galette.tuxfamily.org).
  *
@@ -28,9 +28,8 @@
  * @package   Galette
  *
  * @author    Johan Cwiklinski <johan@x-tnd.be>
- * @copyright 2019-2020 The Galette Team
+ * @copyright 2019-2023 The Galette Team
  * @license   http://www.gnu.org/licenses/gpl-3.0.html GPL License 3.0 or (at your option) any later version
- * @version   SVN: $Id$
  * @link      http://galette.tuxfamily.org
  * @since     Available since 0.9.4dev - 2019-12-02
  */
 namespace Galette\Controllers\Crud;
 
 use Galette\Controllers\CrudController;
-
-use Slim\Http\Request;
-use Slim\Http\Response;
-use Galette\Core\Authentication;
-use Galette\Core\Picture;
+use Galette\DynamicFields\Boolean;
+use Galette\Features\BatchList;
+use Slim\Psr7\Request;
+use Slim\Psr7\Response;
+use Galette\Core\GaletteMail;
+use Galette\Core\Gaptcha;
 use Galette\Entity\Adherent;
 use Galette\Entity\Contribution;
 use Galette\Entity\ContributionsTypes;
 use Galette\Entity\DynamicFieldsHandle;
+use Galette\Entity\Group;
 use Galette\Entity\Status;
 use Galette\Entity\FieldsConfig;
+use Galette\Entity\Social;
 use Galette\Filters\AdvancedMembersList;
 use Galette\Filters\MembersList;
-use Galette\IO\MembersCsv;
 use Galette\Repository\Groups;
 use Galette\Repository\Members;
 use Galette\Repository\PaymentTypes;
+use Galette\Repository\Titles;
 use Analog\Analog;
 
 /**
@@ -64,7 +66,7 @@ use Analog\Analog;
  * @name      GaletteController
  * @package   Galette
  * @author    Johan Cwiklinski <johan@x-tnd.be>
- * @copyright 2019-2020 The Galette Team
+ * @copyright 2019-2023 The Galette Team
  * @license   http://www.gnu.org/licenses/gpl-3.0.html GPL License 3.0 or (at your option) any later version
  * @link      http://galette.tuxfamily.org
  * @since     Available since 0.9.4dev - 2019-12-02
@@ -72,6 +74,11 @@ use Analog\Analog;
 
 class MembersController extends CrudController
 {
+    use BatchList;
+
+    /** @var bool */
+    private $is_self_membership = false;
+
     // CRUD - Create
 
     /**
@@ -79,13 +86,103 @@ class MembersController extends CrudController
      *
      * @param Request  $request  PSR Request
      * @param Response $response PSR Response
-     * @param array    $args     Request arguments
      *
      * @return Response
      */
-    public function add(Request $request, Response $response, array $args = []) :Response
+    public function add(Request $request, Response $response): Response
+    {
+        return $this->edit($request, $response, null, 'add');
+    }
+
+    /**
+     * Add child page
+     *
+     * @param Request  $request  PSR Request
+     * @param Response $response PSR Response
+     *
+     * @return Response
+     */
+    public function addChild(Request $request, Response $response): Response
+    {
+        return $this->edit($request, $response, null, 'addchild');
+    }
+
+    /**
+     * Self subscription page
+     *
+     * @param Request  $request  PSR Request
+     * @param Response $response PSR Response
+     *
+     * @return Response
+     */
+    public function selfSubscribe(Request $request, Response $response): Response
     {
-        //TODO
+        if (!$this->preferences->pref_bool_selfsubscribe || $this->login->isLogged()) {
+            return $response
+                ->withStatus(301)
+                ->withHeader('Location', $this->routeparser->urlFor('slash'));
+        }
+
+        if ($this->session->member !== null) {
+            $member = $this->session->member;
+            $this->session->member = null;
+        } else {
+            $member = new Adherent($this->zdb);
+            $member->enableDep('dynamics');
+        }
+
+        //mark as self membership
+        $member->setSelfMembership();
+
+        // flagging required fields
+        $fc = $this->fields_config;
+        $form_elements = $fc->getFormElements($this->login, true, true);
+
+        // members
+        $m = new Members();
+        $members = $m->getDropdownMembers(
+            $this->zdb,
+            $this->login,
+            $member->hasParent() ? $member->parent->id : null
+        );
+
+        $params = [
+            'members' => [
+                'filters'   => $m->getFilters(),
+                'count'     => $m->getCount()
+            ]
+        ];
+
+        if (count($members)) {
+            $params['members']['list'] = $members;
+        }
+
+        $gaptcha = new Gaptcha($this->i18n);
+        $this->session->gaptcha = $gaptcha;
+
+        $titles = new Titles($this->zdb);
+
+        // display page
+        $this->view->render(
+            $response,
+            'pages/member_form.html.twig',
+            array(
+                'page_title'        => _T("Subscription"),
+                'parent_tpl'        => 'public_page.html.twig',
+                'member'            => $member,
+                'self_adh'          => true,
+                'autocomplete'      => true,
+                'osocials'          => new Social($this->zdb),
+                // pseudo random int
+                'time'              => time(),
+                'titles_list'       => $titles->getList(),
+                'fieldsets'         => $form_elements['fieldsets'],
+                'hidden_elements'   => $form_elements['hiddens'],
+                //self_adh specific
+                'gaptcha'           => $gaptcha
+            ) + $params
+        );
+        return $response;
     }
 
     /**
@@ -93,28 +190,41 @@ class MembersController extends CrudController
      *
      * @param Request  $request  PSR Request
      * @param Response $response PSR Response
-     * @param array    $args     Request arguments
      *
      * @return Response
      */
-    public function doAdd(Request $request, Response $response, array $args = []) :Response
+    public function doAdd(Request $request, Response $response): Response
+    {
+        return $this->store($request, $response);
+    }
+
+    /**
+     * Self subscription add action
+     *
+     * @param Request  $request  PSR Request
+     * @param Response $response PSR Response
+     *
+     * @return Response
+     */
+    public function doSelfSubscribe(Request $request, Response $response): Response
     {
-        //TODO
+        $this->setSelfMembership();
+        return $this->doAdd($request, $response);
     }
 
+
     /**
      * Duplicate action
      *
      * @param Request  $request  PSR Request
      * @param Response $response PSR Response
-     * @param array    $args     Request arguments
+     * @param integer  $id_adh   Member ID to duplicate
      *
      * @return Response
      */
-    public function duplicate(Request $request, Response $response, array $args = []) :Response
+    public function duplicate(Request $request, Response $response, int $id_adh): Response
     {
-        $id_adh = (int)$args[Adherent::PK];
-        $adh = new Adherent($this->zdb, $id_adh, ['dynamics' => true]);
+        $adh = new Adherent($this->zdb, $id_adh, ['dynamics' => true, 'parent' => true]);
         $adh->setDuplicate();
 
         //store entity in session
@@ -122,7 +232,7 @@ class MembersController extends CrudController
 
         return $response
             ->withStatus(301)
-            ->withHeader('Location', $this->router->pathFor('editmember', ['action' => 'add']));
+            ->withHeader('Location', $this->routeparser->urlFor('addMember'));
     }
 
     // /CRUD - Create
@@ -133,50 +243,42 @@ class MembersController extends CrudController
      *
      * @param Request  $request  PSR Request
      * @param Response $response PSR Response
-     * @param array    $args     Request arguments
+     * @param integer  $id       Member ID
      *
      * @return Response
      */
-    public function show(Request $request, Response $response, array $args) :Response
+    public function show(Request $request, Response $response, int $id): Response
     {
-        $id = (int)$args['id'];
-
-        $deps = array(
-            'picture'   => true,
-            'groups'    => true,
-            'dues'      => true,
-            'parent'    => true,
-            'children'  => true,
-            'dynamics'  => true
-        );
-        $member = new Adherent($this->zdb, $id, $deps);
+        $member = new Adherent($this->zdb);
+        $member
+            ->enableAllDeps()
+            ->load($id);
 
-        if (!$member->canEdit($this->login)) {
+        if (!$member->canShow($this->login)) {
             $this->flash->addMessage(
                 'error_detected',
                 _T("You do not have permission for requested URL.")
             );
 
             return $response
-                ->withStatus(403)
+                ->withStatus(301)
                 ->withHeader(
                     'Location',
-                    $this->router->pathFor('me')
+                    $this->routeparser->urlFor('me')
                 );
         }
 
         if ($member->id == null) {
-            //member does not exists!
+            //member does not exist!
             $this->flash->addMessage(
                 'error_detected',
-                str_replace('%id', $args['id'], _T("No member #%id."))
+                str_replace('%id', $id, _T("No member #%id."))
             );
 
             return $response
-                ->withStatus(404)
                 ->withHeader(
                     'Location',
-                    $this->router->pathFor('slash')
+                    $this->routeparser->urlFor('slash')
                 );
         }
 
@@ -187,7 +289,7 @@ class MembersController extends CrudController
         // display page
         $this->view->render(
             $response,
-            'voir_adherent.tpl',
+            'pages/member_show.html.twig',
             array(
                 'page_title'        => _T("Member Profile"),
                 'member'            => $member,
@@ -195,28 +297,145 @@ class MembersController extends CrudController
                 'pref_card_self'    => $this->preferences->pref_card_self,
                 'groups'            => Groups::getSimpleList(),
                 'time'              => time(),
-                'display_elements'  => $display_elements
+                'display_elements'  => $display_elements,
+                'osocials'          => new Social($this->zdb),
+                'navigate'          => $this->handleNavigationLinks($member->id)
             )
         );
         return $response;
     }
 
     /**
-     * Members list
+     * Own card show
+     *
+     * @param Request  $request  PSR Request
+     * @param Response $response PSR Response
+     *
+     * @return Response
+     */
+    public function showMe(Request $request, Response $response): Response
+    {
+        if ($this->login->isSuperAdmin()) {
+            return $response
+                ->withStatus(301)
+                ->withHeader('Location', $this->routeparser->urlFor('slash'));
+        }
+        return $this->show($request, $response, $this->login->id);
+    }
+
+    /**
+     * Public pages (trombinoscope, public list)
+     *
+     * @param Request        $request  PSR Request
+     * @param Response       $response PSR Response
+     * @param string         $option   One of 'page' or 'order'
+     * @param string|integer $value    Value of the option
+     * @param string         $type     List type (either list or trombi)
+     *
+     * @return Response
+     */
+    public function publicList(
+        Request $request,
+        Response $response,
+        $option = null,
+        $value = null,
+        $type = null
+    ): Response {
+        $varname = $this->getFilterName(['prefix' => 'public', 'suffix' => $type]);
+        if (isset($this->session->$varname)) {
+            $filters = $this->session->$varname;
+        } else {
+            $filters = new MembersList();
+        }
+
+        if ($option !== null) {
+            switch ($option) {
+                case 'page':
+                    $filters->current_page = (int)$value;
+                    break;
+                case 'order':
+                    $filters->orderby = $value;
+                    break;
+            }
+        }
+
+        $m = new Members($filters);
+        $members = $m->getPublicList($type === 'trombi');
+
+        $this->session->$varname = $filters;
+
+        //assign pagination variables to the template and add pagination links
+        $filters->setViewPagination($this->routeparser, $this->view, false);
+
+        // display page
+        $this->view->render(
+            $response,
+            ($type === 'list' ? 'pages/members_public_list' : 'pages/members_public_gallery') . '.html.twig',
+            array(
+                'page_title'    => ($type === 'list' ? _T("Members list") : _T('Trombinoscope')),
+                'additionnal_html_class'    => ($type === 'list' ? '' : 'trombinoscope'),
+                'type'          => $type,
+                'members'       => $members,
+                'nb_members'    => $m->getCount(),
+                'filters'       => $filters,
+                // pseudo random int
+                'time'              => time(),
+            )
+        );
+        return $response;
+    }
+
+    /**
+     * Public pages (trombinoscope, public list)
      *
      * @param Request  $request  PSR Request
      * @param Response $response PSR Response
-     * @param array    $args     Request arguments
+     * @param string   $type     Type
      *
      * @return Response
      */
-    public function list(Request $request, Response $response, array $args = []) :Response
+    public function filterPublicList(Request $request, Response $response, string $type): Response
     {
-        $option = $args['option'] ?? null;
-        $value = $args['value'] ?? null;
+        $post = $request->getParsedBody();
+
+        $varname = $this->getFilterName(['prefix' => 'public', 'suffix' => $type]);
+        if (isset($this->session->$varname)) {
+            $filters = $this->session->$varname;
+        } else {
+            $filters = new MembersList();
+        }
+
+        //reintialize filters
+        if (isset($post['clear_filter'])) {
+            $filters->reinit();
+        } else {
+            //number of rows to show
+            if (isset($post['nbshow'])) {
+                $filters->show = (int)$post['nbshow'];
+            }
+        }
+
+        $this->session->$varname = $filters;
+
+        return $response
+            ->withStatus(301)
+            ->withHeader('Location', $this->routeparser->urlFor('publicList', ['type' => $type]));
+    }
 
-        if (isset($this->session->filter_members)) {
-            $filters = $this->session->filter_members;
+    /**
+     * Members list
+     *
+     * @param Request        $request  PSR Request
+     * @param Response       $response PSR Response
+     * @param string         $option   One of 'page' or 'order'
+     * @param string|integer $value    Value of the option
+     *
+     * @return Response
+     */
+    public function list(Request $request, Response $response, $option = null, $value = null): Response
+    {
+        if (isset($this->session->{$this->getFilterName()})) {
+            $filters = $this->session->{$this->getFilterName()};
         } else {
             $filters = new MembersList();
         }
@@ -245,15 +464,15 @@ class MembersController extends CrudController
         $groups_list = $groups->getList();
 
         //assign pagination variables to the template and add pagination links
-        $filters->setSmartyPagination($this->router, $this->view->getSmarty(), false);
-        $filters->setViewCommonsFilters($this->preferences, $this->view->getSmarty());
+        $filters->setViewPagination($this->routeparser, $this->view, false);
+        $filters->setViewCommonsFilters($this->preferences, $this->view);
 
-        $this->session->filter_members = $filters;
+        $this->session->{$this->getFilterName()} = $filters;
 
         // display page
         $this->view->render(
             $response,
-            'gestion_adherents.tpl',
+            'pages/members_list.html.twig',
             array(
                 'page_title'            => _T("Members management"),
                 'require_mass'          => true,
@@ -261,7 +480,8 @@ class MembersController extends CrudController
                 'filter_groups_options' => $groups_list,
                 'nb_members'            => $members->getCount(),
                 'filters'               => $filters,
-                'adv_filters'           => $filters instanceof AdvancedMembersList
+                'adv_filters'           => $filters instanceof AdvancedMembersList,
+                'galette_list'          => $this->lists_config->getDisplayElements($this->login)
             )
         );
         return $response;
@@ -275,30 +495,25 @@ class MembersController extends CrudController
      *
      * @return Response
      */
-    public function filter(Request $request, Response $response) :Response
+    public function filter(Request $request, Response $response)Response
     {
         $post = $request->getParsedBody();
-        if (isset($this->session->filter_members)) {
-            //CAUTION: this one may be simple or advanced, display must change
-            $filters = $this->session->filter_members;
-        } else {
-            $filters = new MembersList();
-        }
+        $filters = $this->session->{$this->getFilterName()} ?? new MembersList();
 
-        //reintialize filters
+        //reinitialize filters
         if (isset($post['clear_filter'])) {
             $filters = new MembersList();
         } elseif (isset($post['clear_adv_filter'])) {
-            $this->session->filter_members = null;
-            unset($this->session->filter_members);
+            $this->session->{$this->getFilterName()} = null;
+            unset($this->session->{$this->getFilterName()});
 
             return $response
                 ->withStatus(301)
-                ->withHeader('Location', $this->router->pathFor('advanced-search'));
+                ->withHeader('Location', $this->routeparser->urlFor('advanced-search'));
         } elseif (isset($post['adv_criteria'])) {
             return $response
                 ->withStatus(301)
-                ->withHeader('Location', $this->router->pathFor('advanced-search'));
+                ->withHeader('Location', $this->routeparser->urlFor('advanced-search'));
         } else {
             //string to filter
             if (isset($post['filter_str'])) { //filter search string
@@ -330,14 +545,15 @@ class MembersController extends CrudController
                 $filters->email_filter = (int)$post['email_filter'];
             }
             //group filter
-            if (isset($post['group_filter'])
+            if (
+                isset($post['group_filter'])
                 && $post['group_filter'] > 0
             ) {
                 $filters->group_filter = (int)$post['group_filter'];
             }
             //number of rows to show
             if (isset($post['nbshow'])) {
-                $filters->show = $post['nbshow'];
+                $filters->show = (int)$post['nbshow'];
             }
 
             if (isset($post['advanced_filtering'])) {
@@ -353,10 +569,11 @@ class MembersController extends CrudController
                         if (!$freed) {
                             $i = 0;
                             foreach ($post['free_field'] as $f) {
-                                if (trim($f) !== ''
+                                if (
+                                    trim($f) !== ''
                                     && trim($post['free_text'][$i]) !== ''
                                 ) {
-                                    $fs_search = $post['free_text'][$i];
+                                    $fs_search = htmlspecialchars($post['free_text'][$i], ENT_QUOTES);
                                     $log_op
                                         = (int)$post['free_logical_operator'][$i];
                                     $qry_op
@@ -411,18 +628,18 @@ class MembersController extends CrudController
                 ->withStatus(301)
                 ->withHeader(
                     'Location',
-                    $this->router->pathFor(
+                    $this->routeparser->urlFor(
                         'saveSearch',
                         $post
                     )
                 );
         }
 
-        $this->session->filter_members = $filters;
+        $this->session->{$this->getFilterName()} = $filters;
 
         return $response
             ->withStatus(301)
-            ->withHeader('Location', $this->router->pathFor('members'));
+            ->withHeader('Location', $this->routeparser->urlFor('members'));
     }
 
     /**
@@ -433,10 +650,10 @@ class MembersController extends CrudController
      *
      * @return Response
      */
-    public function advancedSearch(Request $request, Response $response) :Response
+    public function advancedSearch(Request $request, Response $response)Response
     {
-        if (isset($this->session->filter_members)) {
-            $filters = $this->session->filter_members;
+        if (isset($this->session->{$this->getFilterName()})) {
+            $filters = $this->session->{$this->getFilterName()};
             if (!$filters instanceof AdvancedMembersList) {
                 $filters = new AdvancedMembersList($filters);
             }
@@ -447,45 +664,17 @@ class MembersController extends CrudController
         $groups = new Groups($this->zdb, $this->login);
         $groups_list = $groups->getList();
 
-        //we want only visibles fields
+        //we want only visible fields
         $fields = $this->members_fields;
         $fc = $this->fields_config;
-        $visibles = $fc->getVisibilities();
-        $access_level = $this->login->getAccessLevel();
-
-        //remove not searchable fields
-        unset($fields['mdp_adh']);
-
-        foreach ($fields as $k => $f) {
-            if ($visibles[$k] == FieldsConfig::NOBODY ||
-                ($visibles[$k] == FieldsConfig::ADMIN &&
-                    $access_level < Authentication::ACCESS_ADMIN) ||
-                ($visibles[$k] == FieldsConfig::STAFF &&
-                    $access_level < Authentication::ACCESS_STAFF) ||
-                ($visibles[$k] == FieldsConfig::MANAGER &&
-                    $access_level < Authentication::ACCESS_MANAGER)
-            ) {
-                unset($fields[$k]);
-            }
-        }
-
-        //add status label search
-        if ($pos = array_search(Status::PK, array_keys($fields))) {
-            $fields = array_slice($fields, 0, $pos, true) +
-                ['status_label'  => ['label' => _T('Status label')]] +
-                array_slice($fields, $pos, count($fields) -1, true);
-        }
+        $fc->filterVisible($this->login, $fields);
 
         //dynamic fields
-        $deps = array(
-            'picture'   => false,
-            'groups'    => false,
-            'dues'      => false,
-            'parent'    => false,
-            'children'  => false,
-            'dynamics'  => false
-        );
-        $member = new Adherent($this->zdb, $this->login->login, $deps);
+        $member = new Adherent($this->zdb);
+        $member
+            ->disableAllDeps()
+            ->enableDep('dynamics')
+            ->loadFromLoginOrMail($this->login->login);
         $adh_dynamics = new DynamicFieldsHandle($this->zdb, $this->login, $member);
 
         $contrib = new Contribution($this->zdb, $this->login);
@@ -497,7 +686,7 @@ class MembersController extends CrudController
         //Contributions types
         $ct = new ContributionsTypes($this->zdb);
 
-        //Payments types
+        //Payment types
         $ptypes = new PaymentTypes(
             $this->zdb,
             $this->preferences,
@@ -505,18 +694,26 @@ class MembersController extends CrudController
         );
         $ptlist = $ptypes->getList();
 
-        $filters->setViewCommonsFilters($this->preferences, $this->view->getSmarty());
+        $filters->setViewCommonsFilters($this->preferences, $this->view);
+
+        $social = new Social($this->zdb);
+        $types = $member->getMemberRegisteredTypes();
+        $social_types = [];
+        foreach ($types as $type) {
+            $social_types[$type] = $social->getSystemType($type);
+        }
 
         // display page
         $this->view->render(
             $response,
-            'advanced_search.tpl',
+            'pages/advanced_search.html.twig',
             array(
                 'page_title'            => _T("Advanced search"),
                 'filter_groups_options' => $groups_list,
                 'search_fields'         => $fields,
-                'adh_dynamics'          => $adh_dynamics->getFields(),
-                'contrib_dynamics'      => $contrib_dynamics->getFields(),
+                'adh_dynamics'          => $adh_dynamics->getSearchFields(),
+                'contrib_dynamics'      => $contrib_dynamics->getSearchFields(),
+                'adh_socials'           => $social_types,
                 'statuts'               => $statuts->getList(),
                 'contributions_types'   => $ct->getList(),
                 'filters'               => $filters,
@@ -527,67 +724,180 @@ class MembersController extends CrudController
     }
 
     /**
-     * Batch actions handler
+     * Members list for ajax
      *
-     * @param Request  $request  PSR Request
-     * @param Response $response PSR Response
+     * @param Request        $request  PSR Request
+     * @param Response       $response PSR Response
+     * @param string|null    $option   One of 'page' or 'order'
+     * @param string|integer $value    Value of the option
      *
      * @return Response
      */
-    public function handleBatch(Request $request, Response $response) :Response
+    public function ajaxList(Request $request, Response $response, string $option = null, $value = null): Response
     {
         $post = $request->getParsedBody();
 
-        if (isset($post['member_sel'])) {
-            if (isset($this->session->filter_members)) {
-                $filters = $this->session->filter_members;
+        $filters = $this->session->{$this->getFilterName(['prefix' => 'ajax'])} ?? new MembersList();
+
+        if ($option == 'page') {
+            $filters->current_page = (int)$value;
+        }
+
+        //numbers of rows to display
+        if (isset($post['nbshow']) && is_numeric($post['nbshow'])) {
+            $filters->show = (int)$post['nbshow'];
+        }
+
+        $members = new Members($filters);
+        if (!$this->login->isAdmin() && !$this->login->isStaff()) {
+            if ($this->login->isGroupManager()) {
+                $members_list = $members->getManagedMembersList(true);
             } else {
-                $filters = new MembersList();
+                Analog::log(
+                    str_replace(
+                        ['%id', '%login'],
+                        [$this->login->id, $this->login->login],
+                        'Trying to list group members without access from #%id (%login)'
+                    ),
+                    Analog::ERROR
+                );
+                throw new \Exception('Access denied.');
             }
+        } else {
+            $members_list = $members->getMembersList(true);
+        }
 
-            $filters->selected = $post['member_sel'];
-            $this->session->filter_members = $filters;
+        //assign pagination variables to the template and add pagination links
+        $filters->setViewPagination($this->routeparser, $this->view, false);
 
-            if (isset($post['cards'])) {
-                return $response
-                    ->withStatus(301)
-                    ->withHeader('Location', $this->router->pathFor('pdf-members-cards'));
-            }
+        $this->session->{$this->getFilterName(['prefix' => 'ajax'])} = $filters;
 
-            if (isset($post['labels'])) {
-                return $response
-                    ->withStatus(301)
-                    ->withHeader('Location', $this->router->pathFor('pdf-members-labels'));
+        $selected_members = null;
+        $unreachables_members = null;
+        if (!isset($post['from'])) {
+            $mailing = $this->session->mailing;
+            if (!isset($post['members'])) {
+                $selected_members = $mailing->recipients;
+                $unreachables_members = $mailing->unreachables;
+            } else {
+                $m = new Members();
+                $selected_members = $m->getArrayList($post['members']);
+                if (isset($post['unreachables']) && is_array($post['unreachables'])) {
+                    $unreachables_members = $m->getArrayList($post['unreachables']);
+                }
             }
-
-            if (isset($post['mailing'])) {
-                return $response
-                    ->withStatus(301)
-                    ->withHeader('Location', $this->router->pathFor('mailing') . '?mailing_new=new');
+        } else {
+            switch ($post['from']) {
+                case 'groups':
+                    if (!isset($post['gid'])) {
+                        Analog::log(
+                            'Trying to list group members with no group id provided',
+                            Analog::ERROR
+                        );
+                        throw new \Exception('A group id is required.');
+                    }
+                    if (!isset($post['members'])) {
+                        $group = new Group((int)$post['gid']);
+                        $selected_members = array();
+                        if (!isset($post['mode']) || $post['mode'] == 'members') {
+                            $selected_members = $group->getMembers();
+                        } elseif ($post['mode'] == 'managers') {
+                            $selected_members = $group->getManagers();
+                        } else {
+                            Analog::log(
+                                'Trying to list group members with unknown mode',
+                                Analog::ERROR
+                            );
+                            throw new \Exception('Unknown mode.');
+                        }
+                    } else {
+                        $m = new Members();
+                        $selected_members = $m->getArrayList($post['members']);
+                        if (isset($post['unreachables']) && is_array($post['unreachables'])) {
+                            $unreachables_members = $m->getArrayList($post['unreachables']);
+                        }
+                    }
+                    break;
+                case 'attach':
+                    if (!isset($post['id_adh'])) {
+                        throw new \RuntimeException(
+                            'Current selected member must be excluded while attaching!'
+                        );
+                    }
+                    break;
             }
+        }
 
-            if (isset($post['attendance_sheet'])) {
-                return $response
-                    ->withStatus(301)
-                    ->withHeader('Location', $this->router->pathFor('attendance_sheet_details'));
-            }
+        $params = [
+            'filters'               => $filters,
+            'members_list'          => $members_list,
+            'selected_members'      => $selected_members,
+            'unreachables_members'  => $unreachables_members
+        ];
 
-            if (isset($post['csv'])) {
-                return $response
-                    ->withStatus(301)
-                    ->withHeader('Location', $this->router->pathFor('csv-memberslist'));
-            }
+        if (isset($post['multiple'])) {
+            $params['multiple'] = true;
+        }
+
+        if (isset($post['gid'])) {
+            $params['the_id'] = (int)$post['gid'];
+        }
+
+        if (isset($post['id_adh'])) {
+            $params['excluded'] = (int)$post['id_adh'];
+        }
+
+        // display page
+        $this->view->render(
+            $response,
+            'elements/ajax_members.html.twig',
+            $params
+        );
+        return $response;
+    }
+
+    /**
+     * Batch actions handler
+     *
+     * @param Request  $request  PSR Request
+     * @param Response $response PSR Response
+     *
+     * @return Response
+     */
+    public function handleBatch(Request $request, Response $response): Response
+    {
+        $post = $request->getParsedBody();
 
-            if (isset($post['delete'])) {
-                return $response
-                    ->withStatus(301)
-                    ->withHeader('Location', $this->router->pathFor('removeMembers'));
+        if (isset($post['entries_sel'])) {
+            if (isset($this->session->{$this->getFilterName()})) {
+                $filters = $this->session->{$this->getFilterName()};
+            } else {
+                $filters = new MembersList();
             }
 
-            if (isset($post['masschange'])) {
-                return $response
-                    ->withStatus(301)
-                    ->withHeader('Location', $this->router->pathFor('masschangeMembers'));
+            $filters->selected = $post['entries_sel'];
+            $knowns = [
+                'cards' => 'pdf-members-cards',
+                'labels' => 'pdf-members-labels',
+                'sendmail' => 'mailing',
+                'attendance_sheet' => 'attendance_sheet_details',
+                'csv' => 'csv-memberslist',
+                'delete' => 'removeMembers',
+                'masschange' => 'masschangeMembers',
+                'masscontributions' => 'massAddContributionsChooseType'
+            ];
+
+            foreach ($knowns as $known => $redirect_url) {
+                if (isset($post[$known])) {
+                    $this->session->{$this->getFilterName(['suffix' => $known])} = $filters;
+                    $redirect_url = $this->routeparser->urlFor($redirect_url);
+                    if ($known === 'sendmail') {
+                        $redirect_url .= '?mailing_new=new';
+                    }
+                    return $response
+                        ->withStatus(301)
+                        ->withHeader('Location', $redirect_url);
+                }
             }
 
             throw new \RuntimeException('Does not know what to batch :(');
@@ -599,7 +909,7 @@ class MembersController extends CrudController
 
             return $response
                 ->withStatus(301)
-                ->withHeader('Location', $this->router->pathFor('members'));
+                ->withHeader('Location', $this->routeparser->urlFor('members'));
         }
     }
 
@@ -611,13 +921,150 @@ class MembersController extends CrudController
      *
      * @param Request  $request  PSR Request
      * @param Response $response PSR Response
-     * @param array    $args     Request arguments
+     * @param ?integer $id       Member id/array of members id
+     * @param string   $action   null or 'add'
      *
      * @return Response
      */
-    public function edit(Request $request, Response $response, array $args = []) :Response
-    {
-        //TODO
+    public function edit(
+        Request $request,
+        Response $response,
+        int $id = null,
+        string $action = 'edit'
+    ): Response {
+        //instantiate member object
+        $member = new Adherent($this->zdb);
+
+        if ($this->session->member !== null) {
+            //retrieve from session, in add or edit
+            $member = $this->session->member;
+            $this->session->member = null;
+            $id = $member->id;
+        }
+        $member->enableAllDeps();
+
+        if ($id !== null) {
+            //load requested member
+            $member->load($id);
+            $can = $member->canEdit($this->login);
+        } else {
+            $can = $member->canCreate($this->login);
+        }
+
+        if (!$can) {
+            $this->flash->addMessage(
+                'error_detected',
+                _T("You do not have permission for requested URL.")
+            );
+
+            return $response
+                ->withHeader(
+                    'Location',
+                    $this->routeparser->urlFor('me')
+                );
+        }
+
+        //if adding a child, force parent here
+        if ($action === 'addchild') {
+            $member->setParent((int)$this->login->id);
+        }
+
+        // flagging required fields
+        $fc = $this->fields_config;
+
+        // password required if we create a new member
+        if ($id !== null) {
+            $fc->setNotRequired('mdp_adh');
+        }
+
+        //handle requirements for parent fields
+        $parent_fields = $member->getParentFields();
+        $tpl_parent_fields = []; //for JS when detaching
+        foreach ($parent_fields as $field) {
+            if ($fc->isRequired($field)) {
+                $tpl_parent_fields[] = $field;
+                if ($member->hasParent()) {
+                    $fc->setNotRequired($field);
+                }
+            }
+        }
+
+        // flagging required fields invisible to members
+        if ($this->login->isAdmin() || $this->login->isStaff()) {
+            $fc->setNotRequired('activite_adh');
+            $fc->setNotRequired('id_statut');
+        }
+
+        // template variable declaration
+        $title = _T("Member Profile");
+        if ($member->id != '') {
+            $title .= ' (' . _T("modification") . ')';
+        } else {
+            $title .= ' (' . _T("creation") . ')';
+        }
+
+        //Status
+        $statuts = new Status($this->zdb);
+        //Titles
+        $titles = new Titles($this->zdb);
+
+        //Groups
+        $groups = new Groups($this->zdb, $this->login);
+        $groups_list = $groups->getSimpleList(true);
+
+        $form_elements = $fc->getFormElements(
+            $this->login,
+            $id === null
+        );
+
+        // members
+        $m = new Members();
+        $pid = null;
+        if ($member->hasParent()) {
+            $pid = ($member->parent instanceof Adherent ? $member->parent->id : $member->parent);
+        }
+        $members = $m->getDropdownMembers(
+            $this->zdb,
+            $this->login,
+            $pid
+        );
+
+        $route_params['members'] = [
+            'filters'   => $m->getFilters(),
+            'count'     => $m->getCount()
+        ];
+
+        if (count($members)) {
+            $route_params['members']['list'] = $members;
+        }
+
+        if ($action === 'edit') {
+            $route_params['navigate'] = $this->handleNavigationLinks($member->id);
+        }
+
+        // display page
+        $this->view->render(
+            $response,
+            'pages/member_form.html.twig',
+            array(
+                'parent_tpl'        => 'page.html.twig',
+                'autocomplete'      => true,
+                'page_title'        => $title,
+                'member'            => $member,
+                'self_adh'          => false,
+                // pseudo random int
+                'time'              => time(),
+                'titles_list'       => $titles->getList(),
+                'statuts'           => $statuts->getList(),
+                'groups'            => $groups_list,
+                'fieldsets'         => $form_elements['fieldsets'],
+                'hidden_elements'   => $form_elements['hiddens'],
+                'parent_fields'     => $tpl_parent_fields,
+                'addchild'          => ($action === 'addchild'),
+                'osocials'          => new Social($this->zdb)
+            ) + $route_params
+        );
+        return $response;
     }
 
     /**
@@ -625,13 +1072,306 @@ class MembersController extends CrudController
      *
      * @param Request  $request  PSR Request
      * @param Response $response PSR Response
-     * @param array    $args     Request arguments
+     * @param integer  $id       Member id
+     *
+     * @return Response
+     */
+    public function doEdit(Request $request, Response $response, int $id): Response
+    {
+        return $this->store($request, $response);
+    }
+
+    /**
+     * Massive change page
+     *
+     * @param Request  $request  PSR Request
+     * @param Response $response PSR Response
+     *
+     * @return Response
+     */
+    public function massChange(Request $request, Response $response): Response
+    {
+        $filters = $this->session->{$this->getFilterName(['suffix' => 'masschange'])} ?? new MembersList();
+
+        $data = [
+            'id'            => $filters->selected,
+            'redirect_uri'  => $this->routeparser->urlFor('members')
+        ];
+
+        $fc = $this->fields_config;
+        $form_elements = $fc->getMassiveFormElements($this->members_fields, $this->login);
+
+        //dynamic fields
+        $member = new Adherent($this->zdb);
+        $member->disableAllDeps()->enableDep('dynamics');
+
+        //Status
+        $statuts = new Status($this->zdb);
+        //Titles
+        $titles = new Titles($this->zdb);
+
+        // display page
+        $this->view->render(
+            $response,
+            'modals/mass_change_members.html.twig',
+            array(
+                'mode'          => ($request->getHeaderLine('X-Requested-With') === 'XMLHttpRequest') ? 'ajax' : '',
+                'page_title'    => str_replace(
+                    '%count',
+                    count($data['id']),
+                    _T('Mass change %count members')
+                ),
+                'form_url'      => $this->routeparser->urlFor('masschangeMembersReview'),
+                'cancel_uri'    => $this->routeparser->urlFor('members'),
+                'data'          => $data,
+                'member'        => $member,
+                'fieldsets'     => $form_elements['fieldsets'],
+                'titles_list'   => $titles->getList(),
+                'statuts'       => $statuts->getList(),
+                'require_mass'  => true
+            )
+        );
+        return $response;
+    }
+
+    /**
+     * Massive changes validation page
+     *
+     * @param Request  $request  PSR Request
+     * @param Response $response PSR Response
+     *
+     * @return Response
+     */
+    public function validateMassChange(Request $request, Response $response): Response
+    {
+        $post = $request->getParsedBody();
+        $changes = [];
+
+        if (!isset($post['confirm'])) {
+            $this->flash->addMessage(
+                'error_detected',
+                _T("Mass changes has not been confirmed!")
+            );
+        } else {
+            //we want only visibles fields
+            $fc = $this->fields_config;
+            $form_elements = $fc->getMassiveFormElements($this->members_fields, $this->login);
+
+            foreach ($form_elements['fieldsets'] as $form_element) {
+                foreach ($form_element->elements as $field) {
+                    if (
+                        isset($post['mass_' . $field->field_id])
+                        && (isset($post[$field->field_id]) || $field->type === FieldsConfig::TYPE_BOOL)
+                    ) {
+                        $changes[$field->field_id] = [
+                            'label' => $field->label,
+                            'value' => $post[$field->field_id] ?? 0
+                        ];
+                    }
+                }
+            }
+
+            //handle dynamic fields
+            $member = new Adherent($this->zdb);
+            $member
+                ->enableAllDeps()
+                ->setDependencies(
+                    $this->preferences,
+                    $this->members_fields,
+                    $this->history
+                );
+            $dynamic_fields = $member->getDynamicFields()->getFields();
+            foreach ($dynamic_fields as $field) {
+                $mass_id = 'mass_info_field_' . $field->getId();
+                $field_id = 'info_field_' . $field->getId() . '_1';
+                if (
+                    isset($post[$mass_id])
+                    && (isset($post[$field_id]) || $field instanceof Boolean)
+                ) {
+                    $changes[$field_id] = [
+                        'label' => $field->getName(),
+                        'value' => $post[$field_id] ?? 0
+                    ];
+                }
+            }
+        }
+
+        $filters = $this->session->{$this->getFilterName(['suffix' => 'masschange'])};
+        $data = [
+            'id'            => $filters->selected,
+            'redirect_uri'  => $this->routeparser->urlFor('members')
+        ];
+
+        //Status
+        $statuts = new Status($this->zdb);
+        //Titles
+        $titles = new Titles($this->zdb);
+
+        // display page
+        $this->view->render(
+            $response,
+            'modals/mass_change_members.html.twig',
+            array(
+                'mode'          => ($request->getHeaderLine('X-Requested-With') === 'XMLHttpRequest') ? 'ajax' : '',
+                'page_title'    => str_replace(
+                    '%count',
+                    count($data['id']),
+                    _T('Review mass change %count members')
+                ),
+                'form_url'      => $this->routeparser->urlFor('massstoremembers'),
+                'cancel_uri'    => $this->routeparser->urlFor('members'),
+                'data'          => $data,
+                'titles_list'   => $titles->getList(),
+                'statuts'       => $statuts->getList(),
+                'changes'       => $changes
+            )
+        );
+        return $response;
+    }
+
+    /**
+     * Do massive changes
+     *
+     * @param Request  $request  PSR Request
+     * @param Response $response PSR Response
      *
      * @return Response
      */
-    public function doEdit(Request $request, Response $response, array $args = []) :Response
+    public function doMassChange(Request $request, Response $response): Response
     {
-        //TODO
+        $post = $request->getParsedBody();
+        $redirect_url = $post['redirect_uri'];
+        $error_detected = [];
+        $mass = 0;
+        $dynamic_fields = null;
+
+        unset($post['redirect_uri']);
+        if (!isset($post['confirm'])) {
+            $error_detected[] = _T("Mass changes has not been confirmed!");
+        } else {
+            unset($post['confirm']);
+            $ids = $post['id'];
+            unset($post['id']);
+
+            $fc = $this->fields_config;
+            $form_elements = $fc->getMassiveFormElements($this->members_fields, $this->login);
+            $disabled = $this->members_fields;
+            foreach (array_keys($post) as $key) {
+                $found = false;
+                foreach ($form_elements['fieldsets'] as $fieldset) {
+                    if (isset($fieldset->elements[$key])) {
+                        $found = true;
+                        break;
+                    }
+                }
+
+                if (!$found) {
+                    //try on dynamic fields
+                    if ($dynamic_fields === null) {
+                        //handle dynamic fields
+                        $member = new Adherent($this->zdb);
+                        $member
+                            ->enableAllDeps()
+                            ->setDependencies(
+                                $this->preferences,
+                                $this->members_fields,
+                                $this->history
+                            );
+                        $dynamic_fields = $member->getDynamicFields()->getFields();
+                    }
+                    foreach ($dynamic_fields as $field) {
+                        $field_id = 'info_field_' . $field->getId() . '_1';
+                        if ($key == $field_id) {
+                            $found = true;
+                            break;
+                        }
+                    }
+                }
+
+                if (!$found) {
+                    Analog::log(
+                        'Permission issue mass editing field ' . $key,
+                        Analog::WARNING
+                    );
+                    unset($post[$key]);
+                } else {
+                    unset($disabled[$key]);
+                }
+            }
+
+            if (!count($post)) {
+                $error_detected[] = _T("Nothing to do!");
+            } else {
+                foreach ($ids as $id) {
+                    $is_manager = !$this->login->isAdmin()
+                        && !$this->login->isStaff()
+                        && $this->login->isGroupManager();
+                    $member = new Adherent($this->zdb);
+                    $member
+                        ->disableAllDeps()
+                        ->disableEvents();
+                    if ($is_manager) {
+                        $member->enableDep('groups');
+                    }
+                    $member->load((int)$id);
+                    $member->setDependencies(
+                        $this->preferences,
+                        $this->members_fields,
+                        $this->history
+                    );
+                    if (!$member->canEdit($this->login)) {
+                        continue;
+                    }
+
+                    $valid = $member->check($post, [], $disabled);
+                    if ($valid === true) {
+                        $done = $member->store();
+                        if (!$done) {
+                            $error_detected[] = _T("An error occurred while storing the member.");
+                        } else {
+                            ++$mass;
+                        }
+                    } else {
+                        $error_detected = array_merge($error_detected, $valid);
+                    }
+                }
+            }
+        }
+
+        if ($mass == 0 && !count($error_detected)) {
+            $error_detected[] = _T('Something went wront during mass edition!');
+        } else {
+            $this->flash->addMessage(
+                'success_detected',
+                str_replace(
+                    '%count',
+                    $mass,
+                    _T('%count members has been changed successfully!')
+                )
+            );
+        }
+
+        if (count($error_detected) > 0) {
+            foreach ($error_detected as $error) {
+                $this->flash->addMessage(
+                    'error_detected',
+                    $error
+                );
+            }
+        }
+
+        if (!($request->getHeaderLine('X-Requested-With') === 'XMLHttpRequest')) {
+            return $response
+                ->withStatus(301)
+                ->withHeader('Location', $redirect_url);
+        } else {
+            return $this->withJson(
+                $response,
+                [
+                    'success' => count($error_detected) === 0
+                ]
+            );
+        }
     }
 
     /**
@@ -639,13 +1379,295 @@ class MembersController extends CrudController
      *
      * @param Request  $request  PSR Request
      * @param Response $response PSR Response
-     * @param array    $args     Request arguments
      *
      * @return Response
      */
-    public function store(Request $request, Response $response, array $args = []) :Response
+    public function store(Request $request, Response $response): Response
     {
-        //TODO
+        if (!$this->preferences->pref_bool_selfsubscribe && !$this->login->isLogged()) {
+            return $response
+                ->withStatus(301)
+                ->withHeader('Location', $this->routeparser->urlFor('slash'));
+        }
+
+        $post = $request->getParsedBody();
+        $member = new Adherent($this->zdb);
+        $member
+            ->enableAllDeps()
+            ->setDependencies(
+                $this->preferences,
+                $this->members_fields,
+                $this->history
+            );
+
+        $success_detected = [];
+        $error_detected = [];
+
+        if ($this->isSelfMembership() && !isset($post[Adherent::PK])) {
+            //mark as self membership
+            $member->setSelfMembership();
+
+            //check captcha
+            $gaptcha = $this->session->gaptcha;
+            if (!$gaptcha->check($post['gaptcha'])) {
+                $error_detected[] = _T('Invalid captcha');
+            }
+        }
+
+        // new or edit
+        if (isset($post['id_adh'])) {
+            $member->load((int)$post['id_adh']);
+            if (!$member->canEdit($this->login)) {
+                //redirection should have been done before. Just throw an Exception.
+                throw new \RuntimeException(
+                    str_replace(
+                        '%id',
+                        $member->id,
+                        'No right to store member #%id'
+                    )
+                );
+            }
+        } else {
+            if ($member->id != '') {
+                $member->load($this->login->id);
+            }
+        }
+
+        // flagging required fields
+        $fc = $this->fields_config;
+
+        // password required if we create a new member but not from self subscription
+        if ($member->id != '' || $this->isSelfMembership()) {
+            $fc->setNotRequired('mdp_adh');
+        }
+
+        if (
+            $member->hasParent() && !isset($post['detach_parent'])
+            || isset($post['parent_id']) && !empty($post['parent_id'])
+        ) {
+            $parent_fields = $member->getParentFields();
+            foreach ($parent_fields as $field) {
+                if ($fc->isRequired($field)) {
+                    $fc->setNotRequired($field);
+                }
+            }
+        }
+
+        // flagging required fields invisible to members
+        if ($this->login->isAdmin() || $this->login->isStaff()) {
+            $fc->setNotRequired('activite_adh');
+            $fc->setNotRequired('id_statut');
+        }
+
+        $form_elements = $fc->getFormElements(
+            $this->login,
+            $member->id == '',
+            $this->isSelfMembership()
+        );
+        $fieldsets     = $form_elements['fieldsets'];
+        $required      = array();
+        $disabled      = array();
+
+        foreach ($fieldsets as $category) {
+            foreach ($category->elements as $field) {
+                if ($field->required == true) {
+                    $required[$field->field_id] = true;
+                }
+                if ($field->disabled == true) {
+                    $disabled[$field->field_id] = true;
+                } elseif (!isset($post[$field->field_id])) {
+                    switch ($field->field_id) {
+                        //unchecked booleans are not sent from form
+                        case 'bool_admin_adh':
+                        case 'bool_exempt_adh':
+                        case 'bool_display_info':
+                            $post[$field->field_id] = 0;
+                            break;
+                    }
+                }
+            }
+        }
+
+        $real_requireds = array_diff(array_keys($required), array_keys($disabled));
+
+        // send email to member
+        if ($this->isSelfMembership() || isset($post['mail_confirm']) && $post['mail_confirm'] == '1') {
+            $member->setSendmail(); //flag to send creation email
+        }
+
+        // Validation
+        $redirect_url = $this->routeparser->urlFor('member', ['id' => $member->id]);
+        if (!count($real_requireds) || isset($post[array_shift($real_requireds)])) {
+            // regular fields
+            $valid = $member->check($post, $required, $disabled);
+            if ($valid !== true) {
+                $error_detected = array_merge($error_detected, $valid);
+            }
+
+            if (count($error_detected) == 0) {
+                //all goes well, we can proceed
+
+                $new = false;
+                if ($member->id == '') {
+                    $new = true;
+                }
+
+                $store = $member->store();
+                if ($store === true) {
+                    //member has been stored :)
+                    if ($new) {
+                        if ($this->isSelfMembership()) {
+                            $success_detected[] = _T("Your account has been created!");
+                            if (
+                                $this->preferences->pref_mail_method > GaletteMail::METHOD_DISABLED
+                                && $member->getEmail() != ''
+                            ) {
+                                $success_detected[] = _T("An email has been sent to you, check your inbox.");
+                            }
+                        } else {
+                            $success_detected[] = _T("New member has been successfully added.");
+                        }
+                    } else {
+                        $success_detected[] = _T("Member account has been modified.");
+                    }
+
+                    if ($this->login->isGroupManager()) {
+                        //add/remove user from groups
+                        $groups_adh = $post['groups_adh'] ?? null;
+                        $add_groups = Groups::addMemberToGroups(
+                            $member,
+                            $groups_adh
+                        );
+
+                        if ($add_groups === false) {
+                            $error_detected[] = _T("An error occurred adding member to its groups.");
+                        }
+                    }
+                    if ($this->login->isSuperAdmin() || $this->login->isAdmin() || $this->login->isStaff()) {
+                        //add/remove manager from groups
+                        $managed_groups_adh = $post['groups_managed_adh'] ?? null;
+                        $add_groups = Groups::addMemberToGroups(
+                            $member,
+                            $managed_groups_adh,
+                            true
+                        );
+                        $member->loadGroups();
+
+                        if ($add_groups === false) {
+                            $error_detected[] = _T("An error occurred adding member to its groups as manager.");
+                        }
+                    }
+                } else {
+                    //something went wrong :'(
+                    $error_detected[] = _T("An error occurred while storing the member.");
+                }
+            }
+
+            if (count($error_detected) === 0) {
+                $cropping = null;
+                if ($this->preferences->pref_force_picture_ratio == 1) {
+                    $cropping = [];
+                    $cropping['ratio'] = isset($this->preferences->pref_member_picture_ratio) ? $this->preferences->pref_member_picture_ratio : 'square_ratio';
+                    $cropping['focus'] = isset($post['crop_focus']) ? $post['crop_focus'] : 'center';
+                }
+                $files_res = $member->handleFiles($_FILES, $cropping);
+                if (is_array($files_res)) {
+                    $error_detected = array_merge($error_detected, $files_res);
+                }
+
+                if (isset($post['del_photo'])) {
+                    if (!$member->picture->delete($member->id)) {
+                        $error_detected[] = _T("Delete failed");
+                        $str_adh = $member->id . ' (' . $member->sname . ' ' . ')';
+                        Analog::log(
+                            'Unable to delete picture for member ' . $str_adh,
+                            Analog::ERROR
+                        );
+                    }
+                }
+            }
+
+            if (count($error_detected) > 0) {
+                foreach ($error_detected as $error) {
+                    if (strpos($error, '%member_url_') !== false) {
+                        preg_match('/%member_url_(\d+)/', $error, $matches);
+                        $url = $this->routeparser->urlFor('member', ['id' => $matches[1]]);
+                        $error = str_replace(
+                            '%member_url_' . $matches[1],
+                            $url,
+                            $error
+                        );
+                    }
+                    $this->flash->addMessage(
+                        'error_detected',
+                        $error
+                    );
+                }
+            }
+
+            if (count($success_detected) > 0) {
+                foreach ($success_detected as $success) {
+                    $this->flash->addMessage(
+                        'success_detected',
+                        $success
+                    );
+                }
+            }
+
+            if (count($error_detected) === 0) {
+                if ($this->isSelfMembership()) {
+                    $redirect_url = $this->routeparser->urlFor('login');
+                } elseif (
+                    isset($post['redirect_on_create'])
+                    && $post['redirect_on_create'] > Adherent::AFTER_ADD_DEFAULT
+                ) {
+                    switch ($post['redirect_on_create']) {
+                        case Adherent::AFTER_ADD_TRANS:
+                            $redirect_url = $this->routeparser->urlFor('addTransaction');
+                            break;
+                        case Adherent::AFTER_ADD_NEW:
+                            $redirect_url = $this->routeparser->urlFor('addMember');
+                            break;
+                        case Adherent::AFTER_ADD_SHOW:
+                            $redirect_url = $this->routeparser->urlFor('member', ['id' => $member->id]);
+                            break;
+                        case Adherent::AFTER_ADD_LIST:
+                            $redirect_url = $this->routeparser->urlFor('members');
+                            break;
+                        case Adherent::AFTER_ADD_HOME:
+                            $redirect_url = $this->routeparser->urlFor('slash');
+                            break;
+                    }
+                } elseif (!isset($post['id_adh']) && !$member->isDueFree()) {
+                    $redirect_url = $this->routeparser->urlFor(
+                        'addContribution',
+                        ['type' => 'fee']
+                    ) . '?id_adh=' . $member->id;
+                } else {
+                    $redirect_url = $this->routeparser->urlFor('member', ['id' => $member->id]);
+                }
+            } else {
+                //store entity in session
+                $this->session->member = $member;
+
+                if ($this->isSelfMembership()) {
+                    $redirect_url = $this->routeparser->urlFor('subscribe');
+                } else {
+                    if ($member->id) {
+                        $redirect_url = $this->routeparser->urlFor(
+                            'editMember',
+                            ['id'    => $member->id]
+                        );
+                    } else {
+                        $redirect_url = $this->routeparser->urlFor((isset($post['addchild']) ? 'addMemberChild' : 'addMember'));
+                    }
+                }
+            }
+        }
+
+        return $response
+            ->withStatus(301)
+            ->withHeader('Location', $redirect_url);
     }
 
 
@@ -659,9 +1681,9 @@ class MembersController extends CrudController
      *
      * @return string
      */
-    public function redirectUri(array $args = [])
+    public function redirectUri(array $args)
     {
-        return $this->router->pathFor('members');
+        return $this->routeparser->urlFor('members');
     }
 
     /**
@@ -671,34 +1693,14 @@ class MembersController extends CrudController
      *
      * @return string
      */
-    public function formUri(array $args = [])
+    public function formUri(array $args)
     {
-        return $this->router->pathFor(
+        return $this->routeparser->urlFor(
             'doRemoveMember',
             $args
         );
     }
 
-    /**
-     * Get ID to remove
-     *
-     * In simple cases, we get the ID in the route arguments; but for
-     * batchs, it should be found elsewhere.
-     *
-     * @param array $args Request arguments
-     *
-     * @return integer|null|array
-     */
-    protected function getIdsToRemove($args)
-    {
-        if (isset($args['id'])) {
-            return $args['id'];
-        } else {
-            $filters =  $this->session->filter_members;
-            return $filters->selected;
-        }
-    }
-
     /**
      * Get confirmation removal page title
      *
@@ -706,18 +1708,20 @@ class MembersController extends CrudController
      *
      * @return string
      */
-    public function confirmRemoveTitle(array $args = [])
+    public function confirmRemoveTitle(array $args)
     {
-        if (isset($args['id_adh'])) {
+        if (isset($args['id_adh']) || isset($args['id'])) {
             //one member removal
-            $adh = new Adherent($this->zdb, (int)$args['id']);
+            $id_adh = $args['id_adh'] ?? $args['id'];
+            $adh = new Adherent($this->zdb, (int)$id_adh);
             return sprintf(
                 _T('Remove member %1$s'),
                 $adh->sfullname
             );
         } else {
             //batch members removal
-            $filters =  $this->session->filter_members;
+            $filters = $this->session->{$this->getFilterName(['suffix' => 'delete'])};
+            $this->session->{$this->getFilterName(['suffix' => 'delete'])} = $filters;
             return str_replace(
                 '%count',
                 count($filters->selected),
@@ -732,12 +1736,12 @@ class MembersController extends CrudController
      * @param array $args Route arguments
      * @param array $post POST values
      *
-     * @return boolean
+     * @return bool
      */
     protected function doDelete(array $args, array $post)
     {
-        if (isset($this->session->filter_members)) {
-            $filters =  $this->session->filter_members;
+        if (isset($this->session->{$this->getFilterName(['suffix' => 'delete'])})) {
+            $filters = $this->session->{$this->getFilterName(['suffix' => 'delete'])};
         } else {
             $filters = new MembersList();
         }
@@ -753,4 +1757,103 @@ class MembersController extends CrudController
     }
 
     // CRUD - Delete
+
+    /**
+     * Set self memebrship flag
+     *
+     * @return MembersController
+     */
+    private function setSelfMembership(): MembersController
+    {
+        $this->is_self_membership = true;
+        return $this;
+    }
+
+    /**
+     * Is self membership?
+     *
+     * @return bool
+     */
+    private function isSelfMembership(): bool
+    {
+        return $this->is_self_membership;
+    }
+
+    /**
+     * Handle navigation links
+     *
+     * @param int $id_adh Current member ID
+     *
+     * @return array
+     */
+    private function handleNavigationLinks(int $id_adh): array
+    {
+        $navigate = array();
+
+        if (isset($this->session->{$this->getFilterName()})) {
+            $filters = clone $this->session->{$this->getFilterName()};
+        } else {
+            $filters = new MembersList();
+        }
+        //we must navigate between all members
+        $filters->show = 0;
+
+        if (
+            $this->login->isAdmin()
+            || $this->login->isStaff()
+            || $this->login->isGroupManager()
+        ) {
+            $m = new Members($filters);
+
+            $ids = array();
+            $fields = [Adherent::PK, 'nom_adh', 'prenom_adh'];
+            if ($this->login->isAdmin() || $this->login->isStaff()) {
+                $ids = $m->getMembersList(false, $fields);
+            } else {
+                $ids = $m->getManagedMembersList(false, $fields);
+            }
+
+            $ids = $ids->toArray();
+            foreach ($ids as $k => $m) {
+                if ($m['id_adh'] == $id_adh) {
+                    $navigate = array(
+                        'cur'  => $m['id_adh'],
+                        'count' => $filters->counter,
+                        'pos' => $k + 1
+                    );
+                    if ($k > 0) {
+                        $navigate['prev'] = $ids[$k - 1]['id_adh'];
+                    }
+                    if ($k < count($ids) - 1) {
+                        $navigate['next'] = $ids[$k + 1]['id_adh'];
+                    }
+                    break;
+                }
+            }
+        }
+
+        return $navigate;
+    }
+
+    /**
+     * Get filter name in session
+     *
+     * @param array|null $args Route arguments
+     *
+     * @return string
+     */
+    public function getFilterName(array $args = null): string
+    {
+        $filter_name = 'filter_members';
+
+        if (isset($args['prefix'])) {
+            $filter_name = $args['prefix'] . '_' . $filter_name;
+        }
+
+        if (isset($args['suffix'])) {
+            $filter_name .= '_' . $args['suffix'];
+        }
+
+        return $filter_name;
+    }
 }