main.py 77 KB

1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253545556575859606162636465666768697071727374757677787980818283848586878889909192939495969798991001011021031041051061071081091101111121131141151161171181191201211221231241251261271281291301311321331341351361371381391401411421431441451461471481491501511521531541551561571581591601611621631641651661671681691701711721731741751761771781791801811821831841851861871881891901911921931941951961971981992002012022032042052062072082092102112122132142152162172182192202212222232242252262272282292302312322332342352362372382392402412422432442452462472482492502512522532542552562572582592602612622632642652662672682692702712722732742752762772782792802812822832842852862872882892902912922932942952962972982993003013023033043053063073083093103113123133143153163173183193203213223233243253263273283293303313323333343353363373383393403413423433443453463473483493503513523533543553563573583593603613623633643653663673683693703713723733743753763773783793803813823833843853863873883893903913923933943953963973983994004014024034044054064074084094104114124134144154164174184194204214224234244254264274284294304314324334344354364374384394404414424434444454464474484494504514524534544554564574584594604614624634644654664674684694704714724734744754764774784794804814824834844854864874884894904914924934944954964974984995005015025035045055065075085095105115125135145155165175185195205215225235245255265275285295305315325335345355365375385395405415425435445455465475485495505515525535545555565575585595605615625635645655665675685695705715725735745755765775785795805815825835845855865875885895905915925935945955965975985996006016026036046056066076086096106116126136146156166176186196206216226236246256266276286296306316326336346356366376386396406416426436446456466476486496506516526536546556566576586596606616626636646656666676686696706716726736746756766776786796806816826836846856866876886896906916926936946956966976986997007017027037047057067077087097107117127137147157167177187197207217227237247257267277287297307317327337347357367377387397407417427437447457467477487497507517527537547557567577587597607617627637647657667677687697707717727737747757767777787797807817827837847857867877887897907917927937947957967977987998008018028038048058068078088098108118128138148158168178188198208218228238248258268278288298308318328338348358368378388398408418428438448458468478488498508518528538548558568578588598608618628638648658668678688698708718728738748758768778788798808818828838848858868878888898908918928938948958968978988999009019029039049059069079089099109119129139149159169179189199209219229239249259269279289299309319329339349359369379389399409419429439449459469479489499509519529539549559569579589599609619629639649659669679689699709719729739749759769779789799809819829839849859869879889899909919929939949959969979989991000100110021003100410051006100710081009101010111012101310141015101610171018101910201021102210231024102510261027102810291030103110321033103410351036103710381039104010411042104310441045104610471048104910501051105210531054105510561057105810591060106110621063106410651066106710681069107010711072107310741075107610771078107910801081108210831084108510861087108810891090109110921093109410951096109710981099110011011102110311041105110611071108110911101111111211131114111511161117111811191120112111221123112411251126112711281129113011311132113311341135113611371138113911401141114211431144114511461147114811491150115111521153115411551156115711581159116011611162116311641165116611671168116911701171117211731174117511761177117811791180118111821183118411851186118711881189119011911192119311941195119611971198119912001201120212031204120512061207120812091210121112121213121412151216121712181219122012211222122312241225122612271228122912301231123212331234123512361237123812391240124112421243124412451246124712481249125012511252125312541255125612571258125912601261126212631264126512661267126812691270127112721273127412751276127712781279128012811282128312841285128612871288128912901291129212931294129512961297129812991300130113021303130413051306130713081309131013111312131313141315131613171318131913201321132213231324132513261327132813291330133113321333133413351336133713381339134013411342134313441345134613471348134913501351135213531354135513561357135813591360136113621363136413651366136713681369137013711372137313741375137613771378137913801381138213831384138513861387138813891390139113921393139413951396139713981399140014011402140314041405140614071408140914101411141214131414141514161417141814191420142114221423142414251426142714281429143014311432143314341435143614371438143914401441144214431444144514461447144814491450145114521453145414551456145714581459146014611462146314641465146614671468146914701471147214731474147514761477147814791480148114821483148414851486148714881489149014911492149314941495149614971498149915001501150215031504150515061507150815091510151115121513151415151516151715181519152015211522152315241525152615271528152915301531153215331534153515361537153815391540154115421543154415451546154715481549155015511552155315541555155615571558155915601561156215631564156515661567156815691570157115721573157415751576157715781579158015811582158315841585158615871588158915901591159215931594159515961597159815991600160116021603160416051606160716081609161016111612161316141615161616171618161916201621162216231624162516261627162816291630163116321633163416351636163716381639164016411642164316441645164616471648164916501651165216531654165516561657165816591660166116621663166416651666166716681669167016711672167316741675167616771678167916801681168216831684168516861687168816891690169116921693169416951696169716981699170017011702170317041705170617071708170917101711171217131714171517161717171817191720172117221723172417251726172717281729173017311732173317341735173617371738173917401741174217431744174517461747174817491750175117521753175417551756175717581759176017611762176317641765176617671768176917701771177217731774177517761777177817791780178117821783178417851786178717881789179017911792179317941795179617971798179918001801180218031804180518061807180818091810181118121813181418151816181718181819182018211822182318241825182618271828182918301831183218331834183518361837183818391840184118421843184418451846184718481849185018511852185318541855185618571858185918601861186218631864186518661867186818691870187118721873187418751876187718781879188018811882188318841885188618871888188918901891189218931894189518961897189818991900190119021903190419051906190719081909191019111912191319141915191619171918191919201921192219231924192519261927192819291930193119321933193419351936193719381939194019411942194319441945194619471948194919501951195219531954195519561957195819591960196119621963196419651966196719681969197019711972197319741975197619771978197919801981198219831984198519861987198819891990199119921993199419951996199719981999200020012002200320042005200620072008200920102011201220132014201520162017201820192020202120222023202420252026202720282029203020312032203320342035203620372038203920402041204220432044204520462047204820492050205120522053205420552056205720582059206020612062206320642065206620672068206920702071207220732074207520762077207820792080208120822083208420852086208720882089209020912092209320942095209620972098209921002101210221032104210521062107210821092110211121122113211421152116211721182119212021212122212321242125212621272128212921302131213221332134213521362137213821392140214121422143214421452146214721482149215021512152215321542155215621572158215921602161216221632164216521662167216821692170217121722173217421752176217721782179218021812182218321842185218621872188218921902191219221932194219521962197219821992200220122022203220422052206220722082209221022112212221322142215221622172218221922202221222222232224222522262227222822292230223122322233223422352236223722382239224022412242224322442245224622472248224922502251225222532254225522562257225822592260226122622263
  1. import asyncio
  2. import inspect
  3. import json
  4. import logging
  5. import mimetypes
  6. import os
  7. import shutil
  8. import sys
  9. import time
  10. import random
  11. import re
  12. from uuid import uuid4
  13. from contextlib import asynccontextmanager
  14. from urllib.parse import urlencode, parse_qs, urlparse
  15. from pydantic import BaseModel
  16. from sqlalchemy import text
  17. from typing import Optional
  18. from aiocache import cached
  19. import aiohttp
  20. import anyio.to_thread
  21. import requests
  22. from redis import Redis
  23. from fastapi import (
  24. Depends,
  25. FastAPI,
  26. File,
  27. Form,
  28. HTTPException,
  29. Request,
  30. UploadFile,
  31. status,
  32. applications,
  33. BackgroundTasks,
  34. )
  35. from fastapi.openapi.docs import get_swagger_ui_html
  36. from fastapi.middleware.cors import CORSMiddleware
  37. from fastapi.responses import FileResponse, JSONResponse, RedirectResponse
  38. from fastapi.staticfiles import StaticFiles
  39. from starlette_compress import CompressMiddleware
  40. from starlette.exceptions import HTTPException as StarletteHTTPException
  41. from starlette.middleware.base import BaseHTTPMiddleware
  42. from starlette.middleware.sessions import SessionMiddleware
  43. from starlette.responses import Response, StreamingResponse
  44. from starlette.datastructures import Headers
  45. from starsessions import (
  46. SessionMiddleware as StarSessionsMiddleware,
  47. SessionAutoloadMiddleware,
  48. )
  49. from starsessions.stores.redis import RedisStore
  50. from open_webui.utils import logger
  51. from open_webui.utils.audit import AuditLevel, AuditLoggingMiddleware
  52. from open_webui.utils.logger import start_logger
  53. from open_webui.socket.main import (
  54. app as socket_app,
  55. periodic_usage_pool_cleanup,
  56. get_event_emitter,
  57. get_models_in_use,
  58. get_active_user_ids,
  59. )
  60. from open_webui.routers import (
  61. audio,
  62. images,
  63. ollama,
  64. openai,
  65. retrieval,
  66. pipelines,
  67. tasks,
  68. auths,
  69. channels,
  70. chats,
  71. notes,
  72. folders,
  73. configs,
  74. groups,
  75. files,
  76. functions,
  77. memories,
  78. models,
  79. knowledge,
  80. prompts,
  81. evaluations,
  82. tools,
  83. users,
  84. utils,
  85. scim,
  86. )
  87. from open_webui.routers.retrieval import (
  88. get_embedding_function,
  89. get_reranking_function,
  90. get_ef,
  91. get_rf,
  92. )
  93. from open_webui.internal.db import Session, engine
  94. from open_webui.models.functions import Functions
  95. from open_webui.models.models import Models
  96. from open_webui.models.users import UserModel, Users
  97. from open_webui.models.chats import Chats
  98. from open_webui.config import (
  99. # Ollama
  100. ENABLE_OLLAMA_API,
  101. OLLAMA_BASE_URLS,
  102. OLLAMA_API_CONFIGS,
  103. # OpenAI
  104. ENABLE_OPENAI_API,
  105. OPENAI_API_BASE_URLS,
  106. OPENAI_API_KEYS,
  107. OPENAI_API_CONFIGS,
  108. # Direct Connections
  109. ENABLE_DIRECT_CONNECTIONS,
  110. # Model list
  111. ENABLE_BASE_MODELS_CACHE,
  112. # Thread pool size for FastAPI/AnyIO
  113. THREAD_POOL_SIZE,
  114. # Tool Server Configs
  115. TOOL_SERVER_CONNECTIONS,
  116. # Code Execution
  117. ENABLE_CODE_EXECUTION,
  118. CODE_EXECUTION_ENGINE,
  119. CODE_EXECUTION_JUPYTER_URL,
  120. CODE_EXECUTION_JUPYTER_AUTH,
  121. CODE_EXECUTION_JUPYTER_AUTH_TOKEN,
  122. CODE_EXECUTION_JUPYTER_AUTH_PASSWORD,
  123. CODE_EXECUTION_JUPYTER_TIMEOUT,
  124. ENABLE_CODE_INTERPRETER,
  125. CODE_INTERPRETER_ENGINE,
  126. CODE_INTERPRETER_PROMPT_TEMPLATE,
  127. CODE_INTERPRETER_JUPYTER_URL,
  128. CODE_INTERPRETER_JUPYTER_AUTH,
  129. CODE_INTERPRETER_JUPYTER_AUTH_TOKEN,
  130. CODE_INTERPRETER_JUPYTER_AUTH_PASSWORD,
  131. CODE_INTERPRETER_JUPYTER_TIMEOUT,
  132. # Image
  133. AUTOMATIC1111_API_AUTH,
  134. AUTOMATIC1111_BASE_URL,
  135. AUTOMATIC1111_PARAMS,
  136. COMFYUI_BASE_URL,
  137. COMFYUI_API_KEY,
  138. COMFYUI_WORKFLOW,
  139. COMFYUI_WORKFLOW_NODES,
  140. ENABLE_IMAGE_GENERATION,
  141. ENABLE_IMAGE_PROMPT_GENERATION,
  142. IMAGE_GENERATION_ENGINE,
  143. IMAGE_GENERATION_MODEL,
  144. IMAGE_SIZE,
  145. IMAGE_STEPS,
  146. IMAGES_OPENAI_API_BASE_URL,
  147. IMAGES_OPENAI_API_VERSION,
  148. IMAGES_OPENAI_API_KEY,
  149. IMAGES_GEMINI_API_BASE_URL,
  150. IMAGES_GEMINI_API_KEY,
  151. IMAGES_GEMINI_ENDPOINT_METHOD,
  152. IMAGE_EDIT_ENGINE,
  153. IMAGE_EDIT_MODEL,
  154. IMAGE_EDIT_SIZE,
  155. IMAGES_EDIT_OPENAI_API_BASE_URL,
  156. IMAGES_EDIT_OPENAI_API_KEY,
  157. IMAGES_EDIT_OPENAI_API_VERSION,
  158. IMAGES_EDIT_GEMINI_API_BASE_URL,
  159. IMAGES_EDIT_GEMINI_API_KEY,
  160. IMAGES_EDIT_COMFYUI_BASE_URL,
  161. IMAGES_EDIT_COMFYUI_API_KEY,
  162. IMAGES_EDIT_COMFYUI_WORKFLOW,
  163. IMAGES_EDIT_COMFYUI_WORKFLOW_NODES,
  164. # Audio
  165. AUDIO_STT_ENGINE,
  166. AUDIO_STT_MODEL,
  167. AUDIO_STT_SUPPORTED_CONTENT_TYPES,
  168. AUDIO_STT_OPENAI_API_BASE_URL,
  169. AUDIO_STT_OPENAI_API_KEY,
  170. AUDIO_STT_AZURE_API_KEY,
  171. AUDIO_STT_AZURE_REGION,
  172. AUDIO_STT_AZURE_LOCALES,
  173. AUDIO_STT_AZURE_BASE_URL,
  174. AUDIO_STT_AZURE_MAX_SPEAKERS,
  175. AUDIO_STT_MISTRAL_API_KEY,
  176. AUDIO_STT_MISTRAL_API_BASE_URL,
  177. AUDIO_STT_MISTRAL_USE_CHAT_COMPLETIONS,
  178. AUDIO_TTS_ENGINE,
  179. AUDIO_TTS_MODEL,
  180. AUDIO_TTS_VOICE,
  181. AUDIO_TTS_OPENAI_API_BASE_URL,
  182. AUDIO_TTS_OPENAI_API_KEY,
  183. AUDIO_TTS_OPENAI_PARAMS,
  184. AUDIO_TTS_API_KEY,
  185. AUDIO_TTS_SPLIT_ON,
  186. AUDIO_TTS_AZURE_SPEECH_REGION,
  187. AUDIO_TTS_AZURE_SPEECH_BASE_URL,
  188. AUDIO_TTS_AZURE_SPEECH_OUTPUT_FORMAT,
  189. PLAYWRIGHT_WS_URL,
  190. PLAYWRIGHT_TIMEOUT,
  191. FIRECRAWL_API_BASE_URL,
  192. FIRECRAWL_API_KEY,
  193. WEB_LOADER_ENGINE,
  194. WEB_LOADER_CONCURRENT_REQUESTS,
  195. WHISPER_MODEL,
  196. WHISPER_VAD_FILTER,
  197. WHISPER_LANGUAGE,
  198. DEEPGRAM_API_KEY,
  199. WHISPER_MODEL_AUTO_UPDATE,
  200. WHISPER_MODEL_DIR,
  201. # Retrieval
  202. RAG_TEMPLATE,
  203. DEFAULT_RAG_TEMPLATE,
  204. RAG_FULL_CONTEXT,
  205. BYPASS_EMBEDDING_AND_RETRIEVAL,
  206. RAG_EMBEDDING_MODEL,
  207. RAG_EMBEDDING_MODEL_AUTO_UPDATE,
  208. RAG_EMBEDDING_MODEL_TRUST_REMOTE_CODE,
  209. RAG_RERANKING_ENGINE,
  210. RAG_RERANKING_MODEL,
  211. RAG_EXTERNAL_RERANKER_URL,
  212. RAG_EXTERNAL_RERANKER_API_KEY,
  213. RAG_RERANKING_MODEL_AUTO_UPDATE,
  214. RAG_RERANKING_MODEL_TRUST_REMOTE_CODE,
  215. RAG_EMBEDDING_ENGINE,
  216. RAG_EMBEDDING_BATCH_SIZE,
  217. RAG_TOP_K,
  218. RAG_TOP_K_RERANKER,
  219. RAG_RELEVANCE_THRESHOLD,
  220. RAG_HYBRID_BM25_WEIGHT,
  221. RAG_ALLOWED_FILE_EXTENSIONS,
  222. RAG_FILE_MAX_COUNT,
  223. RAG_FILE_MAX_SIZE,
  224. FILE_IMAGE_COMPRESSION_WIDTH,
  225. FILE_IMAGE_COMPRESSION_HEIGHT,
  226. RAG_OPENAI_API_BASE_URL,
  227. RAG_OPENAI_API_KEY,
  228. RAG_AZURE_OPENAI_BASE_URL,
  229. RAG_AZURE_OPENAI_API_KEY,
  230. RAG_AZURE_OPENAI_API_VERSION,
  231. RAG_OLLAMA_BASE_URL,
  232. RAG_OLLAMA_API_KEY,
  233. CHUNK_OVERLAP,
  234. CHUNK_SIZE,
  235. CONTENT_EXTRACTION_ENGINE,
  236. DATALAB_MARKER_API_KEY,
  237. DATALAB_MARKER_API_BASE_URL,
  238. DATALAB_MARKER_ADDITIONAL_CONFIG,
  239. DATALAB_MARKER_SKIP_CACHE,
  240. DATALAB_MARKER_FORCE_OCR,
  241. DATALAB_MARKER_PAGINATE,
  242. DATALAB_MARKER_STRIP_EXISTING_OCR,
  243. DATALAB_MARKER_DISABLE_IMAGE_EXTRACTION,
  244. DATALAB_MARKER_FORMAT_LINES,
  245. DATALAB_MARKER_OUTPUT_FORMAT,
  246. MINERU_API_MODE,
  247. MINERU_API_URL,
  248. MINERU_API_KEY,
  249. MINERU_PARAMS,
  250. DATALAB_MARKER_USE_LLM,
  251. EXTERNAL_DOCUMENT_LOADER_URL,
  252. EXTERNAL_DOCUMENT_LOADER_API_KEY,
  253. TIKA_SERVER_URL,
  254. DOCLING_SERVER_URL,
  255. DOCLING_PARAMS,
  256. DOCLING_DO_OCR,
  257. DOCLING_FORCE_OCR,
  258. DOCLING_OCR_ENGINE,
  259. DOCLING_OCR_LANG,
  260. DOCLING_PDF_BACKEND,
  261. DOCLING_TABLE_MODE,
  262. DOCLING_PIPELINE,
  263. DOCLING_DO_PICTURE_DESCRIPTION,
  264. DOCLING_PICTURE_DESCRIPTION_MODE,
  265. DOCLING_PICTURE_DESCRIPTION_LOCAL,
  266. DOCLING_PICTURE_DESCRIPTION_API,
  267. DOCUMENT_INTELLIGENCE_ENDPOINT,
  268. DOCUMENT_INTELLIGENCE_KEY,
  269. MISTRAL_OCR_API_BASE_URL,
  270. MISTRAL_OCR_API_KEY,
  271. RAG_TEXT_SPLITTER,
  272. TIKTOKEN_ENCODING_NAME,
  273. PDF_EXTRACT_IMAGES,
  274. YOUTUBE_LOADER_LANGUAGE,
  275. YOUTUBE_LOADER_PROXY_URL,
  276. # Retrieval (Web Search)
  277. ENABLE_WEB_SEARCH,
  278. WEB_SEARCH_ENGINE,
  279. BYPASS_WEB_SEARCH_EMBEDDING_AND_RETRIEVAL,
  280. BYPASS_WEB_SEARCH_WEB_LOADER,
  281. WEB_SEARCH_RESULT_COUNT,
  282. WEB_SEARCH_CONCURRENT_REQUESTS,
  283. WEB_SEARCH_TRUST_ENV,
  284. WEB_SEARCH_DOMAIN_FILTER_LIST,
  285. OLLAMA_CLOUD_WEB_SEARCH_API_KEY,
  286. JINA_API_KEY,
  287. SEARCHAPI_API_KEY,
  288. SEARCHAPI_ENGINE,
  289. SERPAPI_API_KEY,
  290. SERPAPI_ENGINE,
  291. SEARXNG_QUERY_URL,
  292. YACY_QUERY_URL,
  293. YACY_USERNAME,
  294. YACY_PASSWORD,
  295. SERPER_API_KEY,
  296. SERPLY_API_KEY,
  297. SERPSTACK_API_KEY,
  298. SERPSTACK_HTTPS,
  299. TAVILY_API_KEY,
  300. TAVILY_EXTRACT_DEPTH,
  301. BING_SEARCH_V7_ENDPOINT,
  302. BING_SEARCH_V7_SUBSCRIPTION_KEY,
  303. BRAVE_SEARCH_API_KEY,
  304. EXA_API_KEY,
  305. PERPLEXITY_API_KEY,
  306. PERPLEXITY_MODEL,
  307. PERPLEXITY_SEARCH_CONTEXT_USAGE,
  308. PERPLEXITY_SEARCH_API_URL,
  309. SOUGOU_API_SID,
  310. SOUGOU_API_SK,
  311. KAGI_SEARCH_API_KEY,
  312. MOJEEK_SEARCH_API_KEY,
  313. BOCHA_SEARCH_API_KEY,
  314. GOOGLE_PSE_API_KEY,
  315. GOOGLE_PSE_ENGINE_ID,
  316. GOOGLE_DRIVE_CLIENT_ID,
  317. GOOGLE_DRIVE_API_KEY,
  318. ENABLE_ONEDRIVE_INTEGRATION,
  319. ONEDRIVE_CLIENT_ID_PERSONAL,
  320. ONEDRIVE_CLIENT_ID_BUSINESS,
  321. ONEDRIVE_SHAREPOINT_URL,
  322. ONEDRIVE_SHAREPOINT_TENANT_ID,
  323. ENABLE_ONEDRIVE_PERSONAL,
  324. ENABLE_ONEDRIVE_BUSINESS,
  325. ENABLE_RAG_HYBRID_SEARCH,
  326. ENABLE_RAG_LOCAL_WEB_FETCH,
  327. ENABLE_WEB_LOADER_SSL_VERIFICATION,
  328. ENABLE_GOOGLE_DRIVE_INTEGRATION,
  329. UPLOAD_DIR,
  330. EXTERNAL_WEB_SEARCH_URL,
  331. EXTERNAL_WEB_SEARCH_API_KEY,
  332. EXTERNAL_WEB_LOADER_URL,
  333. EXTERNAL_WEB_LOADER_API_KEY,
  334. # WebUI
  335. WEBUI_AUTH,
  336. WEBUI_NAME,
  337. WEBUI_BANNERS,
  338. WEBHOOK_URL,
  339. ADMIN_EMAIL,
  340. SHOW_ADMIN_DETAILS,
  341. JWT_EXPIRES_IN,
  342. ENABLE_SIGNUP,
  343. ENABLE_LOGIN_FORM,
  344. ENABLE_API_KEY,
  345. ENABLE_API_KEY_ENDPOINT_RESTRICTIONS,
  346. API_KEY_ALLOWED_ENDPOINTS,
  347. ENABLE_CHANNELS,
  348. ENABLE_NOTES,
  349. ENABLE_COMMUNITY_SHARING,
  350. ENABLE_MESSAGE_RATING,
  351. ENABLE_USER_WEBHOOKS,
  352. ENABLE_EVALUATION_ARENA_MODELS,
  353. BYPASS_ADMIN_ACCESS_CONTROL,
  354. USER_PERMISSIONS,
  355. DEFAULT_USER_ROLE,
  356. PENDING_USER_OVERLAY_CONTENT,
  357. PENDING_USER_OVERLAY_TITLE,
  358. DEFAULT_PROMPT_SUGGESTIONS,
  359. DEFAULT_MODELS,
  360. DEFAULT_ARENA_MODEL,
  361. MODEL_ORDER_LIST,
  362. EVALUATION_ARENA_MODELS,
  363. # WebUI (OAuth)
  364. ENABLE_OAUTH_ROLE_MANAGEMENT,
  365. OAUTH_ROLES_CLAIM,
  366. OAUTH_EMAIL_CLAIM,
  367. OAUTH_PICTURE_CLAIM,
  368. OAUTH_USERNAME_CLAIM,
  369. OAUTH_ALLOWED_ROLES,
  370. OAUTH_ADMIN_ROLES,
  371. # WebUI (LDAP)
  372. ENABLE_LDAP,
  373. LDAP_SERVER_LABEL,
  374. LDAP_SERVER_HOST,
  375. LDAP_SERVER_PORT,
  376. LDAP_ATTRIBUTE_FOR_MAIL,
  377. LDAP_ATTRIBUTE_FOR_USERNAME,
  378. LDAP_SEARCH_FILTERS,
  379. LDAP_SEARCH_BASE,
  380. LDAP_APP_DN,
  381. LDAP_APP_PASSWORD,
  382. LDAP_USE_TLS,
  383. LDAP_CA_CERT_FILE,
  384. LDAP_VALIDATE_CERT,
  385. LDAP_CIPHERS,
  386. # LDAP Group Management
  387. ENABLE_LDAP_GROUP_MANAGEMENT,
  388. ENABLE_LDAP_GROUP_CREATION,
  389. LDAP_ATTRIBUTE_FOR_GROUPS,
  390. # Misc
  391. ENV,
  392. CACHE_DIR,
  393. STATIC_DIR,
  394. FRONTEND_BUILD_DIR,
  395. CORS_ALLOW_ORIGIN,
  396. DEFAULT_LOCALE,
  397. OAUTH_PROVIDERS,
  398. WEBUI_URL,
  399. RESPONSE_WATERMARK,
  400. # Admin
  401. ENABLE_ADMIN_CHAT_ACCESS,
  402. BYPASS_ADMIN_ACCESS_CONTROL,
  403. ENABLE_ADMIN_EXPORT,
  404. # Tasks
  405. TASK_MODEL,
  406. TASK_MODEL_EXTERNAL,
  407. ENABLE_TAGS_GENERATION,
  408. ENABLE_TITLE_GENERATION,
  409. ENABLE_FOLLOW_UP_GENERATION,
  410. ENABLE_SEARCH_QUERY_GENERATION,
  411. ENABLE_RETRIEVAL_QUERY_GENERATION,
  412. ENABLE_AUTOCOMPLETE_GENERATION,
  413. TITLE_GENERATION_PROMPT_TEMPLATE,
  414. FOLLOW_UP_GENERATION_PROMPT_TEMPLATE,
  415. TAGS_GENERATION_PROMPT_TEMPLATE,
  416. IMAGE_PROMPT_GENERATION_PROMPT_TEMPLATE,
  417. TOOLS_FUNCTION_CALLING_PROMPT_TEMPLATE,
  418. QUERY_GENERATION_PROMPT_TEMPLATE,
  419. AUTOCOMPLETE_GENERATION_PROMPT_TEMPLATE,
  420. AUTOCOMPLETE_GENERATION_INPUT_MAX_LENGTH,
  421. AppConfig,
  422. reset_config,
  423. )
  424. from open_webui.env import (
  425. LICENSE_KEY,
  426. AUDIT_EXCLUDED_PATHS,
  427. AUDIT_LOG_LEVEL,
  428. CHANGELOG,
  429. REDIS_URL,
  430. REDIS_CLUSTER,
  431. REDIS_KEY_PREFIX,
  432. REDIS_SENTINEL_HOSTS,
  433. REDIS_SENTINEL_PORT,
  434. GLOBAL_LOG_LEVEL,
  435. MAX_BODY_LOG_SIZE,
  436. SAFE_MODE,
  437. SRC_LOG_LEVELS,
  438. VERSION,
  439. INSTANCE_ID,
  440. WEBUI_BUILD_HASH,
  441. WEBUI_SECRET_KEY,
  442. WEBUI_SESSION_COOKIE_SAME_SITE,
  443. WEBUI_SESSION_COOKIE_SECURE,
  444. ENABLE_SIGNUP_PASSWORD_CONFIRMATION,
  445. WEBUI_AUTH_TRUSTED_EMAIL_HEADER,
  446. WEBUI_AUTH_TRUSTED_NAME_HEADER,
  447. WEBUI_AUTH_SIGNOUT_REDIRECT_URL,
  448. # SCIM
  449. ENABLE_SCIM,
  450. SCIM_TOKEN,
  451. ENABLE_COMPRESSION_MIDDLEWARE,
  452. ENABLE_WEBSOCKET_SUPPORT,
  453. BYPASS_MODEL_ACCESS_CONTROL,
  454. RESET_CONFIG_ON_START,
  455. ENABLE_VERSION_UPDATE_CHECK,
  456. ENABLE_OTEL,
  457. EXTERNAL_PWA_MANIFEST_URL,
  458. AIOHTTP_CLIENT_SESSION_SSL,
  459. ENABLE_STAR_SESSIONS_MIDDLEWARE,
  460. )
  461. from open_webui.utils.models import (
  462. get_all_models,
  463. get_all_base_models,
  464. check_model_access,
  465. get_filtered_models,
  466. )
  467. from open_webui.utils.chat import (
  468. generate_chat_completion as chat_completion_handler,
  469. chat_completed as chat_completed_handler,
  470. chat_action as chat_action_handler,
  471. )
  472. from open_webui.utils.embeddings import generate_embeddings
  473. from open_webui.utils.middleware import process_chat_payload, process_chat_response
  474. from open_webui.utils.access_control import has_access
  475. from open_webui.utils.auth import (
  476. get_license_data,
  477. get_http_authorization_cred,
  478. decode_token,
  479. get_admin_user,
  480. get_verified_user,
  481. )
  482. from open_webui.utils.plugin import install_tool_and_function_dependencies
  483. from open_webui.utils.oauth import (
  484. get_oauth_client_info_with_dynamic_client_registration,
  485. encrypt_data,
  486. decrypt_data,
  487. OAuthManager,
  488. OAuthClientManager,
  489. OAuthClientInformationFull,
  490. )
  491. from open_webui.utils.security_headers import SecurityHeadersMiddleware
  492. from open_webui.utils.redis import get_redis_connection
  493. from open_webui.tasks import (
  494. redis_task_command_listener,
  495. list_task_ids_by_item_id,
  496. create_task,
  497. stop_task,
  498. list_tasks,
  499. ) # Import from tasks.py
  500. from open_webui.utils.redis import get_sentinels_from_env
  501. from open_webui.constants import ERROR_MESSAGES
  502. if SAFE_MODE:
  503. print("SAFE MODE ENABLED")
  504. Functions.deactivate_all_functions()
  505. logging.basicConfig(stream=sys.stdout, level=GLOBAL_LOG_LEVEL)
  506. log = logging.getLogger(__name__)
  507. log.setLevel(SRC_LOG_LEVELS["MAIN"])
  508. class SPAStaticFiles(StaticFiles):
  509. async def get_response(self, path: str, scope):
  510. try:
  511. return await super().get_response(path, scope)
  512. except (HTTPException, StarletteHTTPException) as ex:
  513. if ex.status_code == 404:
  514. if path.endswith(".js"):
  515. # Return 404 for javascript files
  516. raise ex
  517. else:
  518. return await super().get_response("index.html", scope)
  519. else:
  520. raise ex
  521. print(
  522. rf"""
  523. ██████╗ ██████╗ ███████╗███╗ ██╗ ██╗ ██╗███████╗██████╗ ██╗ ██╗██╗
  524. ██╔═══██╗██╔══██╗██╔════╝████╗ ██║ ██║ ██║██╔════╝██╔══██╗██║ ██║██║
  525. ██║ ██║██████╔╝█████╗ ██╔██╗ ██║ ██║ █╗ ██║█████╗ ██████╔╝██║ ██║██║
  526. ██║ ██║██╔═══╝ ██╔══╝ ██║╚██╗██║ ██║███╗██║██╔══╝ ██╔══██╗██║ ██║██║
  527. ╚██████╔╝██║ ███████╗██║ ╚████║ ╚███╔███╔╝███████╗██████╔╝╚██████╔╝██║
  528. ╚═════╝ ╚═╝ ╚══════╝╚═╝ ╚═══╝ ╚══╝╚══╝ ╚══════╝╚═════╝ ╚═════╝ ╚═╝
  529. v{VERSION} - building the best AI user interface.
  530. {f"Commit: {WEBUI_BUILD_HASH}" if WEBUI_BUILD_HASH != "dev-build" else ""}
  531. https://github.com/open-webui/open-webui
  532. """
  533. )
  534. @asynccontextmanager
  535. async def lifespan(app: FastAPI):
  536. app.state.instance_id = INSTANCE_ID
  537. start_logger()
  538. if RESET_CONFIG_ON_START:
  539. reset_config()
  540. if LICENSE_KEY:
  541. get_license_data(app, LICENSE_KEY)
  542. # This should be blocking (sync) so functions are not deactivated on first /get_models calls
  543. # when the first user lands on the / route.
  544. log.info("Installing external dependencies of functions and tools...")
  545. install_tool_and_function_dependencies()
  546. app.state.redis = get_redis_connection(
  547. redis_url=REDIS_URL,
  548. redis_sentinels=get_sentinels_from_env(
  549. REDIS_SENTINEL_HOSTS, REDIS_SENTINEL_PORT
  550. ),
  551. redis_cluster=REDIS_CLUSTER,
  552. async_mode=True,
  553. )
  554. if app.state.redis is not None:
  555. app.state.redis_task_command_listener = asyncio.create_task(
  556. redis_task_command_listener(app)
  557. )
  558. if THREAD_POOL_SIZE and THREAD_POOL_SIZE > 0:
  559. limiter = anyio.to_thread.current_default_thread_limiter()
  560. limiter.total_tokens = THREAD_POOL_SIZE
  561. asyncio.create_task(periodic_usage_pool_cleanup())
  562. if app.state.config.ENABLE_BASE_MODELS_CACHE:
  563. await get_all_models(
  564. Request(
  565. # Creating a mock request object to pass to get_all_models
  566. {
  567. "type": "http",
  568. "asgi.version": "3.0",
  569. "asgi.spec_version": "2.0",
  570. "method": "GET",
  571. "path": "/internal",
  572. "query_string": b"",
  573. "headers": Headers({}).raw,
  574. "client": ("127.0.0.1", 12345),
  575. "server": ("127.0.0.1", 80),
  576. "scheme": "http",
  577. "app": app,
  578. }
  579. ),
  580. None,
  581. )
  582. yield
  583. if hasattr(app.state, "redis_task_command_listener"):
  584. app.state.redis_task_command_listener.cancel()
  585. app = FastAPI(
  586. title="Open WebUI",
  587. docs_url="/docs" if ENV == "dev" else None,
  588. openapi_url="/openapi.json" if ENV == "dev" else None,
  589. redoc_url=None,
  590. lifespan=lifespan,
  591. )
  592. # For Open WebUI OIDC/OAuth2
  593. oauth_manager = OAuthManager(app)
  594. app.state.oauth_manager = oauth_manager
  595. # For Integrations
  596. oauth_client_manager = OAuthClientManager(app)
  597. app.state.oauth_client_manager = oauth_client_manager
  598. app.state.instance_id = None
  599. app.state.config = AppConfig(
  600. redis_url=REDIS_URL,
  601. redis_sentinels=get_sentinels_from_env(REDIS_SENTINEL_HOSTS, REDIS_SENTINEL_PORT),
  602. redis_cluster=REDIS_CLUSTER,
  603. redis_key_prefix=REDIS_KEY_PREFIX,
  604. )
  605. app.state.redis = None
  606. app.state.WEBUI_NAME = WEBUI_NAME
  607. app.state.LICENSE_METADATA = None
  608. ########################################
  609. #
  610. # OPENTELEMETRY
  611. #
  612. ########################################
  613. if ENABLE_OTEL:
  614. from open_webui.utils.telemetry.setup import setup as setup_opentelemetry
  615. setup_opentelemetry(app=app, db_engine=engine)
  616. ########################################
  617. #
  618. # OLLAMA
  619. #
  620. ########################################
  621. app.state.config.ENABLE_OLLAMA_API = ENABLE_OLLAMA_API
  622. app.state.config.OLLAMA_BASE_URLS = OLLAMA_BASE_URLS
  623. app.state.config.OLLAMA_API_CONFIGS = OLLAMA_API_CONFIGS
  624. app.state.OLLAMA_MODELS = {}
  625. ########################################
  626. #
  627. # OPENAI
  628. #
  629. ########################################
  630. app.state.config.ENABLE_OPENAI_API = ENABLE_OPENAI_API
  631. app.state.config.OPENAI_API_BASE_URLS = OPENAI_API_BASE_URLS
  632. app.state.config.OPENAI_API_KEYS = OPENAI_API_KEYS
  633. app.state.config.OPENAI_API_CONFIGS = OPENAI_API_CONFIGS
  634. app.state.OPENAI_MODELS = {}
  635. ########################################
  636. #
  637. # TOOL SERVERS
  638. #
  639. ########################################
  640. app.state.config.TOOL_SERVER_CONNECTIONS = TOOL_SERVER_CONNECTIONS
  641. app.state.TOOL_SERVERS = []
  642. ########################################
  643. #
  644. # DIRECT CONNECTIONS
  645. #
  646. ########################################
  647. app.state.config.ENABLE_DIRECT_CONNECTIONS = ENABLE_DIRECT_CONNECTIONS
  648. ########################################
  649. #
  650. # SCIM
  651. #
  652. ########################################
  653. app.state.ENABLE_SCIM = ENABLE_SCIM
  654. app.state.SCIM_TOKEN = SCIM_TOKEN
  655. ########################################
  656. #
  657. # MODELS
  658. #
  659. ########################################
  660. app.state.config.ENABLE_BASE_MODELS_CACHE = ENABLE_BASE_MODELS_CACHE
  661. app.state.BASE_MODELS = []
  662. ########################################
  663. #
  664. # WEBUI
  665. #
  666. ########################################
  667. app.state.config.WEBUI_URL = WEBUI_URL
  668. app.state.config.ENABLE_SIGNUP = ENABLE_SIGNUP
  669. app.state.config.ENABLE_LOGIN_FORM = ENABLE_LOGIN_FORM
  670. app.state.config.ENABLE_API_KEY = ENABLE_API_KEY
  671. app.state.config.ENABLE_API_KEY_ENDPOINT_RESTRICTIONS = (
  672. ENABLE_API_KEY_ENDPOINT_RESTRICTIONS
  673. )
  674. app.state.config.API_KEY_ALLOWED_ENDPOINTS = API_KEY_ALLOWED_ENDPOINTS
  675. app.state.config.JWT_EXPIRES_IN = JWT_EXPIRES_IN
  676. app.state.config.SHOW_ADMIN_DETAILS = SHOW_ADMIN_DETAILS
  677. app.state.config.ADMIN_EMAIL = ADMIN_EMAIL
  678. app.state.config.DEFAULT_MODELS = DEFAULT_MODELS
  679. app.state.config.DEFAULT_PROMPT_SUGGESTIONS = DEFAULT_PROMPT_SUGGESTIONS
  680. app.state.config.DEFAULT_USER_ROLE = DEFAULT_USER_ROLE
  681. app.state.config.PENDING_USER_OVERLAY_CONTENT = PENDING_USER_OVERLAY_CONTENT
  682. app.state.config.PENDING_USER_OVERLAY_TITLE = PENDING_USER_OVERLAY_TITLE
  683. app.state.config.RESPONSE_WATERMARK = RESPONSE_WATERMARK
  684. app.state.config.USER_PERMISSIONS = USER_PERMISSIONS
  685. app.state.config.WEBHOOK_URL = WEBHOOK_URL
  686. app.state.config.BANNERS = WEBUI_BANNERS
  687. app.state.config.MODEL_ORDER_LIST = MODEL_ORDER_LIST
  688. app.state.config.ENABLE_CHANNELS = ENABLE_CHANNELS
  689. app.state.config.ENABLE_NOTES = ENABLE_NOTES
  690. app.state.config.ENABLE_COMMUNITY_SHARING = ENABLE_COMMUNITY_SHARING
  691. app.state.config.ENABLE_MESSAGE_RATING = ENABLE_MESSAGE_RATING
  692. app.state.config.ENABLE_USER_WEBHOOKS = ENABLE_USER_WEBHOOKS
  693. app.state.config.ENABLE_EVALUATION_ARENA_MODELS = ENABLE_EVALUATION_ARENA_MODELS
  694. app.state.config.EVALUATION_ARENA_MODELS = EVALUATION_ARENA_MODELS
  695. app.state.config.OAUTH_USERNAME_CLAIM = OAUTH_USERNAME_CLAIM
  696. app.state.config.OAUTH_PICTURE_CLAIM = OAUTH_PICTURE_CLAIM
  697. app.state.config.OAUTH_EMAIL_CLAIM = OAUTH_EMAIL_CLAIM
  698. app.state.config.ENABLE_OAUTH_ROLE_MANAGEMENT = ENABLE_OAUTH_ROLE_MANAGEMENT
  699. app.state.config.OAUTH_ROLES_CLAIM = OAUTH_ROLES_CLAIM
  700. app.state.config.OAUTH_ALLOWED_ROLES = OAUTH_ALLOWED_ROLES
  701. app.state.config.OAUTH_ADMIN_ROLES = OAUTH_ADMIN_ROLES
  702. app.state.config.ENABLE_LDAP = ENABLE_LDAP
  703. app.state.config.LDAP_SERVER_LABEL = LDAP_SERVER_LABEL
  704. app.state.config.LDAP_SERVER_HOST = LDAP_SERVER_HOST
  705. app.state.config.LDAP_SERVER_PORT = LDAP_SERVER_PORT
  706. app.state.config.LDAP_ATTRIBUTE_FOR_MAIL = LDAP_ATTRIBUTE_FOR_MAIL
  707. app.state.config.LDAP_ATTRIBUTE_FOR_USERNAME = LDAP_ATTRIBUTE_FOR_USERNAME
  708. app.state.config.LDAP_APP_DN = LDAP_APP_DN
  709. app.state.config.LDAP_APP_PASSWORD = LDAP_APP_PASSWORD
  710. app.state.config.LDAP_SEARCH_BASE = LDAP_SEARCH_BASE
  711. app.state.config.LDAP_SEARCH_FILTERS = LDAP_SEARCH_FILTERS
  712. app.state.config.LDAP_USE_TLS = LDAP_USE_TLS
  713. app.state.config.LDAP_CA_CERT_FILE = LDAP_CA_CERT_FILE
  714. app.state.config.LDAP_VALIDATE_CERT = LDAP_VALIDATE_CERT
  715. app.state.config.LDAP_CIPHERS = LDAP_CIPHERS
  716. # For LDAP Group Management
  717. app.state.config.ENABLE_LDAP_GROUP_MANAGEMENT = ENABLE_LDAP_GROUP_MANAGEMENT
  718. app.state.config.ENABLE_LDAP_GROUP_CREATION = ENABLE_LDAP_GROUP_CREATION
  719. app.state.config.LDAP_ATTRIBUTE_FOR_GROUPS = LDAP_ATTRIBUTE_FOR_GROUPS
  720. app.state.AUTH_TRUSTED_EMAIL_HEADER = WEBUI_AUTH_TRUSTED_EMAIL_HEADER
  721. app.state.AUTH_TRUSTED_NAME_HEADER = WEBUI_AUTH_TRUSTED_NAME_HEADER
  722. app.state.WEBUI_AUTH_SIGNOUT_REDIRECT_URL = WEBUI_AUTH_SIGNOUT_REDIRECT_URL
  723. app.state.EXTERNAL_PWA_MANIFEST_URL = EXTERNAL_PWA_MANIFEST_URL
  724. app.state.USER_COUNT = None
  725. app.state.TOOLS = {}
  726. app.state.TOOL_CONTENTS = {}
  727. app.state.FUNCTIONS = {}
  728. app.state.FUNCTION_CONTENTS = {}
  729. ########################################
  730. #
  731. # RETRIEVAL
  732. #
  733. ########################################
  734. app.state.config.TOP_K = RAG_TOP_K
  735. app.state.config.TOP_K_RERANKER = RAG_TOP_K_RERANKER
  736. app.state.config.RELEVANCE_THRESHOLD = RAG_RELEVANCE_THRESHOLD
  737. app.state.config.HYBRID_BM25_WEIGHT = RAG_HYBRID_BM25_WEIGHT
  738. app.state.config.ALLOWED_FILE_EXTENSIONS = RAG_ALLOWED_FILE_EXTENSIONS
  739. app.state.config.FILE_MAX_SIZE = RAG_FILE_MAX_SIZE
  740. app.state.config.FILE_MAX_COUNT = RAG_FILE_MAX_COUNT
  741. app.state.config.FILE_IMAGE_COMPRESSION_WIDTH = FILE_IMAGE_COMPRESSION_WIDTH
  742. app.state.config.FILE_IMAGE_COMPRESSION_HEIGHT = FILE_IMAGE_COMPRESSION_HEIGHT
  743. app.state.config.RAG_FULL_CONTEXT = RAG_FULL_CONTEXT
  744. app.state.config.BYPASS_EMBEDDING_AND_RETRIEVAL = BYPASS_EMBEDDING_AND_RETRIEVAL
  745. app.state.config.ENABLE_RAG_HYBRID_SEARCH = ENABLE_RAG_HYBRID_SEARCH
  746. app.state.config.ENABLE_WEB_LOADER_SSL_VERIFICATION = ENABLE_WEB_LOADER_SSL_VERIFICATION
  747. app.state.config.CONTENT_EXTRACTION_ENGINE = CONTENT_EXTRACTION_ENGINE
  748. app.state.config.DATALAB_MARKER_API_KEY = DATALAB_MARKER_API_KEY
  749. app.state.config.DATALAB_MARKER_API_BASE_URL = DATALAB_MARKER_API_BASE_URL
  750. app.state.config.DATALAB_MARKER_ADDITIONAL_CONFIG = DATALAB_MARKER_ADDITIONAL_CONFIG
  751. app.state.config.DATALAB_MARKER_SKIP_CACHE = DATALAB_MARKER_SKIP_CACHE
  752. app.state.config.DATALAB_MARKER_FORCE_OCR = DATALAB_MARKER_FORCE_OCR
  753. app.state.config.DATALAB_MARKER_PAGINATE = DATALAB_MARKER_PAGINATE
  754. app.state.config.DATALAB_MARKER_STRIP_EXISTING_OCR = DATALAB_MARKER_STRIP_EXISTING_OCR
  755. app.state.config.DATALAB_MARKER_DISABLE_IMAGE_EXTRACTION = (
  756. DATALAB_MARKER_DISABLE_IMAGE_EXTRACTION
  757. )
  758. app.state.config.DATALAB_MARKER_FORMAT_LINES = DATALAB_MARKER_FORMAT_LINES
  759. app.state.config.DATALAB_MARKER_USE_LLM = DATALAB_MARKER_USE_LLM
  760. app.state.config.DATALAB_MARKER_OUTPUT_FORMAT = DATALAB_MARKER_OUTPUT_FORMAT
  761. app.state.config.EXTERNAL_DOCUMENT_LOADER_URL = EXTERNAL_DOCUMENT_LOADER_URL
  762. app.state.config.EXTERNAL_DOCUMENT_LOADER_API_KEY = EXTERNAL_DOCUMENT_LOADER_API_KEY
  763. app.state.config.TIKA_SERVER_URL = TIKA_SERVER_URL
  764. app.state.config.DOCLING_SERVER_URL = DOCLING_SERVER_URL
  765. app.state.config.DOCLING_PARAMS = DOCLING_PARAMS
  766. app.state.config.DOCLING_DO_OCR = DOCLING_DO_OCR
  767. app.state.config.DOCLING_FORCE_OCR = DOCLING_FORCE_OCR
  768. app.state.config.DOCLING_OCR_ENGINE = DOCLING_OCR_ENGINE
  769. app.state.config.DOCLING_OCR_LANG = DOCLING_OCR_LANG
  770. app.state.config.DOCLING_PDF_BACKEND = DOCLING_PDF_BACKEND
  771. app.state.config.DOCLING_TABLE_MODE = DOCLING_TABLE_MODE
  772. app.state.config.DOCLING_PIPELINE = DOCLING_PIPELINE
  773. app.state.config.DOCLING_DO_PICTURE_DESCRIPTION = DOCLING_DO_PICTURE_DESCRIPTION
  774. app.state.config.DOCLING_PICTURE_DESCRIPTION_MODE = DOCLING_PICTURE_DESCRIPTION_MODE
  775. app.state.config.DOCLING_PICTURE_DESCRIPTION_LOCAL = DOCLING_PICTURE_DESCRIPTION_LOCAL
  776. app.state.config.DOCLING_PICTURE_DESCRIPTION_API = DOCLING_PICTURE_DESCRIPTION_API
  777. app.state.config.DOCUMENT_INTELLIGENCE_ENDPOINT = DOCUMENT_INTELLIGENCE_ENDPOINT
  778. app.state.config.DOCUMENT_INTELLIGENCE_KEY = DOCUMENT_INTELLIGENCE_KEY
  779. app.state.config.MISTRAL_OCR_API_BASE_URL = MISTRAL_OCR_API_BASE_URL
  780. app.state.config.MISTRAL_OCR_API_KEY = MISTRAL_OCR_API_KEY
  781. app.state.config.MINERU_API_MODE = MINERU_API_MODE
  782. app.state.config.MINERU_API_URL = MINERU_API_URL
  783. app.state.config.MINERU_API_KEY = MINERU_API_KEY
  784. app.state.config.MINERU_PARAMS = MINERU_PARAMS
  785. app.state.config.TEXT_SPLITTER = RAG_TEXT_SPLITTER
  786. app.state.config.TIKTOKEN_ENCODING_NAME = TIKTOKEN_ENCODING_NAME
  787. app.state.config.CHUNK_SIZE = CHUNK_SIZE
  788. app.state.config.CHUNK_OVERLAP = CHUNK_OVERLAP
  789. app.state.config.RAG_EMBEDDING_ENGINE = RAG_EMBEDDING_ENGINE
  790. app.state.config.RAG_EMBEDDING_MODEL = RAG_EMBEDDING_MODEL
  791. app.state.config.RAG_EMBEDDING_BATCH_SIZE = RAG_EMBEDDING_BATCH_SIZE
  792. app.state.config.RAG_RERANKING_ENGINE = RAG_RERANKING_ENGINE
  793. app.state.config.RAG_RERANKING_MODEL = RAG_RERANKING_MODEL
  794. app.state.config.RAG_EXTERNAL_RERANKER_URL = RAG_EXTERNAL_RERANKER_URL
  795. app.state.config.RAG_EXTERNAL_RERANKER_API_KEY = RAG_EXTERNAL_RERANKER_API_KEY
  796. app.state.config.RAG_TEMPLATE = RAG_TEMPLATE
  797. app.state.config.RAG_OPENAI_API_BASE_URL = RAG_OPENAI_API_BASE_URL
  798. app.state.config.RAG_OPENAI_API_KEY = RAG_OPENAI_API_KEY
  799. app.state.config.RAG_AZURE_OPENAI_BASE_URL = RAG_AZURE_OPENAI_BASE_URL
  800. app.state.config.RAG_AZURE_OPENAI_API_KEY = RAG_AZURE_OPENAI_API_KEY
  801. app.state.config.RAG_AZURE_OPENAI_API_VERSION = RAG_AZURE_OPENAI_API_VERSION
  802. app.state.config.RAG_OLLAMA_BASE_URL = RAG_OLLAMA_BASE_URL
  803. app.state.config.RAG_OLLAMA_API_KEY = RAG_OLLAMA_API_KEY
  804. app.state.config.PDF_EXTRACT_IMAGES = PDF_EXTRACT_IMAGES
  805. app.state.config.YOUTUBE_LOADER_LANGUAGE = YOUTUBE_LOADER_LANGUAGE
  806. app.state.config.YOUTUBE_LOADER_PROXY_URL = YOUTUBE_LOADER_PROXY_URL
  807. app.state.config.ENABLE_WEB_SEARCH = ENABLE_WEB_SEARCH
  808. app.state.config.WEB_SEARCH_ENGINE = WEB_SEARCH_ENGINE
  809. app.state.config.WEB_SEARCH_DOMAIN_FILTER_LIST = WEB_SEARCH_DOMAIN_FILTER_LIST
  810. app.state.config.WEB_SEARCH_RESULT_COUNT = WEB_SEARCH_RESULT_COUNT
  811. app.state.config.WEB_SEARCH_CONCURRENT_REQUESTS = WEB_SEARCH_CONCURRENT_REQUESTS
  812. app.state.config.WEB_LOADER_ENGINE = WEB_LOADER_ENGINE
  813. app.state.config.WEB_LOADER_CONCURRENT_REQUESTS = WEB_LOADER_CONCURRENT_REQUESTS
  814. app.state.config.WEB_SEARCH_TRUST_ENV = WEB_SEARCH_TRUST_ENV
  815. app.state.config.BYPASS_WEB_SEARCH_EMBEDDING_AND_RETRIEVAL = (
  816. BYPASS_WEB_SEARCH_EMBEDDING_AND_RETRIEVAL
  817. )
  818. app.state.config.BYPASS_WEB_SEARCH_WEB_LOADER = BYPASS_WEB_SEARCH_WEB_LOADER
  819. app.state.config.ENABLE_GOOGLE_DRIVE_INTEGRATION = ENABLE_GOOGLE_DRIVE_INTEGRATION
  820. app.state.config.ENABLE_ONEDRIVE_INTEGRATION = ENABLE_ONEDRIVE_INTEGRATION
  821. app.state.config.OLLAMA_CLOUD_WEB_SEARCH_API_KEY = OLLAMA_CLOUD_WEB_SEARCH_API_KEY
  822. app.state.config.SEARXNG_QUERY_URL = SEARXNG_QUERY_URL
  823. app.state.config.YACY_QUERY_URL = YACY_QUERY_URL
  824. app.state.config.YACY_USERNAME = YACY_USERNAME
  825. app.state.config.YACY_PASSWORD = YACY_PASSWORD
  826. app.state.config.GOOGLE_PSE_API_KEY = GOOGLE_PSE_API_KEY
  827. app.state.config.GOOGLE_PSE_ENGINE_ID = GOOGLE_PSE_ENGINE_ID
  828. app.state.config.BRAVE_SEARCH_API_KEY = BRAVE_SEARCH_API_KEY
  829. app.state.config.KAGI_SEARCH_API_KEY = KAGI_SEARCH_API_KEY
  830. app.state.config.MOJEEK_SEARCH_API_KEY = MOJEEK_SEARCH_API_KEY
  831. app.state.config.BOCHA_SEARCH_API_KEY = BOCHA_SEARCH_API_KEY
  832. app.state.config.SERPSTACK_API_KEY = SERPSTACK_API_KEY
  833. app.state.config.SERPSTACK_HTTPS = SERPSTACK_HTTPS
  834. app.state.config.SERPER_API_KEY = SERPER_API_KEY
  835. app.state.config.SERPLY_API_KEY = SERPLY_API_KEY
  836. app.state.config.TAVILY_API_KEY = TAVILY_API_KEY
  837. app.state.config.SEARCHAPI_API_KEY = SEARCHAPI_API_KEY
  838. app.state.config.SEARCHAPI_ENGINE = SEARCHAPI_ENGINE
  839. app.state.config.SERPAPI_API_KEY = SERPAPI_API_KEY
  840. app.state.config.SERPAPI_ENGINE = SERPAPI_ENGINE
  841. app.state.config.JINA_API_KEY = JINA_API_KEY
  842. app.state.config.BING_SEARCH_V7_ENDPOINT = BING_SEARCH_V7_ENDPOINT
  843. app.state.config.BING_SEARCH_V7_SUBSCRIPTION_KEY = BING_SEARCH_V7_SUBSCRIPTION_KEY
  844. app.state.config.EXA_API_KEY = EXA_API_KEY
  845. app.state.config.PERPLEXITY_API_KEY = PERPLEXITY_API_KEY
  846. app.state.config.PERPLEXITY_MODEL = PERPLEXITY_MODEL
  847. app.state.config.PERPLEXITY_SEARCH_CONTEXT_USAGE = PERPLEXITY_SEARCH_CONTEXT_USAGE
  848. app.state.config.PERPLEXITY_SEARCH_API_URL = PERPLEXITY_SEARCH_API_URL
  849. app.state.config.SOUGOU_API_SID = SOUGOU_API_SID
  850. app.state.config.SOUGOU_API_SK = SOUGOU_API_SK
  851. app.state.config.EXTERNAL_WEB_SEARCH_URL = EXTERNAL_WEB_SEARCH_URL
  852. app.state.config.EXTERNAL_WEB_SEARCH_API_KEY = EXTERNAL_WEB_SEARCH_API_KEY
  853. app.state.config.EXTERNAL_WEB_LOADER_URL = EXTERNAL_WEB_LOADER_URL
  854. app.state.config.EXTERNAL_WEB_LOADER_API_KEY = EXTERNAL_WEB_LOADER_API_KEY
  855. app.state.config.PLAYWRIGHT_WS_URL = PLAYWRIGHT_WS_URL
  856. app.state.config.PLAYWRIGHT_TIMEOUT = PLAYWRIGHT_TIMEOUT
  857. app.state.config.FIRECRAWL_API_BASE_URL = FIRECRAWL_API_BASE_URL
  858. app.state.config.FIRECRAWL_API_KEY = FIRECRAWL_API_KEY
  859. app.state.config.TAVILY_EXTRACT_DEPTH = TAVILY_EXTRACT_DEPTH
  860. app.state.EMBEDDING_FUNCTION = None
  861. app.state.RERANKING_FUNCTION = None
  862. app.state.ef = None
  863. app.state.rf = None
  864. app.state.YOUTUBE_LOADER_TRANSLATION = None
  865. try:
  866. app.state.ef = get_ef(
  867. app.state.config.RAG_EMBEDDING_ENGINE,
  868. app.state.config.RAG_EMBEDDING_MODEL,
  869. RAG_EMBEDDING_MODEL_AUTO_UPDATE,
  870. )
  871. if (
  872. app.state.config.ENABLE_RAG_HYBRID_SEARCH
  873. and not app.state.config.BYPASS_EMBEDDING_AND_RETRIEVAL
  874. ):
  875. app.state.rf = get_rf(
  876. app.state.config.RAG_RERANKING_ENGINE,
  877. app.state.config.RAG_RERANKING_MODEL,
  878. app.state.config.RAG_EXTERNAL_RERANKER_URL,
  879. app.state.config.RAG_EXTERNAL_RERANKER_API_KEY,
  880. RAG_RERANKING_MODEL_AUTO_UPDATE,
  881. )
  882. else:
  883. app.state.rf = None
  884. except Exception as e:
  885. log.error(f"Error updating models: {e}")
  886. pass
  887. app.state.EMBEDDING_FUNCTION = get_embedding_function(
  888. app.state.config.RAG_EMBEDDING_ENGINE,
  889. app.state.config.RAG_EMBEDDING_MODEL,
  890. embedding_function=app.state.ef,
  891. url=(
  892. app.state.config.RAG_OPENAI_API_BASE_URL
  893. if app.state.config.RAG_EMBEDDING_ENGINE == "openai"
  894. else (
  895. app.state.config.RAG_OLLAMA_BASE_URL
  896. if app.state.config.RAG_EMBEDDING_ENGINE == "ollama"
  897. else app.state.config.RAG_AZURE_OPENAI_BASE_URL
  898. )
  899. ),
  900. key=(
  901. app.state.config.RAG_OPENAI_API_KEY
  902. if app.state.config.RAG_EMBEDDING_ENGINE == "openai"
  903. else (
  904. app.state.config.RAG_OLLAMA_API_KEY
  905. if app.state.config.RAG_EMBEDDING_ENGINE == "ollama"
  906. else app.state.config.RAG_AZURE_OPENAI_API_KEY
  907. )
  908. ),
  909. embedding_batch_size=app.state.config.RAG_EMBEDDING_BATCH_SIZE,
  910. azure_api_version=(
  911. app.state.config.RAG_AZURE_OPENAI_API_VERSION
  912. if app.state.config.RAG_EMBEDDING_ENGINE == "azure_openai"
  913. else None
  914. ),
  915. )
  916. app.state.RERANKING_FUNCTION = get_reranking_function(
  917. app.state.config.RAG_RERANKING_ENGINE,
  918. app.state.config.RAG_RERANKING_MODEL,
  919. reranking_function=app.state.rf,
  920. )
  921. ########################################
  922. #
  923. # CODE EXECUTION
  924. #
  925. ########################################
  926. app.state.config.ENABLE_CODE_EXECUTION = ENABLE_CODE_EXECUTION
  927. app.state.config.CODE_EXECUTION_ENGINE = CODE_EXECUTION_ENGINE
  928. app.state.config.CODE_EXECUTION_JUPYTER_URL = CODE_EXECUTION_JUPYTER_URL
  929. app.state.config.CODE_EXECUTION_JUPYTER_AUTH = CODE_EXECUTION_JUPYTER_AUTH
  930. app.state.config.CODE_EXECUTION_JUPYTER_AUTH_TOKEN = CODE_EXECUTION_JUPYTER_AUTH_TOKEN
  931. app.state.config.CODE_EXECUTION_JUPYTER_AUTH_PASSWORD = (
  932. CODE_EXECUTION_JUPYTER_AUTH_PASSWORD
  933. )
  934. app.state.config.CODE_EXECUTION_JUPYTER_TIMEOUT = CODE_EXECUTION_JUPYTER_TIMEOUT
  935. app.state.config.ENABLE_CODE_INTERPRETER = ENABLE_CODE_INTERPRETER
  936. app.state.config.CODE_INTERPRETER_ENGINE = CODE_INTERPRETER_ENGINE
  937. app.state.config.CODE_INTERPRETER_PROMPT_TEMPLATE = CODE_INTERPRETER_PROMPT_TEMPLATE
  938. app.state.config.CODE_INTERPRETER_JUPYTER_URL = CODE_INTERPRETER_JUPYTER_URL
  939. app.state.config.CODE_INTERPRETER_JUPYTER_AUTH = CODE_INTERPRETER_JUPYTER_AUTH
  940. app.state.config.CODE_INTERPRETER_JUPYTER_AUTH_TOKEN = (
  941. CODE_INTERPRETER_JUPYTER_AUTH_TOKEN
  942. )
  943. app.state.config.CODE_INTERPRETER_JUPYTER_AUTH_PASSWORD = (
  944. CODE_INTERPRETER_JUPYTER_AUTH_PASSWORD
  945. )
  946. app.state.config.CODE_INTERPRETER_JUPYTER_TIMEOUT = CODE_INTERPRETER_JUPYTER_TIMEOUT
  947. ########################################
  948. #
  949. # IMAGES
  950. #
  951. ########################################
  952. app.state.config.IMAGE_GENERATION_ENGINE = IMAGE_GENERATION_ENGINE
  953. app.state.config.ENABLE_IMAGE_GENERATION = ENABLE_IMAGE_GENERATION
  954. app.state.config.ENABLE_IMAGE_PROMPT_GENERATION = ENABLE_IMAGE_PROMPT_GENERATION
  955. app.state.config.IMAGE_GENERATION_MODEL = IMAGE_GENERATION_MODEL
  956. app.state.config.IMAGE_SIZE = IMAGE_SIZE
  957. app.state.config.IMAGE_STEPS = IMAGE_STEPS
  958. app.state.config.IMAGES_OPENAI_API_BASE_URL = IMAGES_OPENAI_API_BASE_URL
  959. app.state.config.IMAGES_OPENAI_API_VERSION = IMAGES_OPENAI_API_VERSION
  960. app.state.config.IMAGES_OPENAI_API_KEY = IMAGES_OPENAI_API_KEY
  961. app.state.config.IMAGES_GEMINI_API_BASE_URL = IMAGES_GEMINI_API_BASE_URL
  962. app.state.config.IMAGES_GEMINI_API_KEY = IMAGES_GEMINI_API_KEY
  963. app.state.config.IMAGES_GEMINI_ENDPOINT_METHOD = IMAGES_GEMINI_ENDPOINT_METHOD
  964. app.state.config.AUTOMATIC1111_BASE_URL = AUTOMATIC1111_BASE_URL
  965. app.state.config.AUTOMATIC1111_API_AUTH = AUTOMATIC1111_API_AUTH
  966. app.state.config.AUTOMATIC1111_PARAMS = AUTOMATIC1111_PARAMS
  967. app.state.config.COMFYUI_BASE_URL = COMFYUI_BASE_URL
  968. app.state.config.COMFYUI_API_KEY = COMFYUI_API_KEY
  969. app.state.config.COMFYUI_WORKFLOW = COMFYUI_WORKFLOW
  970. app.state.config.COMFYUI_WORKFLOW_NODES = COMFYUI_WORKFLOW_NODES
  971. app.state.config.IMAGE_EDIT_ENGINE = IMAGE_EDIT_ENGINE
  972. app.state.config.IMAGE_EDIT_MODEL = IMAGE_EDIT_MODEL
  973. app.state.config.IMAGE_EDIT_SIZE = IMAGE_EDIT_SIZE
  974. app.state.config.IMAGES_EDIT_OPENAI_API_BASE_URL = IMAGES_EDIT_OPENAI_API_BASE_URL
  975. app.state.config.IMAGES_EDIT_OPENAI_API_KEY = IMAGES_EDIT_OPENAI_API_KEY
  976. app.state.config.IMAGES_EDIT_OPENAI_API_VERSION = IMAGES_EDIT_OPENAI_API_VERSION
  977. app.state.config.IMAGES_EDIT_GEMINI_API_BASE_URL = IMAGES_EDIT_GEMINI_API_BASE_URL
  978. app.state.config.IMAGES_EDIT_GEMINI_API_KEY = IMAGES_EDIT_GEMINI_API_KEY
  979. app.state.config.IMAGES_EDIT_COMFYUI_BASE_URL = IMAGES_EDIT_COMFYUI_BASE_URL
  980. app.state.config.IMAGES_EDIT_COMFYUI_API_KEY = IMAGES_EDIT_COMFYUI_API_KEY
  981. app.state.config.IMAGES_EDIT_COMFYUI_WORKFLOW = IMAGES_EDIT_COMFYUI_WORKFLOW
  982. app.state.config.IMAGES_EDIT_COMFYUI_WORKFLOW_NODES = IMAGES_EDIT_COMFYUI_WORKFLOW_NODES
  983. ########################################
  984. #
  985. # AUDIO
  986. #
  987. ########################################
  988. app.state.config.STT_ENGINE = AUDIO_STT_ENGINE
  989. app.state.config.STT_MODEL = AUDIO_STT_MODEL
  990. app.state.config.STT_SUPPORTED_CONTENT_TYPES = AUDIO_STT_SUPPORTED_CONTENT_TYPES
  991. app.state.config.STT_OPENAI_API_BASE_URL = AUDIO_STT_OPENAI_API_BASE_URL
  992. app.state.config.STT_OPENAI_API_KEY = AUDIO_STT_OPENAI_API_KEY
  993. app.state.config.WHISPER_MODEL = WHISPER_MODEL
  994. app.state.config.WHISPER_VAD_FILTER = WHISPER_VAD_FILTER
  995. app.state.config.DEEPGRAM_API_KEY = DEEPGRAM_API_KEY
  996. app.state.config.AUDIO_STT_AZURE_API_KEY = AUDIO_STT_AZURE_API_KEY
  997. app.state.config.AUDIO_STT_AZURE_REGION = AUDIO_STT_AZURE_REGION
  998. app.state.config.AUDIO_STT_AZURE_LOCALES = AUDIO_STT_AZURE_LOCALES
  999. app.state.config.AUDIO_STT_AZURE_BASE_URL = AUDIO_STT_AZURE_BASE_URL
  1000. app.state.config.AUDIO_STT_AZURE_MAX_SPEAKERS = AUDIO_STT_AZURE_MAX_SPEAKERS
  1001. app.state.config.AUDIO_STT_MISTRAL_API_KEY = AUDIO_STT_MISTRAL_API_KEY
  1002. app.state.config.AUDIO_STT_MISTRAL_API_BASE_URL = AUDIO_STT_MISTRAL_API_BASE_URL
  1003. app.state.config.AUDIO_STT_MISTRAL_USE_CHAT_COMPLETIONS = (
  1004. AUDIO_STT_MISTRAL_USE_CHAT_COMPLETIONS
  1005. )
  1006. app.state.config.TTS_ENGINE = AUDIO_TTS_ENGINE
  1007. app.state.config.TTS_MODEL = AUDIO_TTS_MODEL
  1008. app.state.config.TTS_VOICE = AUDIO_TTS_VOICE
  1009. app.state.config.TTS_OPENAI_API_BASE_URL = AUDIO_TTS_OPENAI_API_BASE_URL
  1010. app.state.config.TTS_OPENAI_API_KEY = AUDIO_TTS_OPENAI_API_KEY
  1011. app.state.config.TTS_OPENAI_PARAMS = AUDIO_TTS_OPENAI_PARAMS
  1012. app.state.config.TTS_API_KEY = AUDIO_TTS_API_KEY
  1013. app.state.config.TTS_SPLIT_ON = AUDIO_TTS_SPLIT_ON
  1014. app.state.config.TTS_AZURE_SPEECH_REGION = AUDIO_TTS_AZURE_SPEECH_REGION
  1015. app.state.config.TTS_AZURE_SPEECH_BASE_URL = AUDIO_TTS_AZURE_SPEECH_BASE_URL
  1016. app.state.config.TTS_AZURE_SPEECH_OUTPUT_FORMAT = AUDIO_TTS_AZURE_SPEECH_OUTPUT_FORMAT
  1017. app.state.faster_whisper_model = None
  1018. app.state.speech_synthesiser = None
  1019. app.state.speech_speaker_embeddings_dataset = None
  1020. ########################################
  1021. #
  1022. # TASKS
  1023. #
  1024. ########################################
  1025. app.state.config.TASK_MODEL = TASK_MODEL
  1026. app.state.config.TASK_MODEL_EXTERNAL = TASK_MODEL_EXTERNAL
  1027. app.state.config.ENABLE_SEARCH_QUERY_GENERATION = ENABLE_SEARCH_QUERY_GENERATION
  1028. app.state.config.ENABLE_RETRIEVAL_QUERY_GENERATION = ENABLE_RETRIEVAL_QUERY_GENERATION
  1029. app.state.config.ENABLE_AUTOCOMPLETE_GENERATION = ENABLE_AUTOCOMPLETE_GENERATION
  1030. app.state.config.ENABLE_TAGS_GENERATION = ENABLE_TAGS_GENERATION
  1031. app.state.config.ENABLE_TITLE_GENERATION = ENABLE_TITLE_GENERATION
  1032. app.state.config.ENABLE_FOLLOW_UP_GENERATION = ENABLE_FOLLOW_UP_GENERATION
  1033. app.state.config.TITLE_GENERATION_PROMPT_TEMPLATE = TITLE_GENERATION_PROMPT_TEMPLATE
  1034. app.state.config.TAGS_GENERATION_PROMPT_TEMPLATE = TAGS_GENERATION_PROMPT_TEMPLATE
  1035. app.state.config.IMAGE_PROMPT_GENERATION_PROMPT_TEMPLATE = (
  1036. IMAGE_PROMPT_GENERATION_PROMPT_TEMPLATE
  1037. )
  1038. app.state.config.FOLLOW_UP_GENERATION_PROMPT_TEMPLATE = (
  1039. FOLLOW_UP_GENERATION_PROMPT_TEMPLATE
  1040. )
  1041. app.state.config.TOOLS_FUNCTION_CALLING_PROMPT_TEMPLATE = (
  1042. TOOLS_FUNCTION_CALLING_PROMPT_TEMPLATE
  1043. )
  1044. app.state.config.QUERY_GENERATION_PROMPT_TEMPLATE = QUERY_GENERATION_PROMPT_TEMPLATE
  1045. app.state.config.AUTOCOMPLETE_GENERATION_PROMPT_TEMPLATE = (
  1046. AUTOCOMPLETE_GENERATION_PROMPT_TEMPLATE
  1047. )
  1048. app.state.config.AUTOCOMPLETE_GENERATION_INPUT_MAX_LENGTH = (
  1049. AUTOCOMPLETE_GENERATION_INPUT_MAX_LENGTH
  1050. )
  1051. ########################################
  1052. #
  1053. # WEBUI
  1054. #
  1055. ########################################
  1056. app.state.MODELS = {}
  1057. class RedirectMiddleware(BaseHTTPMiddleware):
  1058. async def dispatch(self, request: Request, call_next):
  1059. # Check if the request is a GET request
  1060. if request.method == "GET":
  1061. path = request.url.path
  1062. query_params = dict(parse_qs(urlparse(str(request.url)).query))
  1063. redirect_params = {}
  1064. # Check for the specific watch path and the presence of 'v' parameter
  1065. if path.endswith("/watch") and "v" in query_params:
  1066. # Extract the first 'v' parameter
  1067. youtube_video_id = query_params["v"][0]
  1068. redirect_params["youtube"] = youtube_video_id
  1069. if "shared" in query_params and len(query_params["shared"]) > 0:
  1070. # PWA share_target support
  1071. text = query_params["shared"][0]
  1072. if text:
  1073. urls = re.match(r"https://\S+", text)
  1074. if urls:
  1075. from open_webui.retrieval.loaders.youtube import _parse_video_id
  1076. if youtube_video_id := _parse_video_id(urls[0]):
  1077. redirect_params["youtube"] = youtube_video_id
  1078. else:
  1079. redirect_params["load-url"] = urls[0]
  1080. else:
  1081. redirect_params["q"] = text
  1082. if redirect_params:
  1083. redirect_url = f"/?{urlencode(redirect_params)}"
  1084. return RedirectResponse(url=redirect_url)
  1085. # Proceed with the normal flow of other requests
  1086. response = await call_next(request)
  1087. return response
  1088. # Add the middleware to the app
  1089. if ENABLE_COMPRESSION_MIDDLEWARE:
  1090. app.add_middleware(CompressMiddleware)
  1091. app.add_middleware(RedirectMiddleware)
  1092. app.add_middleware(SecurityHeadersMiddleware)
  1093. @app.middleware("http")
  1094. async def commit_session_after_request(request: Request, call_next):
  1095. response = await call_next(request)
  1096. # log.debug("Commit session after request")
  1097. Session.commit()
  1098. return response
  1099. @app.middleware("http")
  1100. async def check_url(request: Request, call_next):
  1101. start_time = int(time.time())
  1102. request.state.token = get_http_authorization_cred(
  1103. request.headers.get("Authorization")
  1104. )
  1105. request.state.enable_api_key = app.state.config.ENABLE_API_KEY
  1106. response = await call_next(request)
  1107. process_time = int(time.time()) - start_time
  1108. response.headers["X-Process-Time"] = str(process_time)
  1109. return response
  1110. @app.middleware("http")
  1111. async def inspect_websocket(request: Request, call_next):
  1112. if (
  1113. "/ws/socket.io" in request.url.path
  1114. and request.query_params.get("transport") == "websocket"
  1115. ):
  1116. upgrade = (request.headers.get("Upgrade") or "").lower()
  1117. connection = (request.headers.get("Connection") or "").lower().split(",")
  1118. # Check that there's the correct headers for an upgrade, else reject the connection
  1119. # This is to work around this upstream issue: https://github.com/miguelgrinberg/python-engineio/issues/367
  1120. if upgrade != "websocket" or "upgrade" not in connection:
  1121. return JSONResponse(
  1122. status_code=status.HTTP_400_BAD_REQUEST,
  1123. content={"detail": "Invalid WebSocket upgrade request"},
  1124. )
  1125. return await call_next(request)
  1126. app.add_middleware(
  1127. CORSMiddleware,
  1128. allow_origins=CORS_ALLOW_ORIGIN,
  1129. allow_credentials=True,
  1130. allow_methods=["*"],
  1131. allow_headers=["*"],
  1132. )
  1133. app.mount("/ws", socket_app)
  1134. app.include_router(ollama.router, prefix="/ollama", tags=["ollama"])
  1135. app.include_router(openai.router, prefix="/openai", tags=["openai"])
  1136. app.include_router(pipelines.router, prefix="/api/v1/pipelines", tags=["pipelines"])
  1137. app.include_router(tasks.router, prefix="/api/v1/tasks", tags=["tasks"])
  1138. app.include_router(images.router, prefix="/api/v1/images", tags=["images"])
  1139. app.include_router(audio.router, prefix="/api/v1/audio", tags=["audio"])
  1140. app.include_router(retrieval.router, prefix="/api/v1/retrieval", tags=["retrieval"])
  1141. app.include_router(configs.router, prefix="/api/v1/configs", tags=["configs"])
  1142. app.include_router(auths.router, prefix="/api/v1/auths", tags=["auths"])
  1143. app.include_router(users.router, prefix="/api/v1/users", tags=["users"])
  1144. app.include_router(channels.router, prefix="/api/v1/channels", tags=["channels"])
  1145. app.include_router(chats.router, prefix="/api/v1/chats", tags=["chats"])
  1146. app.include_router(notes.router, prefix="/api/v1/notes", tags=["notes"])
  1147. app.include_router(models.router, prefix="/api/v1/models", tags=["models"])
  1148. app.include_router(knowledge.router, prefix="/api/v1/knowledge", tags=["knowledge"])
  1149. app.include_router(prompts.router, prefix="/api/v1/prompts", tags=["prompts"])
  1150. app.include_router(tools.router, prefix="/api/v1/tools", tags=["tools"])
  1151. app.include_router(memories.router, prefix="/api/v1/memories", tags=["memories"])
  1152. app.include_router(folders.router, prefix="/api/v1/folders", tags=["folders"])
  1153. app.include_router(groups.router, prefix="/api/v1/groups", tags=["groups"])
  1154. app.include_router(files.router, prefix="/api/v1/files", tags=["files"])
  1155. app.include_router(functions.router, prefix="/api/v1/functions", tags=["functions"])
  1156. app.include_router(
  1157. evaluations.router, prefix="/api/v1/evaluations", tags=["evaluations"]
  1158. )
  1159. app.include_router(utils.router, prefix="/api/v1/utils", tags=["utils"])
  1160. # SCIM 2.0 API for identity management
  1161. if ENABLE_SCIM:
  1162. app.include_router(scim.router, prefix="/api/v1/scim/v2", tags=["scim"])
  1163. try:
  1164. audit_level = AuditLevel(AUDIT_LOG_LEVEL)
  1165. except ValueError as e:
  1166. logger.error(f"Invalid audit level: {AUDIT_LOG_LEVEL}. Error: {e}")
  1167. audit_level = AuditLevel.NONE
  1168. if audit_level != AuditLevel.NONE:
  1169. app.add_middleware(
  1170. AuditLoggingMiddleware,
  1171. audit_level=audit_level,
  1172. excluded_paths=AUDIT_EXCLUDED_PATHS,
  1173. max_body_size=MAX_BODY_LOG_SIZE,
  1174. )
  1175. ##################################
  1176. #
  1177. # Chat Endpoints
  1178. #
  1179. ##################################
  1180. @app.get("/api/models")
  1181. @app.get("/api/v1/models") # Experimental: Compatibility with OpenAI API
  1182. async def get_models(
  1183. request: Request, refresh: bool = False, user=Depends(get_verified_user)
  1184. ):
  1185. all_models = await get_all_models(request, refresh=refresh, user=user)
  1186. models = []
  1187. for model in all_models:
  1188. # Filter out filter pipelines
  1189. if "pipeline" in model and model["pipeline"].get("type", None) == "filter":
  1190. continue
  1191. try:
  1192. model_tags = [
  1193. tag.get("name")
  1194. for tag in model.get("info", {}).get("meta", {}).get("tags", [])
  1195. ]
  1196. tags = [tag.get("name") for tag in model.get("tags", [])]
  1197. tags = list(set(model_tags + tags))
  1198. model["tags"] = [{"name": tag} for tag in tags]
  1199. except Exception as e:
  1200. log.debug(f"Error processing model tags: {e}")
  1201. model["tags"] = []
  1202. pass
  1203. models.append(model)
  1204. model_order_list = request.app.state.config.MODEL_ORDER_LIST
  1205. if model_order_list:
  1206. model_order_dict = {model_id: i for i, model_id in enumerate(model_order_list)}
  1207. # Sort models by order list priority, with fallback for those not in the list
  1208. models.sort(
  1209. key=lambda model: (
  1210. model_order_dict.get(model.get("id", ""), float("inf")),
  1211. (model.get("name", "") or ""),
  1212. )
  1213. )
  1214. models = get_filtered_models(models, user)
  1215. log.debug(
  1216. f"/api/models returned filtered models accessible to the user: {json.dumps([model.get('id') for model in models])}"
  1217. )
  1218. return {"data": models}
  1219. @app.get("/api/models/base")
  1220. async def get_base_models(request: Request, user=Depends(get_admin_user)):
  1221. models = await get_all_base_models(request, user=user)
  1222. return {"data": models}
  1223. ##################################
  1224. # Embeddings
  1225. ##################################
  1226. @app.post("/api/embeddings")
  1227. @app.post("/api/v1/embeddings") # Experimental: Compatibility with OpenAI API
  1228. async def embeddings(
  1229. request: Request, form_data: dict, user=Depends(get_verified_user)
  1230. ):
  1231. """
  1232. OpenAI-compatible embeddings endpoint.
  1233. This handler:
  1234. - Performs user/model checks and dispatches to the correct backend.
  1235. - Supports OpenAI, Ollama, arena models, pipelines, and any compatible provider.
  1236. Args:
  1237. request (Request): Request context.
  1238. form_data (dict): OpenAI-like payload (e.g., {"model": "...", "input": [...]})
  1239. user (UserModel): Authenticated user.
  1240. Returns:
  1241. dict: OpenAI-compatible embeddings response.
  1242. """
  1243. # Make sure models are loaded in app state
  1244. if not request.app.state.MODELS:
  1245. await get_all_models(request, user=user)
  1246. # Use generic dispatcher in utils.embeddings
  1247. return await generate_embeddings(request, form_data, user)
  1248. @app.post("/api/chat/completions")
  1249. @app.post("/api/v1/chat/completions") # Experimental: Compatibility with OpenAI API
  1250. async def chat_completion(
  1251. request: Request,
  1252. form_data: dict,
  1253. user=Depends(get_verified_user),
  1254. ):
  1255. if not request.app.state.MODELS:
  1256. await get_all_models(request, user=user)
  1257. model_id = form_data.get("model", None)
  1258. model_item = form_data.pop("model_item", {})
  1259. tasks = form_data.pop("background_tasks", None)
  1260. metadata = {}
  1261. try:
  1262. if not model_item.get("direct", False):
  1263. if model_id not in request.app.state.MODELS:
  1264. raise Exception("Model not found")
  1265. model = request.app.state.MODELS[model_id]
  1266. model_info = Models.get_model_by_id(model_id)
  1267. # Check if user has access to the model
  1268. if not BYPASS_MODEL_ACCESS_CONTROL and (
  1269. user.role != "admin" or not BYPASS_ADMIN_ACCESS_CONTROL
  1270. ):
  1271. try:
  1272. check_model_access(user, model)
  1273. except Exception as e:
  1274. raise e
  1275. else:
  1276. model = model_item
  1277. model_info = None
  1278. request.state.direct = True
  1279. request.state.model = model
  1280. model_info_params = (
  1281. model_info.params.model_dump() if model_info and model_info.params else {}
  1282. )
  1283. # Chat Params
  1284. stream_delta_chunk_size = form_data.get("params", {}).get(
  1285. "stream_delta_chunk_size"
  1286. )
  1287. reasoning_tags = form_data.get("params", {}).get("reasoning_tags")
  1288. # Model Params
  1289. if model_info_params.get("stream_delta_chunk_size"):
  1290. stream_delta_chunk_size = model_info_params.get("stream_delta_chunk_size")
  1291. if model_info_params.get("reasoning_tags") is not None:
  1292. reasoning_tags = model_info_params.get("reasoning_tags")
  1293. metadata = {
  1294. "user_id": user.id,
  1295. "chat_id": form_data.pop("chat_id", None),
  1296. "message_id": form_data.pop("id", None),
  1297. "session_id": form_data.pop("session_id", None),
  1298. "filter_ids": form_data.pop("filter_ids", []),
  1299. "tool_ids": form_data.get("tool_ids", None),
  1300. "tool_servers": form_data.pop("tool_servers", None),
  1301. "files": form_data.get("files", None),
  1302. "features": form_data.get("features", {}),
  1303. "variables": form_data.get("variables", {}),
  1304. "model": model,
  1305. "direct": model_item.get("direct", False),
  1306. "params": {
  1307. "stream_delta_chunk_size": stream_delta_chunk_size,
  1308. "reasoning_tags": reasoning_tags,
  1309. "function_calling": (
  1310. "native"
  1311. if (
  1312. form_data.get("params", {}).get("function_calling") == "native"
  1313. or model_info_params.get("function_calling") == "native"
  1314. )
  1315. else "default"
  1316. ),
  1317. },
  1318. }
  1319. if metadata.get("chat_id") and (user and user.role != "admin"):
  1320. if not metadata["chat_id"].startswith("local:"):
  1321. chat = Chats.get_chat_by_id_and_user_id(metadata["chat_id"], user.id)
  1322. if chat is None:
  1323. raise HTTPException(
  1324. status_code=status.HTTP_404_NOT_FOUND,
  1325. detail=ERROR_MESSAGES.DEFAULT(),
  1326. )
  1327. request.state.metadata = metadata
  1328. form_data["metadata"] = metadata
  1329. except Exception as e:
  1330. log.debug(f"Error processing chat metadata: {e}")
  1331. raise HTTPException(
  1332. status_code=status.HTTP_400_BAD_REQUEST,
  1333. detail=str(e),
  1334. )
  1335. async def process_chat(request, form_data, user, metadata, model):
  1336. try:
  1337. form_data, metadata, events = await process_chat_payload(
  1338. request, form_data, user, metadata, model
  1339. )
  1340. response = await chat_completion_handler(request, form_data, user)
  1341. if metadata.get("chat_id") and metadata.get("message_id"):
  1342. try:
  1343. if not metadata["chat_id"].startswith("local:"):
  1344. Chats.upsert_message_to_chat_by_id_and_message_id(
  1345. metadata["chat_id"],
  1346. metadata["message_id"],
  1347. {
  1348. "model": model_id,
  1349. },
  1350. )
  1351. except:
  1352. pass
  1353. return await process_chat_response(
  1354. request, response, form_data, user, metadata, model, events, tasks
  1355. )
  1356. except asyncio.CancelledError:
  1357. log.info("Chat processing was cancelled")
  1358. try:
  1359. event_emitter = get_event_emitter(metadata)
  1360. await asyncio.shield(
  1361. event_emitter(
  1362. {"type": "chat:tasks:cancel"},
  1363. )
  1364. )
  1365. except Exception as e:
  1366. pass
  1367. finally:
  1368. raise # re-raise to ensure proper task cancellation handling
  1369. except Exception as e:
  1370. log.debug(f"Error processing chat payload: {e}")
  1371. if metadata.get("chat_id") and metadata.get("message_id"):
  1372. # Update the chat message with the error
  1373. try:
  1374. if not metadata["chat_id"].startswith("local:"):
  1375. Chats.upsert_message_to_chat_by_id_and_message_id(
  1376. metadata["chat_id"],
  1377. metadata["message_id"],
  1378. {
  1379. "error": {"content": str(e)},
  1380. },
  1381. )
  1382. event_emitter = get_event_emitter(metadata)
  1383. await event_emitter(
  1384. {
  1385. "type": "chat:message:error",
  1386. "data": {"error": {"content": str(e)}},
  1387. }
  1388. )
  1389. await event_emitter(
  1390. {"type": "chat:tasks:cancel"},
  1391. )
  1392. except:
  1393. pass
  1394. finally:
  1395. try:
  1396. if mcp_clients := metadata.get("mcp_clients"):
  1397. for client in reversed(mcp_clients.values()):
  1398. await client.disconnect()
  1399. except Exception as e:
  1400. log.debug(f"Error cleaning up: {e}")
  1401. pass
  1402. if (
  1403. metadata.get("session_id")
  1404. and metadata.get("chat_id")
  1405. and metadata.get("message_id")
  1406. ):
  1407. # Asynchronous Chat Processing
  1408. task_id, _ = await create_task(
  1409. request.app.state.redis,
  1410. process_chat(request, form_data, user, metadata, model),
  1411. id=metadata["chat_id"],
  1412. )
  1413. return {"status": True, "task_id": task_id}
  1414. else:
  1415. return await process_chat(request, form_data, user, metadata, model)
  1416. # Alias for chat_completion (Legacy)
  1417. generate_chat_completions = chat_completion
  1418. generate_chat_completion = chat_completion
  1419. @app.post("/api/chat/completed")
  1420. async def chat_completed(
  1421. request: Request, form_data: dict, user=Depends(get_verified_user)
  1422. ):
  1423. try:
  1424. model_item = form_data.pop("model_item", {})
  1425. if model_item.get("direct", False):
  1426. request.state.direct = True
  1427. request.state.model = model_item
  1428. return await chat_completed_handler(request, form_data, user)
  1429. except Exception as e:
  1430. raise HTTPException(
  1431. status_code=status.HTTP_400_BAD_REQUEST,
  1432. detail=str(e),
  1433. )
  1434. @app.post("/api/chat/actions/{action_id}")
  1435. async def chat_action(
  1436. request: Request, action_id: str, form_data: dict, user=Depends(get_verified_user)
  1437. ):
  1438. try:
  1439. model_item = form_data.pop("model_item", {})
  1440. if model_item.get("direct", False):
  1441. request.state.direct = True
  1442. request.state.model = model_item
  1443. return await chat_action_handler(request, action_id, form_data, user)
  1444. except Exception as e:
  1445. raise HTTPException(
  1446. status_code=status.HTTP_400_BAD_REQUEST,
  1447. detail=str(e),
  1448. )
  1449. @app.post("/api/tasks/stop/{task_id}")
  1450. async def stop_task_endpoint(
  1451. request: Request, task_id: str, user=Depends(get_verified_user)
  1452. ):
  1453. try:
  1454. result = await stop_task(request.app.state.redis, task_id)
  1455. return result
  1456. except ValueError as e:
  1457. raise HTTPException(status_code=status.HTTP_404_NOT_FOUND, detail=str(e))
  1458. @app.get("/api/tasks")
  1459. async def list_tasks_endpoint(request: Request, user=Depends(get_verified_user)):
  1460. return {"tasks": await list_tasks(request.app.state.redis)}
  1461. @app.get("/api/tasks/chat/{chat_id}")
  1462. async def list_tasks_by_chat_id_endpoint(
  1463. request: Request, chat_id: str, user=Depends(get_verified_user)
  1464. ):
  1465. chat = Chats.get_chat_by_id(chat_id)
  1466. if chat is None or chat.user_id != user.id:
  1467. return {"task_ids": []}
  1468. task_ids = await list_task_ids_by_item_id(request.app.state.redis, chat_id)
  1469. log.debug(f"Task IDs for chat {chat_id}: {task_ids}")
  1470. return {"task_ids": task_ids}
  1471. ##################################
  1472. #
  1473. # Config Endpoints
  1474. #
  1475. ##################################
  1476. @app.get("/api/config")
  1477. async def get_app_config(request: Request):
  1478. user = None
  1479. token = None
  1480. auth_header = request.headers.get("Authorization")
  1481. if auth_header:
  1482. cred = get_http_authorization_cred(auth_header)
  1483. if cred:
  1484. token = cred.credentials
  1485. if not token and "token" in request.cookies:
  1486. token = request.cookies.get("token")
  1487. if token:
  1488. try:
  1489. data = decode_token(token)
  1490. except Exception as e:
  1491. log.debug(e)
  1492. raise HTTPException(
  1493. status_code=status.HTTP_401_UNAUTHORIZED,
  1494. detail="Invalid token",
  1495. )
  1496. if data is not None and "id" in data:
  1497. user = Users.get_user_by_id(data["id"])
  1498. user_count = Users.get_num_users()
  1499. onboarding = False
  1500. if user is None:
  1501. onboarding = user_count == 0
  1502. return {
  1503. **({"onboarding": True} if onboarding else {}),
  1504. "status": True,
  1505. "name": app.state.WEBUI_NAME,
  1506. "version": VERSION,
  1507. "default_locale": str(DEFAULT_LOCALE),
  1508. "oauth": {
  1509. "providers": {
  1510. name: config.get("name", name)
  1511. for name, config in OAUTH_PROVIDERS.items()
  1512. }
  1513. },
  1514. "features": {
  1515. "auth": WEBUI_AUTH,
  1516. "auth_trusted_header": bool(app.state.AUTH_TRUSTED_EMAIL_HEADER),
  1517. "enable_signup_password_confirmation": ENABLE_SIGNUP_PASSWORD_CONFIRMATION,
  1518. "enable_ldap": app.state.config.ENABLE_LDAP,
  1519. "enable_api_key": app.state.config.ENABLE_API_KEY,
  1520. "enable_signup": app.state.config.ENABLE_SIGNUP,
  1521. "enable_login_form": app.state.config.ENABLE_LOGIN_FORM,
  1522. "enable_websocket": ENABLE_WEBSOCKET_SUPPORT,
  1523. "enable_version_update_check": ENABLE_VERSION_UPDATE_CHECK,
  1524. **(
  1525. {
  1526. "enable_direct_connections": app.state.config.ENABLE_DIRECT_CONNECTIONS,
  1527. "enable_channels": app.state.config.ENABLE_CHANNELS,
  1528. "enable_notes": app.state.config.ENABLE_NOTES,
  1529. "enable_web_search": app.state.config.ENABLE_WEB_SEARCH,
  1530. "enable_code_execution": app.state.config.ENABLE_CODE_EXECUTION,
  1531. "enable_code_interpreter": app.state.config.ENABLE_CODE_INTERPRETER,
  1532. "enable_image_generation": app.state.config.ENABLE_IMAGE_GENERATION,
  1533. "enable_autocomplete_generation": app.state.config.ENABLE_AUTOCOMPLETE_GENERATION,
  1534. "enable_community_sharing": app.state.config.ENABLE_COMMUNITY_SHARING,
  1535. "enable_message_rating": app.state.config.ENABLE_MESSAGE_RATING,
  1536. "enable_user_webhooks": app.state.config.ENABLE_USER_WEBHOOKS,
  1537. "enable_admin_export": ENABLE_ADMIN_EXPORT,
  1538. "enable_admin_chat_access": ENABLE_ADMIN_CHAT_ACCESS,
  1539. "enable_google_drive_integration": app.state.config.ENABLE_GOOGLE_DRIVE_INTEGRATION,
  1540. "enable_onedrive_integration": app.state.config.ENABLE_ONEDRIVE_INTEGRATION,
  1541. **(
  1542. {
  1543. "enable_onedrive_personal": ENABLE_ONEDRIVE_PERSONAL,
  1544. "enable_onedrive_business": ENABLE_ONEDRIVE_BUSINESS,
  1545. }
  1546. if app.state.config.ENABLE_ONEDRIVE_INTEGRATION
  1547. else {}
  1548. ),
  1549. }
  1550. if user is not None
  1551. else {}
  1552. ),
  1553. },
  1554. **(
  1555. {
  1556. "default_models": app.state.config.DEFAULT_MODELS,
  1557. "default_prompt_suggestions": app.state.config.DEFAULT_PROMPT_SUGGESTIONS,
  1558. "user_count": user_count,
  1559. "code": {
  1560. "engine": app.state.config.CODE_EXECUTION_ENGINE,
  1561. },
  1562. "audio": {
  1563. "tts": {
  1564. "engine": app.state.config.TTS_ENGINE,
  1565. "voice": app.state.config.TTS_VOICE,
  1566. "split_on": app.state.config.TTS_SPLIT_ON,
  1567. },
  1568. "stt": {
  1569. "engine": app.state.config.STT_ENGINE,
  1570. },
  1571. },
  1572. "file": {
  1573. "max_size": app.state.config.FILE_MAX_SIZE,
  1574. "max_count": app.state.config.FILE_MAX_COUNT,
  1575. "image_compression": {
  1576. "width": app.state.config.FILE_IMAGE_COMPRESSION_WIDTH,
  1577. "height": app.state.config.FILE_IMAGE_COMPRESSION_HEIGHT,
  1578. },
  1579. },
  1580. "permissions": {**app.state.config.USER_PERMISSIONS},
  1581. "google_drive": {
  1582. "client_id": GOOGLE_DRIVE_CLIENT_ID.value,
  1583. "api_key": GOOGLE_DRIVE_API_KEY.value,
  1584. },
  1585. "onedrive": {
  1586. "client_id_personal": ONEDRIVE_CLIENT_ID_PERSONAL,
  1587. "client_id_business": ONEDRIVE_CLIENT_ID_BUSINESS,
  1588. "sharepoint_url": ONEDRIVE_SHAREPOINT_URL.value,
  1589. "sharepoint_tenant_id": ONEDRIVE_SHAREPOINT_TENANT_ID.value,
  1590. },
  1591. "ui": {
  1592. "pending_user_overlay_title": app.state.config.PENDING_USER_OVERLAY_TITLE,
  1593. "pending_user_overlay_content": app.state.config.PENDING_USER_OVERLAY_CONTENT,
  1594. "response_watermark": app.state.config.RESPONSE_WATERMARK,
  1595. },
  1596. "license_metadata": app.state.LICENSE_METADATA,
  1597. **(
  1598. {
  1599. "active_entries": app.state.USER_COUNT,
  1600. }
  1601. if user.role == "admin"
  1602. else {}
  1603. ),
  1604. }
  1605. if user is not None and (user.role in ["admin", "user"])
  1606. else {
  1607. **(
  1608. {
  1609. "ui": {
  1610. "pending_user_overlay_title": app.state.config.PENDING_USER_OVERLAY_TITLE,
  1611. "pending_user_overlay_content": app.state.config.PENDING_USER_OVERLAY_CONTENT,
  1612. }
  1613. }
  1614. if user and user.role == "pending"
  1615. else {}
  1616. ),
  1617. **(
  1618. {
  1619. "metadata": {
  1620. "login_footer": app.state.LICENSE_METADATA.get(
  1621. "login_footer", ""
  1622. ),
  1623. "auth_logo_position": app.state.LICENSE_METADATA.get(
  1624. "auth_logo_position", ""
  1625. ),
  1626. }
  1627. }
  1628. if app.state.LICENSE_METADATA
  1629. else {}
  1630. ),
  1631. }
  1632. ),
  1633. }
  1634. class UrlForm(BaseModel):
  1635. url: str
  1636. @app.get("/api/webhook")
  1637. async def get_webhook_url(user=Depends(get_admin_user)):
  1638. return {
  1639. "url": app.state.config.WEBHOOK_URL,
  1640. }
  1641. @app.post("/api/webhook")
  1642. async def update_webhook_url(form_data: UrlForm, user=Depends(get_admin_user)):
  1643. app.state.config.WEBHOOK_URL = form_data.url
  1644. app.state.WEBHOOK_URL = app.state.config.WEBHOOK_URL
  1645. return {"url": app.state.config.WEBHOOK_URL}
  1646. @app.get("/api/version")
  1647. async def get_app_version():
  1648. return {
  1649. "version": VERSION,
  1650. }
  1651. @app.get("/api/version/updates")
  1652. async def get_app_latest_release_version(user=Depends(get_verified_user)):
  1653. if not ENABLE_VERSION_UPDATE_CHECK:
  1654. log.debug(
  1655. f"Version update check is disabled, returning current version as latest version"
  1656. )
  1657. return {"current": VERSION, "latest": VERSION}
  1658. try:
  1659. timeout = aiohttp.ClientTimeout(total=1)
  1660. async with aiohttp.ClientSession(timeout=timeout, trust_env=True) as session:
  1661. async with session.get(
  1662. "https://api.github.com/repos/open-webui/open-webui/releases/latest",
  1663. ssl=AIOHTTP_CLIENT_SESSION_SSL,
  1664. ) as response:
  1665. response.raise_for_status()
  1666. data = await response.json()
  1667. latest_version = data["tag_name"]
  1668. return {"current": VERSION, "latest": latest_version[1:]}
  1669. except Exception as e:
  1670. log.debug(e)
  1671. return {"current": VERSION, "latest": VERSION}
  1672. @app.get("/api/changelog")
  1673. async def get_app_changelog():
  1674. return {key: CHANGELOG[key] for idx, key in enumerate(CHANGELOG) if idx < 5}
  1675. @app.get("/api/usage")
  1676. async def get_current_usage(user=Depends(get_verified_user)):
  1677. """
  1678. Get current usage statistics for Open WebUI.
  1679. This is an experimental endpoint and subject to change.
  1680. """
  1681. try:
  1682. return {"model_ids": get_models_in_use(), "user_ids": get_active_user_ids()}
  1683. except Exception as e:
  1684. log.error(f"Error getting usage statistics: {e}")
  1685. raise HTTPException(status_code=500, detail="Internal Server Error")
  1686. ############################
  1687. # OAuth Login & Callback
  1688. ############################
  1689. # Initialize OAuth client manager with any MCP tool servers using OAuth 2.1
  1690. if len(app.state.config.TOOL_SERVER_CONNECTIONS) > 0:
  1691. for tool_server_connection in app.state.config.TOOL_SERVER_CONNECTIONS:
  1692. if tool_server_connection.get("type", "openapi") == "mcp":
  1693. server_id = tool_server_connection.get("info", {}).get("id")
  1694. auth_type = tool_server_connection.get("auth_type", "none")
  1695. if server_id and auth_type == "oauth_2.1":
  1696. oauth_client_info = tool_server_connection.get("info", {}).get(
  1697. "oauth_client_info", ""
  1698. )
  1699. try:
  1700. oauth_client_info = decrypt_data(oauth_client_info)
  1701. app.state.oauth_client_manager.add_client(
  1702. f"mcp:{server_id}",
  1703. OAuthClientInformationFull(**oauth_client_info),
  1704. )
  1705. except Exception as e:
  1706. log.error(
  1707. f"Error adding OAuth client for MCP tool server {server_id}: {e}"
  1708. )
  1709. pass
  1710. try:
  1711. if ENABLE_STAR_SESSIONS_MIDDLEWARE:
  1712. redis_session_store = RedisStore(
  1713. url=REDIS_URL,
  1714. prefix=(f"{REDIS_KEY_PREFIX}:session:" if REDIS_KEY_PREFIX else "session:"),
  1715. )
  1716. app.add_middleware(SessionAutoloadMiddleware)
  1717. app.add_middleware(
  1718. StarSessionsMiddleware,
  1719. store=redis_session_store,
  1720. cookie_name="owui-session",
  1721. cookie_same_site=WEBUI_SESSION_COOKIE_SAME_SITE,
  1722. cookie_https_only=WEBUI_SESSION_COOKIE_SECURE,
  1723. )
  1724. log.info("Using Redis for session")
  1725. else:
  1726. raise ValueError("No Redis URL provided")
  1727. except Exception as e:
  1728. app.add_middleware(
  1729. SessionMiddleware,
  1730. secret_key=WEBUI_SECRET_KEY,
  1731. session_cookie="owui-session",
  1732. same_site=WEBUI_SESSION_COOKIE_SAME_SITE,
  1733. https_only=WEBUI_SESSION_COOKIE_SECURE,
  1734. )
  1735. async def register_client(self, request, client_id: str) -> bool:
  1736. server_type, server_id = client_id.split(":", 1)
  1737. connection = None
  1738. connection_idx = None
  1739. for idx, conn in enumerate(request.app.state.config.TOOL_SERVER_CONNECTIONS or []):
  1740. if conn.get("type", "openapi") == server_type:
  1741. info = conn.get("info", {})
  1742. if info.get("id") == server_id:
  1743. connection = conn
  1744. connection_idx = idx
  1745. break
  1746. if connection is None or connection_idx is None:
  1747. log.warning(
  1748. f"Unable to locate MCP tool server configuration for client {client_id} during re-registration"
  1749. )
  1750. return False
  1751. server_url = connection.get("url")
  1752. oauth_server_key = (connection.get("config") or {}).get("oauth_server_key")
  1753. try:
  1754. oauth_client_info = (
  1755. await get_oauth_client_info_with_dynamic_client_registration(
  1756. request,
  1757. client_id,
  1758. server_url,
  1759. oauth_server_key,
  1760. )
  1761. )
  1762. except Exception as e:
  1763. log.error(f"Dynamic client re-registration failed for {client_id}: {e}")
  1764. return False
  1765. try:
  1766. request.app.state.config.TOOL_SERVER_CONNECTIONS[connection_idx] = {
  1767. **connection,
  1768. "info": {
  1769. **connection.get("info", {}),
  1770. "oauth_client_info": encrypt_data(
  1771. oauth_client_info.model_dump(mode="json")
  1772. ),
  1773. },
  1774. }
  1775. except Exception as e:
  1776. log.error(
  1777. f"Failed to persist updated OAuth client info for tool server {client_id}: {e}"
  1778. )
  1779. return False
  1780. oauth_client_manager.remove_client(client_id)
  1781. oauth_client_manager.add_client(client_id, oauth_client_info)
  1782. log.info(f"Re-registered OAuth client {client_id} for tool server")
  1783. return True
  1784. @app.get("/oauth/clients/{client_id}/authorize")
  1785. async def oauth_client_authorize(
  1786. client_id: str,
  1787. request: Request,
  1788. response: Response,
  1789. user=Depends(get_verified_user),
  1790. ):
  1791. # ensure_valid_client_registration
  1792. client = oauth_client_manager.get_client(client_id)
  1793. client_info = oauth_client_manager.get_client_info(client_id)
  1794. if client is None or client_info is None:
  1795. raise HTTPException(status.HTTP_404_NOT_FOUND)
  1796. if not await oauth_client_manager._preflight_authorization_url(client, client_info):
  1797. log.info(
  1798. "Detected invalid OAuth client %s; attempting re-registration",
  1799. client_id,
  1800. )
  1801. registered = await register_client(request, client_id)
  1802. if not registered:
  1803. raise HTTPException(
  1804. status_code=status.HTTP_500_INTERNAL_SERVER_ERROR,
  1805. detail="Failed to re-register OAuth client",
  1806. )
  1807. client = oauth_client_manager.get_client(client_id)
  1808. client_info = oauth_client_manager.get_client_info(client_id)
  1809. if client is None or client_info is None:
  1810. raise HTTPException(
  1811. status_code=status.HTTP_500_INTERNAL_SERVER_ERROR,
  1812. detail="OAuth client unavailable after re-registration",
  1813. )
  1814. if not await oauth_client_manager._preflight_authorization_url(
  1815. client, client_info
  1816. ):
  1817. raise HTTPException(
  1818. status_code=status.HTTP_500_INTERNAL_SERVER_ERROR,
  1819. detail="OAuth client registration is still invalid after re-registration",
  1820. )
  1821. return await oauth_client_manager.handle_authorize(request, client_id=client_id)
  1822. @app.get("/oauth/clients/{client_id}/callback")
  1823. async def oauth_client_callback(
  1824. client_id: str,
  1825. request: Request,
  1826. response: Response,
  1827. user=Depends(get_verified_user),
  1828. ):
  1829. return await oauth_client_manager.handle_callback(
  1830. request,
  1831. client_id=client_id,
  1832. user_id=user.id if user else None,
  1833. response=response,
  1834. )
  1835. @app.get("/oauth/{provider}/login")
  1836. async def oauth_login(provider: str, request: Request):
  1837. return await oauth_manager.handle_login(request, provider)
  1838. # OAuth login logic is as follows:
  1839. # 1. Attempt to find a user with matching subject ID, tied to the provider
  1840. # 2. If OAUTH_MERGE_ACCOUNTS_BY_EMAIL is true, find a user with the email address provided via OAuth
  1841. # - This is considered insecure in general, as OAuth providers do not always verify email addresses
  1842. # 3. If there is no user, and ENABLE_OAUTH_SIGNUP is true, create a user
  1843. # - Email addresses are considered unique, so we fail registration if the email address is already taken
  1844. @app.get("/oauth/{provider}/login/callback")
  1845. @app.get("/oauth/{provider}/callback") # Legacy endpoint
  1846. async def oauth_login_callback(provider: str, request: Request, response: Response):
  1847. return await oauth_manager.handle_callback(request, provider, response)
  1848. @app.get("/manifest.json")
  1849. async def get_manifest_json():
  1850. if app.state.EXTERNAL_PWA_MANIFEST_URL:
  1851. return requests.get(app.state.EXTERNAL_PWA_MANIFEST_URL).json()
  1852. else:
  1853. return {
  1854. "name": app.state.WEBUI_NAME,
  1855. "short_name": app.state.WEBUI_NAME,
  1856. "description": f"{app.state.WEBUI_NAME} is an open, extensible, user-friendly interface for AI that adapts to your workflow.",
  1857. "start_url": "/",
  1858. "display": "standalone",
  1859. "background_color": "#343541",
  1860. "icons": [
  1861. {
  1862. "src": "/static/logo.png",
  1863. "type": "image/png",
  1864. "sizes": "500x500",
  1865. "purpose": "any",
  1866. },
  1867. {
  1868. "src": "/static/logo.png",
  1869. "type": "image/png",
  1870. "sizes": "500x500",
  1871. "purpose": "maskable",
  1872. },
  1873. ],
  1874. "share_target": {
  1875. "action": "/",
  1876. "method": "GET",
  1877. "params": {"text": "shared"},
  1878. },
  1879. }
  1880. @app.get("/opensearch.xml")
  1881. async def get_opensearch_xml():
  1882. xml_content = rf"""
  1883. <OpenSearchDescription xmlns="http://a9.com/-/spec/opensearch/1.1/" xmlns:moz="http://www.mozilla.org/2006/browser/search/">
  1884. <ShortName>{app.state.WEBUI_NAME}</ShortName>
  1885. <Description>Search {app.state.WEBUI_NAME}</Description>
  1886. <InputEncoding>UTF-8</InputEncoding>
  1887. <Image width="16" height="16" type="image/x-icon">{app.state.config.WEBUI_URL}/static/favicon.png</Image>
  1888. <Url type="text/html" method="get" template="{app.state.config.WEBUI_URL}/?q={"{searchTerms}"}"/>
  1889. <moz:SearchForm>{app.state.config.WEBUI_URL}</moz:SearchForm>
  1890. </OpenSearchDescription>
  1891. """
  1892. return Response(content=xml_content, media_type="application/xml")
  1893. @app.get("/health")
  1894. async def healthcheck():
  1895. return {"status": True}
  1896. @app.get("/health/db")
  1897. async def healthcheck_with_db():
  1898. Session.execute(text("SELECT 1;")).all()
  1899. return {"status": True}
  1900. app.mount("/static", StaticFiles(directory=STATIC_DIR), name="static")
  1901. @app.get("/cache/{path:path}")
  1902. async def serve_cache_file(
  1903. path: str,
  1904. user=Depends(get_verified_user),
  1905. ):
  1906. file_path = os.path.abspath(os.path.join(CACHE_DIR, path))
  1907. # prevent path traversal
  1908. if not file_path.startswith(os.path.abspath(CACHE_DIR)):
  1909. raise HTTPException(status_code=404, detail="File not found")
  1910. if not os.path.isfile(file_path):
  1911. raise HTTPException(status_code=404, detail="File not found")
  1912. return FileResponse(file_path)
  1913. def swagger_ui_html(*args, **kwargs):
  1914. return get_swagger_ui_html(
  1915. *args,
  1916. **kwargs,
  1917. swagger_js_url="/static/swagger-ui/swagger-ui-bundle.js",
  1918. swagger_css_url="/static/swagger-ui/swagger-ui.css",
  1919. swagger_favicon_url="/static/swagger-ui/favicon.png",
  1920. )
  1921. applications.get_swagger_ui_html = swagger_ui_html
  1922. if os.path.exists(FRONTEND_BUILD_DIR):
  1923. mimetypes.add_type("text/javascript", ".js")
  1924. app.mount(
  1925. "/",
  1926. SPAStaticFiles(directory=FRONTEND_BUILD_DIR, html=True),
  1927. name="spa-static-files",
  1928. )
  1929. else:
  1930. log.warning(
  1931. f"Frontend build directory not found at '{FRONTEND_BUILD_DIR}'. Serving API only."
  1932. )