ForcePilot/backend/package/yuxi/channel/extensions/wechat-mp/crypto.py
Kris 87a8931db3 feat(channel): 添加微信客服、微信公众号和微信支付通知渠道扩展
新增微信客服、微信公众号、微信支付通知三个渠道扩展。

微信客服渠道扩展功能模块:
- account: 账户管理
- config: 渠道配置管理
- gateway: SSE/WebSocket 网关接入
- webhook: Webhook 事件处理
- outbound: 外发消息管理
- streaming: 流式消息处理
- pairing: 用户配对与绑定
- security: 安全校验
- crypto: 加解密处理
- dedupe: 消息去重
- customer: 客户管理
- servicer: 客服管理
- session: 会话管理
- status: 会话状态管理
- media: 媒体资源处理
- statistics: 统计功能
- sync: 数据同步
- upgrade: 升级处理

微信公众号渠道扩展功能模块:
- config: 渠道配置管理
- gateway: SSE/WebSocket 网关接入
- webhook: Webhook 事件处理
- outbound: 外发消息管理
- streaming: 流式消息处理
- pairing: 用户配对与绑定
- security: 安全校验
- crypto: 加解密处理
- dedupe: 消息去重
- passive_reply: 被动回复
- message: 消息处理
- broadcast: 群发消息
- template: 模板消息
- menu: 菜单管理
- qrcode: 二维码管理
- user: 用户管理
- media: 媒体资源处理
- status: 会话状态管理

微信支付通知渠道扩展功能模块:
- config: 渠道配置管理
- webhook: Webhook 事件处理
- crypto: 加解密与签名校验
- cert_manager: 证书管理
- event_router: 事件路由
- dedupe: 消息去重
- pay_repo: 支付数据仓库
- query_client: 查询客户端
- arq_tasks: 异步任务
- callback_compensator: 回调补偿
2026-05-21 12:00:30 +08:00

55 lines
1.8 KiB
Python

import base64
import hashlib
import os
import socket
import struct
from Crypto.Cipher import AES
class WeChatCrypto:
BLOCK_SIZE = 32
def __init__(self, token: str, encoding_aes_key: str, app_id: str):
self.token = token
self.app_id = app_id
self.aes_key = base64.b64decode(encoding_aes_key + "=")
def verify_signature(
self,
signature: str,
timestamp: str,
nonce: str,
msg_encrypt: str = "",
) -> bool:
computed = self.compute_signature(timestamp, nonce, msg_encrypt)
return computed == signature
def compute_signature(self, timestamp: str, nonce: str, msg_encrypt: str = "") -> str:
params = sorted([self.token, timestamp, nonce, msg_encrypt])
return hashlib.sha1("".join(params).encode()).hexdigest()
def decrypt(self, msg_encrypt: str) -> tuple[str, str]:
cipher = AES.new(self.aes_key, AES.MODE_CBC, iv=self.aes_key[:16])
raw = base64.b64decode(msg_encrypt)
decrypted = cipher.decrypt(raw)
pad = decrypted[-1]
content = decrypted[:-pad]
msg_len = socket.ntohl(struct.unpack("I", content[16:20])[0])
xml = content[20:20 + msg_len].decode("utf-8")
receiver_app_id = content[20 + msg_len:].decode("utf-8")
return xml, receiver_app_id
def encrypt(self, msg: str) -> str:
random_bytes = os.urandom(16)
msg_bytes = msg.encode("utf-8")
msg_len = socket.htonl(len(msg_bytes))
raw = random_bytes + struct.pack("I", msg_len) + msg_bytes + self.app_id.encode("utf-8")
pad_len = self.BLOCK_SIZE - (len(raw) % self.BLOCK_SIZE)
raw = raw + bytes([pad_len]) * pad_len
cipher = AES.new(self.aes_key, AES.MODE_CBC, iv=self.aes_key[:16])
return base64.b64encode(cipher.encrypt(raw)).decode()