1234567891011121314151617181920212223242526272829303132333435363738394041424344454647484950515253 |
- <?php
-
-
- session_start();
- $params = array();
- parse_str($_POST['save_canvas'], $params);
-
- if(!array_key_exists('email_save_canvas', $params) OR
- !array_key_exists('name_save_canvas', $params) OR
- !array_key_exists('date_save_canvas', $params)) {
- echo 400;
- }
-
- else {
- if(isset($_SESSION['canvas_id'])) {
-
- echo $_SESSION['canvas_id'];
- }
- else {
-
- $email = $params['email_save_canvas'];
- $canvas_name = $params['name_save_canvas'];
- $date = $params['date_save_canvas'];
- $canvas_id = $params['id_save_canvas'];
-
- require_once('../../php/db_utils.php');
- $conn = db_connect();
-
-
- if(!($result = mysqli_query($conn, "SELECT name FROM user WHERE username = '$email'"))) {
- echo 400;
- }
- else if(mysqli_num_rows($result) != 1) {
- echo 401;
- }
- else {
-
-
-
- if(!mysqli_query($conn, "INSERT INTO canvas (canvas_id, user_id, canvas_name, canvas_date) VALUES ('$canvas_id', '$email', '$canvas_name', '$date')")) {
- echo 400;
- echo " #Wrong query :/ ";
- }
- else {
- $_SESSION['canvas_id'] = $canvas_id;
- echo $canvas_id;
- }
- }
- }
- }
- ?>
|