<div class="navbar"> <ahref="/">Home</a> <ahref="/vote.php">Vote</a> <ahref="/contest.php">Contest</a> <?php if (isset($_SESSION['username'])) { // If user is logged in if ($_SESSION['username'] == 'axel') { // If the logged in user is admin echo'<a href="/admin.php">Admin</a>'; } echo'<a href="/logout.php">Logout</a>'; } else { // If no user is logged in echo'<a href="/join.php">Join</a>'; } ?> </div>
if (isset($_SESSION['username']) && $_SESSION['username'] === 'axel') { if ($_SERVER["REQUEST_METHOD"] == "POST") { if (isset($_POST['catId']) && isset($_POST['catName'])) { $cat_name = $_POST['catName']; $catId = $_POST['catId']; $sql_insert = "INSERT INTO accepted_cats (name) VALUES ('$cat_name')"; $pdo->exec($sql_insert);
$stmt_delete = $pdo->prepare("DELETE FROM cats WHERE cat_id = :cat_id"); $stmt_delete->bindParam(':cat_id', $catId, PDO::PARAM_INT); $stmt_delete->execute();
echo"The cat has been accepted and added successfully."; } else { echo"Error: Cat ID or Cat Name not provided."; } } else { header("Location: /"); exit(); } } else { echo"Access denied."; } ?>