threadr.lostcave.ddnss.de/threadr/userhome/index.php

44 lines
1.3 KiB
PHP

<?php
session_start();
%PLEAZE_NO_CACHE%
%SET_LOGIN_VARIABLE%
//Todo: make this a setting for users that use VPNs/Proxies and seem to jump around the world rather quickly...
%NO_CHEAP_SESSION_STEALING%
%REQUIRE_LOGIN%
$pdo = new PDO('mysql:host=localhost;dbname=web', 'webstuff', 'Schei// auf Pa$$w0rter!');
$error = false;
$error_message = "";
if (!$error) {
$statement = $pdo->prepare("SELECT name FROM users WHERE id=:uid"); // to be replaced with optional user name off the user data table
$statement->execute(array("uid"=>$_SESSION[user_id]));
$dbentry = $statement->fetch();
$username = $dbentry[name];
}
if (!$result) {
$error_message = "Error: SQL error.\n" . $statement->queryString . "\n" . $statement->errorInfo()[2];
}
$navbar = "home";
//ToDo: differentiate between home and userhome (or auto-redirect)
?>
<!DOCTYPE html>
<html>
<head>
<title>ThreadR</title>
%STYLESHEET%
<link rel="icon" type="image/png" href="%CONTENT_DIR%/img/favicon-32x32.png" sizes="32x32" />
<meta name="viewport" content="width=device-width, initial-scale=1.0">
</head>
<body>
%NAVBAR%
<div class="container">
<div class="item-1">
<center><h1>ThreadR</h1></center>
</div>
<div class="item-2">
<center><h3><?php echo "Welcome back, "; echo "$username"; echo "!";?> </h3></center>
</div>
</div>
</html>