set_charset("utf8");
$query="INSERT INTO `".SHOP_ID."_customer` ( `phone`,`name`,`address`)VALUES(?,?,?)";
$stmt = $link->prepare($query);
if($stmt){
$stmt->bind_param("sss", $_POST['phone'],$_POST['name'],$_POST['address'] );
//if(!$stmt->execute()) echo '
' . mysqli_error($link) . '
';
if(!$stmt->execute()) echo '' . mysqli_error($link) . '
';
else {
echo ' customer: '.$_POST['name'].' added
';
// .
}
}
else echo mysqli_error($link);
$link->close();
}
if(isset($_GET['phone'])){
if($_GET['phone']==""){
echo ' ';
}
else {
$link = new mysqli(MYSQL_HOST,MYSQL_USER,MYSQL_PASS,MYSQL_DB);
$query="SELECT * FROM `".SHOP_ID."_customer` WHERE `phone`='".$_GET['phone']."'";
$result= mysqli_query($link, $query);
if(mysqli_num_rows($result)<1){
echo 'New Customer:
';
}
else {
$row = $result -> fetch_array(MYSQLI_ASSOC);
// var_dump($row);
echo 'New Customer:
';
}
echo '
';
}
}
else {
?>