include("admin/classes/initial.php"); include("admin/classes/secure-user.php"); include("admin/classes/config.php"); include("admin/classes/functions.php"); include("admin/classes/verifyemail.php"); $id = trim($_REQUEST['id']); if ($id=="") die("Invalid trace"); if (!is_numeric($id)) die("Invalid trace"); if ($_REQUEST['action']=="followme") { $chksql = "select FollowId from companyfollowers where CompanyId='".$id."' and FollowerId ='".$_SESSION['MASTER_ID']."'"; $chkrsq = mysqli_query($con,$chksql); if (mysqli_num_rows($chkrsq)==0) { $sql = "insert into companyfollowers set CompanyId='".$id."', FollowerId ='".$_SESSION['MASTER_ID']."', CreatedOn='".gmdate("Y-m-d H:i:s")."'"; if (!mysqli_query($con,$sql)) { $response = '{"status":"technical_error", "message":"Oops! We\'ve hit a technical glitch along the way."}'; die($response); }else { $sql = "update companies set Followers = Followers + 1 where CompanyId='".mysqli_real_escape_string($con,$id)."'"; mysqli_query($con,$sql); $sql = "select a.Company from companyfollowers a where a.CompanyId='".mysqli_real_escape_string($con,$id)."'"; $rsq = mysqli_query($con,$sql); $rs = mysqli_fetch_assoc($rsq); $message = "You are now following " . $rs['Company']; $response = '{"status":"success", "message":"'.$message.'"}'; die($response); } }else { $sql = "select a.Company from companyfollowers a where a.CompanyId='".mysqli_real_escape_string($con,$id)."'"; $rsq = mysqli_query($con,$sql); $rs = mysqli_fetch_assoc($rsq); $message = "You are already following " . $rs['Company']; $response = '{"status":"success", "message":"'.$message.'"}'; die($response); } } if ($_REQUEST['action']=="unfollow") { $chksql = "select FollowId from companyfollowers where CompanyId='".$id."' and FollowerId ='".$_SESSION['MASTER_ID']."'"; $chkrsq = mysqli_query($con,$chksql); if (mysqli_num_rows($chkrsq)>0) { $sql = "delete from companyfollowers where CompanyId='".$id."' and FollowerId ='".$_SESSION['MASTER_ID']."'"; if (!mysqli_query($con,$sql)) { $response = '{"status":"technical_error", "message":"Oops! We\'ve hit a technical glitch along the way."}'; die($response); }else { $sql = "update companies set Followers = Followers - 1 where CompanyId='".mysqli_real_escape_string($con,$id)."'"; mysqli_query($con,$sql); $sql = "select a.Company from companies a where a.CompanyId='".mysqli_real_escape_string($con,$id)."'"; $rsq = mysqli_query($con,$sql); $rs = mysqli_fetch_assoc($rsq); $message = "You are not following " . $rs['Company'] . " now."; $response = '{"status":"success", "message":"'.$message.'"}'; die($response); } }else { $response = '{"status":"technical_error", "message":"You are not following."}'; die($response); } } //$sql = "select a.*,b.EmployeeStrength,c.Category,d.nicename from companies a join employeestrenths b on b.EmployeeStrengthId=a.EmployeeStrength join categories c on c.CategoryId=a.CategoryId join countries d on d.iso=a.CountryOfIncorporation where a.CompanyId='".mysqli_real_escape_string($con,$id)."'"; $sql = "select a.*,b.EmployeeStrength,c.Category from companies a join employeestrenths b on b.EmployeeStrengthId=a.EmployeeStrength join categories c on c.CategoryId=a.CategoryId where a.CompanyId='".mysqli_real_escape_string($con,$id)."'"; $rsq = mysqli_query($con,$sql); if (mysqli_num_rows($rsq)==0) die("Invalid trace"); $rs = mysqli_fetch_assoc($rsq); $ersq = mysqli_query($con,"select * from members where MemberId='".$rs['CreatedBy']."'"); if (mysqli_num_rows($ersq)==0) die("Invalid trace"); $ers = mysqli_fetch_assoc($ersq); $irsq = mysqli_query($con,"select nicename from countries where iso='".$rs['CountryOfIncorporation']."'"); $irs = mysqli_fetch_assoc($irsq); $CountryOfIncorporation = $irs['nicename']; $frssql = "select FollowId from companyfollowers where CompanyId='".$id."' and FollowerId ='".$_SESSION['MASTER_ID']."'"; $frsq = mysqli_query($con,$frssql); if (mysqli_num_rows($frsq)>0) { $following = 1; } ?>