include("admin/classes/initial.php"); include("admin/classes/secure-user.php"); include("admin/classes/config.php"); include("admin/classes/functions.php"); include("admin/classes/verifyemail.php"); function obfuscate_email($email) { $em = explode("@",$email); $name = implode('@', array_slice($em, 0, count($em)-1)); $len = floor(strlen($name)/2); return substr($name,0, $len) . str_repeat('*', $len) . "@" . end($em); } $code = trim($_REQUEST['code']); if ($code=="") die("Invalid trace"); $code = base64_decode($code); if (!is_numeric($code)) die("Invalid trace"); if ($_REQUEST['action']=="followme") { $chksql = "select FollowId from followers where MemberId='".$code."' and FollowerId ='".$_SESSION['MASTER_ID']."'"; $chkrsq = mysqli_query($con,$chksql); if (mysqli_num_rows($chkrsq)==0) { $sql = "insert into followers set MemberId='".$code."', FollowerId ='".$_SESSION['MASTER_ID']."', CreatedOn='".gmdate("Y-m-d H:i:s")."'"; if (!mysqli_query($con,$sql)) { $response = '{"status":"technical_error", "message":"Oops! We\'ve hit a technical glitch along the way."}'; die($response); }else { $sql = "update members set Followers = Followers + 1 where MemberCode='".mysqli_real_escape_string($con,$code)."'"; mysqli_query($con,$sql); $sql = "select a.FirstName, a.LastName from members a where a.MemberCode='".mysqli_real_escape_string($con,$code)."'"; $rsq = mysqli_query($con,$sql); $rs = mysqli_fetch_assoc($rsq); $message = "You are now following " . $rs['FirstName'] . " " . $rs['LastName']; $response = '{"status":"success", "message":"'.$message.'"}'; die($response); } }else { $sql = "select a.FirstName, a.LastName from members a where a.MemberCode='".mysqli_real_escape_string($con,$code)."'"; $rsq = mysqli_query($con,$sql); $rs = mysqli_fetch_assoc($rsq); $message = "You are already following " . $rs['FirstName'] . " " . $rs['LastName']; $response = '{"status":"success", "message":"'.$message.'"}'; die($response); } } if ($_REQUEST['action']=="unfollow") { $chksql = "select FollowId from followers where MemberId='".$code."' and FollowerId ='".$_SESSION['MASTER_ID']."'"; $chkrsq = mysqli_query($con,$chksql); if (mysqli_num_rows($chkrsq)>0) { $sql = "delete from followers where MemberId='".$code."' and FollowerId ='".$_SESSION['MASTER_ID']."'"; if (!mysqli_query($con,$sql)) { $response = '{"status":"technical_error", "message":"Oops! We\'ve hit a technical glitch along the way."}'; die($response); }else { $sql = "update members set Followers = Followers - 1 where MemberCode='".mysqli_real_escape_string($con,$code)."'"; mysqli_query($con,$sql); $sql = "select a.FirstName, a.LastName from members a where a.MemberCode='".mysqli_real_escape_string($con,$code)."'"; $rsq = mysqli_query($con,$sql); $rs = mysqli_fetch_assoc($rsq); $message = "You are not following " . $rs['FirstName'] . " " . $rs['LastName'] . " now."; $response = '{"status":"success", "message":"'.$message.'"}'; die($response); } }else { $response = '{"status":"technical_error", "message":"You are not following."}'; die($response); } } $sql = "select a.*,b.nicename from members a join countries b on a.Nationality=b.iso where a.MemberCode='".mysqli_real_escape_string($con,$code)."'"; $rsq = mysqli_query($con,$sql); if (mysqli_num_rows($rsq)==0) die("Invalid trace"); $rs = mysqli_fetch_assoc($rsq); $frssql = "select FollowId from followers where MemberId='".$code."' and FollowerId ='".$_SESSION['MASTER_ID']."'"; $frsq = mysqli_query($con,$frssql); if (mysqli_num_rows($frsq)>0) { $following = 1; } ?>