Adrià Vilanova Martínez | 13cf0cd | 2022-11-20 01:02:20 +0100 | [diff] [blame] | 1 | <?php |
| 2 | require './credentials.php'; |
| 3 | require './php/utils.php'; |
| 4 | require_once('./php/security.php'); |
| 5 | |
| 6 | date_default_timezone_set("Europe/Madrid"); |
| 7 | |
| 8 | Security::checkIsSignedIn(); |
| 9 | ?> |
| 10 | |
Andreu Huguet | 0d5d731 | 2020-09-15 21:12:43 +0200 | [diff] [blame] | 11 | <head> |
| 12 | <link rel="stylesheet" type="text/css" href="//fonts.googleapis.com/css?family=Open+Sans" /> |
| 13 | <link rel="stylesheet" href="./css/basic.css" /> |
| 14 | <link rel="stylesheet" href="./css/main.css" /> |
Andreu Huguet | 0d5d731 | 2020-09-15 21:12:43 +0200 | [diff] [blame] | 15 | |
| 16 | <?php |
Adrià Vilanova Martínez | 13cf0cd | 2022-11-20 01:02:20 +0100 | [diff] [blame] | 17 | $user = get_users($_SESSION["id"]); |
| 18 | $victim = get_users($user->quimata); |
| 19 | if ($user->mort) die("<script>window.location.href = './dead.php'</script>"); |
Andreu Huguet | 0d5d731 | 2020-09-15 21:12:43 +0200 | [diff] [blame] | 20 | ?> |
| 21 | |
Andreu Huguet | 0d5d731 | 2020-09-15 21:12:43 +0200 | [diff] [blame] | 22 | <meta charset="UTF-8"> |
| 23 | <title>PastanagAPP</title> |
| 24 | |
| 25 | <meta name="viewport" content="width=device-width, initial-scale=1"> |
Adrià Vilanova Martínez | 71e9f87 | 2022-11-20 01:54:50 +0100 | [diff] [blame^] | 26 | <link rel="manifest" href="/bin/manifest.json"> |
Andreu Huguet | 0d5d731 | 2020-09-15 21:12:43 +0200 | [diff] [blame] | 27 | |
| 28 | <!-- Apple web app --> |
| 29 | <link rel="apple-touch-icon" href="./bin/images/icons/icon-72x72.png"> |
| 30 | <meta name="apple-mobile-web-app-title" content="PastanagAPP"> |
| 31 | <meta name="apple-mobile-web-app-capable" content="yes"> |
| 32 | <meta name="apple-mobile-web-app-status-bar-style" content="green"> |
| 33 | </head> |
| 34 | <body> |
| 35 | <div id="outter-container"> |
| 36 | <div id="inner-container"> |
| 37 | <div><a href="./main.php">Tornar a la pàgina principal</a></div> |
Adrià Vilanova Martínez | 13cf0cd | 2022-11-20 01:02:20 +0100 | [diff] [blame] | 38 | |
Andreu Huguet | 0d5d731 | 2020-09-15 21:12:43 +0200 | [diff] [blame] | 39 | <div id="message-board"> |
| 40 | <div id="victim-messages"> |
| 41 | <div class="messages-sent"> |
| 42 | <?php |
Adrià Vilanova Martínez | 13cf0cd | 2022-11-20 01:02:20 +0100 | [diff] [blame] | 43 | // Execute query and save result |
| 44 | $statement = $conn->prepare("SELECT * FROM `missatges` WHERE (`sender_id` = ? AND `receiver_id` = ?) OR (`sender_id` = ? AND `receiver_id` = ?)"); |
| 45 | $statement->bind_param("iiii", $user->id, $user->quimata, $user->quimata, $user->id); |
| 46 | $statement->execute(); |
| 47 | |
| 48 | $result = $statement->get_result(); |
| 49 | |
Andreu Huguet | 0d5d731 | 2020-09-15 21:12:43 +0200 | [diff] [blame] | 50 | while($res = $result->fetch_row()) { |
| 51 | if ($res[1] == $user->id) { |
Adrià Vilanova Martínez | 13cf0cd | 2022-11-20 01:02:20 +0100 | [diff] [blame] | 52 | echo "<div class='from-me'><div class='msg-content'>".htmlspecialchars($res[4])."</div><div class='meta-data'><span class='timestamp'>$res[3]</span><span class='seen'>".($res[5] == 0 ? 'Enviat' : 'Vist')."</span></div></div>"; |
Andreu Huguet | 0d5d731 | 2020-09-15 21:12:43 +0200 | [diff] [blame] | 53 | } else { |
Adrià Vilanova Martínez | 13cf0cd | 2022-11-20 01:02:20 +0100 | [diff] [blame] | 54 | echo "<div class='to-me'><div class='msg-content'>$res[4]</div><div class='meta-data'><span class='timestamp'>".htmlspecialchars($res[3])."</span><span class='seen'>".($res[5] == 0 ? 'Nou!' : '')."</span></div></div>"; |
Andreu Huguet | 0d5d731 | 2020-09-15 21:12:43 +0200 | [diff] [blame] | 55 | } |
| 56 | } |
Adrià Vilanova Martínez | 13cf0cd | 2022-11-20 01:02:20 +0100 | [diff] [blame] | 57 | |
Andreu Huguet | 0d5d731 | 2020-09-15 21:12:43 +0200 | [diff] [blame] | 58 | // Update 'seen' messages |
Adrià Vilanova Martínez | 13cf0cd | 2022-11-20 01:02:20 +0100 | [diff] [blame] | 59 | $query_seen = "UPDATE missatges SET `seen` = 1 WHERE `receiver_id` = " . (int)$user->id . " AND `sender_id` = " . (int)$user->quimata . " AND `seen` <> 1"; |
Andreu Huguet | 0d5d731 | 2020-09-15 21:12:43 +0200 | [diff] [blame] | 60 | $conn->query($query_seen); |
Andreu Huguet | 0d5d731 | 2020-09-15 21:12:43 +0200 | [diff] [blame] | 61 | ?> |
| 62 | </div> |
| 63 | <form action="./php/send_thread.php" method="POST"> |
| 64 | <input type="text" name="msg-content" placeholder="Que es cagui de por" /> |
| 65 | <input type="hidden" name="killer-id" value="<?=(int)$user->id?>"> |
| 66 | <input type="hidden" name="victim-id" value="<?=(int)$user->quimata?>"> |
| 67 | <input type="hidden" name="origin" value="victim"> |
| 68 | <input type="submit" value="Enviar amenaça" /> |
| 69 | </form> |
| 70 | </div> |
Adrià Vilanova Martínez | 13cf0cd | 2022-11-20 01:02:20 +0100 | [diff] [blame] | 71 | |
Andreu Huguet | 0d5d731 | 2020-09-15 21:12:43 +0200 | [diff] [blame] | 72 | </div> |
| 73 | |
| 74 | </div> |
| 75 | </div> |
Adrià Vilanova Martínez | d3394e1 | 2022-11-19 15:45:58 +0100 | [diff] [blame] | 76 | </body> |