<?php
$host="127.0.0.1";
$user="root";
$pass="";
$base="pokemon";
$port=3306;
$sql=mysql_connect($host,$user,$pass,$base,$port) or die("Cannot connect to MySQL");
$request = $_POST['Request'];
if ($request == "delete_pokemon") {
$code = $_POST['Code'];
$ech="Failed";
$ech=mysql_query("DELETE FROM trades WHERE Code=".mysql_real_escape_string($code)."");
echo($ech);
}
elseif ($request == "taken_pokemon") {
$poke=$_POST['Pokemon'];
$ech=mysql_query("SELECT Taken FROM trades WHERE Pokemon=".mysql_real_escape_string($poke)."");
echo($ech);
}
elseif ($request == "send_pokemon") {
$code=$_POST['Code'];
$poke=$_POST['Pokemon'];
$level=$_POST['Level'];
$level1=$_POST['Level1'];
$level2=$_POST['Level2'];
$wanted=$_POST['Wanted'];
$ech="";
$ech=mysql_query("INSERT INTO trades Code=".mysql_real_escape_string($code).",Pokemon=".mysql_real_escape_string($poke).",Level=".mysql_real_escape_string($level).",Wanted=".mysql_real_escape_string($wanted).",Level1=".mysql_real_escape_string($level1).",Level2=".mysql_real_escape_string($level2).",Taken=".mysql_real_escape_string("No")."");
echo($ech);
}
elseif ($request == "get_pokemon") {
$poke=$_POST['Pokemon'];
$level1=$_POST['Level1'];
$level2=$_POST['Level2'];
$ech=mysql_query("SELECT * FROM trades WHERE Pokemon=".mysql_real_escape_string($poke)." and Level>".mysql_real_escape_string($level1)." and Level<".mysql_real_escape_string($level2)."") or print("None");
echo($ech);
}
elseif ($request == "pokemon_taken") {
$code=$_POSY['Code'];
$ech=mysql_query("Update trades SET Taken='Yes' WHERE Code=".mysql_real_escape_string($code)."");
echo($ech);
}
elseif ($request == "get_all") {
$test="VVA";
$ech=mysql_query("INSERT INTO trades Code=".mysql_real_escape_string($test)."") or $ech="Failed";
echo($ech);
$ech=mysql_query("SELECT * FROM trades");
echo($ech);
}
$sql_close;
?>