<?PHP
if(isset($_POST['update'])) {
$bf=mysql_real_escape_string($_POST['bf']);
$os=mysql_real_escape_string($_POST['os']);
$fm=mysql_real_escape_string($_POST['fm']);
$am=mysql_real_escape_string($_POST['am']);
$user=mysql_real_escape_string($_POST['user']);
switch ($bf){
case "":
mysql_query("UPDATE users SET motto='$am', block_newfriends='1', hide_online='$os', hide_inroom='$fm' WHERE username='$user'") or die(mysql_error());
break;
case "2":
mysql_query("UPDATE users SET motto='$am', block_newfriends='0', hide_online='$os', hide_inroom='$fm' WHERE username='$user'") or die(mysql_error());
break;
}
echo '<div class="rounded-container">';
include("includes/greenbox1.php");
echo '<div class="rounded-green rounded-done">';
echo '<b>Your profile has been updated!</b><br>';
echo '</div>';
include("includes/greenbox2.php");
echo '</div>';
}
?>
<form method="post" style="background: rgba(0,0,0,0);border-radius:4px;padding:3px;color:#FFFF;">
<input type="hidden" name="user" value="{username}" />
<?php
$query = "SELECT * FROM users WHERE id = '".$_SESSION['user']['id']."'";
$result = mysql_query($query);
$row = mysql_fetch_array($result);
$x1 = $row['block_newfriends'];
$x2 = $row['hide_online'];
$x3 = $row['hide_inroom'];
$ch1[$x1] = "checked";
$ch2[$x2] = "checked";
$ch3[$x3] = "checked";
echo "
<h3>Friend requests</h3>";
if ( $x1 = '1' ) {
echo "<input type='checkbox' name='bf' value='2' ".$ch1['0'].">Decline friend requests:";
} else {
echo "<input type='checkbox' name='bf' value='1' ".$ch1['1'].">Accept friend requests:";
}
echo "<br><br>
";
echo "
<h3>Online status</h3>
<p>Choose thoose who can see you online:</p>
<input type='radio' name='os' value='1' ".$ch2['1'].">No one
<input type='radio' name='os' value='0' ".$ch2['0'].">Everyone
<br><br>
";
echo "
<h3>Follow me</h3>
<p>Choose those who can follow you into rooms:</p>
<input type='radio' name='fm' value='1' ".$ch3['1'].">No one
<input type='radio' name='fm' value='0' ".$ch3['0'].">My friends
";
?>