prepare("SELECT * FROM users WHERE email = :email"); $stmt->bindParam(':email', $email, PDO::PARAM_STR); $stmt->execute(); $user = $stmt->fetch(PDO::FETCH_ASSOC); if ($user && password_verify($password, $user['password_hash'])) { // Password is correct, start session $_SESSION['user_id'] = $user['id']; $_SESSION['user_name'] = $user['name']; $_SESSION['user_email'] = $user['email']; header("Location: trip-setup.php"); exit(); } else { $error_message = 'Invalid email or password.'; } } catch (PDOException $e) { $error_message = "Database error: " . $e->getMessage(); } } } ?>