prepare("SELECT id, password_hash FROM users WHERE mobile_number = :mobile_number"); $stmt->execute(['mobile_number' => $mobile_number]); $user = $stmt->fetch(); if ($user && password_verify($password, $user['password_hash'])) { // Password is correct, start session $_SESSION['user_id'] = $user['id']; header("Location: dashboard.php"); exit(); } else { $error_message = 'Invalid mobile number or password.'; } } catch (PDOException $e) { $error_message = 'An internal error occurred. Please try again later.'; } } } ?>