prepare("SELECT * FROM users WHERE email = :email"); $stmt->execute(['email' => $email]); $user = $stmt->fetch(PDO::FETCH_ASSOC); if ($user && password_verify($password, $user['password'])) { // Password is correct, start session $_SESSION['user_id'] = $user['id']; $_SESSION['username'] = $user['username']; $_SESSION['role'] = $user['role']; header("Location: index.php"); exit; } else { $errors[] = 'Invalid email or password.'; } } catch (PDOException $e) { $errors[] = "Database error: " . $e->getMessage(); } } } ?>