prepare("SELECT * FROM users WHERE username = ?"); $stmt->execute([$username]); $user = $stmt->fetch(PDO::FETCH_ASSOC); if ($user && password_verify($password, $user['password_hash'])) { $_SESSION['user_id'] = $user['id']; $_SESSION['username'] = $user['username']; header("Location: index.php"); exit; } else { $message = 'Invalid username or password.'; } } catch (PDOException $e) { $message = 'Error: ' . $e->getMessage(); } } } ?>