![]() Server : Apache/2 System : Linux server-15-235-50-60 5.15.0-164-generic #174-Ubuntu SMP Fri Nov 14 20:25:16 UTC 2025 x86_64 User : gositeme ( 1004) PHP Version : 8.2.29 Disable Function : exec,system,passthru,shell_exec,proc_close,proc_open,dl,popen,show_source,posix_kill,posix_mkfifo,posix_getpwuid,posix_setpgid,posix_setsid,posix_setuid,posix_setgid,posix_seteuid,posix_setegid,posix_uname Directory : /home/gositeme/domains/soundstudiopro.com/private_html/ |
<?php
session_start();
require_once 'config/database.php';
header('Content-Type: application/json');
// Check if user is logged in
if (!isset($_SESSION['user_id'])) {
echo json_encode(['success' => false, 'error' => 'User not authenticated']);
exit;
}
// Check if request method is POST
if ($_SERVER['REQUEST_METHOD'] !== 'POST') {
echo json_encode(['success' => false, 'error' => 'Invalid request method']);
exit;
}
// Get JSON input
$input = json_decode(file_get_contents('php://input'), true);
$track_id = $input['track_id'] ?? null;
$comment_text = $input['comment_text'] ?? null;
if (!$track_id) {
echo json_encode(['success' => false, 'error' => 'Track ID is required']);
exit;
}
if (!$comment_text || trim($comment_text) === '') {
echo json_encode(['success' => false, 'error' => 'Comment text is required']);
exit;
}
// Validate comment length
if (strlen($comment_text) > 500) {
echo json_encode(['success' => false, 'error' => 'Comment too long (max 500 characters)']);
exit;
}
try {
$pdo = getDBConnection();
// Verify track exists and is public
$stmt = $pdo->prepare("SELECT id FROM music_tracks WHERE id = ? AND is_public = 1");
$stmt->execute([$track_id]);
if (!$stmt->fetch()) {
echo json_encode(['success' => false, 'error' => 'Track not found or not public']);
exit;
}
// Add comment
$stmt = $pdo->prepare("INSERT INTO track_comments (track_id, user_id, comment, created_at) VALUES (?, ?, ?, NOW())");
$stmt->execute([$track_id, $_SESSION['user_id'], trim($comment_text)]);
echo json_encode(['success' => true, 'comment_id' => $pdo->lastInsertId()]);
} catch (Exception $e) {
echo json_encode(['success' => false, 'error' => 'Database error: ' . $e->getMessage()]);
}
?>