<?php
// db.php - database connection
$host = "localhost";   // your db host
$user = "ueivgpnf_root";        // your db user
$pass = "Ed[F%hv)b}AitVQ}";            // your db password
$db   = "ueivgpnf_root";

$conn = new mysqli($host, $user, $pass, $db);
if ($conn->connect_error) {
    die("Database connection failed: " . $conn->connect_error);
}

// get id from URL
$id = $_GET['id'] ?? null;

if (!$id) {
    die("No ID provided.");
}

// query client data
$stmt = $conn->prepare("SELECT * FROM clients WHERE client_code = ?");
$stmt->bind_param("s", $id);
$stmt->execute();
$result = $stmt->get_result();
$client = $result->fetch_assoc();

if (!$client) {
    die("Client not found.");
}
?>
<!DOCTYPE html>
<html lang="en">
<head>
  <meta charset="UTF-8">
  <title>ID Card - <?= htmlspecialchars($client['name']) ?></title>
  <link rel="stylesheet" href="assets/idcard/style.css">
</head>
<body>
<div class="main">
  <div class="front">
    <h1><?= htmlspecialchars($client['name']) ?></h1>
    <p>Iqama: <?= htmlspecialchars($client['iqama']) ?></p>
    <p>Company: <?= htmlspecialchars($client['company']) ?></p>
    <img src="<?= htmlspecialchars($client['photo_url']) ?>" alt="photo" style="width:120px">
    <img src="<?= htmlspecialchars($client['qr_url']) ?>" alt="qr" style="width:120px">
    <p>Certificate: <?= htmlspecialchars($client['cert_no']) ?></p>
    <p>Issue: <?= htmlspecialchars($client['issue_date']) ?> | Expiry: <?= htmlspecialchars($client['expiry_date']) ?></p>
    <p>Examiner: <?= htmlspecialchars($client['examiner']) ?></p>
    <img src="<?= htmlspecialchars($client['sign_url']) ?>" alt="sign" style="width:120px">
  </div>
</div>
</body>
</html>
