\n"); print(" \n"); print("
\n"); print(" \n"); print("
Error: '.$error_msg."\n"); print("
\n"); print("
\n"); print("\n"); print(""); die(); } $nono_words=file("nono_words.txt"); $nono_exp=rtrim($nono_words[0],"\n"); for($i=1;$i'.$myrow["vendor_name"].'

'."\n"); if ($submit) { if (strlen($reviewer_name) > 255) { array_push($error, "Your name is too long."); } if (is_nono($reviewer_name)) { $nono=1; } if ($rating < 0) { array_push($error, "Please enter a rating."); } if ((strlen($review_summary)==0)&&(strlen($review)==0)) { array_push($error, "You must enter either a review or a review summary."); } if (is_nono($review_summary)) { $nono=1; } if (mysql_num_rows(mysql_query("SELECT * FROM reviews WHERE review='".$review."' && review_of=".$review_of))) { array_push($error, "There appears to be an identical review already in the database"); } if (is_nono($review)) { $nono=1; } if (!$error) { if ($nono) { nono_warning(); } if (!$reviewer_name) { $reviewer_name="Anonymous"; } if (!$review_summary) { if (strlen($review)<= 15) { $review_summary=rtrim($review,".")."..."; } else { eregi("^(([^ ]*[ ]?){5})",$review,$regs); $review_summary=$regs[0]."..."; } } $ip=$GLOBALS['REMOTE_ADDR']; $sql="INSERT INTO reviews (review_of, reviewer_name, reviewer_email, review_summary, review, rating, ip) VALUES ('$review_of', '$reviewer_name', '$reviewer_email', '$review_summary', '$review', '$rating', '$ip')"; $result=mysql_query($sql); if ($result) { print('Thank you for your submission.
'."\n"); } else { print('There was an error.
'."\n"); } } } if (!$submit || $error) { for($i=0;$iError: '.$error[$i].'
'."\n"); } ?> Posting Rules: No cussin', no flaming, and people who work for/own the store being reviewed can't review their own store.
Name Email (optional)
Rating (Higher is better): > > > > > >
0 1 2 3 4 5
Summary
Review
Length character out of xxxx characters.

Ratings

\n"); $result=mysql_query("SELECT *, DATE_FORMAT(timestamp, '%W, %M %e, %Y at %r') FROM reviews WHERE review_of=".$review_of." ORDER BY timestamp DESC"); while ($myrow=mysql_fetch_array($result)) { print(' '."\n"); print(' '."\n"); print(' '."\n"); print(' '."\n"); print(' '."\n"); print(' '."\n"); print(' '."\n"); print(' '."\n"); print(' '."\n"); print(' '."\n"); print(' '."\n"); print('
'.htmlentities(nono_replace($myrow["review_summary"])).'
Rating: '.$myrow["rating"].'
'.wordwrap(htmlentities(nono_replace($myrow["review"]))).'
Reviewed by: '.htmlentities(nono_replace($myrow["reviewer_name"])).' on '.$myrow["DATE_FORMAT(timestamp, '%W, %M %e, %Y at %r')"].'

'."\n"); } ?>