//Mengambil data komentar $shoutby = $_POST['shoutby']; if($shoutby == "Masukan Nama"||$shoutby == ""){ //tidak memasukkan nama $shoutby = "Pengunjung"; } if($_POST['shout']){ if($_POST['shout'] != "Komentar Anda"){ $shout = $_POST['shout']; //Filter Kata (Takut ada yang injek) $shout = str_replace("<", " ", $shout); $shout = str_replace(">", " ", $shout); $shout = str_replace("", " ", $shout); $shout = str_replace("", " ", $shout); $shout = str_replace("?>", " ", $shout); include_once("database.inc.php"); // koneksi ke database $connection = @mysql_connect($host, $user, $password) or die(mysql_error()); $db = @mysql_select_db($name,$connection) or die(mysql_error()); // masukkan komentar yang diberikan ke database $sql = "INSERT INTO `shouts`(`shoutby`,`shout`) VALUES('$shoutby','$shout')"; //close connection $result = @mysql_query($sql,$connection); } } ?>