'Username and password required']); exit; } $stmt = $pdo->prepare("SELECT id, username, password FROM users WHERE username = ?"); $stmt->execute([$username]); $user = $stmt->fetch(PDO::FETCH_ASSOC); if ($user && password_verify($password, $user['password'])) { $_SESSION['user_id'] = $user['id']; $_SESSION['username'] = $user['username']; echo json_encode(['ok' => true, 'user' => ['id' => $user['id'], 'username' => $user['username']]]); } else { http_response_code(401); echo json_encode(['error' => 'Invalid credentials']); } ?>