real_escape_string($_POST['clientName']);
// $profession = $conn->real_escape_string($_POST['profession']);
$client_location = $conn->real_escape_string($_POST['clientLocation']);
// $client_rating = intval($_POST['clientRating']);
$client_review = $conn->real_escape_string($_POST['clientReview']);
// Insert query
$sql = "INSERT INTO client_reviews (client_name,client_location, client_review)
VALUES ('$client_name','$client_location','$client_review')";
if ($conn->query($sql) === TRUE) {
$msg = "Review submitted successfully!";
} else {
echo "Error: " . $sql . "
" . $conn->error;
}
}
?>