<?php
session_start();
require '../includes/db.php';

if($_SERVER['REQUEST_METHOD'] == 'POST'){
    $username = $_POST['username'];
    $password = $_POST['password'];

    $stmt = $pdo->prepare("SELECT * FROM admins WHERE username = ?");
    $stmt->execute([$username]);
    $user = $stmt->fetch();

    if($user && password_verify($password, $user['password'])){
        $_SESSION['admin_id'] = $user['id'];
        header("Location: dashboard.php");
        exit;
    } else {
        $error = "Invalid credentials";
    }
}
?>
<!DOCTYPE html>
<html lang="en">
<head>
    <title>Admin Login</title>
    <script src="https://cdn.tailwindcss.com"></script>
</head>
<body class="bg-gray-900 flex items-center justify-center h-screen text-white">
    <form method="POST" class="bg-gray-800 p-8 rounded-xl shadow-lg w-96">
        <h2 class="text-2xl font-bold mb-6 text-center">Admin Login</h2>
        <?php if(isset($error)) echo "<p class='text-red-500 mb-4'>$error</p>"; ?>
        <input type="text" name="username" placeholder="Username" class="w-full mb-4 p-3 bg-gray-700 rounded border border-gray-600" required>
        <input type="password" name="password" placeholder="Password" class="w-full mb-6 p-3 bg-gray-700 rounded border border-gray-600" required>
        <button type="submit" class="w-full bg-purple-600 py-3 rounded hover:bg-purple-700 transition">Login</button>
    </form>
</body>
</html>