real_escape_string($_POST['name']); $email = $conn->real_escape_string($_POST['email']); $address = $conn->real_escape_string($_POST['address']); $message = $conn->real_escape_string($_POST['message']); // Insert data into the database $sql = "INSERT INTO contact (name, email, address, message) VALUES ('$name', '$email', '$address', '$message')"; if ($conn->query($sql) === TRUE) { // Store form data in session for confirmation $_SESSION['form_message'] = "Your message has been sent successfully!"; header('Location: contact-us.php'); // Redirect to avoid form resubmission exit(); } else { $error = "Error: " . $conn->error; } } // If there's an error, store the error message in the session if (isset($error)) { $_SESSION['error_message'] = $error; header('Location: contact-us.php'); exit(); } } $conn->close(); ?> " . htmlspecialchars($_SESSION['form_message']) . " "; unset($_SESSION['form_message']); // Unset after displaying } // Display error message if (isset($_SESSION['error_message'])) { echo "