?>

        <body>

            <?php 
include 'header.php';
$user_prefs = "SELECT photo, background_photo FROM users where user_id= '{$user}'";
$photos = mysql_query($user_prefs);
while ($row = mysql_fetch_array($photos)) {
    $userIMG = $row['photo'];
    $background = $row['background_photo'];
    $photo = "<img src=" . $row['photo'] . " alt=\"profile image\" class=\"circle z-depth-2 responsive-img \" id=\"profileImg\">";
}
if (isset($userIMG) && $userIMG != NULL) {
} else {
    photoUpdate('https://cdn2.iconfinder.com/data/icons/ui-1/60/05-512.png', $user);
    backgroundUpdate('http://10steps.sg/wp-content/uploads//2012/11/christmas-light-background-small.png', $user);
}
?>
            <br><br>
                <div class="container animated fadeIn">
                    <div id="profile-page-header" class="card">
                        <div class="card-image waves-effect waves-block waves-light">
                            <img class="" id="headerImg" src="<?php 
if (isset($background) && $background != 'null') {
    echo $background;
} else {
    echo " images/user-profile-bg.jpg ";
}
?>
" alt="user background">
<?php

include 'core/init.php';
if (is_numeric($_SESSION['user_id'])) {
    //do nothing
} else {
    header('Location: signup.php');
}
$user = $user_data['user_id'];
$photo = sanitize($_POST[photo]);
$backgroundPhoto = sanitize($_POST[backgroundPhoto]);
//function profileUpdate($photo, $backgroundPhoto, $user_id){
//    mysql_query("UPDATE users
//    SET photo = '$photo', background_photo='$backgroundPhoto'
//    WHERE user_id= '$user_id';");
//}
if ($photo != '') {
    photoUpdate($photo, $user);
    echo 'Updated your photo!';
}
if ($backgroundPhoto != '') {
    backgroundUpdate($backgroundPhoto, $user);
    echo 'Updated your background photo!';
}