prepare("SELECT * FROM Users WHERE Users_username = :username AND Users_password = :password"); $stmt->bindParam(":username", $username); $stmt->bindParam(":password", $password); if ($stmt->execute()) { $_SESSION["username"] = $username; echo json_encode(array("message" => "ok")); } else { echo json_encode(array("message" => "Username or password is incorrect")); }