- // Get referral ID from ref or refid variable
- if (!empty($_GET['ref'])) $ref = strip_tags(htmlentities($_GET['ref']));
- elseif (!empty($_GET['refid'])) $ref = bigintval($_GET['refid']);
+ // Get referal ID from ref or refid variable
+ if (REQUEST_ISSET_GET(('ref'))) $ref = REQUEST_GET('ref');
+ elseif (REQUEST_ISSET_GET(('refid'))) $ref = REQUEST_GET('refid');
+
+ if (!empty($ref)) {
+ // Test if nickname or numeric id
+ if ($ref != ''.($ref + 0).'') {
+ if (EXT_IS_ACTIVE('nickname')) {
+ // Nickname in URL, so load the ID
+ $result = SQL_QUERY_ESC("SELECT userid FROM `{!_MYSQL_PREFIX!}_user_data` WHERE nickname='%s' LIMIT 1",
+ array($ref), __FILE__, __LINE__);
+
+ // Load userid
+ list($ref) = SQL_FETCHROW($result);
+
+ // Free result
+ SQL_FREERESULT($result);
+ } else {
+ // Invalid request!
+ $ref = 0;
+ }
+ } // END - if