diff --git a/adminarea_admins.php b/adminarea_admins.php
new file mode 100644
index 0000000..9e3cfc7
--- /dev/null
+++ b/adminarea_admins.php
@@ -0,0 +1,19 @@
+
+
+
+Admin Area
+
+
+
+
+');
+}
+echo 'heres the admin world
';
+echo ''
+echo ''
+echo '
';
+echo '';
+?>
diff --git a/adminarea_admins_give.php b/adminarea_admins_give.php
new file mode 100644
index 0000000..8ea0810
--- /dev/null
+++ b/adminarea_admins_give.php
@@ -0,0 +1,83 @@
+
+
+
+Admin Area
+
+
+
+
+prepare("SELECT * FROM users WHERE username = :username");
+$result = $statement->execute(array('username' => $username));
+$user = $statement->fetch();
+$_SESSION['userid'] = $user['id'];
+$_SESSION['email'] = $user['email'];
+$_SESSION['username'] = $user['username'];
+$_SESSION['givenName'] = $user['givenName'];
+$_SESSION['lastName'] = $user['lastName'];
+$_SESSION['activated'] = $user['activated'];
+$_SESSION['updated_at'] = $user['updated_at'];
+$_SESSION['isadmin'] = $user['isadmin'];
+
+if($_SESSION['isadmin'] == 0) {
+ die ('No rights for you! ');
+}
+echo 'heres the admin world
';
+
+$showForm = true;
+
+if(isset($_GET['user']) ) {
+ if(!isset($_POST['username']) || empty($_POST['username'])) {
+ $error = "Enter the username";
+ } else {
+ $statement = $pdo->prepare("SELECT * FROM users WHERE username = :username");
+ $result = $statement->execute(array('username' => $_POST['username']));
+ $user = $statement->fetch();
+
+ if($user === false) {
+ $error = "no user found";
+ } else {
+
+
+ //check if theres a code already
+ $statement = $pdo->prepare("UPDATE users SET isadmin = '1' WHERE id = :userid");
+ $result = $statement->execute(array('userid' => $user['id']));
+
+
+
+ $showForm = false;
+ }
+ }
+}
+
+if($showForm):
+?>
+
+Give Admin Rights!
+Please enter the username below.
+
+
+
+
+
+
+
+echo '
';
+echo '';
+?>
diff --git a/adminarea_admins_take.php b/adminarea_admins_take.php
new file mode 100644
index 0000000..2a698cf
--- /dev/null
+++ b/adminarea_admins_take.php
@@ -0,0 +1,83 @@
+
+
+
+Admin Area
+
+
+
+
+prepare("SELECT * FROM users WHERE username = :username");
+$result = $statement->execute(array('username' => $username));
+$user = $statement->fetch();
+$_SESSION['userid'] = $user['id'];
+$_SESSION['email'] = $user['email'];
+$_SESSION['username'] = $user['username'];
+$_SESSION['givenName'] = $user['givenName'];
+$_SESSION['lastName'] = $user['lastName'];
+$_SESSION['activated'] = $user['activated'];
+$_SESSION['updated_at'] = $user['updated_at'];
+$_SESSION['isadmin'] = $user['isadmin'];
+
+if($_SESSION['isadmin'] == 0) {
+ die ('No rights for you! ');
+}
+echo 'heres the admin world
';
+
+$showForm = true;
+
+if(isset($_GET['user']) ) {
+ if(!isset($_POST['username']) || empty($_POST['username'])) {
+ $error = "Enter the username";
+ } else {
+ $statement = $pdo->prepare("SELECT * FROM users WHERE username = :username");
+ $result = $statement->execute(array('username' => $_POST['username']));
+ $user = $statement->fetch();
+
+ if($user === false) {
+ $error = "no user found";
+ } else {
+
+
+ //check if theres a code already
+ $statement = $pdo->prepare("UPDATE users SET isadmin = '0' WHERE id = :userid");
+ $result = $statement->execute(array('userid' => $user['id']));
+
+
+
+ $showForm = false;
+ }
+ }
+}
+
+if($showForm):
+?>
+
+Take Admin Rights!
+Please enter the username below.
+
+
+
+
+
+
+
+echo '
';
+echo '';
+?>