I recently switched to mysqli from mysql and started using prepared statements. in mysql we do
$result = mysql_query(\"SELECT * FROM table WHERE id = ?\"); <
Use prepared statement as..
$stmt = $mysqli->prepare("SELECT id, label FROM test WHERE id = 1"); $stmt->execute(); $res = $stmt->get_result(); $row = $res->fetch_assoc(); printf("id = %s (%s)\n", $row['id'], gettype($row['id'])); printf("label = %s (%s)\n", $row['label'], gettype($row['label']));