Sealing against XSS atacks: purchasing,sales,install,admin,taxes
[fa-stable.git] / taxes / db / tax_types_db.inc
1 <?php
2
3 function add_tax_type($name, $sales_gl_code, $purchasing_gl_code, $rate)
4 {
5         $sql = "INSERT INTO ".TB_PREF."tax_types (name, sales_gl_code, purchasing_gl_code, rate)
6                 VALUES (".db_escape($name).", ".db_escape($sales_gl_code)
7                 .", ".db_escape($purchasing_gl_code).", $rate)";
8
9         db_query($sql, "could not add tax type");
10 }
11
12 function update_tax_type($type_id, $name, $sales_gl_code, $purchasing_gl_code, $rate)
13 {
14         $sql = "UPDATE ".TB_PREF."tax_types SET name=".db_escape($name).",
15                 sales_gl_code=".db_escape($sales_gl_code).",
16                 purchasing_gl_code=".db_escape($purchasing_gl_code).",
17                 rate=$rate
18                 WHERE id=$type_id";
19
20         db_query($sql, "could not update tax type");
21 }
22
23 function get_all_tax_types()
24 {
25         $sql = "SELECT ".TB_PREF."tax_types.*,
26                 Chart1.account_name AS SalesAccountName,
27                 Chart2.account_name AS PurchasingAccountName
28                 FROM ".TB_PREF."tax_types, ".TB_PREF."chart_master AS Chart1,
29                 ".TB_PREF."chart_master AS Chart2
30                 WHERE ".TB_PREF."tax_types.sales_gl_code = Chart1.account_code
31                 AND ".TB_PREF."tax_types.purchasing_gl_code = Chart2.account_code";
32
33         return db_query($sql, "could not get all tax types");
34 }
35
36 function get_all_tax_types_simple()
37 {
38         $sql = "SELECT * FROM ".TB_PREF."tax_types";
39
40         return db_query($sql, "could not get all tax types");
41 }
42
43 function get_tax_type($type_id)
44 {
45         $sql = "SELECT ".TB_PREF."tax_types.*,
46                 Chart1.account_name AS SalesAccountName,
47                 Chart2.account_name AS PurchasingAccountName
48                 FROM ".TB_PREF."tax_types, ".TB_PREF."chart_master AS Chart1,
49                 ".TB_PREF."chart_master AS Chart2
50                 WHERE ".TB_PREF."tax_types.sales_gl_code = Chart1.account_code
51                 AND ".TB_PREF."tax_types.purchasing_gl_code = Chart2.account_code AND id=$type_id";
52
53         $result = db_query($sql, "could not get tax type");
54
55         return db_fetch($result);
56 }
57
58 function get_tax_type_default_rate($type_id)
59 {
60         $sql = "SELECT rate FROM ".TB_PREF."tax_types WHERE id=$type_id";
61
62         $result = db_query($sql, "could not get tax type rate");
63
64         $row = db_fetch_row($result);
65         return $row[0];
66 }
67
68 function delete_tax_type($type_id)
69 {
70         begin_transaction();
71
72         $sql = "DELETE FROM ".TB_PREF."tax_types WHERE id=$type_id";
73
74         db_query($sql, "could not delete tax type");
75
76         // also delete any item tax exemptions associated with this type
77         $sql = "DELETE FROM ".TB_PREF."item_tax_type_exemptions WHERE tax_type_id=$type_id";
78
79         db_query($sql, "could not delete item tax type exemptions");
80
81         commit_transaction();
82 }
83
84 ?>