public int InsertCaffeWorker(CaffeWorker caffeWorker) { int result; using (SqlConnection connection = new SqlConnection(connectionString)) { connection.Open(); SqlCommand sqlCommand = new SqlCommand(); sqlCommand.Connection = connection; sqlCommand.CommandText = $"Insert into Workers( Password, User_Name, Email, Phone) values('{caffeWorker.Password}','{caffeWorker.User_Name}','{caffeWorker.Email}','{caffeWorker.Phone}')"; result = sqlCommand.ExecuteNonQuery(); } return(result); }
public int UpdateWorker(CaffeWorker caffeWorker) { int result; using (SqlConnection connection = new SqlConnection(connectionString)) { connection.Open(); SqlCommand sqlCommand = new SqlCommand(); sqlCommand.Connection = connection; sqlCommand.CommandText = "Update Workers SET Password =@pass, User_Name = @userName, Email=@email, Phone=@phone where Worker_ID = @workerID"; sqlCommand.Parameters.AddWithValue("@pass", caffeWorker.Password); sqlCommand.Parameters.AddWithValue("@userName", caffeWorker.User_Name); sqlCommand.Parameters.AddWithValue("@email", caffeWorker.Email); sqlCommand.Parameters.AddWithValue("@phone", caffeWorker.Phone); sqlCommand.Parameters.AddWithValue("@workerID", caffeWorker.Worker_ID); result = sqlCommand.ExecuteNonQuery(); } return(result); }