The 'prepare' statement is a way of separating the values provided by the user from the SQL statement itself. to indicate where an external variable will appear - this is known as a position placeholder.

The bind_param() method is then used to attached the variable to the position placeholder.

However that is not the end of the story as we need to extract our lovely data from the mysqli results object before we can play with it. This returns an associate array which uses the database's field names as the indexes.

Therefore as we have a field name of 'film Name' in the database we can extract that value from the array using the syntax .

In the last section we looked at connecting to a database using PHP and the mysqli extension. This code can also be written using the Object Oriented (OO) approach.