Many times, this topic has been mentioned previously:
In summary, secure checks on server from client input. Client checks are easily avoidable.