What checks should be done before adding form data to the database?

trim(), strip_tags(), (int)[if you need a number].

I would also recommend using ereg_replace

Check data to make sure it’s not empty, escape, remove superfluous if you need to convert it to a string or a number. in general, all the previous actions, except for what @Ale_xsaid, must be performed

Switch to PDO to work with the database