[eluser]Dam1an[/eluser]
Although zwero's code is valid, its generally good practice to avoid doing so
You'll probably need to validate all the data before you add it to the database
You could also potentially have other unexpected things in there
I also prefer to use $this->input->post('var') instead of $_POST['var']