I can modify the price in the checkout by changing the URL parameter. Really?
Having dealt with payment gateways, I would not assume that.
I can "change the price" of anything on Amazon with dev tools, but that won't help me when I go to buy it. I appreciate the concern because amazingly this has been a real vulnerability on sites before (recently on a crypto exchange I think).