lars.schneider@xxxxxxxxxxxx writes: > +static int validate_encoding(const char *path, const char *enc, > + const char *data, size_t len, int die_on_error) > +{ > + if (!memcmp("UTF-", enc, 4)) { Does the caller already know that enc is sufficiently long that using memcmp is safe?