- KNF - ensure hostname has trailling nul. - use initgroups/setgid/setuid rather than just setuid, and do this earlier. - find "from:" and "subject:" as well. - use strvis(3) rather than some local crufty code.