fn safe_watch_relative_path(root: &Path, candidate: &Path) -> Option<String>
Return a safe normalized repository path for a watcher event.