......@@ -126,7 +126,7 @@ class Manager2Api < Sinatra::Base
if params.key? 'documentroot'
unless params['documentroot'].match?(%r{^/home/#{params['username']}/})
unless params['documentroot'].start_with?("/home/#{params['username']}/")
halt erb :error, locals: { code: 400, message: 'Documentroot cannot be outside of users home' }
