OpenAI
OAI-SearchBot
Discovers content for ChatGPT search results.
AI searchTHE SIGNAL
Index access can support downstream agent research; it is not a completed conversion.
Verify Exa’s HTTP message signature and inspect errors on pages you want discoverable.
Look for the ExaSearchBot identifier in a request’s User-Agent. This is a name match, not identity verification. Version strings may change.
Validate the HTTP Message Signature against Exa’s published Web Bot Auth key directory linked in its crawler documentation.
The operator documents robots.txt rules for this identifier.
Optional full-site opt-out. Merge with existing rules only if intended. robots.txt does not secure private content.
User-agent: ExaSearchBot
Disallow: /403 means access was denied; 404 means the resource was not found. Compare the public path, request time, edge security event and origin response to find the cause.
Separate intended restrictions and secret-file probes from pages that should work. A User-Agent name alone does not justify allowing a request.
Identity and purpose are based on these sources. Analytics interpretation and suggested checks are Apostl guidance.
See their requests. Find the pages that matter.
See your agent traffic