PetalBot: Robots.txt & Crawl Policy Reference
Guide to PetalBot, Huawei's search engine crawler. Understand its role in Petal Search, its aggressive crawling patterns, and how to configure access.
AI Summary:
PetalBotis the official web crawler for Petal Search, a search engine ecosystem developed by Huawei. It indexes PC and mobile websites to serve search results, primarily targeting users on Huawei devices. It is known for aggressive crawling behavior but respects standardrobots.txtdirectives.
Role and policy boundary
PetalBot functions similarly to Googlebot or Bingbot, indexing the web for a traditional search engine. If you want your website to be discoverable by users utilizing Petal Search (which is especially prominent on Huawei smartphones globally), you should allow this bot.
However, many webmasters have reported that PetalBot can be extremely aggressive, consuming significant server bandwidth. If Huawei's market is not relevant to your business, or if the bot is causing performance issues, you may choose to block it or throttle it.
A robots rule is a declaration of intent; it does not replace authentication, authorization, or rate limiting. Start with a dedicated group:
User-agent: PetalBot
Allow: /
Disallow: /staging/
Disallow: /internal/
To stop access for the entire site, use:
User-agent: PetalBot
Disallow: /
Avoid assuming that User-agent: * expresses the same business intent. A wildcard can affect assistant and training crawlers too, and it makes later audits harder because the source of the decision is less specific.
Layered verification
Verify the same URL through each control plane instead of assuming that one green signal represents the whole request path. Compare the bot-specific robots group, the page-level metadata, and the response headers captured at the public edge.
PetalBot respects standard robots.txt directives. You can manage its access by targeting the PetalBot User-Agent. Because it is known to be aggressive, implementing a crawl-delay directive in your robots.txt is a common and effective practice if you want to remain indexed but reduce server load.
The Policy Engine evaluates the selected user-agent, path scope, and the other supplied layers independently. It can therefore explain why a bot is allowed while another is blocked, rather than returning one blended website score.
Page-level directives can still override the intended outcome for indexing:
<meta name="robots" content="noindex, nofollow">
X-Robots-Tag: noindex, nofollow
If a response uses these tags, the report marks the result as blocked or conflicting even if the crawler-specific robots group is permissive. This is especially important for canonical pages served through an edge cache where headers may differ from the origin response.
WAF and Nginx remediation examples
If PetalBot is consuming too much bandwidth and you wish to block it entirely, or if it ignores crawl-delay in your specific setup, a WAF rule is highly effective.
{
"description": "Block Huawei PetalBot",
"expression": "lower(http.user_agent) contains \"petalbot\"",
"action": "block"
}
Use your platform's actual middleware response pattern rather than copying this simplified example without review. Never place a secret, verification token, or internal policy identifier in a public header.
map $http_user_agent $block_petalbot_private {
default 0;
~*PetalBot 1;
}
server {
location ~ ^/(admin|account|private|licensed|internal|api)/ {
if ($block_petalbot_private) { return 403; }
try_files $uri $uri/ =404;
}
}
Review checklist
Use this checklist after every policy change and after a CDN or WAF migration. Record the request URL, User-Agent, HTTP status, final redirect, and the exact evidence used to reach the decision.
Verify that the dedicated group appears before relying on a wildcard, test a representative public and private path, and compare live response headers with robots.txt. Keep the policy close to the content owner's intent and record whether the site wants discovery, citation, or no access at all.
Need to optimize your entire site for AI search visibility? Run a comprehensive audit with Geolify.ai.