01 · Operator
Who operates KimiBot
- Company
- Moonshot AI
- Type
- AI training crawler
- Official docs
- kimi.ai
02 · Behavior
What KimiBot does
KimiBot crawls public web pages for potential use in model training. Moonshot AI runs two related agents: Kimi-SearchBot builds the Kimi search index, and Kimi-User handles user-initiated actions. Each agent has its own robots.txt token and published IP list.
03 · Impact
Why KimiBot matters for your site
If you allow it
- Content may inform Kimi's models
- Blocking KimiBot does not remove you from Kimi search
If you block it
- Content is used for model training
- No direct traffic benefit
- Uses server resources
04 · Allow
How to allow KimiBot
robots.txt
User-agent: KimiBot
Allow: /
Cloudflare
# Security › WAF › Custom rules › Create rule
Expression: (http.user_agent contains "KimiBot")
Action: Skip › All Super Bot Fight Mode rules
# Also check Security › Bots: "Block AI bots" can block it regardless of robots.txt.
WordPress
# WordPress serves a virtual robots.txt. Edit it with your SEO plugin:
# Yoast: SEO › Tools › File editor · Rank Math: General Settings › Edit robots.txt
User-agent: KimiBot
Allow: /
nginx
# nginx serves every user agent by default.
# Make sure no rule like this blocks it:
# if ($http_user_agent ~* "KimiBot") { return 403; }
Apache
# Apache serves every user agent by default.
# Make sure .htaccess has no rule like this:
# RewriteCond %{HTTP_USER_AGENT} KimiBot [NC]
# RewriteRule .* - [F,L]
05 · Block
How to block KimiBot
KimiBot follows robots.txt, so one rule is enough. Use a server or CDN rule only to stop spoofed copies.
robots.txt
User-agent: KimiBot
Disallow: /
Cloudflare
# Security › WAF › Custom rules › Create rule
Expression: (http.user_agent contains "KimiBot")
Action: Block
WordPress
# WordPress serves a virtual robots.txt. Edit it with your SEO plugin:
# Yoast: SEO › Tools › File editor · Rank Math: General Settings › Edit robots.txt
User-agent: KimiBot
Disallow: /
nginx
# In your server { } block:
if ($http_user_agent ~* "KimiBot") {
return 403;
}
Apache
# .htaccess
<IfModule mod_rewrite.c>
RewriteEngine On
RewriteCond %{HTTP_USER_AGENT} KimiBot [NC]
RewriteRule .* - [F,L]
</IfModule>
06 · User agents
User agents we see for KimiBot
The user agent published by the operator:
Mozilla/5.0 AppleWebKit/537.36 (KHTML, like Gecko); compatible; KimiBot/1.0; +https://www.kimi.com/policies/kimi-crawlers
07 · Verification
Is it really KimiBot?
Anyone can copy a user agent. Real KimiBot requests come from the IP ranges published at kimi.ai/policies/kimibot.json.
FAQ
Questions about KimiBot
How do I block KimiBot?
Add "User-agent: KimiBot" and "Disallow: /" to robots.txt. Moonshot AI says disallowing it signals that your content should not be used for model training.
What is Kimi-SearchBot?
Kimi-SearchBot is a separate Moonshot AI crawler that builds the Kimi search index. Disallowing it removes your site from Kimi search results.
How can I verify a KimiBot request?
Compare the client IP with the IP list Moonshot AI publishes for KimiBot. Requests from other IPs are not genuine.
Last reviewed Oct 7, 2026