For nearly two decades, Google’s guidelines told site owners to block internal search results pages from crawling. That requirement has now been dropped from Search Essentials, and John Mueller says the instruction to keep blocking those pages has not gone with it. The removal reads like permission. It is closer to a correction of Google’s stated reason, not a reversal of its advice.

Mueller made the distinction on a Friday episode of the Search Off the Record podcast, telling Google’s Martin Splitt that the requirement dates to when the documentation still existed as “Webmaster Guidelines.” Google added it to that guidance in 2007. Mueller said the original logic treated internal search pages as “either as automatically generated content or something like these infinite spaces type things, because theoretically, it’s an automatically generated content. It’s also infinite space.” That framing is gone from Search Essentials now. The behavior it was meant to prevent is not.

Mueller was explicit that dropping the rule is not a spam judgment. “It’s not necessarily something where we would say, we think your site is spam if you allow your search results pages to be indexed,” he said. “It’s just like, you’re being very inefficient.” The efficiency problem is crawl economics: a site’s own search box can generate an effectively unlimited number of parameter-based URLs, one for every query a visitor or a bot ever types. Google crawling those pages burns crawl budget on pages with no independent value, and each request typically triggers an uncached database query on the server, the kind of repeated load that can slow how fast Google crawls the rest of the site.

The second reason is not about waste. It is a known attack surface. Mueller described how indexable internal search pages let outside actors manufacture spam pages on a victim’s own domain without ever breaching it. “If you let people search for things that are totally irrelevant to your website, and your search results page includes those terms on those search results page and is indexable,” those queries become crawlable, indexable URLs. He named the pattern directly: “You could imagine casinos, pharmaceuticals, any kind of restricted content, any adult-related content. It could be suddenly like all of these long adult terms and then a phone number and then photos in the end.” The site did not get hacked to produce those pages. It produced them on its own, by design, because its search results pages were open to indexing.

That distinction matters for how Google Search Console reports it. “It’s not so much that someone has hacked your website to do this, because your website is doing that freely,” Mueller said, “and when we see that happen, we might flag that as hacked. So in Search Console, you might see that as something that is flagged as hacked.” A ranking downgrade tied to a hacked-content or manual-action flag follows from a mechanism a site owner enabled, not one an attacker had to compromise.

The instruction is unambiguous, and it points opposite the direction the guideline diff suggests. Keep the robots.txt disallow or the noindex tag on internal search result pages. Do not read the removal from Search Essentials as clearance to unblock them. Barry Schwartz, reporting Mueller’s comments for Search Engine Roundtable, framed the change as a documentation cleanup rather than a policy reversal, and Google’s own advice on preventing site abuse still lists open search results pages as a risk.

The useful lesson here is broader than one setting. Google withdrew a spam-signal claim it no longer wanted to make. It did not withdraw the crawl-budget math or the abuse pattern that claim was built to prevent. Teams that treat every guideline diff as a to-do list will read this one backwards. Site owners relying on internal search for discovery should redirect that effort into built category and landing pages instead, and confirm their disallow or noindex on search results templates is still active before the next crawl budget or Search Console audit.

Barry Schwartz reported John Mueller’s comments from Google’s Search Off the Record podcast for Search Engine Roundtable on Friday, July 31, 2026.