Google-Extended
Google-Extended controls whether your content is used to train Google's AI models (Bard/Gemini), separate from Google Search indexing.
At a glance
- Operator: Google
- Type: AI Training
- RSL category:
ai-train
How Centinel checks it
- User agent: The request calls itself this crawler. Anyone can send the same string.
- IP ranges: The operator publishes the addresses it crawls from, and Centinel checks the client address against that list.
- Reverse DNS: The client address resolves to a hostname the operator controls, and that hostname resolves back to the same address.
A request that passes one of these checks is Google-Extended itself. One that only matches the user agent is reported as unverified. The match tokens, verification domains, and address feeds are not published here.
Allowing or blocking it
The crawler object in the /validate response sets access_allowed to true only for a verified source that your tenant allowlists. A policy rule can allow or block this crawler by its category, AI Training.