Abstract editorial illustration for SEO news March 2026: two sharp spikes in an otherwise flat telemetry trace, with one translucent panel drifting away from the layered stack.

SEO News March 2026: Two Confirmed Updates in Four Days

SEO news March 2026 at a glance: Google confirmed two ranking updates in four days - a spam update on 24 March that finished in under twenty hours, and the year's first core update on 27 March that paid out to first-party sources - while publishing Google-Agent, an agent identity that ignores robots.txt. The short answers are in the SEO news March 2026 FAQ.

March 2026 was a double-update month, and both updates landed in its final week. Everything before 24 March was movement without an owner: heavy, sustained, unconfirmed. Then the spam update opened and closed inside one working day, the core update began three days later, and the two together rewrote a quarter of the top ten.

The structural story ran underneath. Google published a crawler that ignores robots.txt, told the UK regulator it is building a generative-AI opt-out, and confirmed it rewrites some page headlines with AI. Three parts of the contract between a site and the engine reading it moved in one month.

Four weeks of noise, then a nineteen-hour spam update

The first three weeks of March produced heavy ranking movement with nothing official behind it. Barry Schwartz reported heated volatility across Semrush, Sistrix, Mozcast and Algoroo, though the February 2026 Discover core update had completed on 27 February. Google declined to comment, and trackers were still elevated on 10 March. The community read - smaller core updates Google does not discuss - is reasonable, and still unconfirmed. Race Control exists for exactly that: correlate movement against the confirmed update log before opening your own change history.

Google announced the spam update on LinkedIn at around 15:20 ET on 24 March, saying it "may take a few days to complete." It was done by 10:40 ET the next morning - nineteen hours and thirty minutes on the Search Status Dashboard, the fastest spam update on record. Google did not say what it targeted, and reporting noted it did not address link spam or site reputation abuse.

Site reputation abuse was handled by hand instead. On 26 March Google confirmed a manual action against the Clickout Media network, which bought established news, sports and gaming domains, then replaced their editorial with mass-produced casino content, fake author profiles and offshore gambling affiliate links. The sites were deindexed. Enforcement now reaches acquired domain authority, not just rented subfolders - buying domains for authority is an E-E-A-T trust question with a precedent attached.

The core update paid out to primary sources

The March 2026 core update began at 05:14 ET on 27 March - the first broad core update of the year, and Google's third confirmed update in five weeks. Google described it only as "a regular update designed to better surface relevant, satisfying content for searchers from all types of sites." No companion blog post, no stated objective. The announced two-week rollout ran twelve days and four hours, closing on 8 April.

SE Ranking data given to Search Engine Land measured it as more violent than the December 2025 core update. 79.5% of top-three URLs changed position against 66.8% in December; only 20.5% held their exact position, down from 33.1%; and 24.1% of top-ten pages fell out of the top 100 entirely, against 14.7%.

Direction came from Sistrix data read by Aleyda Solis across 26 March to 11 April. Institutional sites gained - Census.gov, BLS.gov - with specialist platforms, established brands and first-party employer sites like Amazon.jobs and USAJobs. Aggregators and directories lost, including ZipRecruiter and Glassdoor, as did YouTube and consumer health sites. If a page earns its traffic by standing between the searcher and the source, this update took some of it. The repair is information gain an intermediary cannot copy - what a content defensibility audit looks for.

John Mueller added on 31 March that update components "sometimes... have to work step-by-step." Mid-rollout deltas are not the verdict.

Google-Agent ignores robots.txt

A fetcher outside the crawl-control surface

On 20 March Google documented Google-Agent, a user agent "used by agents hosted on Google infrastructure to navigate the web and perform actions upon user request," rolling out incrementally over several weeks. Because it is classed as a user-triggered fetcher, it generally does not obey robots.txt. Google is separately experimenting with Web Bot Auth under the identity agent.bot.goog: cryptographic identity replacing user-agent trust.

Agents transact, they do not only read

HUMAN Security's benchmark of more than a quadrillion interactions, published 26 March: automated traffic grew 23.5% year on year against 3.1% for human traffic, and agentic systems grew nearly 8,000%. Of agent activity on sites, 77% hit product or search pages and over 2% reached checkout. A CDN rule that blocks unfamiliar agents no longer just filters bot traffic - it silently breaks conversions.

A stray noindex in the body will be obeyed

On 24 March Google noted that it "doesn't enforce placement of meta robots in the HTML head and will respect robots meta tags in the body section of an HTML document as well" - long-standing behaviour, newly written down, and a live risk wherever a CMS or widget injects markup. Google also moved crawling documentation into its own /crawling/ tree on 3 March. Both belong in technical page deployment checks, alongside the crawlability fundamentals they extend.

Google conceded a generative-AI opt-out

In its 18 March response to the UK Competition and Markets Authority consultation, Google stated it is "developing further updates to our controls to let sites specifically opt-out of generative AI features in Search," while maintaining that "Features like AI Overviews make links to sources more prominent." Publishers answered on 19 March that the concession leaves four gaps:

  • Crawler separation. The BBC wants Google's AI crawler split from the search crawler, for "at least the opportunity to monitor the activity of Google's various crawlers."
  • Granularity. The Financial Times wants "distinct, granular controls over different uses of IP, including grounding, training, and fine-tuning."
  • Acquired datasets. News Media Europe says Google should have to exclude publisher content from any datasets it acquires before any AI use.
  • Opt-in, not opt-out. DMG Media argues publishers "should not be required to take active steps."

The CMA published four proposed Conduct Requirements on 28 January 2026, and the consultation closed with more than sixty responses. Analysis flags fine-tuning as an unaddressed gap that could make an opt-out hollow; publishers report traffic losses of 50-90% attributed to AI Overviews. When the control ships, someone will ask whether to trade AI search visibility for click recovery - a trade that cannot be evaluated without a baseline captured beforehand.

Measurement broke in three places

On 3 March, sidebar links inside AI Mode were found not to pass referrer data, landing those sessions in analytics as direct traffic rather than Google, which Mueller said he would pass on. Any March rise in a client's direct channel now needs an AI Mode hypothesis before it is credited to brand.

On 17 March, Personal Intelligence went broad across AI Mode, the Gemini app and Gemini in Chrome, tailoring results with connected data from Gmail, Photos, purchase history and travel. US personal accounts only. Personalisation at that scale makes any AI Mode position a sample, not a measurement.

On 20 March, Google confirmed a "small" and "narrow" experiment rewriting page headlines with AI in classic Search results. Rewrites shortened or reworded headlines and sometimes shifted meaning; it is not approved for broad rollout. Title deployment becomes a suggestion, and title CTR experiments lose their attribution.

Search Console moved the other way. The branded-queries filter began rolling out on 11 March, splitting Performance data automatically - on domain and top-level properties only, not URL-path properties. Non-branded clicks becoming a native metric will change more client conversations than any SERP test this month: branded demand has been masking non-branded decline. That is where opportunity telemetry and unflinching SEO KPIs and reporting earn their keep. Two smaller faults also landed: BigQuery bulk exports broke on 9 March, the Crawl Stats date selector on 10 March.

What the March citation studies actually said

Four March datasets converge, and not where the GEO discourse expects.

  • Retrieval is not citation. AirOps analysed 548,534 pages retrieved across 15,000 prompts on 13 March: 85% never appear in an answer. And 89.6% of prompts triggered follow-up internal searches, with 32.9% of cited pages arriving only through queries the user never typed.
  • Citation is an oligopoly. Kevin Indig's 24 March study of roughly 98,000 citation rows from 1.2 million ChatGPT responses found around 30 domains taking 67% of citations within a topic, the top ten holding 46% of visibility.
  • Format and placement are levers. The same study puts optimal length at 5,000-10,000 characters, with citations concentrating in the upper 10-20% of a page. Wix Studio read 75,000 AI answers and a million citations: listicles took 21.9% of all citations and 40% of commercial-intent citations, ahead of articles and product pages.
  • Your own ranking list is not the asset. In professional services, third-party editorial lists took 80.9% of listicle citations against 19.1% for brand-created rankings. Search Engine Roundtable separately reported renewed algorithmic pressure on self-promotional listicles on 18 March, unconfirmed by Google.

Read together: AI citation is an authority and structure problem before a chunking problem. Front-load the answer, build topic cluster breadth so the follow-up query lands on you too, and earn placement on someone else's list instead of publishing your own. Define Media Group's 12 March data across 64 sites sets the backdrop: organic clicks down 42% since AI Overviews expanded, offset by Discover up 30% and breaking news up 103%. Discover and content freshness are the hedge.

The March 2026 timeline

Date

What happened

Why it mattered

3 March

AI Mode sidebar links found stripping referrers

Those sessions landed in analytics as direct

11 March

Search Console branded-queries filter starts rolling out

Non-branded clicks go native, top-level properties only

17 March

Personal Intelligence expands to AI Mode and Gemini

AI Mode results vary by user, so tracking needs a caveat

18 March

Google tells the UK CMA it is building an AI opt-out

The policy decision arrives before the control

20 March

AI headline rewrites confirmed; Google-Agent documented

Titles become advisory, robots.txt incomplete

24 March

March 2026 spam update launches, completing 25 March

Nineteen and a half hours, the fastest on record

27 March

March 2026 core update begins, completing 8 April

Aggregators fell, first-party sources gained

What to do next

  • Measure the core update after 8 April. It ran twelve days, and Mueller confirmed components activate step-by-step, so mid-rollout deltas will mislead a recovery plan.
  • Prepare for Google-Agent while it rolls out. Allowlist the IP ranges in user-triggered-agents.json, log the agent separately from Googlebot, and verify key forms and checkout flows work headlessly.
  • Add a body-scope robots-meta check to the technical sweep. Google confirmed on 24 March that it honours robots meta outside the head, so an injected noindex anywhere in the document is live.
  • Capture non-branded baselines now. The branded filter reaches domain properties only, so clients on path-level properties need a plan without it.
  • Take a position on the AI opt-out. The control is coming, and the baseline that makes the trade-off measurable must exist before it arrives.

SEO news March 2026: frequently asked questions

What Google updates happened in March 2026?

Two confirmed ranking updates, four days apart. The March 2026 spam update launched on 24 March and completed on 25 March in nineteen hours and thirty minutes, the fastest spam update on record. The March 2026 core update began on 27 March and completed on 8 April after twelve days and four hours. Everything before 24 March was volatility Google never confirmed.

Did the March 2026 core update hit aggregators?

Directionally, yes. Sistrix data across 26 March to 11 April shows aggregators and directories such as ZipRecruiter and Glassdoor losing visibility, along with YouTube, while institutional sites, specialist platforms and first-party employer sites gained. Google published no stated objective, so treat this as observed movement rather than a declared target. SE Ranking measured 24.1% of top-ten pages falling out of the top 100 entirely.

Does Google-Agent obey robots.txt?

Generally no. Google documented Google-Agent on 20 March as a user agent for agents hosted on Google infrastructure that navigate the web and perform actions on a user's request. It is classed as a user-triggered fetcher, and that class does not obey robots.txt. Google publishes its IP ranges in user-triggered-agents.json and is experimenting with Web Bot Auth under the identity agent.bot.goog.

Will Google let sites opt out of AI Overviews?

Google committed in writing on 18 March, in its response to the UK CMA consultation, to developing controls that let sites specifically opt out of generative AI features in Search. No control has shipped and no date has been given. Publishers including the BBC, the Financial Times and DMG Media responded that the commitment leaves gaps on crawler separation and on granularity between grounding, training and fine-tuning.

That is SEO news March 2026 in a line: two confirmed updates in four days, a crawler outside robots.txt, and a written commitment to an AI opt-out that has not shipped. Browse the SEO news archive for how the story ran in the months either side.

See where your site stands. The free AI-powered SEO audit is your first telemetry read.

Request your free auditSEO pricing calculatorBook a strategy call

Back to blog

Leave a comment

Please note, comments need to be approved before they are published.