Squarespace guide · Hosted site builder

Marech for Squarespace

See exactly which AI scrapers are hitting your Squarespace site — monitoring in minutes, no code required.

PlatformHosted site builderSetup~2 minutesBlockingMonitor only

How Marech protects a Squarespace site

Squarespace's Code Injection drops the snippet into the header of every page, so monitoring takes a single paste and no code editing. Squarespace hosts everything itself, which means it owns the request path — great for monitoring, but scrapers can be observed rather than blocked.

Mode 1

Monitoring — the snippet

One line of JavaScript in your <head>. It reports scraper traffic to your dashboard and overlays JS-running bots. Works on Squarespace in ~2 minutes.

Mode 2

Blocking — the edge check

Requires a checkpoint in front of your server. Squarespaceowns the whole request path, so this mode isn't available here — monitoring only.

Before you begin

You'll need a couple of things ready. The monitoring step needs only the first two.

  • A Marech account — start a free trial (no credit card).
  • Access to edit your Squarespace site's theme, settings, or code.
1

Install the monitoring snippet

One line of JavaScript that reports scraper traffic to your dashboard. Works on every Squarespace plan and takes about ~2 minutes.

SquarespaceSettings → Advanced → Code Injection → Header
1
Copy your Marech snippet
After signing up, click "Get Snippet Code" in your Marech dashboard and copy the script tag.
2
Open Squarespace Admin
Log in to your Squarespace account and go to your site editor.
3
Go to Settings → Advanced → Code Injection
In the left sidebar, click Settings, scroll to Advanced, then click Code Injection.
4
Paste into the Header section
In the Header field, paste your Marech snippet. This applies to every page automatically.
5
Click Save
Click Save. Monitoring is now live across your entire Squarespace site — scraper traffic will appear in your dashboard.
Verify monitoring is live
Code Injection applies on the live site. Open any page in a browser and confirm your visit shows up in the dashboard feed. Note: Code Injection requires a paid Squarespace plan.
Monitoring vs. blocking — the honest version
The snippet above reports traffic and overlays JS-running bots — but non-JS scrapers (curl, python-requests, GPTBot…) download your HTML directly and never run it, so it can't block those. Squarespace hosts everything — server, domain, and TLS — so there's no way to insert an edge proxy or worker in front of it. On Squarespace, Marech monitors traffic and overlays JS-running bots, but non-JS scrapers can't be blocked. That's a platform limitation, stated honestly. See how the two modes differ in the docs.

Blocking on Squarespace

Squarespace hosts everything — server, domain, and TLS — so there's no way to insert an edge proxy or worker in front of it. On Squarespace, Marech monitors traffic and overlays JS-running bots, but non-JS scrapers can't be blocked. That's a platform limitation, stated honestly.

Monitoring only — and why
Squarespaceowns the entire request path — server, domain, and TLS — so there's no way to insert an edge proxy or worker that runs beforeyour page is served. Marech still monitors traffic and overlays JS-running bots here, but non-JS scrapers can't be blocked. If real blocking matters, host your site somewhere you control the edge (a custom domain via Cloudflare, or a self-hosted setup) — see the platform guides.

Troubleshooting & FAQ

Can I block AI crawlers on Squarespace at all?
Only advisorily. Squarespace lets you edit robots.txt directives that polite crawlers honor, but there's no way to run an enforcement check at the edge, so a scraper that ignores robots.txt can't be stopped. Real blocking needs a platform where you control the request path.
Which Squarespace plan do I need?
Code Injection (where the snippet goes) is available on Squarespace's paid Business and Commerce plans. Monitoring works on any of those; the Personal plan historically doesn't expose Code Injection.
Does the snippet slow down my site?
No. The script is tiny and loads asynchronously, so it never blocks your page from rendering. Server-side blocking adds a single fast check in front of your origin and fails open, so it can't slow down or take down your site.
Will it block real visitors or hurt SEO?
No. Marech targets automated scrapers, not people, and search engines you care about are allowed by default — you decide exactly what gets blocked with policies. See how detection works.

Next steps

Ready to protect your Squarespace site?

Free 7-day trial. No credit card required.