That’s the right way to disallow all except for robots.txt, but it’s more of a suggestion than a hard block.
If you’re serious about blocking everything else, consider server-side restrictions. NGINX or Apache rules can enforce it strictly.
If you’re serious about blocking everything else, consider server-side restrictions. NGINX or Apache rules can enforce it strictly.
