studiokaloadesign.fr

.fr crawl

First seen 2026-04-14 · Last seen 2026-05-05 · ok HTTP/1.1 200 342 ms crawled 2026-05-07

FR · 213.186.33.87 · AS16276 OVH SAS

Reputation 100/100

Classifying

HTML metadata

Title
Studio Kaloa | Agence de design produit & Innovation en Bretagne
Description
Agence de design et d'innovation, à la croisée du design industriel et numérique, nous vous accompagnons dans la conception de produits innovants en alignant vision, usage et faisabilité afin de passer de l’intention à des réalisations tangibles, désirables et pérennes
Language
fr
Generator
TYPO3 CMS
Canonical
https://studiokaloadesign.fr/
Feeds

Open Graph

title
Studio Kaloa Agence de design produit & Innovation en Bretagne
locale
fr_FR
image:url
https://studiokaloadesign.fr/fileadmin/_processed_/1/d/csm_socialShare-v2_5d44d62921.jpg
site name
Studio Kaloa
description
Agence de design et d'innovation, à la croisée du design industriel et numérique, nous vous accompagnons dans la conception de produits innovants en alignant vision, usage et faisabilité afin de passer de l’intention à des réalisations tangibles, désirables et pérennes

Technology

Server
OVHcloud

Social

Contact

Phone
Address
30 rue de la République, 22440, Ploufragan, Bretagne, FR

Registration

Registrar
OVH
Created
2024-07-05
Expires
2026-07-05 46 days left
Updated
2025-08-31
Name servers
  • dns104.ovh.net
  • ns104.ovh.net

DNS records live

NS
  • dns104.ovh.net
  • ns104.ovh.net
MX
  • 1 mx1.mail.ovh.net
  • 100 mx3.mail.ovh.net
  • 5 mx2.mail.ovh.net

Email authentication strong

SPF
v=spf1 include:mx.ovh.com -all
strict (-all)
DMARC
v=DMARC1; p=quarantine; rua=mailto:webmaster@kaloa.net; ruf=mailto:webmaster@kaloa.net; fo=1; aspf=s;
policy: quarantine
DKIM
no key found at common selectors

Certificate (current)

E7
from 2026-03-23 to 2026-06-21
Expires in 33 days

HTTP security headers

Header hygiene 70/100 Checked live page: https://studiokaloadesign.fr/

present
  • strict-transport-security
  • content-security-policy
  • x-content-type-options
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • missing frame protection
  • missing Referrer Policy
  • missing Permissions Policy
Header values
x-content-type-options
nosniff
content-security-policy
default-src 'self' *.googleapis.com *.google.com *.google.fr *.google-analytics.com *.googletagmanager.com; script-src 'self' 'unsafe-inline' 'unsafe-eval' *.hotjar.com *.clarity.ms *.studiokaloadesign.fr *.kaloa.net *.google.com *.google-analytics.com *.googleapis.com *.gstatic.com *.googletagmanager.com; style-src 'unsafe-inline' 'self' *.googleapis.com *.typekit.net; object-src 'none'; base-uri 'self'; connect-src 'self' *.google.com *.google.fr *.google-analytics.com *.googleapis.com *.hotjar.io *.hotjar.com *.clarity.ms *.fontawesome.com *.doubleclick.net *.studiokaloadesign.fr *.kaloa.net wss://*.hotjar.com; font-src 'self' *.gstatic.com *.fontawesome.com *.typekit.net; frame-src 'self' *.google.com *.youtube-nocookie.com; img-src 'self' *.studiokaloadesign.fr *.kaloa.net *.googletagmanager.com *.google-analytics.com *.googleapis.com *.gstatic.com data: www.google.com www.google.fr; manifest-src 'self'; media-src 'self'; worker-src 'self' blob:;
strict-transport-security
max-age=31536000; includeSubDomains; preload

Links to (1)

Linked from (2)