Per[ F2F discussion ](https://www.w3.org/2016/05/16-webappsec-minutes.html#item02), consider extending this specification to support integrity metadata on inline scripts(/styles?). This also implies that `require-sri-for` will enforce integrity metadata on both inline and external resources types. WDYT @metromoxie, @devd, @mozfreddyb, @fmarier ?