* refactor(scripts): deslop scripts/lib
Consolidate script lifecycle, scenario, planner, report, release and
packaging helpers while retaining CLI and publication contracts.
Keep config-boundary source caches within one scan so repeated in-process
checks observe edits. Carry extracted helpers through selective fixtures
and iOS scope routing. Leave PR tooling and its library import closure intact.
* fix(scripts): retain sanitizer fast path after helper cleanup
* fix(scripts): model watchdog shell consumer in dead-code checks
* test: add worker state upgrade survivor cells
Add opt-in Projects Doctor and terminal task/flow restoration cells using the unchanged published updater, verified package bytes, and the canonical survivor lifecycle. Preserve failed synthetic state until the outer Docker owner has joined.
Validation: 161 focused tests, selected changed checks, and P2 review. Actual package upgrade cells remain separately qualified against frozen candidate artifacts.
* test: activate taskflow survivor fixture on Gateway startup
* test: clean worker runtime with container ownership
* fix(test): preserve Docker status through exit traps
* fix(e2e): suppress update checks inside Docker E2E containers
The runner's CI variable does not cross into `docker run`, so containers kept
reporting daily update checks and drowned real operators in the telemetry
aggregates. Inject the existing suppression switch from the shared helper so
every lane inherits it; callers that exercise update behavior keep their own
value.
* test(e2e): record the injected suppression in docker run contracts