- toolchain/build-vendor.sh: packages the observability components that
are not in Debian main — grafana (official OSS deb, vendored as-is),
loki + promtail (static binaries from the Loki GitHub release, wrapped
in minimal debs that install the overlays/server configs and systemd
units from toolchain/vendor/). Version-pinned, overridable, and
download failures skip with a warning (never break the OS build).
- configure-system.sh: auto-enables grafana-server/loki/promtail when
their binaries land in the image.
- New `make vendor` target.
Harness that clones the 11 Go tools (arcline-uptime, -check, -audit,
-dns, -vault, -email, -migrate, -billing, -portal, -website, -status)
from git.arcline.it, builds release binaries, and packages each into a
.deb that configure-system installs into the image. Tools that cannot
be fetched or built are skipped without breaking the OS build.