client: pawlet-client-sdk, public-SDK-only, installable:false, built for
external AAR/jar publishing.
device: pawlet-device, platform_apis:true, product-partition device API.
system: pawlet-system + pawlet-manager-service, platform_apis:true,
shared AIDL now a filegroup so client can compile its own copy without
a ".." path reference.
Removed core/java/pawletos/device/system/PawletManager.java -- a
ServiceManager-based accessor that was never actually wired up
(nothing ever called ServiceManager.addService), so it always returned
null. PawletClient already covers this without a privileged-only path.