- VesperProfileBinderService + main_android.cpp: real Android AIDL Binder
service backing IVesperProfileService, wired into Android.bp's srcs
(previously declared but never implemented).
- SignatureVerifier: real CMS verification on Android too, via a vendored
static OpenSSL (see third_party/openssl-android/README.md) since
BoringSSL has no CMS/PKCS#7 support.
- ProfileStore: Android-appropriate data paths.
- Every payload handler split into src/platform/<Name>.h (shared contract)
+ src/platform/linux/<Name>.cpp + src/platform/android/<Name>.cpp, so the
build system picks the platform instead of #ifdef. Android side is an
honest "not implemented yet" stub per handler, logged rather than silent.
- content-cache payload + handler: PawletOS-fork-specific, talks to
PawletCache/pawletcache-server. Not part of vesperprofiled's own
upstream default.