Stage 62 — PWA API Resilience
Adds a memory-only authenticated API resilience wrapper. A protected API request that returns 401 may refresh the existing in-memory refresh token once and retry the original request. No API response, access token, or refresh token is persisted. Service-worker cache v13 includes only public PWA helper scripts; API endpoints and private application routes remain excluded.
