feat(df): add pnpm wrapper command behind the firewall proxy

Adds the df pnpm wrapper subcommand. The pnpm package manager already landed on main with the env-proxy manager layer; this MR adds the user-facing wrapper and wires it into the dependency-firewall parent command.

pnpm honors HTTPS_PROXY and reuses the NPMMatcher (npm-registry path shape). The wrapper sets DisableFlagParsing and forwards every argument verbatim to pnpm, resolving the GitLab project from the git remote (so it does not advertise --repo).

Targets main directly — no dependency on the other in-flight ecosystem MRs.

Testing

  • go build ./...
  • GITLAB_CI=true go test ./internal/commands/df/... — subcommand registered, no --repo advertised, help text has no format error.
  • gofmt and golangci-lint clean.
  • make gen-docs regenerated the pnpm doc page.

Merge request reports

Loading
Loading