agents: align autoLoad with agent roles
Each agent now has tools matching its purpose:
- Read-only agents (explorer, navigator, observer, theo, copilot):
No shell, file_write, file_edit. Code analysis tools only.
- Workflow agents (author, reviewer, panelist, foreman):
9p client for peer messaging and goalstatus.
Analysis tools for verification.
- Orchestration agents (conductor):
subagent_spawn, 9p client, analysis tools.
No direct file editing (delegates to sub-agents).
- Full coding agents (default, driver):
Complete toolset including shell, file ops, LSP, code intel.
- Support agents (librarian, taskmanager):
Scoped to their domain (docs, task files).
Removed tools that violate agent constraints.