Add S3-compatible bucket checks for versioning, optional Object Lock, and optional newest-object freshness.
Acceptance criteria
- AWS SigV4 support is available from the Providers project without changing existing reporting behaviour.
- Configuration validates bucket endpoint, credentials source, and requested controls with actionable errors.
- The audit performs only signed GET requests and reports actionable, stable object-storage findings.
- Doctor and the interactive wizard validate reachable configured inputs, including reject and skip paths.
- Fixtures cover provider response shapes; samples, user docs, changelog, wizard transcripts, and tests are updated.
- Release build and full test suite pass.
No live bucket credentials or topology belong in source, fixtures, ticket discussion, or test output.
Add S3-compatible bucket checks for versioning, optional Object Lock, and optional newest-object freshness.
Acceptance criteria
No live bucket credentials or topology belong in source, fixtures, ticket discussion, or test output.