DevTools Debugger: real `debugger;` breakpoints at the VM
The DevTools protocol grows a Debugger domain. Until now the engine's CDP subset could inspect and drive the page (Runtime, DOM, CSS, accessibility) but had no debugger at all. It now has a real one for the breakpoint that needs no source-line bookkeeping: the `debugger;` statement. When the domain is enabled, hitting a `debugger;` captures the actual pause state from the running engine - the current function name and the live scope chain, every local and block variable with its real value at that instant - reachable through the CDP Debugger methods and a small native bridge. It is an honest slice: there is still no WebSocket event transport (a pause is polled, not pushed), no line-number breakpoints (that needs source-to-bytecode mapping) and no stepping - but the pause it reports is real VM state, not a mock, and `debugger;` is now a zero-cost no-op when the domain is off. DevTools moves 20 to 22; overall holds at 51 (the full debugger floor - transport, line breakpoints, stepping - is not yet done).