Role-aware liveness and readiness checks.
Metadata readiness remains owned by Cluster.Readiness. Data-node health is
injected so the private transport and repair planner can supply live cluster
evidence without coupling this core module to an HTTP adapter.