* enhance(#3624): local/no-exact-case-env-access — ratchet ADR-1703 onto production env reads (epic #3411 Phase 4)
Extends ADR-1703's portability rule catalog with a second production-runtime
rule: it flags an exact-case read of a Windows case-varying environment
variable (PATH, PATHEXT, ComSpec, USERPROFILE, TEMP, TMP, APPDATA) off any
receiver that is not process.env itself, matched via an env-shaped-receiver
check to avoid colliding with ordinary `.path`-named properties elsewhere in
the tree.
Exports the seam's private `_envGet` as `envGet` so the rule's remediation
message names a real helper, and fixes the one pre-existing violation the
tightened rule found (`src/runtime-hooks-surface.cts`'s `env.APPDATA` read).
Closes#3624
* fix(#3624): extractStaticName recognizes non-computed Literal destructuring keys; add missing accessor-call test case
Review findings from the code-review + isolated-adversarial passes:
- extractStaticName only matched non-computed Identifier keys, so a
destructuring like `const { 'PATH': v } = opts.env;` (the issue's own I8
acceptance case) silently evaded the rule. Widened to accept a Literal key
regardless of computed, which is safe for MemberExpression too (its
non-computed property is always an Identifier by grammar).
- Added the missing RuleTester valid case for "a case-insensitive accessor
call" (envGet(env, 'PATH')) from the issue's Done-when checklist.
* docs: backfill changeset PR number for #3624 (PR #3976)
---------
Co-authored-by: sim <sim@local>