I support enabling this in default Debian kernels. It would allow application developers to use landlock sandboxing while developing programs. By not enabling it, developers have to build custom kernels and ask that their customers do this as well to run landlock protected programs.
It should not cause any negative impact and will only potentially improve the security of applications in Debian. Thanks, Brad Virginia Tech