We have used cpGuard since fall of 2023. Few issues, but here are some that have popped up:
modsec rules will lockout new users from wp-admin at odd times. We have 6-7 documented cases on new clients since Jan 2024. Random, cannot seem to pin down.
Uploads are also a constant issue. We have a number of sites that have to upload docuements (VERY LARGE) sometimes on a daily basis, and modsec (again under cpGuard) will kill them. The client will disable modsec, upload, and re-enable. Guess what, in 100% of those cases we now see modsec disabled for those domains when we do random checks... figures.
Another that popped up (we have an active ticket with them now) is that captcha started triggering and locking out WP admin users. Again, rare so far, but as we all know, the client/designer just wants us to "turn that off"
Those are by no means deal breakers, and will probably be figured out.
I am fairly optimistic about it overall.