As someone who also has 15+ years of experience in the field and is currently infosec management, it’s not that bad. Certainly not something I’d say “you’re in for a world of hurt” about like somebody just bought a bad timeshare.
Especially if you’re not hosting production email for a company and you’re not leaving the server as an open relay, it isn’t very painful at all.
You could also be less condescending, but as you said: your call. :)
All of that is inherent in self hosting anything publicly accessible. You wouldn’t start off a reply to someone setting up openvpn with “you’re in for a world of hurt,” would you?