Call stack traces expose internal implementation details (file paths, method names, library versions, framework info). This helps attackers understand system architecture and identify vulnerabilities. Displaying user-specific info (A) or generic error messages (B) is less risky. 404 errors (D) are standard and safe.