JavaScript object notation(JSON) is vulnerable to content level attacks. Such attacks attempt to use huge json files to overwhelm the parser and eventually crash the service.
JSON threat protection is terms that describe the way to minimize the risk from such attacks by defining few limits on the json structure.
I see. Is that really useful? Worst case is a 500?
It validates the structure before fully parsing it and allocating lots of objects you normally wouldn't.