No, leave WAN_IN as it is.
WAN_OUT is pretty restrictive -- suffice to say, it's extremely rare to block "everything" outbound. Honestly, it looks more like it's specific to the "CWGUEST" network (based on the sourse address stanzas). You would probably have a cleaner ruleset by putting those rules on "GWGUEST_IN" (and entirely doing away with the WAN_OUT rule.
At some level, it becomes personal preference / what makes sense to you.