> major providers (including all of Cloudflare) responded to it by disabling DNSSEC
Yeah I was very confused by this as well.
But then again, I think/hope that anyone relying on DNS / DNSSEC for security-related $THINGS is _probably_ running their own validating resolver.