The DNSSEC configuration on your domain registrar, Mesh Digital, is incorrect:
Cloudflare does not sign DNSSEC data with algorithm 8 (RSASHA256), which is the algorithm that has been configured in the DNSSEC Delegation Signer (DS
) record, through your registrar.
It also looks like Cloudflare is awaiting your removal of the DS
record, in order to disable DNSSEC.
So you will need to decide whether or not you want DNSSEC enabled, and if you do, you will need to enable DNSSEC in Cloudflare, and then correct the configuration through your registrar.