I still can't wrap my head around why a DNS provider is required to block websites, especially one that is not associated with ISP or used as default on any device. Oversimplifying this, it's a glorified hash map, so whoever wants to take down the illegal content should just deal with the website owner?
I'd wager that a lot of the folks implementing these policies don't know the difference between a DNS server and a VPN. They think DNS=VPN, so all the hackers are using cloudflare to get around restrictions.
In general, most folks who use the internet don't know how it works and they don't want to know.