There are still many registrars that don't support DNSSEC (possibly only for a subset of TLDs), and/or have an unusable or cumbersome interface for adding DNSSEC glue. Just another thing to watch out for...