This is of course up to Bytemark to decide, but I would seriously consider moving on to a maintained DNS server codebase instead. Modern DNS servers make DNSEC deployment easy and almost fool proof. I seriously doubt that can be said about tinydns with the DNSSEC patch.
I also note that djbdns isn't part of Debian stable anymore. Yet another reason to consider alternatives.