We're seeing the same here.
There are actually a few concerns for us with Delivery Optimization (beyond false positives from ATA and Netflow analysis)
1) The peer assignment algorithm seems to use a Windows cloud service to determine who your "neighbors" are. I'm still trying to determine how much data this service has about our endpoints.
https://docs.microsoft.com/en-us/windows/deployment/update/waas-delivery-optimization
2) There are also performance implications for some network topologies:
https://blogs.technet.microsoft.com/mniehaus/2016/08/16/windows-10-delivery-optimization-and-wsus-take-2/
One other tweak to consider: Instead of using the default “LAN” download mode, you may want to instead use the “Group” download mode. The “LAN” mode identifies PCs that are on the same LAN by looking at their external IP address – all PCs going
through the same internet IP (through a proxy server or router) are considered to be on the same “LAN.” But if you’re a typical large enterprise, your “LAN” might be made up of a bunch of different LAN segments with WAN connections between them, with
all internet traffic funneled back to a central location that has a connection to the internet.