Skip to content
Follow
Windows

How to Turn On or off UAC for the Windows 11 Built-in Administrator

Richard
Written by
Richard
Feb 15, 2026 Updated Oct 5, 2026 5 min read
How to Enable or Disable UAC for the Windows 11 Built-in Administrator
How to Enable or Disable UAC for the Windows 11 Built-in Administrator

UAC (User Account Control, a security feature that asks for your permission before apps make changes to your PC) lets you manage security prompts for the Windows 11 built-in administrator account. Windows 11 hides this main administrator profile by default. It is a different account from the admin account you created during setup, so changes here affect only the built-in one.

Advertisement

You can turn UAC on or off for this account using 2 different methods. Turning UAC off lets apps run without asking, but it also leaves your PC open to risks if a harmful app tries to make changes. On a fresh install, Admin Approval Mode for the built-in administrator is usually already set to Disabled, so check the current setting before you change anything.

⚡ Quick Answer

Enable or disable User Account Control for the built-in administrator by opening Local Security Policy (secpol.msc) or Registry Editor (regedit). Modify the “Admin Approval Mode for the Built-in Administrator account” setting or the “FilterAdministratorToken” registry value, then restart your PC.

Advertisement

Turn UAC On or Off Using Local Security Policy

This approach relies on the Local Security Policy Editor, a management tool designed for altering workstation security configurations. It is included in Windows 11 Pro, Enterprise and Education. Windows 11 Home does not have it, so Home users should skip to the Registry Editor method further down.

Steps:

  1. Press Windows key + R on your keyboard to open the Run box. A small Run window appears at the bottom left of the screen.
  2. Type secpol.msc and press Enter. If Windows asks for permission, click Yes. The Local Security Policy window opens.
  3. In the window that opens, go to Local Policies Security Options on the left side. Expand each item if it is collapsed. A long list of policies fills the right side.
  4. Look for the setting called “User Account Control: Admin Approval Mode for the Built-in Administrator account” on the right side. The list is sorted by name, so the User Account Control entries sit together.
  5. Double-click that setting. Its properties window opens.
  6. Choose Enabled to turn UAC on or Disabled to turn it off.
  7. Click OK. The new value now shows in the Security Setting column next to the policy.
  8. Close the Local Security Policy Editor.
  9. Restart your PC. This policy does not take effect until you sign out and back in, and a full restart is the safest way to make sure it applies.

To undo the change, open the same setting again and pick the opposite option.

Windows local security policy security options settings
Local Security Policy Editor – Security Options
Setting User Account Control for Built-in Administrator
Enable or Disable UAC for Built-in Administrator

You can use the Local Security Policy Editor to manage the Windows 11 UAC administrator setting by running a quick command. This built-in tool lets you change how User Account Control handles the main administrator account on your PC without digging through complex menus. You only need to open the Run box, enter one command and change one setting.

If the command does not work and you get a “cannot find” error, you are most likely on Windows 11 Home. Use the Registry method below instead.

Advertisement

Turn UAC On or Off Using Registry Editor

The Windows Registry Editor offers an alternative method for making this change. It works on both Home and Pro editions. Proceed with caution, as incorrect tweaks can affect system stability. Before you start, consider backing up the registry: in Registry Editor, choose File Export, pick All as the export range, and save the file somewhere safe. You can also create a restore point first.

Steps:

  1. Press Windows key + R, type regedit, and press Enter.
  2. If prompted by UAC, click Yes to continue. The Registry Editor opens.
  3. In the Registry Editor, navigate to this path:

    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System
  4. If the System folder is missing, right-click on Policies, select New Key, and name it System. The new key should now appear in the left pane under its parent.
  5. Right-click on the right side pane inside System and select New DWORD (32-bit) Value. A new entry appears in the list with its name highlighted for editing.
  6. Name this new value FilterAdministratorToken. If the value already exists, skip steps 5 and 6 and go straight to editing it.
  7. Double-click the FilterAdministratorToken entry. An edit window opens.
  8. Choose Decimal as the base.
  9. Set the value data:
    • 1 to turn UAC ON for the built-in administrator.
    • 0 to turn UAC OFF.
  10. Click OK and close the Registry Editor.
  11. Restart your computer to apply the changes.

To undo the change, return to the same value and set the opposite number, then restart again. If something goes wrong, double-click the registry backup file you exported to restore it.

Registry Editor Windows 11 built-in administrator setting
Registry Editor - Navigate to Policies System
Editing FilterAdministratorToken value data
Set FilterAdministratorToken Value Data to 1 or 0

Summary

  • The built-in administrator account in Windows 11 has full control and can run without asking for UAC permission.
  • Using this account without UAC can be risky, as dangerous changes might happen without warning.
  • You can turn UAC on or off for this account by using either the Local Security Policy Editor (Pro, Enterprise and Education) or the Registry Editor (all editions, including Home).
  • Always restart your PC after making these changes so they take effect.
  • Both methods are reversible. Set the policy or registry value back to its earlier state and restart.

The Windows 11 UAC administrator settings control whether the hidden main administrator account asks for your permission before making system changes. Turning this security feature on keeps your PC safer by stopping rogue apps from making changes behind your back. For everyday work, use a standard or regular administrator account and leave the built-in one disabled unless you need it for repairs or testing.

Was this guide helpful?

Tags: #Windows 11
Was this helpful?
Richard

About the Author

Richard

Tech Writer, IT Professional

Richard is a writer at Geek Rewind who turns complex IT tasks into clear, step-by-step guides. He draws on years of hands-on experience in system administration and enterprise IT operations, focusing on Windows, Linux and WordPress: the problems people actually run into, and the fixes that work. His server and WordPress guides come from systems he runs himself. Richard builds and maintains the platform behind Geek Rewind, from its Ubuntu servers and Nginx configuration to its custom WordPress plugins. Many new tutorials start with readers' questions, and he's always glad to answer them in the comments.

Advertisement

📚 Related Tutorials

How to Enable or Disable Built-in Administrator Account Lockout in Windows 11
Windows How to Enable or Disable Built-in Administrator Account Lockout in Windows 11
How to Enable the Hidden Administrator Account in Windows 11
Windows How to Enable the Hidden Administrator Account in Windows 11
How to Enable UAC Administrator Display in Windows 11
Windows How to Enable UAC Administrator Display in Windows 11
How to Disable UAC in Windows 11 for Standard Users
Windows How to Disable UAC in Windows 11 for Standard Users

No comments yet — be the first to share your thoughts!

Leave a Comment

Your email address will not be published. Required fields are marked *