Windows 11 includes a hidden built-in Administrator account that serves as the system administrator with elevated rights by default without needing Run as administrator or UAC (User Account Control) for elevation approval.
The built-in Administrator is not protected by a password by default, but you can add a password to the account to help prevent unauthorized users from signing in to the account.
The Administrator account has full control of the files, directories, services, and other resources on the local computer. The Administrator account can create other local users, assign user rights, and assign permissions. The Administrator account can take control of local resources at any time simply by changing the user rights and permissions.
The built-in Administrator account cannot be deleted or locked out, but it can be renamed, enabled, or disabled.
This tutorial will show you how to enable or disable the built-in Administrator account in Windows 11.