What about the hidden, system generated accounts and profiles? Is it only one always and preserved or really per process one generated and the whole profile deleted afterwards or per user elevating things and the profiles deleted/kept around or ...?
The differences to UAC only address the default Windows behaviour of having a user already being a member of the admin group and having UAC-protected admin permissions anyway. With a default basic user and an additional admin account, elevating requires a username and password, therefore authenticating as well eben with enabled UAC.
In that setup there's no difference to the new protection anymore, isn't it? Or are the background admin accounts and profiles still generated and possibly deleted and generated and ...?