Security and PrivacySadly, malware, spyware, hackers and privacy threats abound in today's world. Let's be paranoid and secure our penguins, and slam the doors on privacy exploits.
The only reason Auditd exists is to ship kernel messages to /var/log/audit/. W/o running the daemon AVC messages end up in /var/log/messages. I wonder for what compelling reason(s) you would want to make it run under a different account in the first place?..