numpty here, are you saying that one should only log in via restricted accounts?
does that mean you set up an administrator account but then don't use it unless its needed?
Simple answer: Yes.
The idea is that if something manages to trick you, or subvert your browser or other software and get into your system it's running with restricted privileges only and can't subvert your whole system.
You'd have to enter an administrator account login in order for it to proceed with higher privileges.