- I think it is a good practise to keep the build in admin account disabled. You should create custom account with Group Policy Preferences and add its name to LAPS policies to manage that account.
- It sounds like you are missing rights, or you didn't delegate enough rights to read additional attributes in AD.
This is a good guide how to implement this solution: https://4sysops.com/archives/how-to-install-and-configure-microsoft-laps/