As the logging of user activities involving the creation or dropping of a SYNONYM can provide forensic evidence about a pattern of suspect/unauthorized activities, the audit capability should be set according to the needs of the organization.
Solution
Execute the following SQL statement to remediate this setting. AUDIT SYNONYM;