I'm sure this issue has come up but haven't been able to search for it. Our users have local user privileges. The app bundle installs but requires specific permission(s) to specific local folder(s). Here's what I know and hopefully someone can tell me the best approach and what I've missed:

1) Local file rights policy - not a good option as we have many apps that need tweaking this way and there's no real association between policy and bundles.

2) Install run script - cacls.exe

3) Launch Windows Executable, run as dynamic administrator - Preference is not to give users local admin rights when running the app