Apache Revenue Jumps as AI, Security Spending Expands

The Apache Software Foundation

WILMINGTON, DE — The Apache Software Foundation increased fiscal 2026 revenue by about 86% to $3.87 million and swung to $1.45 million in net income, giving the open source nonprofit greater financial capacity as it commits resources to artificial intelligence, software supply-chain security and release infrastructure.

The Wilmington-based foundation reported $3.87 million in revenue for the year ended April 30, up from $2.08 million in fiscal 2025. Public donations climbed to $1.75 million from about $112,000, while sponsorship-program revenue rose to $1.9 million from $1.83 million.

Net income was $1.45 million, reversing a $114,471 loss in the prior fiscal year, according to the foundation’s annual report.

Total assets increased to about $6.66 million from $5.46 million, while cash and equivalents rose to $3.74 million from $2.88 million. Total liabilities declined to about $1.63 million from $1.88 million.

READ:  Onfolio Regains Nasdaq Compliance After Reverse Stock Split

The financial improvement coincided with Apache’s launch of a $10 million, multiyear Responsible AI Initiative aimed at supporting open source technologies, governance and community infrastructure used in artificial intelligence and machine learning.

Anthropic provided $1.5 million of initial support for Apache infrastructure, security and community operations, while Alpha-Omega contributed an additional $250,000 for open source security. The foundation said the initiative will also provide projects with access to AI tools and models and support vendor-neutral AI infrastructure.

Apache also expanded work on software supply-chain security during the fiscal year. Its Apache Trusted Releases platform entered a second alpha phase, with projects testing automated policy checks, artifact verification, signatures, checksums, Software Bills of Materials and release attestations.

READ:  Apache Conference Puts Open Source Sustainability in Focus

Foundation contributors also worked on international standards including CycloneDX, Package-URL and Common Lifecycle Enumeration, while supporting wider adoption of Vulnerability Exploitability eXchange practices and tooling.

Those security efforts are taking place as vulnerability-reporting volume rises. Apache’s Security Committee received 1,862 reports of potential vulnerabilities covering 166 top-level projects during fiscal 2026 and published 336 CVE records, according to the report. The foundation also noted a significant increase since January in reports discovered or written with AI assistance.

Apache ended the fiscal year with 10,225 committers working across 302 projects and 1,188 members. Its projects issued 1,709 software releases during the year.

Eleven projects graduated to top-level status, while 10 new projects entered the Apache Incubator. The foundation supported 28 incubating projects spanning areas including data lakehouses, graph databases, distributed messaging, workflow orchestration, AI-agent frameworks and security tooling.

READ:  InterDigital Pushes VVC Toward Large-Scale Video Delivery

Apache also added its 10,000th committer during the fiscal year, a milestone President Ruth Suehle cited alongside investments in release infrastructure and responsible AI.

“The ASF continues to invest in the infrastructure, tools, standards, and people needed to sustain open source for the long term,” Suehle said.

The foundation operates as a U.S. 501(c)(3) nonprofit and reported 62 sponsors during fiscal 2026. Its annual report says it receives no government funding and directs most of its budget toward infrastructure, security, legal and community-support functions.

Support the local news that supports Chester County. MyChesCo delivers reliable, fact-based reporting and essential community resources—free for everyone. If you value that, click here to become a patron today.