If nothing else it would be a huge improvement for them to simply open source their in-house apps they've built.
That would cost very little and do a lot of good.
(if they cry about security, point out that if viewing the source leads to a compromise they've already failed)