90 Days Gen AI Risk Trial -Start Now
Book a demo
Sales·Free; Pro ~$16/user/mo (annual); Enterprise custom·tome.app

Tome

Tome is an AI presentation and sales-storytelling tool that generates account-personalized decks and narratives for B2B sales and marketing teams.

Risk Score
Medium
5/10

Independent assessment across data handling, compliance, security and transparency.

Overview

Tome launched as a consumer AI presentation builder and grew to 20M+ users before pivoting in 2024 to focus on enterprise sales and marketing. It now positions as an AI sales assistant that researches target accounts, pulls CRM data, and generates personalized pitch narratives, outbound decks, and meeting briefs. The company laid off roughly a third of its staff in October 2024 as part of the pivot, and its founders have since spun out a separate AI-native CRM (Lightfield). Pricing includes a free Basic plan, a Pro plan around $16/user/month (annual) with unlimited AI credits, and a custom-priced Enterprise plan with CRM integrations, bulk personalization, viewer engagement analytics, and brand governance. SOC 2 status and enterprise security posture are not prominently advertised for self-serve tiers.

Risk factors

3
  • Cloud-based service with third-party data handling
  • User-generated content may be used for training
  • Requires access to sales and marketing data

Recommendations

8
  • Limit deployment to sales/marketing teams with a clear business owner
  • Review sub-processor list and require a signed DPA before CRM integration
  • Mask or scope CRM fields shared with Tome (no payment data, minimal PII)
  • Human-review all AI-generated claims, especially stats and customer references
  • Configure viewer-tracking disclosures to meet GDPR/CCPA transparency rules
  • Require SOC 2 Type II report before Enterprise rollout
  • Monitor vendor financial health given pivot and layoffs
  • Plan export/migration path for existing tomes in case of further product changes

Data handling

Storage
Cloud-hosted SaaS in the US; enterprise customers can request specifics via their contract, no public regional residency advertised.
Retention
Content retained for the life of the workspace; admins can delete tomes and accounts; no published enterprise retention SLA.
Training on inputs
Tome states customer content is not used to train foundation models; prompts are processed by third-party LLM providers under their enterprise data policies.